ghacks Technology News

Bitdefender releases Rootkit Remover tool for Windows

By on February 7, 2013 - Tags:

Rootkits are usually harder to identify and remove than regular malware due to the way these programs integrate themselves on a computer system. It is probably thanks to Sony and the company's infamous music CD rootkit that a larger audience became aware of rootkits in general and how dangerous they are.

Two types of rootkit removers exist. First programs that run more or less on their own, Kaspersky's TDSSKiller is an example of that, and second programs that scan the system but leave the interpretation of results to the user, with Gmer 2.0 being an example of that.

The first group of programs is usually only efficient against a set of rootkits, while the second group may identify them all but it also prone to report false positives.

Bitdefender's Rootkit Remover falls into the first group of programs, as it identifies and deletes a set of known rootkits from Windows systems. The program is available for 32-bit and 64-bit editions of Windows and runs more or less on its own. At the time of writing, it is capable of detecting and removing the following rootkits:

Rootkit Remover deals easily with Mebroot, all TDL families (TDL/SST/Pihar), Mayachok, Mybios, Plite, XPaj, Whistler, Alipop, Cpd, Fengd, Fips, Guntior, MBR Locker, Mebratix, Niwa, Ponreb, Ramnit, Stoned, Yoddos, Yurn, Zegost and also cleans infections with Necurs (the last rootkit standing)

The company notes that new rootkit families are added to the program as they become known. Program use could not be easier. You download and start the program on a supported version of Windows to get started.

bitdefender bootkit removal tool screenshot

A click on start scan runs a scan on the system to detect any rootkit known by the software. The scan should not take longer than a couple of seconds before you are presented with notification that the removal process has been completed successfully.That's an irritating message on systems where no rootkit was detected on.

If a rootkit is found, you will be asked to restart the system now or later (with now being the best option) to clean the system from the infection.

Verdict

Bitdefender's Rootkit Removal Tool is a portable program for Windows to detect and remove several known rootkits and rootkit families from a system. It does not support automatic updates so that it is recommended to check the product homepage before you run scans to make sure you are running the latest version of the application.

The company should consider changing the status notification on clean systems to avoid consumer confusion.

Enjoyed the article?: Then sign-up for our free newsletter or RSS feed to kick off your day with the latest technology news and tips, or share the article with your friends and contacts on Facebook, Twitter or Google+ using the icons below.




About the Author:Martin Brinkmann is a journalist from Germany who founded Ghacks Technology News Back in 2005. He is passionate about all things tech and knows the Internet and computers like the back of his hand. You can follow Martin on Facebook or Twitter.

Responses so far:

  1. ilev says:

    Bitdefender gives free copy of Bitdefender Internet Security 2013!

    key : Q5YW7GP , 3NVQXKI

    https://connect.bitdefender.com/pub/cc?_ri_=X0Gzc2X%3DWQpglLjHJlYQGtvbFtBF9WDwJNB8cP5lDzcrPzfKnB3WLqVXtpKX%3DACDA&_ei_=EpTFcrQnDaQnUBAPX-EWz51DdwFI7n0kc7egQfgOH7hs360pvMaBh8v6JO4S_3MfkmGSLg2vVQsNq8ZfY5aU4l2kVUp97b39

    http://www.mirrorcreator.com/files/11KJONV4/bitdefender_isecurity.exe_links

  2. ilev says:

    The download links on Bitdefender's site (and your screenshot) are for BootkitRemoval and not for Rootkit Remover.

  3. ilev says:

    There is a Bootkit removal app

    http://www.hotforsecurity.com/blog/new-bitdefender-tool-allows-bootkit-disinfection-1238.html

  4. rickxs says:

    loaded & ran OK, the 3sec scan seems more in-tune with a boot scan than a C/S drive

  5. Transcontinental says:

    Martin, what exactly do you mean by "The program is available for 32-bit and 64-bit editions of Windows and runs more or less on its own." ?

  6. rickxs says:

    edit: I meant O/S [above] not C/S-- sorry a typo

  7. X says:

    You might want to try Malwarebytes Anti-Rootkit 1.01.0.1020 Beta available at http://downloads.malwarebytes.org/file/mbar

Subscribe without commenting

© 2005-2013 Ghacks.net. All Rights Reserved. Privacy Policy - Disclaimer - About Us