XueTr-fire eye cooperation version (2012.10.25)

Status
Not open for further replies.

savit

Level 1
Thread author
Apr 9, 2011
120
A powerful anti-virus (rootkit) tools to hand to support 32-bit 2000, xp, 2003, vista, 2008, and Win7 operating system.

XueTr site
XueTr download

Fireeye site (dynamic analysis) - https://fireeye.ijinshan.com/

Updated info

[2012.10.25] released a XueTr-fire eye cooperation version, release details later in http://t.qq.com/linxer , Welcome to the Heat:

A powerful manual antivirus tools being only support 32-bit 2000, xp, vista, and Win7 operating system, and so busy working this array, will buy Microsoft digital signature to develop support for 64-bit and Windows8 XueTr Please wait and see.
Download (md5: D4B3E3A5B1FEE871A610422220C0506A)

Of QQ micro-Bo: http://t.qq.com/linxer welcome to listen, later XueTr situation will be posted here.

From the 0.44 version, XT adding donation information, thanked the donors in this. See donation list.

The tools to achieve the following functions:
Processes, threads, process modules, process window, process memory, timers, hotkeys View, kill process, kill the thread, uninstall module functions
2 kernel driver module view, to support the memory copy of the kernel driver module
View 3.SSDT, Shadow SSDT, FSD, KBD, TCPIP, Classpnp, Atapi, Acpi, SCSI, IDT, GDT, and can detect and restore ssdt hook and inline hook
4.CreateProcess, CreateThread, LoadImage, CmpCallback, BugCheckCallback, Shutdown, Lego Notify Routine View, and support the deletion of these Notify Routine
5 Port View 2000 system does not currently support
View the message hook
7 kernel module iat, eat, inline hook, patches detection and recovery
Disk, volume, keyboard, network layer filter driver detection, and support for the deletion
9. Registry Editor
10. Process iat, eat, inline hook, patches detection and recovery
11 file system view, to support basic file operations
12 view (edit) IE plug-in, SPI, startup items, services, Host file, image hijacking file associations, system firewall rules, IME
13.ObjectType Hook detection and recovery
Detect and remove 14.DPC timer
15.MBR Rootkit detection and repair
16 kernel objects hijacking detection
17.WorkerThread enumeration

Disclaimer: This is just a free auxiliary gadget, if you use this tool, giving you direct or indirect losses, damage, and I take no responsibility. From the moment you use this gadget, you will be deemed to have accepted this disclaimer.

image2.jpg
 
V

Vextor

RE: XueTr 0.4

This is definitely a product for advanced users. I would personally not use this as some system files may be affected, and could lead to more program crashes, but interesting idea.
 

Gnosis

Level 5
Apr 26, 2011
2,779
RE: XueTr 0.4

I like it. Thank you sir. I have it on my system now.

I have always been interested in good intel.
 
D

Deleted member 178

RE: XueTr 0.42

thanks, i was going to forgot update it
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
RE: XueTr 0.44

Thank you savit!;)

Xuetr is the most important of my 'on demand' software that I have.

I consult it every day, before turning off my PC .. You can see my previous topic on the VoiceOfThePublic forum here: XueTr FREE Anti-rootkit & Antivirus software NEW version (Read 2788 times): http://forums.voiceofthepublic.com/smf2/index.php/topic,86.0.html
 

moonshine

Level 7
Verified
Apr 19, 2011
1,264
RE: XueTr 0.44

That's gotta be a really advanced tool right there, Gonna try it later at my VM.
 
D

Deleted member 178

RE: XueTr 0.44

Prorootect said:
I consult it every day, before turning off my PC ..

i thought i was the most paranoid one :D i think it is not necessary to run it every time.
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
RE: XueTr 0.45

@savit - thank you!:cool:

Linxer XueTr site in English I use for download: http://translate.google.com/translate?hl=fr&rurl=translate.google.com&sl=zh-CN&tl=en&u=http://www.xuetr.com/

Since 0.44 version, XueTr has 'Computer Examination' 1 click feature, very easy - you have .txt report at the end of your (very quick) scan. For more details, look also on the topic: Free Easy 1 click check PC security software: http://malwaretips.com/Thread-Free-Easy-1-click-check-PC-security-software

@umbrapolaris - thank you!

But each one is still the king in his house, yes? ..;)

@BoXX28 - and then?.. because maybe XueTr is for all Windows 32 bit only.:shy:
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
RE: XueTr 0.45

.
Removing threats with XueTr: Security/malware blog artemonsecurity.blogspot.com, by Artem: http://artemonsecurity.blogspot.com/search/label/Xuetr

Worm:Win32/Dorkbot.I, SpyEye, detection of ZeroAccess rootkit.

- Bad things and good anti-rootkit Series here.;)
.
 

Gnosis

Level 5
Apr 26, 2011
2,779
RE: XueTr 0.45

I love XueTr.

Latest version: http://www.xuetr.com/?p=25

(md5:D4B3E3A5B1FEE871A610422220C0506A)
 

Littlebits

Retired Staff
May 3, 2011
3,893
The product is very similar to Emsisoft Hijack Free.
Don't really think it could compare.

I got an error when trying to run it, it said it didn't support 64-bit drivers.

Thanks.:D
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
Littlebits said:
The product is very similar to Emsisoft Hijack Free.
Don't really think it could compare.

I got an error when trying to run it, it said it didn't support 64-bit drivers.

Thanks.:D

GOOD NEWS:

[from Google English translation of linxer description]:

'will buy Microsoft digital signature to develop support for 64-bit and Windows8 XueTr
Please wait and see.'


So we are waiting to 64 bit version - is promised, please.:cool:
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top