GMER favicon

GMER

GMER is an application that detects and removes rootkits . It scans for:

  • hidden processes
  • hidden threads
  • hidden modules
  • hidden services
  • hidden files
  • hidden Alternate Data Streams
  • hidden registry keys
  • drivers hooking SSDT
  • drivers hooking IDT
  • drivers hooking IRP calls
  • inline hooks "all your rootkits are belong to us" - gmer.net
Chkrootkit

Chkrootkit

Chkrootkit is a Linux tool to locally check for signs of a rootkit. It contains:

  • chkrootkit: shell script that checks system ...
RootkitRevealer

RootkitRevealer

RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and ...