Rootkit

S

silver hair

Hi there
Thanks for all the free stuff I get here
My AVG 8 Free does NOT scan for rootkits
and that option is grey , click on it and no responce
perheps standard for Free ?
On a Microsoft TechNet page there is a
Rootkit Revealer V 1.71 (231 KB)for download
Is that a proper program to scan for rootkits
for my Factory Install, Vista Home basic 32 bit?
and when it finds something,
Does it Fix or Remove ?
I like it aAtomatic not good at this stuff
Thanks
Fritz
 
C

Carey Frisch [MVP]

Install a good, comprehensive, security program,
such as Windows OneCare, and you'll not have to
worry about root kit infestations. You can try it FREE
for ninety (90) days.
http://onecare.live.com/standard/en-us/default.htm

--
Carey Frisch
Microsoft MVP
Windows Desktop Experience -
Windows Vista Enthusiast

---------------------------------------------------------------

Hi there
Thanks for all the free stuff I get here
My AVG 8 Free does NOT scan for rootkits
and that option is grey , click on it and no responce
perheps standard for Free ?
On a Microsoft TechNet page there is a
Rootkit Revealer V 1.71 (231 KB)for download
Is that a proper program to scan for rootkits
for my Factory Install, Vista Home basic 32 bit?
and when it finds something,
Does it Fix or Remove ?
I like it aAtomatic not good at this stuff
Thanks
Fritz
 
A

Alias

Hi there
Thanks for all the free stuff I get here My AVG 8 Free does NOT scan
for rootkits and that option is grey , click on it and no responce
perheps standard for Free ?
On a Microsoft TechNet page there is a Rootkit Revealer V 1.71 (231
KB)for download Is that a proper program to scan for rootkits for my
Factory Install, Vista Home basic 32 bit? and when it finds something,
Does it Fix or Remove ?
I like it aAtomatic not good at this stuff Thanks
Fritz

www.safer-networking.org for Spybot, Search and Destroy.

Alias
 
A

Alias

Install a good, comprehensive, security program, such as Windows
OneCare, and you'll not have to worry about root kit infestations. You
can try it FREE for ninety (90) days.
http://onecare.live.com/standard/en-us/default.htm

--
Carey Frisch
Microsoft MVP
Windows Desktop Experience -
Windows Vista Enthusiast

Microsoft's NO CARE is one of the worst but being as you have your head
firmly up MS' ass and LIE, it is expected that you would promote this
inferior product.

Alias
 
M

Malke

silver said:
Hi there
Thanks for all the free stuff I get here
My AVG 8 Free does NOT scan for rootkits
and that option is grey , click on it and no responce
perheps standard for Free ?
On a Microsoft TechNet page there is a
Rootkit Revealer V 1.71 (231 KB)for download
Is that a proper program to scan for rootkits
for my Factory Install, Vista Home basic 32 bit?
and when it finds something,
Does it Fix or Remove ?
I like it aAtomatic not good at this stuff

GMER is the best rootkit scanner, but you really need to know what you're
doing. If you don't, then you're better off leaving things alone. If you
practice "Safe Hex", have a current version antivirus, and do routine
maintenance you should not need to worry about rootkits. In addition, have
a good backup strategy that is frequently implemented for when you need to
restore data.

I don't recommend Live OneCare for anything.

Safe Hex:
http://www.getsafeonline.org/
https://www.mysecurecyberspace.com/
http://www.getnetwise.org/
http://wiki.castlecops.com/Malware_Removal_and_Prevention:_Introduction
http://www.claymania.com/safe-hex.html
http://www.aumha.org/a/parasite.htm - The Parasite Fight
http://msmvps.com/blogs/harrywaldron/archive/2006/02/05/82584.aspx - MVP
Harry Waldron - The Family PC - How to stay safe on the Internet

Malke
 
F

FB

Alias said:
Microsoft's NO CARE is one of the worst but being as you have your head
firmly up MS' ass and LIE, it is expected that you would promote this
inferior product.

You've never, ever used OneCare have you, you lying sack of shit!
 
M

measekite

It is almost a sure thing the Jerk will reply to this but if one
installs any Linux distro you do not have to worry about these issues.
 
S

silver hair

Thank you
After all that reading I am doing, the secure system firewall an so on that
comes with Vista plus a programm like Avg 8 free seemes very good .
Not about to click to quick
I"ll follow the links you given and learn and I'll take it easy .
thanks
Fritz
 
M

Malke

silver said:
Thank you
After all that reading I am doing, the secure system firewall an so on
that
comes with Vista plus a programm like Avg 8 free seemes very good .
Not about to click to quick
I"ll follow the links you given and learn and I'll take it easy .
thanks
Fritz

You're welcome, Fritz.

