RootKit Revealer Tool

From: R. McCarty (PcEngWork-NoSpam__at_mindspring.com)
Date: 02/23/05


Date: Wed, 23 Feb 2005 10:54:31 GMT


 For anyone who's been reading up on the potential, newest threat to
Windows (Rootkits). SysInternals has created/posted a tool that will
scan your system.
http://www.sysinternals.com/ntw2k/freeware/rootkitreveal.shtml
(on a Technical Savvy scale of 10 - this one is about 8.5)

 Rootkits is basically a way for Malware, etc to "Hide" itself within the
OS, so normal scanning tools and detectors are unable to locate them.
If I understand it correctly, the Malware actually hooks into system code
making it almost invisible to normal scanning methods. In one article it
indicates the only removal process will be a full system re-install !

It worthwhile to spend some time researching this issue, as it won't be
long before this threat becomes more prevalent.



Relevant Pages

  • Re: RootKit Revealer Tool
    ... RootKits can get past Windows File Protection. ... : removing Malware don't apply. ... so normal scanning tools and detectors are unable to locate them. ...
    (microsoft.public.windowsxp.general)
  • Re: RootKit Revealer Tool
    ... on how this kind of threat can be used against Windows & how difficult ... :> RootKits can get past Windows File Protection. ... so normal scanning tools and detectors are unable to locate them. ...
    (microsoft.public.windowsxp.general)
  • Re: Encountered WMF Vulnerability
    ... tracking the threat by identifying the basic ... > detects only one more malware than AVG. ... > scanners" is best done as one resident av backed by multiple on-demand ... > 5) Killing the file association for .WMF files ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Microsoft Says Recovery from Malware Becoming Impossible
    ... The truth is that malware is 99.9 % a Windows problem. ... malware (spyware and adware) is 99% a WINDOWS problem: ... but we ARE talking about rootkits. ...
    (microsoft.public.security)
  • Re: Common Malware Enumeration Initiative Now Available
    ... The question begs what will they do when the ... what about older versions of malware? ... > doesn't pose as much of a threat as new malware... ... of numbers the idea for a standard is to have it last and in ten of fifteen ...
    (alt.computer.security)