PDA

View Full Version : RootkitRevealer v1.55 scan results/NOD32


spy1
October 4th, 2005, 02:28 PM
I probably missed the one where this was discussed, but I just got through running RootkitRevealer v1.55 and got nothing but results on NOD32.

Can someone enlighten me? Pete

ronjor
October 4th, 2005, 03:12 PM
I just ran RootkitRevealer v1.55, running NOD32, and got none of what you show in the screenshot.

nick s
October 4th, 2005, 04:02 PM
As part of its method, RootkitRevealer creates a temporary raw copy of HKEY_LOCAL_MACHINE\SOFTWARE and later compares the "live" registry to the copy. If, in the interim, active apps, like NOD32 and its updater component, have modified the registry, then RKR will flag the mismatch.

Nick

Mover
October 4th, 2005, 07:55 PM
-{ Quote: "As part of its method, RootkitRevealer creates a temporary raw copy of HKEY_LOCAL_MACHINE\SOFTWARE and later compares the "live" registry to the copy. If, in the interim, active apps, like NOD32 and its updater component, have modified the registry, then RKR will flag the mismatch.

Nick" }-

You should shut down apps and let rootkit revealer run to completion. While its running, I wouldn't do anything until it completes

nick s
October 4th, 2005, 09:10 PM
-{ Quote: "You should shut down apps and let rootkit revealer run to completion. While its running, I wouldn't do anything until it completes" }-Thanks, I will keep that in mind.

Nick

spy1
October 5th, 2005, 12:46 AM
nick s - Thanks. As long as it's a legit series of entries (and what you said explains it) then it's not a problem. Pete

Mover
October 5th, 2005, 06:23 PM
-{ Quote: "Thanks, I will keep that in mind.

Nick" }-

I was just adding to your explanation when I quoted you. I'm sure you
already knew what I was referring to by not doing anything. ;)