Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > other security issues & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old January 1st, 2007, 06:07 AM
Longboard's Avatar
Longboard Longboard is offline
Massive Poster
 
Join Date: Oct 2004
Location: Sydney, Australia
Posts: 3,096
Default Mark Russinovich and malware detection and removal video

This may already have been posted:
http://www.microsoft.com/emea/itssho...px?videoid=359

Direct link to MR presentation only with no MS log in pfaffing
http://msexp.streamnavig.com/msexp/p...ng=en&cou=emea

Video presentation of MR and malware primer.
Good Excellent watching and good utd precis
Excellent tutorials about sysinternal's tools.

Some other good stuff also for low level users like me.


(need IE to make it work)

Some of it pretty unnerving.

Gmer gets a good mention !

Watch out for the steam coming out of EP-XOFF ears.
A bit strange that RkU didn't get a mention?

Rest of the show: http://www.microsoft.com/emea/itssho....aspx?event=49
__________________
Don't confuse me with someone who actually knows what they are talking about.
Linux Registered user 469135
Please, support Medecins Sans Frontieres

Last edited by Longboard : January 1st, 2007 at 06:44 AM.
  #2  
Old January 1st, 2007, 08:48 AM
EP_X0FF's Avatar
EP_X0FF EP_X0FF is offline
Frequent Poster
 
Join Date: Nov 2006
Posts: 233
Default Re: Mark Russinovich and malware detection and removal video

Quote:
Originally Posted by Longboard
Gmer gets a good mention !

Watch out for the steam coming out of EP-XOFF ears.
A bit strange that RkU didn't get a mention?

Rest of the show: http://www.microsoft.com/emea/itssho....aspx?event=49

If you asking me, I don't care Perhaps Mark never tried my/gmer tools to do compare.
__________________
Ring0 - the source of inspiration
  #3  
Old January 1st, 2007, 09:06 AM
Longboard's Avatar
Longboard Longboard is offline
Massive Poster
 
Join Date: Oct 2004
Location: Sydney, Australia
Posts: 3,096
Default Re: Mark Russinovich and malware detection and removal video

Hello EP
It's a real shame he didn't refer to RkU.
Wonder when he wrote that presentation?

It's not like you are invisible at Sysinternals Forums

I had to laugh when I noticed he was using VMWare not Virtual PC: he does mention that he would've if he could've
__________________
Don't confuse me with someone who actually knows what they are talking about.
Linux Registered user 469135
Please, support Medecins Sans Frontieres
  #4  
Old January 1st, 2007, 09:22 AM
Meriadoc's Avatar
Meriadoc Meriadoc is offline
Very Frequent Poster
 
Join Date: Mar 2006
Location: Cymru
Posts: 2,642
Default Re: Mark Russinovich and malware detection and removal video

There is alot he could of mentioned but didn't - doesnt really matter , he also says if you suspect a rootkit to run as many different antirootkit tools as you can as there isnt a universial tool. One tool he mentioned that I use and use also to look for stealth is Windbg - free download from MS.

edit : yeah he used VMWare because of its snap-shots.
  #5  
Old January 1st, 2007, 10:21 AM
Meriadoc's Avatar
Meriadoc Meriadoc is offline
Very Frequent Poster
 
Join Date: Mar 2006
Location: Cymru
Posts: 2,642
Default Re: Mark Russinovich and malware detection and removal video

I've purchased Administrator's Pak and other and attended seminar from Winternals in the past and would recommend anyone to have a look at the free tools from Sysinternals and look at this even if just to see how the free programs Process Explorer and Autoruns can be used to help in administrating a system, and if you already use the tools you may learn something new.
Quote:
*Malware Cleaning Steps*
Disconnect from the network
Identify malicious processes
Terminate identified processes
Identify and Delete malware autostarts
Delete malware files
Reboot and repeat
 

Wilders Security Forums > Other Security Topics > other security issues & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 09:47 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums