Сейчас на форуме: rmn (+1 невидимый пользователь)

 eXeL@B —› WorldWide —› Runscanner v1.5.0.39 Final
Посл.ответ Сообщение


Ранг: 133.2 (ветеран), 44thx
Активность: 0.120
Статус: Участник
bbs.pediy.com

Создано: 05 декабря 2007 20:35
· Личное сообщение · #1

RunScanner is a completely free windows system utility which scans your system for all configured running programs.

You can use runscanner to detect autostart programs, spyware, adware, homepage hijackers, unverified drivers and other problems.

You can import and export your results and let other people help you to solve your problems.

Features
- Top rated freeware
- Scanning of 80+ hijack locations
- Online malware analysis of results
- Powerful process killer
Kill multiple processes at once
Kill and rename
Kill and delete
Delete at next reboot
- Saving and importing of .run files
(all information available)
- Save to text log file
- Verification of file signatures
Host file editor
- MD5 hash calculation of files + online file rating
- Online lookup of scanned entries. (Runscanner database + Google)
- Regedit jump
- Explorer jump
- Extended filters
Marking of items.
A user with problems can save the .run file, an expert can mark the items that need fixing and send the .run file back to the user

New features in this version:

New design in all modes
Layout is now shown correctly for people with "large fonts" enabled
Certificates of files are now analysed in all modes for signer/issuer
Certificates are now shown as a certificate image in the grid instead of the green/red icons
Virusscanner integration with Virustotal (upload file for scanning)
Integration with Bit9 FileAdvisor (lookup MD5 hash)
Integration with CastleCops (lookup MD5 hash)
New Classic mode : This mode is targetted at removing hijacks, it only shows non-whitelisted items and there is an easy "Fix selected items" button, all other "safe" startup items can still be found in the expert mode.
Added "Item fixer" tab in expert mode.
Added "classic mode / hijack" tab in expert mode.
Quick scan is removed in expert mode.
New in expert mode : loaded modules analyzer.
Warning if windows version is not supported. (Only win2000 or higher is supported)
Added drivers with type = 2
Disabled drivers and services are now automatically whitelisted in classic mode.
Runscanner now finds drivers with undefined imagepath.
Scanning is done a bit faster, the most processor intense part of the scan is still calculating the MD5 hashes
No internet connection is needed anymore during the scan.
Vista : Process killer now shows also protected processes
Bug fixes:

Fixed bug with corrupt MDAC installation in windows XP (used by history database)
Fixed visual bug with screen flash after quit.
Fixed bug with EOleSysError on incorrect/corrupt startup shortcuts.
Fixed bug with corrupt taskscheduler service.
Fixed bug with corrupt .run files.
Whitelist added:

A list of safe certificate publishers (56)
Standard search pages
Standard start pages
Standard safe zones (microsoft,...)
Blacklisted dangerous policies (DisableTaskMgr,DisableRegistryTools,DisableCMD,...)

Home:
_http://www.runscanner.net/

Down:
_http://www.runscanner.net/runscanner15/runscanner.exe




Ранг: 111.1 (ветеран)
Активность: 0.040
Статус: Участник

Создано: 05 декабря 2007 20:53 · Поправил: Lumen
· Личное сообщение · #2

del

-----
The truth is out of there...




Ранг: 13.9 (новичок)
Активность: 0.030
Статус: Участник

Создано: 06 декабря 2007 22:07
· Личное сообщение · #3

good program




Ранг: 133.2 (ветеран), 44thx
Активность: 0.120
Статус: Участник
bbs.pediy.com

Создано: 15 декабря 2007 13:57
· Личное сообщение · #4

Version 1.6.0.4 released

New launch/hijack items 1.6

Restrictions for internet explorer:
080 HKLM\Software\Policies\Microsoft\Internet Explorer (+subfolders)
081 HKCU\Software\Policies\Microsoft\Internet Explorer (+subfolders)

Startup/Shutdown/logon/logoff scripts
090 HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon
091 HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon
092 HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Startup
093 HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown
094 HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff

Various
110 HKLM\System\CurrentControlSet\Control\BootVerificationProgram\ImagePat h
174 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet
200 HKLM\System\CurrentControlSet\Control\Session Manager\Execute
201 HKLM\System\CurrentControlSet\Control\Session Manager\SetupExecute

Shell hijacking (removed from general policies)
162 HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell
163 HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell

Terminal server related
190 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AppSetup
191 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run
192 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Runonce
193 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\RunonceEx
194 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\LogoffApp

Debugger hijacking
176 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AeDebug\Debugger (thanks to Tony Klein)

Denying access to websites/IP addresses by setting a wrong static route (thanks to Bruce Harrison - nosirrah)
177 HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\PersistentRout es

Hijacking of standard windows tools
210 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\Bac kupPath
211 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\Cle anuppath
212 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\Def ragPath
213 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\Magnifier
214 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\Narrator
215 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\On-Screen Keyboard


_http://www.runscanner.net/runscanner16/runscanner.exe

MD5: 468EFA3ABBE51EFDDB04B4876BFF2052




Ранг: 133.2 (ветеран), 44thx
Активность: 0.120
Статус: Участник
bbs.pediy.com

Создано: 05 января 2008 16:56
· Личное сообщение · #5

Version 1.6.1 released

Changelog:
Bug fixed: Bitmap image is not valid. (corrupt embedded icon)
Bug fixed: malware analysis after import not working in expert mode
Bug fixed: Lookup at Runscanner when no MD5 available popupmenu
Sub run folders are now only scanned on windows 2000

MD5: 828F679CB774326D484F82E7169DB4EC

www.runscanner.net/runscanner161/runscanner.exe




Ранг: 133.2 (ветеран), 44thx
Активность: 0.120
Статус: Участник
bbs.pediy.com

Создано: 25 февраля 2008 17:24
· Личное сообщение · #6

Runscanner v1.6.3
2008-02-23

Changelog:
MD5 calculation now uses the windows api for improved speed.
Added warning when access denied on reading/writing hosts file.
Fixed bug with copying MD5 hashes to clipboard.
Fixed bug with incorrect files not found.
Fixed bug when fixing some items, the items were fixed but not removed from the selection list
Fixed problem with invalid datatype for the internet explorer search page.
Added more safe publishers to the list.

Download:

www.runscanner.net/runscanner.zip


 eXeL@B —› WorldWide —› Runscanner v1.5.0.39 Final
:: Ваш ответ
Жирный  Курсив  Подчеркнутый  Перечеркнутый  {mpf5}  Код  Вставить ссылку 
:s1: :s2: :s3: :s4: :s5: :s6: :s7: :s8: :s9: :s10: :s11: :s12: :s13: :s14: :s15: :s16:


Максимальный размер аттача: 500KB.
Ваш логин: german1505 » Выход » ЛС
   Для печати Для печати