RKDetect - Rootkit by anomaly detector

Detection tool which can find services hidden by generic Windows rootkits.
Download

RKDetect - Rootkit by anomaly detector Ranking & Summary

Advertisement

  • Rating:
  • License:
  • Freeware
  • Publisher Name:
  • SECURITY.NNOV
  • Publisher web site:
  • Operating Systems:
  • Windows 2003/XP/2000/98/Me
  • File Size:
  • 16KB

RKDetect - Rootkit by anomaly detector Tags


RKDetect - Rootkit by anomaly detector Description

Rkdetect is a little anomaly detection tool which can find services hidden by generic Windows rootkits like Hacker Defender or hidden spyware/adware. Tool is very simple. It enumerates services on remote computer through WMI (user level) and Services Control MANAGER (kernel level), compares results and displays differences. In this way it may be possible to Find Hidden services which are usual used to start rootkit. Similar approach can be used to enumerate Processes, files, registry keys and anything rootkits can hide. Real kernel level rootkit can not be detected this way.


RKDetect - Rootkit by anomaly detector Related Software