Rootkit Detector

本文介绍了Rootkit Detector v0.6.2工具,它是一个诊断工具,可提供NT rootkit隐藏进程和服务的信息,能尝试杀死隐藏任务、重新扫描服务数据库以检测隐藏服务和注册表项。该工具还有内部MD5数据库用于识别恶意软件,会生成详细报告。

http://www.haxorcitos.com/ficheros/RKDetectorv0.62.zip

readme

Rootkit Detector v0.6.2
======================
Haxorcitos Rootkit Detector
Programmed by aT4r@3wdesign.es
Homepage: http://www.3WDesign.es/security Copyright (c) 2004
   http://www.haxorcitos.com

Usage:
-----

rkdetector.exe [params]

 -v   - Prints Verbose Information.
 -m filename - Shows md5 checksum for filename
Description:
------------

RKDetector is adiagnostic tool that provides information about Hidden proccess and Services Hooked by an NT rootkit such as Hacker Defender (rootkit.host.sk)
After hidden Handles are identified, rootkit Detector will Try to kill those hidden tasks and reScan the service database in order
to detect hidden services Installed by Hackers and hidden regkeys (Run, Runonce...).
Another Feature is that rootkit detector have their Own internal MD5 Database with signatures about known rootkits, exploits and hacking
tools that are used to identify malware running in your system.

An extended Report is generated with information about All Tasks and Services all with their own md5 checksum.

If you find any other unknown hacking tools in your system, please send an email with your full report to Security at4r@3wdesign.es
and provide as more information as you can and our security team will include those signatures for next Releases.
Examples:
Found tool XXXXXXX.exe with md5 signature FFFFFFFFFFFFFFFFFFFFFF identified as "http Scanner"

if you are not able to identify what the hell is those tool for, please attach extra files to the email.


TODO:
-----
Lots of things..

Contact Information:
--------------------

at4r@3wdesign.es  - Submit bugs / Reports
comercial@3wdesign.es  - Security audits

------------------------------------------------------------
            3W Design Security (c) 20004
------------------------------------------------------------

 

转载于:https://www.cnblogs.com/ghostandgods/archive/2004/07/22/26366.html

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值