Roguekiller
Posted: Sun Mar 03, 2013 4:53 am
RogueKiller Site
32 and 64 bit versions. Executable file.
Writeup on RogueKiller at TechRepublic here.
This app is popular on many security sites. I've used it a couple of times, but I'm not familiar with all of its capabilities. It writes its scan logs to the desktop and that's not configurable, so I don't know if that disqualifies it. Either way, nice to know about.
Description : RogueKiller is a program written in C++ and able to :
Kill malicious processes
Stop malicious services
Unload malicious DLLs from processes
Kill malicious hidden processes
Find and remove malicious autostart entries:
Hijack entries:
Read / Fix DNS Hijacks (DNS Fix button)
Read / Fix Proxy Hijacks (Proxy Fix button)
Read / Fix Hosts Hijacks (Hosts Fix button)
Restore shortcuts / files hidden by rogues of type "Fake HDD"
Read / Fix malicious Master Boot Record (MBR) -- Even hidden by rootkit
List / Fix SSDT - Shadow SSDT - IRP Hooks (Even with inline hooks)
Find and restore system files patched / faked by a rootkit
32 and 64 bit versions. Executable file.
Writeup on RogueKiller at TechRepublic here.
This app is popular on many security sites. I've used it a couple of times, but I'm not familiar with all of its capabilities. It writes its scan logs to the desktop and that's not configurable, so I don't know if that disqualifies it. Either way, nice to know about.
Description : RogueKiller is a program written in C++ and able to :
Kill malicious processes
Stop malicious services
Unload malicious DLLs from processes
Kill malicious hidden processes
Find and remove malicious autostart entries:
Hijack entries:
Read / Fix DNS Hijacks (DNS Fix button)
Read / Fix Proxy Hijacks (Proxy Fix button)
Read / Fix Hosts Hijacks (Hosts Fix button)
Restore shortcuts / files hidden by rogues of type "Fake HDD"
Read / Fix malicious Master Boot Record (MBR) -- Even hidden by rootkit
List / Fix SSDT - Shadow SSDT - IRP Hooks (Even with inline hooks)
Find and restore system files patched / faked by a rootkit