McAfee Rootkit Detective是McAfee Avert Labs研制的专门用于清理劫持系统软件的程序.它通过多种检测手段可以有效查找出隐藏在您计算机,服务器中的Rootkit并清除,请注意,错误地利用这款软件可能会损坏您的应用程序和系统!

Features:
- Following are the features of this program that are designed to proactively detect and clean rootkits from the system. This program is not dependent on any signatures and can proactively detect most of the existing and upcoming rootkits and allow the user to clean them.
- Designed to proactively detect the system objects like processes, files and registry that are hidden to the user.
- Provides information about all running processes in the system.
- Provides information about various system hooks like SSDT(System Service Descriptor Table) hooks, user/kernel IAT/EAT(Import/Export Address Table) hooks.
- Allows the user to clean/remove the malicious objects from the system by renaming/deleting the hidden files/registry.
- Allows the user to terminate the malicious processes.
- Users can submit samples using the submission feature present in the tool.
- Users can also collect the samples manually after renaming them and submit to stinger@avertlabs.com for further analysis.
- Rootkit Detective log file contains details of the hidden files. The files once renamed after reboot will have a .REN extension. User can search for the same on the system and can submit these files for further analysis with your comments to stinger@avertlabs.com. Zip the files and password protect with “infected” and mention “Rootkit Detective” in the subject line when you send the mail.
Supported Operating Systems
Windows XP Home Edition with SP2
Windows XP Professional Edition with SP2
Windows 2000 with SP4
Windows 2000 Server
Windows 2003 Server SP1
官网:http://vil.nai.com/vil/stinger/rkstinger.aspx
官方下载:
下载文件使用迅雷高速下载点击这里下载文件
http://download.nai.com/products/mcafee-avert/McafeeRootkitDetective.zip
本文连接: http://www.egotong.com/Software/McAfee.Avert.Labs.Rootkit.Detective.v.1.1.0.html




















