We'd like to remind Forumites to please avoid political debate on the Forum. This is to keep it a safe and useful space for MoneySaving discussions. Threads that are - or become - political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

Rootkits and XP - is the war lost?

chunter
chunter Posts: 2,008 Forumite
Part of the Furniture 1,000 Posts Combo Breaker
After battling for 2 days to shift one, I eventually did a clean install.

Windows 7 and Vista seem to be lots better at handling/stopping them.

XP seems to be a big wide open door that just lets them tear away.

Combofix and Sophos' Anti-Rootkit can usually find them and delete them. But not always.

The killer is that only the likes of the two above have a proper go at finding them. Your McAfees and Nortons and your free antivirus don't have a clue.
«1

Comments

  • John_Gray
    John_Gray Posts: 5,831 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Photogenic
    Is the war lost on rootkits? Probably 95% of XP users never come across one!
  • fiddiwebb
    fiddiwebb Posts: 1,806 Forumite
    edited 29 August 2010 at 6:47PM
    Not fair, I use XP and never had a rootkit yet :mad:

    Where can I get mine!

    Maybe if I got rid of my free Avira AV I might get one :think:
  • Knarf44
    Knarf44 Posts: 557 Forumite
    Likewise. I've been using Avast and the Free Comodo Firewall for the last 3 years and never had a rootkit in that time.
  • closed
    closed Posts: 10,886 Forumite
    you wouldn't know unless you did a rootkit scan or booted from an AV CD.
    !!
    > . !!!! ----> .
  • Knarf44
    Knarf44 Posts: 557 Forumite
    In my case, although Avast includes rootkit scanning, I also use Panda's Anti Rootkit scanner now and again and so far it's never found anything.

    You seem to be suggesting (apologies if I'm wrong) that most of us are ignorant of these things just because we use freeware. While I agree that perhaps to the average non technically minded PC user that ignorance is bliss, it's not to all of us. I take the protection of my Home Family PC seriously.
  • GunJack
    GunJack Posts: 11,767 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    don't forget Dr Web CureIt.....very very good at getting shut of rootkits that even Combofix doesn't always get..had a couple of clients with this type in the last month or so

    Anyone tried Hitman Pro on one yet ???
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • GunJack
    GunJack Posts: 11,767 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    closed wrote: »
    you wouldn't know unless you did a rootkit scan or booted from an AV CD.

    Is this not quite true ?? Some behaviours seem to be caused by rootkits, such as stopping processes running, seemingly random errors on start-up, etc...and surely recognising the behaviours is/should be part of the defence mechanism, even if that is by human means ??
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • closed
    closed Posts: 10,886 Forumite
    Depends on the infection, and the user, they aren't supposed to be noticed, and symptoms can be confused with general windows flakiness.
    !!
    > . !!!! ----> .
  • GunJack
    GunJack Posts: 11,767 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    True, but you do tend to build up knowledge for what symptoms are related to generic types of infections....in the words of tesco, every little helps ;)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • GunJack wrote: »
    don't forget Dr Web CureIt.....very very good at getting shut of rootkits that even Combofix doesn't always get..had a couple of clients with this type in the last month or so

    Anyone tried Hitman Pro on one yet ???

    For those who don't use DOS there is a standalone Windows version

    - no need to use full DrWeb
    - updateable
    - no install to registry
    - here

    Be warned it takes 30 minutes for the quickie on a fully loaded machine !
    Disclaimer : Everything I write on this forum is my opinion. I try to be an even-handed poster and accept that you at times may not agree with these opinions or how I choose to express them, this is not my problem. The Disabled : If years cannot be added to their lives, at least life can be added to their years - Alf Morris - ℜ
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 348.2K Banking & Borrowing
  • 252.1K Reduce Debt & Boost Income
  • 452.3K Spending & Discounts
  • 240.7K Work, Benefits & Business
  • 617K Mortgages, Homes & Bills
  • 175.6K Life & Family
  • 253.9K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 15.1K Coronavirus Support Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.