Good anti-rootkits for Win 7

Discussion in 'other anti-malware software' started by aigle, Feb 12, 2010.

Thread Status:
Not open for further replies.
  1. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    Just noticed that gmer doesn,t yet support Win 7. What else can be used?
    Also are there any standalone MBR rootkit detectors?

    Thanks
     
    Last edited: Feb 12, 2010
  2. curious george

    curious george Registered Member

    Joined:
    Jun 24, 2007
    Posts:
    218
    Re: Goot anti-rootkits for Win 7

    I believe Prevx has one, if im not mistaken.
     
  3. dcrowe0050

    dcrowe0050 Registered Member

    Joined:
    Sep 1, 2009
    Posts:
    378
    Location:
    NC
    Re: Goot anti-rootkits for Win 7

    This is one of the only infections the free version of Prevx will clean and it does so pretty good. Also RkU, Kernel Detective but they are not just for MBR
     
  4. PC__Gamer

    PC__Gamer Registered Member

    Joined:
    Dec 26, 2009
    Posts:
    526
    Drwebs CureIt doesnt need installing, great anti-rootkit.
     
  5. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    I prefer something non signature based. Strange that root repeal also not supporting win 7.
    Cure it or any signature based anti root kits are extremely poor.
     
  6. progress

    progress Guest

    :(

    I think Trendmicro Rootkit Buster and maybe Rootkit Unhooker? :doubt:
     
  7. subset

    subset Registered Member

    Joined:
    Nov 17, 2007
    Posts:
    825
    Location:
    Austria
    RkU 3.8.386.589 works with Windows 7.

    Seems like it's currently the only one.
    Gmer, Radix, RootRepeal don't work, Kernel Detective offered only a BS.

    Cheers
     
  8. Hugger

    Hugger Registered Member

    Joined:
    Oct 27, 2007
    Posts:
    1,003
    Location:
    Hackensack, USA
    I can't find a link to this.
    Please post it.
    Thanks.
    Hugger
     
  9. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
    Did a search and found these are ARK's listed as W7 compliant.

    SanityCheck http://www.resplendence.com/sanity New: version 2.00 now supports Windows 7 and latest service packs.

    # Windows 7
    # Windows 7 x64 editions
    # Windows 2008 Server
    # Windows 2008 Server x64 editions
    # Windows Vista
    # Windows Vista x64 editions
    # Windows XP (Service Pack 2 or greater)
    # Windows XP x64 edition (all service packs)
    # Windows Server 2003 (all service packs)
    # Windows Server 2003 x64 editions (all service packs)
    # Windows Server 2000 (with Update Rollup 1 and Service Pack 4)

    UnHackMe http://www.greatis.com/unhackme Supported Windows NT4/2000/XP/2003/Vista/Seven.

    Sophos Anti-Rootkit http://www.sophos.com/products/free-tools/sophos-anti-rootkit.html

    * Windows 2000
    * Windows XP
    * Windows Vista
    * Windows 7
    * Windows Server 2003
    * Windows Server 2008
    * 64-bit platforms
     
  10. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    how good is it?
     
  11. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
  12. subset

    subset Registered Member

    Joined:
    Nov 17, 2007
    Posts:
    825
    Location:
    Austria
    Edit... a little bit too slow makes same posts in a row. :cautious:

    Cheers
     
  13. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
  14. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    What itw rootkits does razor detect;)

    It can't detect modern rootkits as it hasn't the means to. Razor is instanly out of date.

    Tizer Secure will not even reply to email and are totally unprofessional.

    edit : Tizer Secure replied in this thread to my initial comments.
     
    Last edited: Feb 21, 2010
  15. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    which one is the best?:D
     
  16. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
    Meriadoc

    This is a new version of Tizer Secure i posted. Have you tried it, or just the previous one, if at all ?

    I agree, no replies to emails doesn't sound very professional.

    jmonge

    Try 'em and give us your opinions :D
     
  17. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    thanks clone:thumb:
     
  18. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    Hi CloneRanger, I tried the previous version and noticed the update. Rest assured I wouldn't post such a comment without looking at it.

    example of hot samples that razor didn't detect.

    TDSS
    TDL
    Rustock
    4DW4R3
     

    Attached Files:

  19. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    There is no best antirootkit, only up to date tools.
     
  20. 3GUSER

    3GUSER Registered Member

    Joined:
    Jan 10, 2010
    Posts:
    812

    GMer actually works for Windows 7 .

    You have to do a slight change to make it work without problem . Here it is :
    gmer_win7.png

    Delete this with the "Delete" option.Otherwise you might get a BSOD
     
  21. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    My VM almost freezes.
     
  22. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    thanks meriadoc
     
  23. pradeepschandra

    pradeepschandra Registered Member

    Joined:
    Feb 20, 2010
    Posts:
    5

    Hi Meriadoc,

    Thank you for letting us know this issue in Tizer Rootkit Razor.

    Could you just provide us the samples of rootkits you tested Rootkit Razor on, so that we can test it personally.

    Once again thank you for testing it out.

    Regards
    Tizer Secure Support Team
     
  24. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    Hi pradeepschandra,

    I emailed Tizer Secure a couple of times awhile ago now but received no reply, so I'm glad the post tweaked an interest and you've responded here :) .

    I would be happy to supply you with the samples away from Wilderssecurity and will private message you with the details.

    Trying not to come over as presumptuous, but if the developers would like to discuss ways of detecting any of the malware I would be glad to help out.
     
  25. pradeepschandra

    pradeepschandra Registered Member

    Joined:
    Feb 20, 2010
    Posts:
    5
    Hi, Thanks for your quick response.. I really appreciate your help..

    Pls send me your messenger id as well.. so we can take the discussion forward

    Once again thank you for all your co-operation.

    Regards
    Pradeep
     
    Last edited: Feb 20, 2010
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.