Forum Home
Press F1
 
Thread ID: 118831 2011-06-22 23:40:00 Good Rootkit detectors ?? 1101 (13337) Press F1
Post ID Timestamp Content User
1211332 2011-06-22 23:40:00 Hi there.
Are any of the Rootkit detectors of much use, as an extra scanner (still use the usual AV & spyware scanners)
From what Ive read (very briefly) rootkits need to be scanned for via another PC or a Live Boot CD because of the way they hide themselves from detection when Win is running.

I'm testing out a few rootkit detectors, but they dont/can't tell you if the rootkit/detection is malware or legit: some rootkits are legit, (see what you've started SonyMusic :illogical )
Others like Kasperskies excellent Tdsskiller on scan for one specific rootkit only.


Cheers
1101 (13337)
1211333 2011-06-23 00:50:00 you do not need one if you just go to trusted sites:
BUT if you go to suspect places then BEWARE even the "best"detectors could be suspect.
And what is the use of "detecting" the horse after it has bolted.
kjaada (253)
1211334 2011-06-23 01:06:00 I use one every now and then. Just in case........... pctek (84)
1211335 2011-06-23 01:52:00 you do not need one if you just go to trusted sites:
BUT if you go to suspect places then BEWARE even the "best"detectors could be suspect.
And what is the use of "detecting" the horse after it has bolted.

most .. unhelpful .. arrogant .. reply .. ever .. ??
1101 (13337)
1211336 2011-06-23 01:58:00 If you have a rootkit, it may crash the system (then you'll know you have one). Thats where TDSSkiller comes in handy. Gmer and trojan remover can also remove rootkits. I think most of them know what and what isnt a rootkit

Even tho Sony's rootkit maybe legit, most programs probably class it as a rootkit. So they'll remove it, whether its legit or not
Speedy Gonzales (78)
1211337 2011-06-23 03:17:00 Should one run a program like TDSKiller say once a month, just to be sure?

sarel
sarel (2490)
1211338 2011-06-23 06:38:00 http://www.gmer.net/ zqwerty (97)
1211339 2011-06-23 06:41:00 Should one run a program like TDSKiller say once a month, just to be sure?

sarel

Unless your system crashes for no reason at all no. Dont think so
Speedy Gonzales (78)
1211340 2011-06-25 00:52:00 I think most rootkits are detected by most antivirus programs (at least, if they're not running!) so a bootable live CD of an antivirus is a good place to start.

Bitdefender Rescue CD for example is a pretty good one
Agent_24 (57)
1211341 2011-06-25 02:38:00 This may also be useful:
www.f-secure.com
Agent_24 (57)
1 2