-Does your computer fail to bootup?
-Does your computer freeze and reboot?
-Cannot access your data due to the lost password?
-Does your computer contain critical data?
-Don't have a recent backup?
-Reformatted your harddrive?
-Accidentally deleted files?

Our blog will provide the relevant information on free tools, techniques, and approaches to recover your computer and get your valuable data back.

Showing posts with label anti-malware. Show all posts
Showing posts with label anti-malware. Show all posts

AVZ Antiviral Security Toolkit



AVZ utility is really one of the best freeware portable tools to fight multiple security threats on your computer. It offers the most efficient package for the computer treatment, and it might replace many individual programs, by offering all-in-one solution. Note that some modules require certain degree of expertise. So, while it can be useful for all operators on all levels of computer literacy, advanced users will benefit the most from this utility.

It is designed to detect and remove the following:
  • SpyWare и AdWare модулей - это основное назначение утилиты SpyWare and AdWare – these modules represent the most useful component of the utility.
  • Dialer (Trojan.Dialer) Dialer (Trojan.Dialer).
  • Троянских программ Trojans.
  • BackDoor модулей BackDoor modules.
  • Сетевых и почтовых червей Network and mail worms.
  • TrojanSpy, TrojanDownloader, TrojanDropper TrojanSpy, TrojanDownloader, TrojanDropper.
The utility can be considered as replacement or addition to the well-known programs as TrojanHunter, LavaSoft Ad-aware, or Spybot.

MainОсобенностями утилиты AVZ (помимо типового сигнатурного сканера) является: features of AVZ (besides the signature scanner model) are:


