# Neat program exposes deeply hidden malware/spyware processes running in background

**URL:** <https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357>\
**Category:** Miscellaneous and Personal Stuff I Must Share\
**Created:** [January 4, 2006, 5:52am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357 "2006-01-04T05:52:16Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![astro](https://avatars.discourse-cdn.com/v4/letter/a/9dc877/32.png) [@astro](https://boards.straightdope.com/u/astro)\
**Post date:** [January 4, 2006, 5:52am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357/1 "2006-01-04T05:52:16Z")

</div>

This program is in available free in beta mode till March. It will expose the most deeply hidden spyware and malware processes that most antivirus and antispy apps can’t see or touch. Although it will expose the processes do not make any name changes or delertions to these hidden programs unless you are absolutely sure they are malware or spyware processes.

In addition to the malware the amount of bizarre crap (some quite old) being stealth loaded at boot was surprising.

Warning this is beta software. It worked prefectly for me, but be aware there are no guarantees being made re safety or functionality.

[Try F-Secure BlackLight Beta](http://www.f-secure.com/blacklight/try.shtml)

---

<div class="post-metadata">

**Author:** ![fishbicycle](https://avatars.discourse-cdn.com/v4/letter/f/aeb1de/32.png) [@fishbicycle](https://boards.straightdope.com/u/fishbicycle)\
**Post date:** [January 4, 2006, 6:03am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357/2 "2006-01-04T06:03:48Z")

</div>

I must be doing something right. My computer is clean. Still, cool program. I’m sure a lot of people will find it very useful.

---

<div class="post-metadata">

**Author:** ![crowmanyclouds](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/crowmanyclouds/32/19884_2.png) [@crowmanyclouds](https://boards.straightdope.com/u/crowmanyclouds)\
**Post date:** [January 4, 2006, 6:42am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357/3 "2006-01-04T06:42:30Z")

</div>

It only searches for rootkits.

---

<div class="post-metadata">

**Author:** ![astro](https://avatars.discourse-cdn.com/v4/letter/a/9dc877/32.png) [@astro](https://boards.straightdope.com/u/astro)\
**Post date:** [January 4, 2006, 6:58am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357/4 "2006-01-04T06:58:42Z")

</div>

> [@crowmanyclouds](#):
>
> It only searches for rootkits.

[It’s my understanding](http://www.f-secure.com/blacklight/rootkit.shtml) that a large portion of the deeply hidden type spyware/malware execution processes invisible to normal “anti” programs come from rootkit syle installs.

> [@](#):
>
> Rootkits for Windows work in a different way and are typically used to hide malicious software from for example an antivirus scanner. Rootkits are typically not malicious by themselves but are used for malicious purposes by viruses, worms, backdoors and spyware. A virus combined with a rootkit produces what was known as full stealth viruses in the MS-DOS environment.
> 
> How dangerous is a rootkit?
> 
> The rootkit itself does typically not cause deliberate damage. Its purpose is to hide software. But rootkits are used to hide malicious code. A virus, worm, backdoor or spyware program could remain active and undetected in a system for a long time if it uses a rootkit.
> 
> The malware may remain undetected even if the computer is protected with state-of-the-art antivirus. And the antivirus can’t remove something that it can’t see. The threat from modern malware combined with rootkits is very similar to full stealth viruses that caused a lot of headache during the MS-DOS era. All this makes rootkits a significant threat.

---

<div class="post-metadata">

**Author:** ![BlackKnight](https://avatars.discourse-cdn.com/v4/letter/b/eb8c5e/32.png) [@BlackKnight](https://boards.straightdope.com/u/BlackKnight)\
**Post date:** [January 4, 2006, 10:33am UTC](https://boards.straightdope.com/t/neat-program-exposes-deeply-hidden-malware-spyware-processes-running-in-background/338357/5 "2006-01-04T10:33:54Z")

</div>

If you want to check your computer for rootkits, you could also use [RootkitRevealer](http://www.sysinternals.com/utilities/rootkitrevealer.html).

It was written by Bryce Cogswell and Mark Russinovich. You may know Mr. Russinovich as the guy who got the word out about the Sony rootkit, after he found it on his own computer, using the above utility.

(There are other very nifty free utilities at the Sysinternals website. My favorite is probably ProcessExplorer, which is like the Windows Taskbar, only much, much better.)
