Published June 19, 2014 by Download Software
RogueKiller is an anti-malware program written in C++ and able to detect and remove generic malwares and some advanced threats such as rootkits, rogues, worms, …
Based on generic ways to find malwares by their behaviour (heuristics), on classic anti-malware analysis (signature finding) and on undocumented hacks, RogueKiller can find/remove most of the basic malwares (rogues, trojans, …) and some advanced threats like ZeroAccess or TDSS that behave more like rootkits.
RogueKiller is a tiny anti-malware maintained by a small team, and thus new detections are based on “most spread threats“. We react quickly to integrate detection and removal of what we think can be a global threat and affect a big amount of users across the world.
Here’s a little summary of what RogueKiller is able to do:
- Kill malicious processes
- Stop malicious services
- Unload malicious DLLs from processes
- Find/Kill malicious hidden processes
- Find and remove malicious autostart entries, including :
- Registry keys (RUN/RUNONCE, …)
- Tasks Scheduler (1.0/2.0)
- Startup folders
- Find and remove registry hijacks, including :
- Shell / Load entries
- Extension association hijacks
- DLL hijacks
- Many, many others …
- Read / Fix DNS Hijacks (DNS Fix button)
- Read / Fix Proxy Hijacks (Proxy Fix button)
- Read / Fix Hosts Hijacks (Hosts Fix button)
- Restore shortcuts / files hidden by rogues of type “Fake HDD“
- Read / Fix malicious Master Boot Record (MBR), even hidden behind rootkit
- List / Fix SSDT – Shadow SSDT – IRP Hooks (Even with inline hooks)
- Find and restore system files patched / faked by a rootkit
System Requirements:
- Operating System: Windows All Version
- Language: English-US
- License: Freeware
- Author: RogueKiller
Changelog:
- Fixed encoding bug in quarantine handler
- Fixed crash window opening when no dump is available
- Fixed duplicated files in common startup folder on XP
- Detection of WinPE. Now LivePE/LiveUSB scan is faster and more accurate.
- Fixed reboot query
- Improved replacement method
- Fixed DNS whitelisting
- Added Zekos signatures
- Now file replacement engine looks for same file version before replacing.
- Fixed a bug in startup honey module
- Fixed a bug in mbr module
| Download
Sponsored Links (What this)