| Name |
OS |
Details |
| Antihook |
2K,
03 and XP |
Free
trail.Vista coming soon |
|
Aries Rootkit
Remover |
Win |
Free. The ARIES Rootkit Remover v1.0 is designed to locate and
permanently remove the rootkit that was developed by
First4Internet and used by Sony BMG to hide their digital rights
management (DRM) software. Unlike Sony's own rootkit remover
that has been known to cause blue screens, Lavasoft's ARIES
Rootkit Remover is a reliable, stand-alone tool. |
|
AVG AntiRootkit |
Win |
Free. MS
Windows 2000 (32-Bit) or MS Windows XP (32-Bit)
|
|
Avira Rootkit Detection |
Win |
Avira Rootkit Detection
Beta supports Windows 2000 Server or Workstation, Windows XP
Home and Professional, Windows Server 2003 (all versions), and
Windows Vista (32-bit only). Available in English language only.
Beta is free but registration is required. |
|
chkrootkit |
Linux, BSD. |
chkrootkit looks for known
"signatures" in trojaned system binaries. For example, some
trojaned versions of ps
have "/dev/ptyp"
inside them. |
|
DarkSpy |
2K/XP/03 |
DarkSpy is a new rootkit detection tool
from China. It's coded by two guys : CardMagic & wowocock |
| F-Secure Blacklight
Beta |
Win/Vista |
F-Secure BlackLight can detect and eliminate active rootkits
from the computer. Traditional antivirus scanners can't detect
active rootkits |
|
Gmer |
NT/W2K/XP/VISTA |
Gmer is a hidden services,
hidden registry, hidden file scanner and also other features. It
is an excellent piece of software and has a very nice user
interface which makes it very easy for non technical people to
use. |
|
Helios |
XP SP2 |
This is an alpha release of Helios. We do
not recommend you run it on production systems |
| HiddenFinder |
2K/XP |
Trial.
HiddenFinder is an advanced security utility which instantly
detects and kills the hidden processes and drivers. |
|
HookExplorer |
Win |
iDefense.
This is a small application
designed to scan a process looking for IAT or detours style
hooks.
Hook Explorer is written in VB6. Your system will
need the VB6 runtimes and the Microsoft Common
Controls OCX (mscomctl.ocx) |
|
|
|
IceSword has a Windows
Explorer-like interface but displays hidden processes and
resources that Windows Explorer would never show. It isn't a
"click-here-to-delete-rootkits" product but a sophisticated
discovery tool that can protect against sinister rootkits if
used before they infect a machine. |
| Malicious
Software Removal Tool |
Vista, 2k, 2003 and XP |
Microsoft. Free This tool checks your
computer for infection by specific,
prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps to
remove the infection if it is found.
Microsoft will release an updated version of
this tool on the second Tuesday of each
month. |
|
OS X Rootkit Hunter |
Mac
OS X. |
OS X Rootkit Hunter
is scanning tool to detect nasty tools on your Mac. This tool
scans for rootkits, backdoors and local exploits |
|
Process Master |
2000/XP/2003 |
30 days free trail. Process Master
successfully detects the presence of the most famous rootkits
and their modifications |
|
RKDetector |
|
No details yet |
|
RootKitBuster |
|
Trend Micro
RootkitBuster is a rootkit scanner that offers ability to scan
for hidden files, registry entries, processes, drivers and
hooked system service. |
|
Rootkit
Detective |
|
Download at
MajorGeeks. Beta.
McAfee Rootkit Detective Beta is a
program designed and developed by McAfee Avert Labs to
proactively detect and clean rootkits that are running on the
system |
| RootKit
Hook Analyzer |
also Vista |
The
RootKit Hook Analyzer is for free and runs on Windows XP, 2000
and 2003 Server on both 32 and 64 bit editions. |
| Rootkit
Hunter |
|
Free |
| RootkitRevealer |
also Vista |
Free Bottom of the page |
| RootKitShark |
|
Need to reister to
download the trial version |
|
RootKit Unhooker |
|
UG North |
|
SEEM |
|
System Eyes and Ears
Monitoring. French site |
|
Sophos Antirootkit |
|
Sophos Anti-Rootkit,
finds and removes any rootkit that is hidden on your computer.
Free |
|
Unhackme |
|
UnHackMe still works after
finishing evaluation but it will ask you for registering.Windows
NT4/2000/XP(64)/2003(64)/Vista. Compatible
with all known antiviral software. |
|
Zeppoo |
|
Free Linux |