RKDetect - Rootkit by anomaly detector Icon

RKDetect - Rootkit by anomaly detector

Detection tool which can find services hidden by generic Windows rootkits.

RKDetect - Rootkit by anomaly detectorOverview

Rkdetect is a Little anomaly detection tool which can find services hidden by generic Windows rootkits like Hacker Defender or hidden spyware/adware. Tool is very simple. It enumerates services on remote computer through WMI (user level) and Services Control Manager (kernel level), compares results and displays differences. In this way it may be possible to find hidden services which are usual used to start rootkit. Similar approach can be used to enumerate processes, files, registry keys and anything rootkits can hide. Real kernel level rootkit can not be detected this way.

NEW

Fixed some bugs.

RKDetect - Rootkit by anomaly detectorInformation

Version
1.0
Date
11.17.08
License
Free
Language
English
File Size
16KB
Developer
Category
SubCategory
Operating Systems
Windows 2003, XP, 2000, 98, Me
System Requirements
No additional system requirements.
3proxy Icon
proxy server HTTP, HTTPS, SOCKS v4/4a/5, FTP, POP3, UDP/TCP portmapping
Free
More
JD-GUI Icon
Decompile and analyze Java 5, and upper, ".class" files.
Free
DLL Export Viewer Icon
display the list of exported functions and virtual memory addresses for DLL file
Free
IDA PRO Icon
IDA Pro is a Windows or Linux hosted multi-processor disassembler and debugger.
Trial
BinViewer Icon
Quickly browsing through huge binary files, do hex and text searches.
Free
Debugging Tools for Windows Icon
Debugging Tools for Windows to debug drivers, applications
Free
Charles Icon
Charles is a web proxy (HTTP Proxy / HTTP Monitor) that runs on your own computer.
Trial
AccessPort Icon
AccessPort - RS232 Monitor / RS232 Terminal for serial port.
Free
Free Serial Port Monitor Icon
Free Serial Port Monitor, RS232 Com Software Sniffer
Free
More