Search results (1)

[Login]

Rootkit Revealer V1.71   
Suggested by Andrew Lee - Added on 14 Apr 2007
433KB (uncompressed) - Popularity score (540)
Website - Screenshot - Download - Comments (4) - Post comment - Permalink

 
Synopsis: RootkitRevealer is a rootkit detection utility. It detects registry and filesystem API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit.
Writes settings to: Windows registry. But given the nature of the application, I think it can be accepted as portable.
Dependencies: Administrator rights
How to extract: Download the ZIP package and extract to a folder of your choice. Launch RootkitRevealer.exe.
Stealth [?]: No
License: Freeware
System Requirements: WinNT / Win2K / WinXP / Vista

Posted comments:

[Anonymous] John FayI believe this program is not as portable as you may believe. It works well but I seem to remember that it creates non plug and play drivers in NT5 (XP, 2K). [2007-06-15 19:59]

[Anonymous] Andrew LeeIt dynamically loads and unloads an embedded system driver, like most of SysInternal's utils eg. FileMon, RegMon etc. [2007-07-05 06:18]

[Anonymous] SomeGuyThis does not work on vista, nor does the one off the sysinternals site, it brigns me to something called interactive servce dialog detection then it messes up, i am using vista home basic, this just crashes vista, so this only works with WinNT / Win2K / WinXP [2008-08-06 09:02]

[Anonymous] fsrYes, the information provided is incorrect, currently is incompatible with Vista. See here:
http://forum.sysinternals.com/forum_posts.asp?TID=13290
http://forum.sysinternals.com/forum_posts.asp?TID=14221
http://forum.sysinternals.com/forum_posts.asp?TID=12028&KW=Vista
 [2008-08-31 14:05]


Post your comment:

All HTML tags will be removed from your comment. URLs (http, https, ftp) will be automatically detected and hyperlinked. I reserve the right to delete irrelevant, frivolous or offensive comments. For more general topics (eg. whether apps that write to the registry, leave traces on the host machine, rely on certain versions of IE etc. can be considered portable), please post to the Portable Freeware Discussion forum. If your virus scanner has detected a virus in the application, please email the author directly or post to the forum. Note that false positives (i.e. flagging a virus when there is actually none) are extremely common for virus scanners. When in doubt, try an online scanner like Online Malware Scanner or VirusTotal, which scans files using multiple anti-virus engines. It is very likely to be a false positive if only a few engines raise the red flag.

Your name: Remember me
Comment:

Turing test:


All rights reserved. Copyright © 2010 Andrew Lee (mailto: andrew at portablefreeware dot com)