GALAXY COMPUTERS

Serving you the best

 

Home

 

Download
Latest Version

 
Latest Version
Rootkit Revealer 1.71

Old Versions
Rootkit Revealer 1.70
Rootkit Revealer 1.60
Rootkit Revealer 1.56
 
DOWNLOAD SOFTWARE

 

 

  Rootkit Revealer 1.71

Microsoft SysInternals - 226KB (Freeware)
RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit.

RootkitRevealer successfully detects many persistent rootkits including AFX, Vanquish and HackerDefender (note: RootkitRevealer is not intended to detect rootkits like Fu that don't attempt to hide their files or registry keys).

Since persistent rootkits work by changing API results so that a system view using APIs differs from the actual view in storage, RootkitRevealer compares the results of a system scan at the highest level with that at the lowest level. The highest level is the Windows API and the lowest level is the raw contents of a file system volume or Registry hive (a hive file is the Registry's on-disk storage format).

Thus, rootkits, whether user mode or kernel mode, that manipulate the Windows API or native API to remove their presence from a directory listing, for example, will be seen by RootkitRevealer as a discrepancy between the information returned by the Windows API and that seen in the raw scan of a FAT or NTFS volume's file system structures.
 

Technical SPONSORS
Title:Rootkit Revealer 1.71Filename:RootkitRevealer.zipFile size:226KB (231,390 bytes)Requirements:Windows 2000 / XP / 2003 / Vista / Windows7Languages:en-USLicense:FreewareDate added:November 11, 2006Author:Microsoft SysInternals
www.microsoft.com/technet/sysinternals
Homepage:www.microsoft.com/te...otkitRevealer.mspxMD5 Checksum:59739CCDA2F15D5AC16DB6695CAE3378

 

 

Rootkit Revealer 1.71 - RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit.

 

 

All the links given on the site www.galaxycomputers.com.pk are the property of their respective owners. We simply provide these links so for the ease & support our respected users. We are not responsible for any illegal usage.

Privacy Policy - Contact Us - About Us - Terms & Conditions
Copyright 2011. All Rights Reserved. All the logos used in this site are the trade marks of their respected owners.