Recommended Posts

I figure this would be the place to ask. Just curious.

Kind of tired of dealing with rootkits on 7 lately.

I suppose they would wait till release to even try, but maybe there is a beta release preview of some Malware? Hehe

Would actually love to see this crap lessen, I'd rather show people how to do cool stuff with computers than see this kind of crap all day long.

jf

Unless Windows 8 has a new feature that makes the "average internet idiot" smarter, then no, I don't see it magically stopping malware any time soon. Stick a fool in front of a computer and they'll wind up getting it wrecked no matter which OS they're on.

I haven't, but then I have never had a malware infection on 7 or vista either, neither have my relatives or people I know.

at work I fix a rare few vista and 7 computers but mostly XP. But all the Vista and 7 malware I have seen have almost without exception been caused by user stupidity. and I'm not talking the regular average user "I don't know how to use a computer" stupidity, I'm talking the absolute doing the opposite of step by step instructions in small words stupidity.

We use McAfee at work and have seen rootkits on our systems.

Flash Ad's and Java attacks mostly. We require both for systems we use (payroll & document management) so there is no getting rid of them for now.

That explains that right there, you use McAfee at work! :x

How do you know that you aren't affected by a malware then?

I've often wondered that when some one says that too?

Haven't seen any infections with mulitple programs on my 8 Windows 7 machines, in a long time, or any of the Windows 8 machines I've played on.

How do you know that you aren't affected by a malware then?

You don't need resident antivirus software to check for that sort of thing. All the resident software does is maybe stop it before it gets installed, if it even detects it.. too many people use it as a crutch to compensate for bad safety habits.

  • Like 2

Of course Win8 will get infected just like any other system even Win7 as I've cleaned many with Win7 having infections so far and yes I've even gone as far as to on purpose test getting an infection on Win8 RP which reacted the same but did in fact end up being harder to remove from Win7 cause of the lack of support yet from 3rd party cleaners.

At the end of the day the end-user is responsible for what they click on - no AV or anti-malware application will prevent them all.

We use McAfee at work and have seen rootkits on our systems.

Flash Ad's and Java attacks mostly. We require both for systems we use (payroll & document management) so there is no getting rid of them for now.

Sure there is. Cut off all company users from the internet; Intranet only. No malware, job done!

People shouldn't be surfing the net on their employers dime, anyway.

Avast + Malwarebytes = Safe Computer Always

Windows 7 AND Windows 8

HAHAHAHA no.

I used to swear by Malwarebytes, but lately? Not so much. It still great for scanning, but their resident monitoring is something else. Not so much for what it finds, but for what it's doing to your system.

My wifes laptop has been overhearing a LOT lately, enough that it's been hitting it's thermal shut off limit and shutting itself down. I eventually tracked it down to MWB's live scanner using a crapton of CPU time constantly, and pushing the temps to > 95c.

I'll still use it for the weekly scan, but it's realtime protection is now OFF.

Sure there is. Cut off all company users from the internet; Intranet only. No malware, job done!

People shouldn't be surfing the net on their employers dime, anyway.

Because business systems NEVER have to access systems outside of intranet. Especially business and accounting, they would NEVER have to access external banks and accounts that would require the internet.

Get real.

Because business systems NEVER have to access systems outside of intranet. Especially business and accounting, they would NEVER have to access external banks and accounts that would require the internet.

Get real.

Seriously, you don't know how to limit access to specific sites only?

Wow, I hope you're not the admin! :p

A better example of where the **** do they get it at is "Mywebsearch" I swear to god (not joking) 99.999999999% of all of my 1,700+ customers have had this installed. yet I have NEVER been prompted to install it in my life.

On a side note, it's not just the people running XP that get rootkits. Have seen plenty of Windows 7 and windows vista 64bit MBR infections.

How the hell are you getting "rootkits" installed, i haven't run an AV package in 3 years and never get that crap.

You might not be dumb as a box of rocks when it comes to computers but a lot of people are. As to not insult anyone I will say when it comes to cars, i'm also as dumb as a box of rocks.

I can see how anyone of the users in this forum might not get them, but I work on the "idiots" if that's what you must call them, computers all day long.

And whether they asked for it or not, it walks or is let in right through the front door with Norton, MacAfee, Avast, MSE, running in the background.

I guess the more than a few times a month that I have to run TDSSKILLER.exe on a computer and it identifies an infection as a Rootkit is what I would term too often. Windows 7, Vista sure, all the time actually.

99.9% of the time it is a PC that is not fully patched that gets nailed.

But back to my original question. I probably posted the question out of frustration that I am having this week with yes, Rootkits, on Windows 7, that tddsskiller identifies as a "rootkit". Maybe Kaspersky is just calling it that for kicks?

Original question was has anyone seen it on 8, yet, but I should have known what I was in for when I posted it. I'll delete the post when my inbox gets to the ridiculous stage.

Hopefully UEFI, GUID partiton tables, and secureboot will stop a few for a while....

