PDA

View Full Version : RootAlyzer


RootAlyzer is in a beta stage, with new features added regularly. Main focus is currently on adding detection for more rootkit detection methods; suggestions are appreciated.
  1. Progress dialog during short scan (Feature)
  2. Command line parameter to immediately start deep scan (Feature)
  3. Whitelist (or flag) MS Fax ADS streams (Feature)
  4. Dump invisible processes (Feature)
  5. Display additional info on "legit" entries (Feature)
  6. Extend SFP functionality to include special file types (Bug)
  7. Whitelist Outlook Express/Windows Live Mail stream (Feature)
  8. Test on Vista for entries that need to be whitelisted (Task)
  9. System Volume Information folder shown as No Admin in ACL (Bug)
  10. Summary Information ADS not whitelisted (Bug)
  11. Detect unexpected alternate data streams (ADS) (Feature)
  12. SFP-alike results packing (Feature)
  13. Detect removed admin privileges (Feature)
  14. Display ACL on results (Feature)
  15. 9x compatibility (Feature)
  16. Delete functions disabled (Bug)
  17. Show detail in log (Feature)
  18. Detect filenames with reserved names (Feature)
  19. Descriptions for export types (Feature)
  20. Include help file (Feature)
  21. Select list of reg hives to scan (Feature)
  22. Pre-select system drive (Feature)
  23. Detect registry keys with #0 in their name (Feature)
  24. Export log file (Feature)
  25. Application window title (Bug)