keyongtech


  keyongtech > security

 #76  
11-05-08, 01:45 AM
Leonard Grey
Everyone: The sooner we stop giving this guy an audience, the sooner
he'll go away.
 #77  
11-05-08, 01:55 PM
Tom [Pepper] Willett
No, we've done it before, and he keeps coming back. Besides, it's 'Be Kind
to Nutjobs' week.

"Leonard Grey" <l.grey> wrote in message
news:4224
: Everyone: The sooner we stop giving this guy an audience, the sooner
: he'll go away.
: ---
: Leonard Grey
: Errare Humanum Est
:
: ~BD~ wrote:<snipped>
 #78  
11-06-08, 02:02 AM
Peter Foldes
Are you kidding. I know this guy since a few years when he started posting on other servers and as they say you cannot even b**t him to d**th
 #79  
11-06-08, 02:34 AM
FromTheRafters
"Kayman" <kaymanDeleteThis> wrote in message
news:2348
> On Mon, 3 Nov 2008 22:19:57 -0500, FromTheRafters wrote:
>> Educational viewing!

> Mark Russinovich - Advanced Malware Cleaning
> [..]
> (Rootkit issues are discussed towards to the end of the presentation).


Thanks for the link Kayman.
....and I'm glad somebody *else* threw a Pakistani Brain 20th anniversary
bash. :o)
 #80  
11-06-08, 02:41 AM
FromTheRafters
"David H. Lipman" <DLipman~nospam~> wrote in message
news:4372
[..]
> | this rootkit.
>
> | David Lipman recommends GMER often enough for me to think that
> | it is a good rootkit detector. I suspect he would know better than most
> | posters here.
>
> | - just a hunch ;-)
>> [..]


Nice write-up!

Did you view the link Kayman posted? It is recommended apparently
that many different rootkit detectors be employed - such as is the case
with the non-viral malware (spyware/adware) detectors. Some may
catch what others may miss (no real surprise there).

Thanks for the link, it's a keeper.
 #81  
11-06-08, 08:36 AM
Kayman
On Wed, 5 Nov 2008 21:34:02 -0500, FromTheRafters wrote:

> "Kayman" <kaymanDeleteThis> wrote in message
> news:2348
>
> Thanks for the link Kayman.
> ...and I'm glad somebody *else* threw a Pakistani Brain 20th anniversary
> bash. :o)


YW.
Here's some additional info:
Avoiding Rootkit Infection.
The rules to avoid rootkit infection are for the most part the same as
avoiding any malware infection however there are some special
considerations:
Because rootkits meddle with the operating system itself they *require*
full Administrator rights to install. Hence infection can be avoided by
running Windows from an account with *lesser* privileges" (LUA in XP and
UAC in Vista).

Running MRT provided monthly by MSFT can be beneficial detecting some
rootkits.

Rootkit Removal applications.
The effectiveness of an individual Rootkit removal application are
wide-ranging and it is recommended utilizing a collection of
detection/removal tools; You are encouraged to try all of them (join
relevant fora for additional support i.e. interpretation of scan results):

ComboFix
http://www.bleepingcomputer.com/comb...o-use-combofix

DarkSpy
http://www.antirootkit.com/software/DarkSpy.htm
http://www.antirootkit.com/forums/viewforum.php?f=18

F-Secure BlackLight (Download Trial)
http://www.f-secure.com/en_EMEA/prod...es/blacklight/
http://www.antirootkit.com/forums/viewforum.php?f=13

GMER - is an application that detects and removes rootkits.
http://www.gmer.net/index.php
http://antirootkit.com/forums/index....81ffe4361c3a17

IceSword
http://www.antirootkit.com/software/IceSword.htm
http://www.antirootkit.com/forums/index.php

McAfee Rootkit Detective
http://download.nai.com/products/mca...tDetective.zip

RAIDE
http://www.rootkit.com/project.php?id=33
download:
http://www.rootkit.com/vault/petersi...IDE_BETA_1.zip
http://www.rootkit.com/boardm.php

RootAlyzer
http://forums.spybot.info/showthread.php?t=24185
http://www.spybotupdates.com/files/rootalyz.zip

Rootkit Revealer
http://technet.microsoft.com/sysinternals/bb897445.aspx
http://forum.sysinternals.com/forum_topics.asp?FID=15

RootKit Hook Analyzer
http://www.softpedia.com/get/Securit...Analyzer.shtml
http://www.antirootkit.com/forums/viewforum.php?f=17

RootKit Hook Analyzer
http://www.resplendence.com/hookanalyzer
http://www.antirootkit.com/forums/viewforum.php?f=17

RootAlyzer
http://forums.spybot.info/showthread.php?t=24185
http://www.spybotupdates.com/files/rootalyz.zip

Panda Anti Rootkit
http://research.pandasecurity.com/bl...ntiRootkit.zip

Sophos Anti-Rootkit - Free tool for rootkit detection and removal
http://www.sophos.com/products/free-...i-rootkit.html
Direct link:
http://downloads.sophos.com/support/cleaners/sarsfx.exe
http://www.techsupportforum.com/netw...i-rootkit.html

System Virginity Verifier
http://www.softpedia.com/get/System/...Verifier.shtml
http://www.antirootkit.com/forums/viewforum.php?f=25

System Virginity Verifier
http://www.antirootkit.com/software/...y-Verifier.htm
http://www.antirootkit.com/forums/viewforum.php?f=25

VICE
http://www.rootkit.com/project.php?id=20
download:
http://www.rootkit.com/vault/fuzen_op/vice.zip
http://www.rootkit.com/boardm.php
 #82  
11-06-08, 09:13 AM
~BD~
"Peter Foldes" <okf22> wrote in message
news:4864
Are you kidding. I know this guy since a few years when he started posting
on other servers and as they say you cannot even b**t him to d**th
 #83  
11-06-08, 09:23 AM
Paul Adare
On Thu, 6 Nov 2008 09:13:43 -0000, ~BD~ wrote:

> Tenacious is the appropriate word Mr Foldes.


No, once again, off-topic is the word. This news group is not your personal
chat area, nor is it an appropriate location for you to air your
grievances. Take this garbage elsewhere.
 #84  
11-17-08, 07:41 PM
occam
Emil Tiades wrote:
> On Sun, 26 Oct 2008 21:59:26 -0700, Donna Ohl
> <donna.ohl> wrote:
>> You MUST get one of these without delay

> [..]


Will these work even if the foil is made in China?

<concerned>

Similar Threads
.vcs file of beijing olympics?

Hi, anyone knwo where I can find a .vcs file of Beijing Olympics to import into Outlook 2003 calendar? - I found other sports events like F1 and soccer, but not...

T-shirt Design for Gnu/Linux Geeks In Beijing Olympics Era

I designed an Olympic T-shirt for Gnu/Linux Geeks: [..] - The baby Tux is contributed by Nicolas Rougier - The last two rows of Chinese characters means One World, One...

vista/ keylogger 5 and keylogger pro

I have vista home premium and when I watch progress of Norton full scan I see c:\programs\keylogger5\watchdll.dll and also keylogger pro. I only know because I was quick...

XianZe advertising co., Ltd. of Beijing

1¡¢brief introduction of company: Our company was established formally with the approval of industrial and commercial bureau of Beijing in 1996, is it manage domestic foreign...

Need SBS expert in Beijing, China

SBS 2003 expert required in Beijing, China, to set up a small corporate office network. Will include hardware, software and Internet connection orders. Support and...


All times are GMT. The time now is 05:43 PM. | Privacy Policy