Tool to sandbox or protect MBR from rootkits

broughie

Level 2
Thread author
Verified
Sep 11, 2013
87
Is there a tool or program which can isolate MBR from rootkit attack aside from using safe practices realtime AV & anti malware progs hips etc
All of latter useless to me when getting zero access rootkit & caro malware wrecking my pc > now using sandboxie but still concerned about rootkits is there anything to block them ?
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,355
Windows 8))
With safe loading at the moment can completely eliminate rootkits, bootkits, vinlokery ICBM
UEFI allows the firmware to implement a security policy.
Safe boot - is a protocol UEFI, rather than a component of the operating system Windows 8.
Safe boot UEFI is part of the architecture of secure boot Windows 8.
 

Littlebits

Retired Staff
May 3, 2011
3,893
UAC protects the MBR, just don't approve any unknown files without a digital certificate. Learn to utilize UAC.

Don't download files from unknown sources only from trusted software vendors, open-source projects or download sites like Softpedia, MajorGeeks, SnapFiles, DownloadCrew, FileHippo, Filepuma, etc. that scans their files for malware.

Rootkits don't magically appear on your system you have to be the one to download them manually and then manually execute them.

Learn how to avoid fake alert websites by using browser extensions like WOT and Webutation. Use an updated secure browser and keep your browser add-ons like Flash Player updated, disable Java plugin from your browser.

Most rootkits are distributed by fake alert websites offering fake software updates, fake malware scans, cracks and keygens, etc.

If you always only download files from trusted sources you should never be exposed to rootkits.

The best way to block rootkits is your own actions, depending on security software alone will fail you.

Enjoy!! :D
 

Moose

Level 22
Jun 14, 2011
2,271
You can try the following software's: for preventing rootkits!

UnHackMe: Paid Software
http://malwaretips.com/Thread-GotD-UnHack-Me?highlight=UnHackMe

Malwarebtyes Anti-rootkit: Free at this point
http://www.malwarebytes.org/products/mbar/

Malwarebtyes Anti-rookit is great and very quick at scanning for rookits
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,355
Malwarebytes Anti-Rootkit -BETA

Kaspersky TDSSKiller Rootkit Removal Utility
http://usa.kaspersky.com/downloads/tdsskiller

Bitdefender Rootkit Remover
http://labs.bitdefender.com/projects/rootkit-remover/rootkit-remover/
 

Littlebits

Retired Staff
May 3, 2011
3,893
Moose said:
You can try the following software's: for preventing rootkits!

UnHackMe: Paid Software
http://malwaretips.com/Thread-GotD-UnHack-Me?highlight=UnHackMe

Malwarebtyes Anti-rootkit: Free at this point
http://www.malwarebytes.org/products/mbar/

Malwarebtyes Anti-rookit is great and very quick at scanning for rookits

Petrovic said:
Malwarebytes Anti-Rootkit -BETA

Kaspersky TDSSKiller Rootkit Removal Utility
http://usa.kaspersky.com/downloads/tdsskiller

Bitdefender Rootkit Remover
http://labs.bitdefender.com/projects/rootkit-remover/rootkit-remover/

Those are just removal tools after you system has already been infected by rootkits, they will not block rootkit infections and most other security products will also fail to block them if the user manually executes a malicious download.

Thanks. :D
 
D

Deleted member 178

afraid of rootkits? use the IT Pro method !

reformat every week !

/joke
 

mag1c

New Member
Oct 10, 2013
2
Appguard is the best program to use.

Blocks MBR Rootkit's from executing, best to set it to lockdown when just browsing and it will block anything.
 

Ramblin

Level 3
May 14, 2011
1,014
broughie said:
now using sandboxie but still concerned about rootkits is there anything to block them ?

Sandboxie doesnt allow drivers to be installed in a sandbox. Most rootkits if not all install drivers. If you keep using Sandboxie, it is not likely your system will get infected by one.

By the way, five years ago, searching for tools to prevent rootkit infections is how I discovered Sandboxie. I think you already found what you are looking for.

Bo
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top