Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

How to Detect Possible RAT/Kernal Rootkit?


  • Please log in to reply
No replies to this topic

#1 ionblue

ionblue

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:04:37 AM

Posted 07 December 2016 - 02:38 AM

My computer has been acting a bit strange lately.

 

When I am gaming it alt tabs itself at random intervals and sometimes when i'm typing in a text field the computer will copy and paste whatever was saved to the memory/clipboard.

 

I also get random lag spikes for about 5 minutes where my internet becomes extremely slow and this happens about once a day.

 

I have had a RAT in the past on an old machine, so i am quite paranoid about having another one.

 

I don't know if i am infected or not but i have done scans with malware bytes and malware bytes rootkit scanner, a boot time scan with avast, a super-anti-spyware scan and found nothing.

I checked process explorer and all of the established connections with the net stat command but found nothing out of the ordinary.

 

Unfortunately i have read about RATs and how they can be undetectable via attaching malware to the kernal and even net stat cannot be relied upon.

 

http://security.stackexchange.com/questions/103089/can-a-trojan-horse-hide-its-activity-from-tcpview

 

Is there any way that i can be sure that my computer is clean?



BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users