Author Topic: RKill - Kill Malicous Processes  (Read 1490 times)

0 Members and 1 Guest are viewing this topic.

Offline YankeesPwnMets

  • New Yorker of Win7Vista
  • Win7Vista Lover
  • ******
  • Posts: 441
  • 5 Cups of Ubuntu
  • OS:
  • Windows 7/Server 2008 R2 Windows 7/Server 2008 R2
  • Browser:
  • Firefox 4.0b6 Firefox 4.0b6
RKill - Kill Malicous Processes
« on: November 02, 2010, 11:55:48 PM »
Today, many different pieces of malware are known to stop any program from running, other than the necessary files for Windows, such as explorer.exe or iexplore.exe. While the infected processes are running, you most likely won't be able to run any thing, such as your Anti-Malware program. That's where RKill comes in

So in summary, RKill just kills processes, imports a Registry file that removes incorrect file associations and fixes policies that stop us from using certain tools. Then it kills Explorer.exe so it will restart and enable some of the Registry changes. When done, RKill will then create a log listing all processes that were terminated while the program was running. Please note that this will include processes that were terminated manually by the user as well as RKill. Other than what is listed above, it does nothing else.

Since RKill only terminates infectious processes that are running, you shouldn't believe that this is all you need, because most likely, the process will start up again upon reboot, so you'll need to remove any malware after using Rkill

Download:
Code: [Select]
http://download.bleepingcomputer.com/grinler/iExplore.exe
Notice how the file is named iExplore.exe, which is used to fool the malware into thinking that it's Internet Explorer that's running and not some Anti-Virus program

Code: [Select]
http://www.bleepingcomputer.com/forums/topic308364.html
Do not look at software pirates as thieves or evil people. Instead, look at them as if they are potential customers.


Offline GypsyDavid

  • "Faster Horses, Younger Women, Older Whiskey"
  • Win7Vista Lover
  • ******
  • Posts: 1640
  • OS:
  • Windows 7/Server 2008 R2 Windows 7/Server 2008 R2
  • Browser:
  • Firefox 3.6.12 Firefox 3.6.12
Re: RKill - Kill Malicous Processes
« Reply #1 on: November 03, 2010, 04:02:21 AM »
Good Find. I Put it in my toolbox. :headbang:
 8) 8)
GD

Offline SmOkM

  • The Proper PITA
  • Win7Vista Lover
  • ******
  • Posts: 719
  • Where can I DL a life?
  • OS:
  • Windows 7/Server 2008 R2 Windows 7/Server 2008 R2
  • Browser:
  • Firefox 3.6.12 Firefox 3.6.12
Re: RKill - Kill Malicous Processes
« Reply #2 on: November 03, 2010, 01:31:00 PM »
I've found this very useful for a while now, recommended when cleaning infections