Understanding HijackThis

Page 1 of 2 12 LastLast

  1. Posts : 268
    windows 7 ultimate 64 bit,Windows 7 ultimate 32 bit,Windows XP sp3 home
       #1
      My Computer


  2. Posts : 2,303
    Windows 7 & Windows Vista Ultimate
       #2

    All of the public HJT tutorials are based on the original Bleeping Computer tutorial and have been around for many years. That said, HijackThis is no longer relied on by security experts as providing much more than a general overview. It just doesn't provide enough information to fully analyze the extent of a malware infection.

    Warning: Online HijackThis analysis tools should be used with extreme caution as f/p's are very common.
      My Computer


  3. Posts : 587
    Windows 7 x64
       #3

    Corrine said:
    All of the public HJT tutorials are based on the original Bleeping Computer tutorial and have been around for many years. That said, HijackThis is no longer relied on by security experts as providing much more than a general overview. It just doesn't provide enough information to fully analyze the extent of a malware infection.

    Warning: Online HijackThis analysis tools should be used with extreme caution as f/p's are very common.
    .
    Is there anything better at the moment?
      My Computer


  4. Posts : 2,303
    Windows 7 & Windows Vista Ultimate
       #4

    Hi, Victek. I'm not sure if you mean better than HijackThis or better than the tutorials.

    As to the tutorials, as far as they go, they explain what the results of the log are showing. The thing is that it requires experience and research to know if what is in the log is safe or malicious. There is something that is in the final stages of review prior to posting that may be helpful in that regard. However, until it is public, I cannot say anything more about it.

    As to the logs, due to the current state of malware/rootkits, most security forums request an ARK (anti-rootkit) log and, depending on their preference, a DDS, OTL or RSIT log. As an example, Unknown Infection, Possibly Malware/Worm shows both DDS and OTL logs, although the supplemental logs are attachments to the thread. You can see how much more in-depth those logs are.
      My Computer


  5. Posts : 268
    windows 7 ultimate 64 bit,Windows 7 ultimate 32 bit,Windows XP sp3 home
    Thread Starter
       #5

    Corrine said:
    HijackThis is no longer relied on by security experts as providing much more than a general overview. It just doesn't provide enough information to fully analyze the extent of a malware infection.
    its still a key tool in forums dealing in helping people with manual malware removal

    Corrine said:
    Online HijackThis analysis tools should be used with extreme caution as f/p's are very common.
    well it is all about an analysis.....pointing to what could be unsafe/bad/unknown ....that's it....and i've seen fps at expert malware removal forums leave aside online hjt analysis

    one more online hjt analysis site is of emsisoft creators of A2
    http:///www.hijackfree.com/en/upload/

    Victek said:
    Is there anything better at the moment?
    ummm......there were/are of the likes of RunScanner,AutoRuns,X-RayPc Spyware Process Analyzer but HJT still rules
      My Computer


  6. Posts : 587
    Windows 7 x64
       #6

    Corrine said:
    Hi, Victek. I'm not sure if you mean better than HijackThis or better than the tutorials.

    As to the tutorials, as far as they go, they explain what the results of the log are showing. The thing is that it requires experience and research to know if what is in the log is safe or malicious. There is something that is in the final stages of review prior to posting that may be helpful in that regard. However, until it is public, I cannot say anything more about it.

    As to the logs, due to the current state of malware/rootkits, most security forums request an ARK (anti-rootkit) log and, depending on their preference, a DDS, OTL or RSIT log. As an example, Unknown Infection, Possibly Malware/Worm shows both DDS and OTL logs, although the supplemental logs are attachments to the thread. You can see how much more in-depth those logs are.
    .
    Thanks for the additional information. Re my comment, I meant is there anything better then HiJackThis at the moment. Usually if a system is bootable a combination of on-demand scanners, e.g. MBAM, Hitman Pro, etc, will clean it up without needing to get into a detailed analysis. Occasionally though these programs aren't sufficient and something like HiJackThis is necessary. Being able to use HJT in combination with online analysis tools might result in a successful cleanup without having to submit logs to a security forum and wait for feedback.
      My Computer


