Skip to content

Malware

r77

aka r77 Rootkit

According to the author, r77 is a ring 3 rootkit that hides everything: * Files, directories * Processes & CPU usage * Registry keys & values * Services * TCP & UDP connections * Junctions, named pipe

r77, also known as r77 Rootkit, is a Windows malware family.

Background

The author describes r77 as a ring 3 rootkit capable of concealing nearly everything on a host:

  • Files, directories
  • Processes & CPU usage
  • Registry keys & values
  • Services
  • TCP & UDP connections
  • Junctions, named pipes, scheduled tasks

Source: Malpedia (Fraunhofer FKIE).