csrss?
Unfortunatelly, since IceSword do not have any kind of documentation we can only guess what does these colors means. Definitelly it is not a...
It is not a detection part of IceSword, it is different startup/closeup monitoring.
They do not affect on system in any way, so showing modifications in third-party nonsystem and non-critical files is idiocy. What is the purpose...
BIOS rootkits - science fiction. If they exists then they works only in the laboratory where they was created. Motherboard / PCI rootkits is bad...
Rootkit Unhooker check only system dll's (ntdll.dll, kernel32.dll, user32.dll, gdi32.dll and some others). It doesn't check any available dlls...
http://rku.nm.ru/rkunhooker_v3/RkU3.30.150.400.rar
Hello, your log is full of false positives which was removed in v3.20 - v3.30. I suggest you use exactly 3.30 because 3.31 have some general...
As for malware, BIOS rootkits, motherboard rootkits, rootkits in DVD flash memory, pills, hardware hypervisors = bad science fiction and nothing...
Hello, @halcyon There are some limits of paranoia, since nobody can't proof that RkU is malicious tool, it is not malicious. With the same...
Hi, Detector which are absolutely unprotected easy target to everybody. What if malware simple denies it start? Not so suspicious since all...
Actually it works. You need to turn on "Use Extended Mode" in RkU Settings dialog to work with RkU in Windows Safe Mode. What about AVG...
Just fyi, it is archived with WinRAR v3.6 :)
Some limits, some reasons :) My main profession is not a programmer, I prefer to lead different software projects. In the case of RkU we already...
Hello, new version of RkUnhooker has been released. Any bug reports / logs please send here rkunhooker dog inbox.ru Since I'm not a direct...
Additional mirror for RkU opened here http://rku.nm.ru should be a little faster than narod.ru, in theory :)
Actually it was a big surprise even for us.
Yes it is FP.
I received such SPAM / Personal attacks messages last six months, practically every day (via Private Messanger) and every time it was a new user....
Hello. Due to obvious reasons we will have to change our web hosting-provider. We will deal with this problem and I will post here any news. D/L...
Cyberhawk rootkit scanner is weak and unstable. Intended for detecting samples that are out-dated, like for example HxDef. Almost no sense.
Thanks fcukdat, we will think about your suggestion.
Oh, yes it was reply to you, sorry without "quotes" :) Thank you for your suggestion. Maybe it will be better to create standalone tool for...
http://www.wilderssecurity.com/showpost.php?p=953234&postcount=229
No, it is not a new method. We are parsing NTFS / FAT32 data structures without help of operation system, manually, so we can locate a chain of...
Separate names with a comma.