środa, 8 kwietnia 2009

HijackThis - clean your Windows Vista registry

HijackThis, sometimes abbreviated HJT, is a freeware spyware-removal tool for Microsoft Windows originally created by Merijn Bellekom, and later sold to Trend Micro. The program is notable for taking a heuristic approach to detecting malware - rather than relying on a database of known spyware, it scans a user's computer quickly, creates a list of differences from a known spyware-free environment and allows the user to decide what from the list is to be removed. HijackThis is used primarily for diagnosis of spyware, as uninformed use of its removal facilities can cause significant software damage to a computer.

HijackThis can generate a plain text logfile detailing all entries it finds, and most entries can be removed or disabled by HijackThis. Inexperienced users are often advised to exercise caution, or to seek help when using the latter option,[1] as HijackThis does not discriminate between legitimate and unwanted items, with the exception of a small whitelist of legitimate entries — thus allowing a user unintentionally to prevent important programs from operating, which may cause their system or its peripherals to stop working. HijackThis will, however, attempt to create backups of the files and registry entries it removes, which can be used to restore the system in the event of a mistake.

A common use is to post the logfile to a forum where more experienced users can help decipher which entries need to be removed. Automated tools also exist that analyze saved logs and attempt to provide recommendations to the user, or to clean entries automatically.

Use of such tools, however, is generally discouraged by those who specialize in manually dealing with HijackThis logs: they consider the tools to be potentially dangerous for inexperienced users, and neither accurate nor reliable enough to substitute for consulting with a trained human analyst.

Later versions of HijackThis include additional tools like a task manager, hosts file editor and alternate data stream scanner.

Official HijackThis site

Brak komentarzy:

Prześlij komentarz