Sophos Anti-Rootkit finds and removes any rootkit that is hidden on your computer. Removing rootkits without compromising system integrity is particularly challenging and needs to be done with care.
- Enhanced detection and cleanup facilities
- Users can install and uninstall Sophos Anti-Rootkit using standard Windows procedures (i.e. the Windows Start menu, and the Windows Add/Remove Programs menu option)
- The file sarscan.log is cumulative and is timestamped. The file sarclean.log is cumulative and is not timestamped
- Scans running processes, windows registry and local hard drives for rootkits
- Identifies known rootkits and selects, by default, files for removal which will remove the rootkit component of the malware without compromising OS integrity
- Allows users to remove unidentified hidden files, but does not allow removal of essential system files when hidden by an identified rootkit
1.3.1 (Aug 24, 2007)
This one is bypassed, try Rootkit Unhooker instead.
http://rkunhooker1.narod.ru/
1.3 RC (Apr 17, 2007)
The first, and the best antirootkit is sysinternals RootkitRevealer. Sophos is not bad bat not so good as RR
1.1 (Oct 5, 2006)
Keeps crashing 1/3 of the way into its scan on my fairly-standard machine. Oh well.