BetaONE will rise again!


Reply
  #1  
Old 19th Apr 06, 08:47 AM
User Needs User Needs is offline
Administrator
 
Join Date: Aug 2001
Posts: 950
User Needs has disabled reputation
RootKit Hook Analyzer
RootKit Hook Analyzer

New: check for active kernel rootkits on your system

RootKit Hook Analyzer is a security tool which will check if there are any rootkits installed on your computer which hook the kernel system services. Kernel RootKit Hooks are installed modules which intercept the principal system services that all programs and the operating system rely on. If any of these system services are intercepted and modified it means that there is a possibility that the safety of your system is at risk and that spyware, viruses or malware are active. Are kernel hooks always bad ?

Kernel hooks are out of fashion these days and not officially documented and considered deprecated by Microsoft. The pioneering heroes of the old days who discovered how to actually implement them have all adopted the new fashion of advising against using kernel hooks as a programming practice. Often kernel hooks are unnecessary because there are documented ways which allow a programmer to achieve his goal. However in a lot of system tools such as monitoring and antivirus software, kernel hooks are the only available technique to get the difficult job done and thus an unavoidable necessary evil. Important is that if your kernel system services are hooked that you can find out which is the responsible software that makes use of these techniques. Inspired by all the discussions going on about the Sony CD protection rootkit, we have developed the RootKit Hook Analyzer.

http://www.resplendence.com/download/hookanlz.exe


Reply With Quote
  #2  
Old 20th Apr 06, 10:41 PM
Alpine's Avatar
Alpine Alpine is offline
Retired Crew
 
Join Date: Feb 2002
Location: Run Forest, RUN!!
Posts: 3,601
Alpine is on a distinguished road
Send a message via ICQ to Alpine Send a message via AIM to Alpine
thx you ....
Reply With Quote
  #3  
Old 25th Apr 06, 06:53 AM
Cyberion Cyberion is offline
eh!!
 
Join Date: Jul 2001
Location: BC, Canada
Posts: 1,449
Cyberion is an unknown quantity at this point
Send a message via MSN to Cyberion Send a message via Yahoo to Cyberion
interesting.. I found alot of hooked stuff from Microsoft.
Reply With Quote
  #4  
Old 28th May 06, 05:12 PM
lickablepig lickablepig is offline
BetaONE Supporter
 
Join Date: Oct 2001
Location: PST -08:00
Posts: 261
lickablepig is an unknown quantity at this point
Thanks user needs... for the toolkit.
__________________
jizac_aka_lickablepig
(Y) (jizac)
(':') |/
("(")_)0


Reply With Quote
  #5  
Old 29th May 06, 01:31 AM
rikytik's Avatar
rikytik rikytik is offline
BetaONE Supporter
 
Join Date: Jul 2001
Location: Canada
Posts: 1,051
rikytik is an unknown quantity at this point
Yet I don't quite understand what to do about the 4 or 5 hooks I found. Could be a senior moment. But it's interesting. Thank you.
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Starforce DRM Another Sony Rootkit? NewsBot NeoWin News 0 21st Mar 06 07:00 PM
Sony's DRM Rootkit Comes in Mac Flavor, Too NewsBot NeoWin News 0 17th Nov 05 12:30 AM
Microsoft to remove Sony DRM 'Rootkit' NewsBot NeoWin News 0 14th Nov 05 12:00 AM
New backdoor program uses Sony rootkit NewsBot NeoWin News 0 11th Nov 05 12:30 PM
Microsoft Baseline Security Analyzer 2.0 Beta Information NewsBot NeoWin News 0 24th Apr 05 01:30 PM


All times are GMT +1. The time now is 01:13 AM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.