Project 2-1

Bottom: The files/folder that main contain a rootkit
Go to RootkietRevealer, download the provided file. Extract it and load RootkitRevealer.exe. Run it even if "File-Security Warning" appears. Agree to the license agreement.

This practical, i am going to understand how a "Rootkit Revealer" works. "Rootkit Revealer" is one type of software that detects for Rootkit in your computer. Rootkit affects your system by taking control of the administrator privileges. The name of "Rootkit" is founded from the Linux system itself. "Root" stands for the administrator name in all Linux system. Rootkit can be a really dangerous attack, as administrator privileges takes control of everything in that computer system, it can actually deal any kind of changes or damage in your computer. Scanning of rootkit is one of the necessary tool. After you have detect a rootkit, it must be cleared as soon as possible, before the attacker actually starts to change the settings in your computer system.

When you open the program, it actually work like a typical scanner, instead it search only for rootkits. Click "Scan", after the scanning is completed, it will then show all kinds of registry key. Not all of the discrepancies shown are indicate with a rootkit, it is just listing out the possibilities.

P1062344 posted during Saturday, May 15, 2010 at 7:56 PM

About Me

Name: Maverick Yong Kim Wee
Chinese Name: 杨 金 辉
Admin No: P1062344
Class: DISM 1A/01

No.of readers

Comments