Ask the Expert

Removing rootkits

After scanning with Sysinternals Rootkit Revealer, how do you remove the possible threats it located. There are no options to do that. Do you just go to the threat located path and delete the registry entry or should you use a Spyware removal tool?
Fortunately, I haven't had the need to remove a rootkit discovered by Rootkit Revealer. Mark Russinovich of Sysinternals (the creators of RootkitRevealer) wrote a detailed article about how it works in the June 2005 issue of Windows IT Pro if you're interested in more details. Click here for the article. (NOTE: It's for subscribers only.) If that doesn't help, I'd contact the authors directly.

Their email addresses are listed at

This was first published in March 2006

There are Comments. Add yours.

TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: