Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old January 6th, 2010, 12:55 PM
Daveski17's Avatar
Daveski17 Daveski17 is offline
Massive Poster
 
Join Date: Nov 2008
Location: Lloegyr
Posts: 5,322
Question GMER?

Does anyone use GMER (root-kit detector)? If so, is it better than an on-demand scanner/remover like SUPERAntiSpyware or MBAM?
  #2  
Old January 6th, 2010, 01:09 PM
jmonge's Avatar
jmonge jmonge is offline
Incredibly Massive Poster
 
Join Date: Mar 2008
Location: Calgary,Canada
Posts: 11,778
Default Re: GMER?

the malwarebytes and superantispyware scaners are signniture and few false positive Gmer scaner is not base on signiture for sure will detect very nasty stuff the other 2 may missed but it is very risky if you make a mistake can end up with a unbootable pc after all but if you know what you are doing gmer is a malware destroyer
__________________
IKARUS anti.virus 2.2.14
  #3  
Old January 6th, 2010, 01:23 PM
progress
 
Posts: n/a
Unhappy Re: GMER?

Is Gmer still incompatible with Win 7? I got blue screens from time to time
  #4  
Old January 6th, 2010, 01:55 PM
Daveski17's Avatar
Daveski17 Daveski17 is offline
Massive Poster
 
Join Date: Nov 2008
Location: Lloegyr
Posts: 5,322
Default Re: GMER?

Quote:
Originally Posted by jmonge
the malwarebytes and superantispyware scaners are signniture and few false positive Gmer scaner is not base on signiture for sure will detect very nasty stuff the other 2 may missed but it is very risky if you make a mistake can end up with a unbootable pc after all but if you know what you are doing gmer is a malware destroyer

OK thanks. I wasn't thinking of using it yet to be honest as I know you have to be careful with it. I wanted to learn more about other people's experiences with it first. I have SUPERAntiSpyware so I should be OK.
  #5  
Old January 6th, 2010, 02:11 PM
jmonge's Avatar
jmonge jmonge is offline
Incredibly Massive Poster
 
Join Date: Mar 2008
Location: Calgary,Canada
Posts: 11,778
Default Re: GMER?

yes superantispyware is a top notch antimalware software and it kicks some butts
__________________
IKARUS anti.virus 2.2.14
  #6  
Old January 6th, 2010, 03:40 PM
Logos's Avatar
Logos Logos is offline
Infrequent Poster
 
Join Date: Dec 2009
Posts: 41
Default Re: GMER?

Avast 5 anti-rootkit component is using Gmer
  #7  
Old January 6th, 2010, 04:41 PM
Ibrad's Avatar
Ibrad Ibrad is offline
Very Frequent Poster
 
Join Date: Dec 2009
Posts: 1,887
Default Re: GMER?

Quote:
Originally Posted by Logos
Avast 5 anti-rootkit component is using Gmer

I think 4.8 is using it also.
__________________
Panda Security TRUSTED MOD


Panda Cloud Antivirus + Rising PC Doctor + Common Sense

My Security Blog: http://igl-security.blogspot.com/
  #8  
Old January 6th, 2010, 08:44 PM
Wan
 
Posts: n/a
Default Re: GMER?

http://blog.avast.com/2009/07/17/ava...5-hidden-gems/
Yes avast anti-rootkit is based on GMER.
  #9  
Old May 11th, 2010, 01:55 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Default Re: GMER?

under xp sp2 it crashes after few seconds
it start to scan , after an error
and gives me a bsod

1.0.15

sad

got it here http://www.techsupportalert.com/best...ootrepealquick

Last edited by mantra : May 11th, 2010 at 02:13 AM.
  #10  
Old May 11th, 2010, 05:31 AM
blacknight's Avatar
blacknight blacknight is offline
Very Frequent Poster
 
Join Date: Sep 2007
Location: Europe
Posts: 1,596
Default Re: GMER?

Quote:
Originally Posted by mantra
under xp sp2 it crashes after few seconds
it start to scan , after an error
and gives me a bsod



I use XP SP3 and the last version of GMER crashes every time just before the end of the scan: my system freezes and I must reboot. Once it ran right.
  #11  
Old May 11th, 2010, 05:55 AM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,858
Lightbulb Re: GMER?

The reason it might be giving problems, could be due to not deleting/disabling previous files associated with it. That's why you could get alerts like these

Name:  w.gif
Views: 820
Size:  3.9 KB

Name:  2.gif
Views: 811
Size:  3.6 KB

Name:  3.gif
Views: 825
Size:  3.7 KB

Look in Services etc, do the above, and retry. I used to be able to run different versions of GMER, but he's obviously changed something in later versions. Still a very good ARK though

Running XP SP2 myself.
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
  #12  
Old May 11th, 2010, 06:01 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Exclamation Re: GMER?

Quote:
Originally Posted by blacknight
I use XP SP3 and the last version of GMER crashes every time just before the end of the scan: my system freezes and I must reboot. Once it ran right.
today i was downloading files
and gmer freezes my pc , the only way is a hardware reset(reset button)
i was not able to reboot like you

but this could damage the hard disks (reset while they are writing and working)
  #13  
Old May 11th, 2010, 12:21 PM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Exclamation Re: GMER?

Quote:
Originally Posted by CloneRanger
The reason it might be giving problems, could be due to not deleting/disabling previous files associated with it. That's why you could get alerts like these

Attachment 217875

Attachment 217876

Attachment 217877

Look in Services etc, do the above, and retry. I used to be able to run different versions of GMER, but he's obviously changed something in later versions. Still a very good ARK though

Running XP SP2 myself.

i did a search with jv16 power tool in the registry GMER , did not find entries
it could be off topic but for the users that have issues for the last version of gmer -->http://www.techsupportalert.com/best...er-remover.htm

RootRepeal could be a good alternative
  #14  
Old May 11th, 2010, 02:40 PM
blacknight's Avatar
blacknight blacknight is offline
Very Frequent Poster
 
Join Date: Sep 2007
Location: Europe
Posts: 1,596
Default Re: GMER?

Quote:
Originally Posted by mantra
today i was downloading files
and gmer freezes my pc , the only way is a hardware reset(reset button)
i was not able to reboot like you

but this could damage the hard disks (reset while they are writing and working)

When I use GMER I always stop surfing and every other not needed application, but at the same once I had not the issue, now I have it.
  #15  
Old May 12th, 2010, 02:05 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Question reboot?

Quote:
Originally Posted by blacknight
When I use GMER I always stop surfing and every other not needed application, but at the same once I had not the issue, now I have it.

was you able to reboot via software (start ->reboot) or did you use the reset button?
  #16  
Old May 12th, 2010, 02:30 AM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,858
Lightbulb Re: GMER?

@mantra

Quote:
i did a search with jv16 power tool in the registry GMER , did not find entries

But did you check SERVICES and DRIVERS as well ?
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
  #17  
Old May 12th, 2010, 03:19 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Default no

Quote:
Originally Posted by CloneRanger
@mantra



But did you check SERVICES and DRIVERS as well ?

CloneRanger no
may you tell me which services and drivers should i check ?
did not find a guide about them

thanks a lot
  #18  
Old May 12th, 2010, 12:28 PM
blacknight's Avatar
blacknight blacknight is offline
Very Frequent Poster
 
Join Date: Sep 2007
Location: Europe
Posts: 1,596
Default Re: reboot?

Quote:
Originally Posted by mantra
was you able to reboot via software (start ->reboot) or did you use the reset button?


Sorry, I had to more correctly write " reset " and not " reboot ": I also can only reset the system after it freezes.
  #19  
Old May 12th, 2010, 09:03 PM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,858
Lightbulb Re: GMER?

@mantra

Name:  g2.gif
Views: 571
Size:  4.8 KB

In my screenie i'm using GMER v1.0.15.15281.exe but it was downloaded as dt9egt3v.exe directly from GMER's www, and runs as that. He and other coders started randomising their ARKs filenames a while back to help prevent malware targetting them

So don't expect to automatically see references to GMER, as you might not. Instead you need to search for odd looking file names. In my case in the screenie you see pxtdapob.sys loaded in Modules, and there you see it listed as GMER.

Also you may have some software blocking GMER from loading/starting/running. I have to allow it in ProcessGuard and Zemana for instance.

Hope that helps
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
  #20  
Old May 15th, 2010, 01:08 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Default Re: GMER?

Quote:
Originally Posted by CloneRanger
@mantra

Attachment 217918

In my screenie i'm using GMER v1.0.15.15281.exe but it was downloaded as dt9egt3v.exe directly from GMER's www, and runs as that. He and other coders started randomising their ARKs filenames a while back to help prevent malware targetting them

So don't expect to automatically see references to GMER, as you might not. Instead you need to search for odd looking file names. In my case in the screenie you see pxtdapob.sys loaded in Modules, and there you see it listed as GMER.

Also you may have some software blocking GMER from loading/starting/running. I have to allow it in ProcessGuard and Zemana for instance.

Hope that helps

hi
i did many tests
i cleaned the temp file
never had the file pxtdapob.sys
it still crashes


thanks
  #21  
Old May 15th, 2010, 02:34 AM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,858
Lightbulb Re: GMER?

@mantra

Hi, sorry to hear it still won't run

Just for the record, in case you try again with this version or a later one, and for others viewing.

You might not see a .sys named as pxtdapob.sys as i said it could be randomised to anything, but it will be strange looking.

Also for those that can run it, but might still have problems

Name:  g.gif
Views: 494
Size:  11.5 KB

I suspect one or more of your security software or OS settings "may" be causing the conflict, as i'm able to run it successfully on XP SP2. Having said that, i have NOT installed any OS updates, so that's one possible reason why it runs fine on my comp ?
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
  #22  
Old May 15th, 2010, 06:23 AM
mantra's Avatar
mantra mantra is online now
Massive Poster
 
Join Date: Jan 2005
Posts: 3,240
Default Re: GMER?

Quote:
Originally Posted by CloneRanger
@mantra

Hi, sorry to hear it still won't run

Just for the record, in case you try again with this version or a later one, and for others viewing.

You might not see a .sys named as pxtdapob.sys as i said it could be randomised to anything, but it will be strange looking.

Also for those that can run it, but might still have problems

Attachment 217972

I suspect one or more of your security software or OS settings "may" be causing the conflict, as i'm able to run it successfully on XP SP2. Having said that, i have NOT installed any OS updates, so that's one possible reason why it runs fine on my comp ?
when i start it , it starts to scan and freeze my pc
  #23  
Old May 15th, 2010, 11:51 PM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,858
Default Re: GMER?

@mantra

Well i'm not sure what it could be but hope that you will have more success with future versions
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:11 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums