Rootkit Hunter

Rootkit Hunter

Rootkit Hunter is an open source rootkit scanner for Linux. It scans for rootkits, backdoors, and local exploits by comparing file properties like permissions, sizes, and hashes against known good values.
Rootkit Hunter image
rootkit scanner linux open-source

Rootkit Hunter: Open Source Rootkit Scanner

Rootkit Hunter is an open source rootkit scanner for Linux. It scans for rootkits, backdoors, and local exploits by comparing file properties like permissions, sizes, and hashes against known good values.

What is Rootkit Hunter?

Rootkit Hunter is an open source rootkit scanner and remover for Linux systems. It allows users to scan for rootkits, backdoors, and local exploits on their systems.

It works by comparing file properties like permissions, sizes, hashes, ownership, and modification times against known good values to look for discrepancies that could indicate the presence of a rootkit or other malware. It comes with signature databases for detecting known rootkits.

Some key features of Rootkit Hunter include:

  • Ability to scan the filesystem for hidden files, directories, and processes
  • Scanning of startup items, network interfaces, and kernel modules
  • File integrity checks using Tripwire-style databases
  • Rootkit signature scanning using up-to-date signature databases
  • Command line and graphical user interface available
  • Easy removal of detected rootkits
  • Runs on most Linux distributions like RHEL, CentOS, Debian, Ubuntu, etc.

Overall, Rootkit Hunter aims to be a comprehensive open source rootkit and malware scanner for Linux systems. With regular updates and maintenance, it can be a useful addition to identify and remove sophisticated rootkits.

Rootkit Hunter Features

Features

  1. Detects hidden processes
  2. Detects hidden files and directories
  3. Detects hidden registry entries
  4. Detects hidden services
  5. Detects anomalies in network interfaces and routing tables
  6. Detects suspicious strings in kernel modules

Pricing

  • Open Source

Pros

Open source and free

Easy to use

Works on Linux systems

Regularly updated signature database

Can detect a wide range of rootkits and malware

Cons

Only available for Linux

Generates some false positives

Requires expertise to interpret scan results

Does not detect all rootkits

Command line interface only


The Best Rootkit Hunter Alternatives

Top Security & Privacy and Malware Scanners and other similar apps like Rootkit Hunter


Chkrootkit icon

Chkrootkit

Chkrootkit is an open source command line tool for Linux that is used to detect rootkits and other malware on a system. A rootkit is a set of programs that allows permanent or consistent undetectable presence on a computer. Chkrootkit scans system binaries, files, and folders for anything that looks...
Chkrootkit image
GMER icon

GMER

GMER is a powerful utility that detects and removes rootkits and other advanced malware from Windows systems. It was designed to find well-hidden and complex threats that traditional security software might miss.Some key features of GMER include:Scans the Windows registry, files, and memory to search for rootkits, backdoors, trojans, spyware,...
Trend Micro RootkitBuster icon

Trend Micro RootkitBuster

Trend Micro RootkitBuster is an advanced anti-malware utility designed specifically to detect and remove rootkits and other sophisticated system threats. Rootkits are a type of malware that embed themselves at the core of the operating system, making them difficult to detect and remove with traditional antivirus software.RootkitBuster conducts deep scans...
Trend Micro RootkitBuster image
Sophos Virus Removal Tool icon

Sophos Virus Removal Tool

The Sophos Virus Removal Tool is a powerful, free antivirus program for Windows designed to detect and remove viruses, spyware, adware, Trojans, worms, and other types of malicious software.It provides on-demand virus scanning of a computer as well as the ability to clean or quarantine detected threats. The tool works...
Sophos Virus Removal Tool image
TDSSKiller icon

TDSSKiller

TDSSKiller is an anti-malware utility designed to detect and remove rootkits including TDL4, ZeroAccess, Necurs and more. It is developed by Kaspersky Lab to scan for rootkit activity and reverse any changes made by them.Some key features of TDSSKiller include:Lightweight and portable - It can run from a USB drive...
TDSSKiller image
RootkitRevealer icon

RootkitRevealer

RootkitRevealer is a free rootkit detection tool from Microsoft that scans Windows systems for well-known rootkits, backdoors and other malware trying to hide themselves on a system. It works by comparing a baseline of an initially clean system vs the current state to identify discrepancies and changes that could indicate...
RootkitRevealer image
Malwarebytes Anti-Rootkit icon

Malwarebytes Anti-Rootkit

Malwarebytes Anti-Rootkit is a security program designed specifically to detect and remove rootkits from Windows systems. A rootkit is a type of malware that embeds itself deep in the operating system to hide its presence and activity.Once installed, Malwarebytes Anti-Rootkit scans the system for known rootkit signatures. It looks in...
Malwarebytes Anti-Rootkit image