Malke
 
A

Alias

You've never, ever used OneCare have you, you lying sack of shit!

Neither do you, jerk off. You use Avast. I do my research and don't use
inferior products such as No Care.

Alias
 
A

Alias

It is almost a sure thing the Jerk will reply to this but if one
installs any Linux distro you do not have to worry about these issues.

Correction: Frank isn't the "jerk"; he's the jerk off.

Alias
 
K

Kayman

Thank you
After all that reading I am doing, the secure system firewall an so on that
comes with Vista plus a programm like Avg 8 free seemes very good .
Not about to click to quick
I"ll follow the links you given and learn and I'll take it easy .

In addition to Malke's advice;

Educational viewing!
Mark Russinovich - Advanced Malware Cleaning
http://www.microsoft.com/emea/spotlight/sessionh.aspx?videoid=359

Rootkit Removal applications.
The effectiveness of an individual Rootkit removal application are
wide-ranging and it is recommended utilizing a collection of
detection/removal tools; You are encouraged to try all of them (join
relevant fora for additional support i.e. interpretation of scan results):

DarkSpy
http://www.antirootkit.com/software/DarkSpy.htm
http://www.antirootkit.com/forums/viewforum.php?f=18

F-Secure BlackLight (Download Trial)
http://www.f-secure.com/blacklight/
http://www.antirootkit.com/forums/viewforum.php?f=13

GMER - is an application that detects and removes rootkits.
http://www.gmer.net/index.php
http://antirootkit.com/forums/index.php?sid=9e746bb696ac0bb38781ffe4361c3a17

IceSword
http://www.antirootkit.com/software/IceSword.htm
http://www.antirootkit.com/forums/index.php

RAIDE
http://www.rootkit.com/project.php?id=33
download:
http://www.rootkit.com/vault/petersilberman/RAIDE_BETA_1.zip
http://www.rootkit.com/boardm.php

Rootkit Revealer
http://www.microsoft.com/technet/sysinternals/Utilities/RootkitRevealer.mspx
http://forum.sysinternals.com/forum_topics.asp?FID=15

RootKit Hook Analyzer
http://www.softpedia.com/get/Security/Security-Related/RootKit-Hook-Analyzer.shtml
http://www.antirootkit.com/forums/viewforum.php?f=17

RootKit Hook Analyzer
http://www.resplendence.com/hookanalyzer
http://www.antirootkit.com/forums/viewforum.php?f=17

RootAlyzer
http://forums.spybot.info/showthread.php?t=24185
http://www.spybotupdates.com/files/rootalyz.zip

Sophos Anti-Rootkit - Free tool for rootkit detection and removal
http://www.sophos.com/products/free-tools/sophos-anti-rootkit.html
Direct link:
http://www.sophos.com/support/cleaners/sarsfx.exe
http://www.techsupportforum.com/net...irewalls/113585-free-sophos-anti-rootkit.html

System Virginity Verifier
http://www.softpedia.com/get/System/System-Info/System-Virginity-Verifier.shtml
http://www.antirootkit.com/forums/viewforum.php?f=25

System Virginity Verifier
http://www.antirootkit.com/software/System-Virginity-Verifier.htm
http://www.antirootkit.com/forums/viewforum.php?f=25

VICE
http://www.rootkit.com/project.php?id=20
download:
http://www.rootkit.com/vault/fuzen_op/vice.zip
http://www.rootkit.com/boardm.php

"Make sure you always read the current user instructions for your scanning
tools to see what special steps you need to take before, during and after
the clean-up process. Then, after you've found and cleaned a rootkit,
rescan the system once you reboot to double-check that it was fully cleaned
and the malware hasn't returned."

Avoiding Rootkit Infection.
"The rules to avoid rootkit infection are for the most part the same as
avoiding any malware infection however there are some special
considerations:
Because rootkits meddle with the operating system itself they *require*
full Administrator rights to install. Hence infection can be avoided by
running Windows from an account with *lesser* privileges" (LUA in XP and
UAC in Vista).

AntiHook
http://www.infoprocess.com.au/AntiHook.php

DiamondCS ProcessGuard
http://www.diamondcs.com.au/processguard/
http://www.diamondcs.com.au/processguard/download.php

And I echo, don't use Windows On Care

Good luck :)
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top