Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Newsgroups > Vista security

Vista - Rootkit Revealer

Reply
 
Old 02-21-2009   #1 (permalink)
Zareba


 
 

Rootkit Revealer

I searched but could not find an answer here so I am asking.

Can Rootkit Revealer from Sysinternals be used successfully on Vista SP1?

The day after I joined Facebook last week, my address book was used to send spam in my name to everyone on my contact list. I have scanned with Windows Defender, Avast, Malware Bites, Super Antispyware, Hijack This, and Stinger. Everything says I am clean. I have also removed myself from Facebook as I suspect that the problem originated with something I did or something they did.

The only thing I have not done is searched for a rootkit.

Any help or advice would be appreciated.

....Z (learned to avoid social networks)

My System SpecsSystem Spec
Old 02-22-2009   #2 (permalink)
Zareba


 
 

Re: Rootkit Revealer

Thanks, I will ask in their forum. I suspect the answer is no, because I did run it unsuccessfully and was simply hoping there had been an update or a tweak that would work.

But I also would like to know if there is any other free rootkit revealer or remover that will run on Vista.

Thanks again
My System SpecsSystem Spec
Old 02-22-2009   #3 (permalink)
Kayman


 
 

Re: Rootkit Revealer

On Sun, 22 Feb 2009 14:03:01 -0400, Zareba wrote:
Quote:

> Thanks, I will ask in their forum. I suspect the answer is no, because I did run it unsuccessfully and was simply hoping there had been an update or a tweak that would work.
> But I also would like to know if there is any other free rootkit revealer or remover that will run on Vista.
Anti Rootkit - Panda
http://research.pandasecurity.com/bl...ntiRootkit.zip
http://www.rootkit.com/boardm.php

Avira AntiRootkit Tool
http://www.free-av.com/en/tools/4/av...tkit_tool.html
http://www.free-av.com/en/products/index.html
Avira Support Forum
http://forum.avira.com/wbb/index.php?langid=1

Anti-Rootkit Software - Detection, Removal & Protection
http://www.antirootkit.com/software/index.htm

*ComboFix* - A guide and tutorial on using
http://www.bleepingcomputer.com/comb...o-use-combofix
http://www.thespykiller.co.uk/index.php?board=3.0
(ComboFix should not be used without guided assistance.)

DarkSpy
http://www.antirootkit.com/software/DarkSpy.htm
http://www.antirootkit.com/forums/viewforum.php?f=18

F-Secure BlackLight (Download Trial)
http://www.f-secure.com/blacklight/
http://www.antirootkit.com/forums/viewforum.php?f=13

GMER - is an application that detects and removes rootkits.
http://www.gmer.net/index.php
http://antirootkit.com/forums/index....81ffe4361c3a17

IceSword
http://www.antirootkit.com/software/IceSword.htm
http://www.antirootkit.com/forums/index.php

RAIDE
http://www.rootkit.com/project.php?id=33
download:
http://www.rootkit.com/vault/petersi...IDE_BETA_1.zip
http://www.rootkit.com/boardm.php

Rootkit Detective - McAfee
http://download.nai.com/products/mca...tDetective.zip
http://forums.mcafeehelp.com/

Rootkit Revealer
http://www.microsoft.com/technet/sys...tRevealer.mspx
http://forum.sysinternals.com/forum_topics.asp?FID=15

RootKit Hook Analyzer
http://www.softpedia.com/get/Securit...Analyzer.shtml
http://www.antirootkit.com/forums/viewforum.php?f=17

RootKit Hook Analyzer
http://www.resplendence.com/hookanalyzer
http://www.antirootkit.com/forums/viewforum.php?f=17

RootAlyzer
http://forums.spybot.info/showthread.php?t=24185
http://www.spybotupdates.com/files/rootalyz.zip

Sophos Anti-Rootkit - Free tool for rootkit detection and removal
http://www.sophos.com/products/free-...i-rootkit.html
Direct link:
http://www.sophos.com/support/cleaners/sarsfx.exe
http://www.techsupportforum.com/netw...i-rootkit.html

System Virginity Verifier
http://www.softpedia.com/get/System/...Verifier.shtml
http://www.antirootkit.com/forums/viewforum.php?f=25

System Virginity Verifier
http://www.antirootkit.com/software/...y-Verifier.htm
http://www.antirootkit.com/forums/viewforum.php?f=25

VICE
http://www.rootkit.com/project.php?id=20
download:
http://www.rootkit.com/vault/fuzen_op/vice.zip
http://www.rootkit.com/boardm.php

"Make sure you always read the current user instructions for your scanning
tools to see what special steps you need to take before, during and after
the clean-up process. Then, after you've found and cleaned a rootkit,
rescan the system once you reboot to double-check that it was fully cleaned
and the malware hasn't returned."

Avoiding Rootkit Infection.
"The rules to avoid rootkit infection are for the most part the same as
avoiding any malware infection however there are some special
considerations:
Because rootkits meddle with the operating system itself they *require*
full Administrator rights to install. Hence infection can be avoided by
running Windows from an account with *lesser* privileges" (LUA in XP and
UAC in Vista).

AntiHook
http://www.infoprocess.com.au/AntiHook.php

DiamondCS ProcessGuard
http://www.diamondcs.com.au/processguard/
http://www.diamondcs.com.au/processguard/download.php

Educational viewing:
Mark Russinovich - Advanced Malware Cleaning
http://www.microsoft.com/emea/spotli...px?videoid=359

Educational reading:
Hidden Backdoors,Trojan Horses and Rootkit Tools in a Windows Environment
http://www.windowsecurity.com/articl...vironment.html

Rootkits: What you should know
http://resources.zdnet.co.uk/article...9523773,00.htm

Rootkits For Dummies
http://books.google.com/books?id=MTc...sec=frontcover
My System SpecsSystem Spec
Old 02-22-2009   #4 (permalink)
Zareba


 
 

Re: Rootkit Revealer

Thank you Kayman, this will keep me busy for a while.

How come I did not get this info when I googled?


My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Rootkit help PLEASE!!! Vista General
Rootkit Vista General
Rootkit Revealer not working Software
Installing RootKit Revealer v1.71 on Vista Premium?? Vista security
How do I get rid of a rootkit Vista security


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46