Warning: iconv_mime_decode() [function.iconv-mime-decode]: Malformed string in /home/secureg/public_html/lib/standard.lib.php on line 2255

Warning: iconv_mime_decode() [function.iconv-mime-decode]: Malformed string in /home/secureg/public_html/lib/standard.lib.php on line 2255

Warning: iconv_mime_decode() [function.iconv-mime-decode]: Malformed string in /home/secureg/public_html/lib/standard.lib.php on line 2255

Warning: iconv_mime_decode() [function.iconv-mime-decode]: Malformed string in /home/secureg/public_html/lib/standard.lib.php on line 2255
Preferred RootKit detection/removal tool?
Preferred RootKit detection/removal tool?

Preferred RootKit detection/removal tool?

Secure Home | Search | About

Microsoft Applications Security - Microsoft's general security discussions and announcements 

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
Preferred RootKit detection/removal tool? Spin 08-16-2008
Posted by Spin on August 16, 2008, 6:33 pm
If you were  Registered and logged in, you could reply and use other advanced thread options


Gurus,

I know Symantec offers RootKit detection tools, as does Panda Security,
F-Secure, to name a few. However, this is addressed to those of you in this
newsgroup, which of those do you prefer to use "out in the field"?

--
Spin


Posted by Steve Riley [MSFT] on August 16, 2008, 11:20 pm
If you were  Registered and logged in, you could reply and use other advanced thread options


SETUP.EXE on the Windows installation DVD :)

Seriously, I'd rather just wipe-and-rebuild than try to disinfect. How can
you know you're completely clean otherwise?

--
Steve Riley
steve.riley@microsoft.com
http://blogs.technet.com/steriley
http://www.protectyourwindowsnetwork.com



> Gurus,
>
> I know Symantec offers RootKit detection tools, as does Panda Security,
> F-Secure, to name a few. However, this is addressed to those of you in
> this newsgroup, which of those do you prefer to use "out in the field"?
>
> --
> Spin


Posted by PA Bear [MS MVP] on August 17, 2008, 1:03 am
If you were  Registered and logged in, you could reply and use other advanced thread options


9 times out of 10, we end up ripping them out by the roots...or doing a
"wipe & reload."
--
~Robear Dyer (PA Bear)
MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002
AumHa VSOP & Admin http://aumha.net
DTS-L http://dts-l.net/

Spin wrote:
> I know Symantec offers RootKit detection tools, as does Panda Security,
> F-Secure, to name a few. However, this is addressed to those of you in
> this
> newsgroup, which of those do you prefer to use "out in the field"?


Posted by =?Utf-8?B?RGFu?= on August 19, 2008, 6:52 am
If you were  Registered and logged in, you could reply and use other advanced thread options


Steve and Robear, I was wondering if that was as clean as a format and clean
install or is my wording just different and means the same thing. <?>

"PA Bear [MS MVP]" wrote:

> 9 times out of 10, we end up ripping them out by the roots...or doing a
> "wipe & reload."
> --
> ~Robear Dyer (PA Bear)
> MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002
> AumHa VSOP & Admin http://aumha.net
> DTS-L http://dts-l.net/
>
> Spin wrote:
> > I know Symantec offers RootKit detection tools, as does Panda Security,
> > F-Secure, to name a few. However, this is addressed to those of you in
> > this
> > newsgroup, which of those do you prefer to use "out in the field"?
>
>

Posted by FromTheRafters on August 19, 2008, 8:43 am
If you were  Registered and logged in, you could reply and use other advanced thread options


Wipe is "cleaner" than format, and reload is dependent on
exactly what is reloaded.

> Steve and Robear, I was wondering if that was as clean as a format and
> clean
> install or is my wording just different and means the same thing. <?>
>
> "PA Bear [MS MVP]" wrote:
>
>> 9 times out of 10, we end up ripping them out by the roots...or doing a
>> "wipe & reload."
>> --
>> ~Robear Dyer (PA Bear)
>> MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002
>> AumHa VSOP & Admin http://aumha.net
>> DTS-L http://dts-l.net/
>>
>> Spin wrote:
>> > I know Symantec offers RootKit detection tools, as does Panda Security,
>> > F-Secure, to name a few. However, this is addressed to those of you in
>> > this
>> > newsgroup, which of those do you prefer to use "out in the field"?
>>
>>



Similar ThreadsPosted
Rootkit vs Rootkit July 13, 2005, 9:25 am
Adware, Spyware, rootkit???? March 9, 2006, 6:31 pm
Trojan Using Sony DRM Rootkit Spotted November 10, 2005, 6:24 pm
rootkit reveal showing mismatch URL Protocol April 5, 2006, 9:25 am
Report: PC security weakened by Sony (Rootkit) uninstaller November 19, 2005, 12:30 am
RE: Best way to create clean Windows XP boot cd for running rootkit de November 20, 2005, 5:10 pm
Removal and forensics of advanced rootkit employing Shadow Walker technology - help needed!!! July 15, 2006, 5:24 am
Evebntcombmt Tool August 5, 2008, 1:42 pm
Scanning tool for MS Patches October 11, 2005, 11:26 am
Looking for some (free) tool like sitekiosk... November 5, 2005, 4:41 am

The site map in XML format XML site map

Contact Us | Privacy Policy