  7. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #7

    If you don't know how to do an in depth analyzing and cleaning, then it is best to ask in a forum where security advisor's have been trained. This is voluntary, free help. Or you could pay a couple hundred dollars to a PC shop.
      My Computer


  8. Posts : 268
    windows 7 ultimate 64 bit,Windows 7 ultimate 32 bit,Windows XP sp3 home
    Thread Starter
       #8
      My Computer


  9. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #9
      My Computer


  10. Posts : 2,303
    Windows 7 & Windows Vista Ultimate
       #10

    Here's a fairly comprehensive list of sites providing help by trained analysts:

    ASAP Member Forums Providing Log Analysis

    Dansk - Danish
    Spywarefri

    Deutsch - German Spezifisch deutschsprachige Computerhilfe-Foren (german-language sites to get help from):
    a-squared Anti-Malware Sie haben Probleme mit a-squared Anti-Malware? Fragen Sie hier unsere Experten!

    English
    247Fixes
    5 Star Support
    a-squared Anti-Malware If you have problems with a-squared Anti-Malware?
    Amazingtechs
    Atribune.org
    BestTechie
    Bluetack Internet Security Solutions
    CyberAnswers.org
    D-A-L Computer Help
    Freedomlist
    Gladiator Security
    LandzDown
    Lockergnome
    Log'N'Rock
    MalwareBytes
    MalWare Removal
    NutnWorks
    Security Cadets
    Security Central
    Smokey's Security Forums
    SpyWare BeWare!
    SpywareInfoForum
    Techmonkeys
    Tech Support Forum
    Tech Support Guy
    TeMerc Internet Countermeasures
    The Spykiller
    TnT - Tips 'n' Tricks
    WhatTheTech
    Windows Forum

    Español - Spanish Sitios de ayuda contra el spyware en idioma español
    a-squared Anti-Malware Tiene problemas con a-squared, con la página de inicio de a-squared o con algún Malware en especial? Siéntase libre de pedir ayuda.
    InfoSpyware
    ForoSpyware

    Finnish Suomalaisia sivuja mistä saada malwaren poisto-apua (Finnish sites to get help from):
    Virustorjunta

    Français - French Voici des forums français sur lesquels vous trouverez une aide rapide et efficace :
    a-squared Anti-Malware Vous avez des problèmes avec a-squared Anti-Malware ou avec certain Malware? Demandez ici à nos experts!
    Assiste.com
    Zebulon

    Italiano - Italian
    a-squared Anti-Malware Hai problemi con a-squared Anti-Malware o con malware speciale? Chiedi pure aiuto.
    Alground Research Center

    Nederlandstalig - Dutch Op deze Nederlandstalige forums wordt U snel en efficiënt geholpen :
    Hijackthis.nl
    Nucia / Anti Spyware Offensief
    PCHelper

    Portuguese
    Linha Defensiva

    Serbian/Croatian
    MyCity


    non-ASAP Forums Providing Log Analisis

    Deutsch - German Spezifisch deutschsprachige Computerhilfe-Foren (German-language sites to get help from):
    HijackThis.de Support Board
    Protecus
    Rokop Security
    TrojanBoard

    English
    Asksomeone.net
    Aumha.org
    BleepingComputer
    Dell Community Forum - HJT room
    DSL Reports
    Geeks to Go
    MajorGeeks
    PC Pitstop Forums
    Safer-Networking
    SpywareHammer
    Spyware Warrior

    Français - French
    IDN - Infos-Du-Net
    Vista-XP.fr
    FS - Futura-Sciences
    PCA - PC-Astuces
    Génération Nouvelles Technologies
    Telecharger.Com/01net

    Nederlandstalig - Dutch
    BlueMedicine
    Minatica.be
    Last edited by Corrine; 13 Sep 2010 at 09:05. Reason: Addition to lists, Updated Linha Defensiva link
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 07:14.
Find Us