there are more......
Please run this brand new Catchme rootkit tool by Gmer.
Download catchme.exe to your desktop.
Double click catchme.exe to run it.
Open catchme.log to see the results.
Please download BitDefender RootkitUncover and save it to your desktop.
Double click the bitdefender_antirootkit-BETA2 icon
Review the licence agreement and check the I accept the licence agreement box
Then click Next > and Scan
Allow the program to scan your computer - please be patient as it may take some time.....Once the scan has completed, click Next > IF any items are found, they will be show.
Please download the Sophos Anti-Rootkit Scanner and save it to your desktop.
You will need to enter your name, e-mail address and location in order to access the download page.
Once you have downloaded the file, double click the sarsfx icon
Review the licence agreement and click on the Accept button
The scanner will prompt you to extract the files to C:\SOPHTEMP - DO NOT change this location, simply click the Install button
Once the files have been extracted; using Windows Explorer, navigate to C:\SOPHTEMP and double click on the blue shield icon called sargui
Ensure that there are checkmarks next to Running processes, Windows registry and Local hard drives, then click Start scan
Allow the program to scan your computer - please be patient as it may take some time
Once the scan has completed a window will pop-up with the results of the scan - click OK to this
In the main window, you will see each of the entries found by the scan (if any)
Here are more:
I have just installed two rootkit programs
When I run it there are no hidden items
First run show 4 items 2 in security\policies\secrets
1 in preftech and 1 in system restore
On the second scan it found 5 items 2 in security
3 in system restore.The prefetch item did not show on this scan
When checking regedit for items hklm security would not expand should I have uploaded hives..
Why is there no way to clean from rootkit revealer
Am I wasting time trying to use rootkit revealer
Is sophos the more accurate of the two program or should I be using some other program
This is my first attempt at running rootkits so any help will be appreciated