An up-to-date AV solution (even MSE) used by a user with a clue, will put a halt in most malware in the wild today, with other extant modern features, such as UEFI/GPT support and secure boot taking out (or neutralizing) the stragglers.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • If Valve refused to let them make the case, I wonder if they've already partnered with someone else to do it? The fact that they didn't seek permission/licence before diving straight in is incredible though
    • OpenClaw now has native mobile apps on iOS and Android by Karthik Mudaliar OpenClaw, the viral open-source personal AI agent, now has its own mobile app, available on both Android and iOS. Users can pair the app with an existing OpenClaw gateway and can start using new mobile-native features that are now available on the app. The app supports all the existing features you'd already have seen on OpenClaw's TUI, as well as some more, such as real-time and background Talk mode, action approvals, sharing from iOS, and optional access to device capabilities such as camera, screen, location, photos, contacts, calendar, and reminders. These features are available on both the Android and iOS versions of the app. What's important with these apps is that they don't run OpenClaw on your phone, but are actually just companion apps that require a running OpenClaw Gateway on an existing device, on macOS, Linux, or Windows via WSL2. To pair the app with your existing OpenClaw gateway, users need to run the command "/pair qr" on the TUI or existing chat interface, which brings up a QR code. Users can then scan this QR code to pair it up with the mobile app. There's also an option to manually pair the app by entering the host and a port. Previously, OpenClaw had been available on phones via WhatsApp, Telegram, Slack, Discord, Microsoft Teams, Matrix, and others. Now, with a native mobile app, the interface is much cleaner and more focused on just the OpenClaw, of course, with the added support for camera, screen, location, and more. It's important to note that OpenClaw comes with its own security warnings. There's always a chance of prompt injection with these tools, so users are recommended to double-check authentication, tool policy, sandboxing, and execution approvals rather than prompts alone. For users well-versed with the AI harness, a native mobile app makes it easier to approve an automation, share a link, use voice, or let an agent react to phone-side context.
    • Google pitches Spanner as one database for all AI agents with these new featues by Karthik Mudaliar Google Cloud is introducing new features within Spanner, its distributed database, as a place where enterprises should keep their data, using which AI agents could make smarter and better decisions. In a detailed blog post, Google highlighted quite a few features coming to Spanner, including relational data, graph relationships, vector search, key-value access, full-text search, and operational analytics together in one database architecture. Google says that today's systems aren't well-made for AI agents. There could be data that is present in one system, search indexes in another, embeddings in a vector database, and relationship data in a graph database. This fragmentation isn't great for AI agents to do their jobs because they don't have access to all of this data in one place. This is where Google is positioning Spanner as a solution. Spanner is already a globally distributed relational database with strong consistency, and Google wants its customers to see it as a broader data layer for AI applications. The company introduced something called Spanner Graph, along with integrated vector search, full-text search, a Cassandra-compatible key-value endpoint, and a columnar engine for analytical queries on operational data. Google also added that its ScaNN-powered vector search can support indexes with more than 10 billion vectors, while the columnar engine can make some analytical scans up to 200 times faster. All of this isn't just exclusive to the Google Cloud Platform, and there's support for multi-cloud as well. This comes via Spanner Omni, which Google says is a downloadable, containerized version of Spanner that can run on Kubernetes and in environments outside Google Cloud, including Microsoft Azure and AWS, and even on-premises infrastructure as well as edge deployments. Google says that customers who are interested in the full-featured edition should contact the company, and there's no word on commercial availability or separate pricing. Those interested can read the full blog by Google Cloud, which details these features individually.
    • Kalmuri 4.2.5 by Razvan Serea Kalmuri is your all-in-one, portable screen capture and recording solution designed for speed, simplicity, and flexibility. Whether you need a full-screen snapshot, a custom area, a scrolling webpage, or smooth video recording, Kalmuri delivers with ease. Capture text instantly from images with built-in OCR, keep floating images on top for quick reference, and use the precise color picker for perfect design matching. Customize hotkeys to work your way and share results instantly with built-in upload options. Kalmuri runs without installation, making it ideal for USB use, and offers an intuitive interface that’s easy to learn. Kalmuri key features: Video recording support (designation of whole screen and area) Whole screen, active program, window control, area application Extract text from images using optical character recognition (OCR). Support for PNG, JPG, WEBP, BMP, GIF file formats MP4 video recording powered by FFmpeg for high-quality results Full web page capture Share the captured image on the web Color extraction function Printer output Hotkey settings Adjustable via keyboard for area capture (Arrow key, Ctrl+Arrow key, Shift+Arrow key) File name format (sequential, datetime) Free to use it at work, at home, in government offices, at school, etc. Using Kalmuri portable for video recording Kalmuri’s portable version doesn’t include FFmpeg, which is required for video recording. Without it, you’ll get an “error FFmpeg.exe not found” message. To fix this, download FFmpeg from the provided link, extract it, and place FFmpeg.exe in Kalmuri’s folder. Kalmuri will then recognize it automatically, allowing you to start recording in high quality instantly. Kalmuri 4.2.5 changelog: Fixed an intermittent crash when using Area Capture Improved stability for Area Capture and screen recording Resolved a capture issue that could occur right after startup Download: Kalmuri 4.2.5 | 24.2 MB (Freeware) Download: Kalmuri Portable 4.2.5 | 2.1 MB View: Kalmuri Website | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • First Post
      rosiecharles earned a badge
      First Post
    • Reacting Well
      Juan Dela earned a badge
      Reacting Well
    • Week One Done
      Collagen Project earned a badge
      Week One Done
    • Reacting Well
      Wakeen1966 earned a badge
      Reacting Well
    • Rookie
      Almohandis went up a rank
      Rookie
  • Popular Contributors

    1. 1
      +primortal
      516
    2. 2
      +Edouard
      273
    3. 3
      PsYcHoKiLLa
      143
    4. 4
      Steven P.
      98
    5. 5
      macoman
      54
  • Tell a friend

    Love Neowin? Tell a friend!