Iz softverske kuće širokim masama poznatim po programu Malwarebytes' Anti-Malware stiže nam beta verzija programa Malwarebytes' Anti-Rootkit. Ovaj program bi trebalo, po riječima autora, da uspješno detektuje i uklanja čak i najtvrdokornije maliciozne rootkitove.
Citat:Malwarebytes Anti-Rootkit BETA is cutting edge technology for detecting and removing the nastiest malicious rootkits.
Disclaimer
This is beta software, for consumer and approved partner use only, use at your own risk, and by proceeding you are agreeing to the terms of our license agreement, enclosed as "License.rtf".
.
.
While we encourage and invite participation, Malwarebytes Anti-Rootkit BETA users run the tool at their own risk.
http://www.malwarebytes.org/products/mbar/
Na istoj strani se nalazi i uputstvo za koršćenje namijenjen manje iskusnim korisnicima koji ću citirati dole.
Citat:Usage:
Download Malwarebytes Anti-Rootkit from the link to the right.
Unzip the contents to a folder in a convenient location.
Open the folder where the contents were unzipped and run mbar.exe
Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
Click on the Cleanup button to remove any threats and reboot if prompted to do so.
Wait while the system shuts down and the cleanup process is performed.
Perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If they do, then click Cleanup once more and repeat the process.
If no additional threats were found, verify that your system is now running normally, making sure that the following items are functional:
Internet access
Windows Update
Windows Firewall
If there are additional problems with your system, such as any of those listed above or other system issues, then run the 'fixdamage' tool included with Malwarebytes Anti-Rootkit and reboot.
Verify that your system is now functioning normally.
If you experience any problems in running the tool or it hasn't fully resolved all of the issues you had, please contact support.
MBAM Anti-Rootkit BETA možete preuzeti odavde.
http://downloads.malwarebytes.org/file/mbar
Pri pokretanju može vam se pojaviti ova poruka i tu kako je navedeno u tekstu kliknite na No ukoliko vam se program pokrenuo bez problema ili ako ste sigurni da nemate maliciozne unose u AppInit vrijednosti u registru. Umom slučaju to je bio guard32.dll od COMODO Firewall-a.
Još par screenshotova.
|