  • Микропрограммы эвристической проверки системы .Heuristic security system check. Микропрограммы проводят поиск известных SpyWare и вирусов по косвенным признакам - на основании анализа реестра, файлов на диске и в памяти. Security modules check for known SpyWare and viruses on circumstantial evidence - based on the analysis of the registry, files on hard disk, and memory records.
  • Обновляемая база безопасных файлов .Updated database of safe files. В нее входят цифровые подписи десятков тысяч системных файлов и файлов известных безопасных процессов.It includes signatures for tens of thousands of Operating System drivers and other files system requires for proper functioning. База подключена ко всем системам AVZ и работает по принципу "свой/чужой" - безопасные файлы не вносятся в карантин, для них заблокировано удаление и вывод предупреждений, база используется антируткитом, системой поиска файлов, различными анализаторами.The listing of your files and processes is compared with the AVZ database of the safe files, and works on the principle of "recognized / unrecognized" – the safe files are not sent to the quarantine, their removal and replacement is blocked, and the database is also used by anti-rootkit modules, files searches, and other safety analyzers. В частности, встроенный диспетчер процессов выделяет безопасные процессы и сервисы цветом, поиск файлов на диске может исключать из поиска известные файлы (что очень полезно при поиске на диске троянских прогр
  • Встроенная система обнаружения Rootkit .Built-in Rootkit Detection System. Поиск RootKit идет без применения сигнатур на основании исследования базовых системных библиотек на предмет перехвата их функций.Rootkit detection is achieved without signatures verification, but based on the research of their functions. AVZ может не только обнаруживать RootKit, но и производить корректную блокировку работы UserMode RootKit для своего процесса и KernelMode RootKit на уровне системы.Therefore, AVZ may not only detect Rootkit, but also block it properly on UserMode RootKit for particular process and on KernelMode RootKit at the system level.
  • Детектор клавиатурных шпионов (Keylogger) и троянских DLL .Keylogger and Trojan DLL Detector. Поиск Keylogger и троянских DLL ведется на основании анализа системы без применения базы сигнатур , что позволяет достаточно уверенно детектировать заранее неизвестные троянские DLL и Keylogger;Search for Keyloggers or Trojan DLL is not performed with standard signatures databases comparison, but through check of the suspicious functional performance, allowing detecting previously unknown Trojan DLL and Keylogger with high degree of confidence.
  • Нейроанализатор . Neuro-analyzer. Помино сигнатурного анализатора AVZ содержит нейроэмулятор, который позволяет производить исследование подозрительных файлов при помощи нейросети.AVZ also contains neuro-emulator, which allows exploring the suspicious files using the neural network, which is used in the keyloggers detection process.
  • Встроенный анализатор Winsock SPI/LSP настроек .Built-in Winsock SPI / LSP settings analyzer. Позволяет проанализировать настройки, диагностировать возможные ошибки в настройке и произвести автоматическое лечение. AVZ allows you to analyze the Winsock SPI / LSP settings, diagnose possible configuration errors, and perform automatic repair. Возможность автоматической диагностики и лечения полезна для начинающих пользователей (в утилитах типа LSPFix автоматическое лечение отсутствует).
  • Встроенный диспетчер процессов, сервисов и драйверов .Built-in processes, services, and drivers manager. Предназначен для изучения запущенных процессов и загруженных библиотек, запущенных сервисов и драйверов.The module is designed to investigate the running processes, loaded libraries, and active services and drivers. На работу диспетчера процессов распространяется действие антируткита (как следствие - он "видит" маскируемые руткитом процессы).
  • Встроенная утилита для поиска файлов на диске .Built-in files search. Позволяет искать файл по различным критериям, возможности системы поиска превосходят возможности системного поиска.The module allows you to search for a file using multiple criteria, offering the functionality far beyond the standard search capabilities of the system. На работу системы поиска распространяется действие антируткита (как следствие - поиск "видит" маскируемые руткитом файлы и может удалить их), фильтр позволяет исключать из результатов поиска файлы, опознанные AVZ как безопасSearch results are available in a text protocol and as a table where you can select a file or group of files for later removal or quarantine.
  • Встроенная утилита для поиска данных в реестре . Built-in registry search. Позволяет искать ключи и параметры по заданному образцу, результаты поиска доступны в виде текстового протокола и в виде таблицы, в которой можно отметить несколько ключей для их экспорта или удаления. The module allows you to search for suspicious registry entries using multiple criteria, offering the functionality far beyond the standard search capabilities of the registry editor. На работу системы поиска распространяется действие антируткита (как следствие - поиск "видит" маскируемые руткитом файлы и может удалить их), фильтр позволяет исключать из результатов поиска файлы, опознанные AVZ как безопасSearch results are available in a text protocol and as a table where you can select a file or group of files for later removal. Встроенный анализатор открытых портов TCP/UDP .
  • Open ports TCP / UDP analyzer. На него распространяется действие антируткита, в Windows XP для каждого порта отображается использующий порт процесс.The analyzer checks all open ports on your computer and verifies them against updated database of the known issues with ports utilized with Trojan and Backdoor programs, and other potentially dangerous processes. Поиск портов троянских программ включен в основной алгоритм проверки системы - при обнаружении подозрительных портов в протокол выводятся предупреждения с указанием, каким троянских программам свойственно использование данного портаIf any suspicious port is detected, you get warning, pointing out which Trojan program tends to use this particular port.
  • Встроенный анализатор общих ресурсов , сетевых сеансов и открытых по сети файлов. Built-in common resources analyzer.
  • Встроенный анализатор Downloaded Program Files (DPF) - отображает элементы DPF, подключен ко всем сситемам AVZ. Built-in Downloaded Program Files (DPF) analyzer.
  • Микропрограммы восстановления системы .System recovery. Микропрограммы проводят восстановления настроек Internet Explorer, параметров запуска программ и иные системные параметры, повреждаемые вредоносными программами. AVZ allows restoring system settings for Internet Explorer and other system default settings, which were damaged by malware. Восстановление запускается вручную, восстанавливаемые параметры указываются пользователем.Process of recovery is manual, so you can specify the particular settings and parameters you would like to restore.
  • Эвристическое удаление файлов .Проверка архивов. Начиная с версии 3.60 AVZ поддерживает проверку архивов и составных файлов.Archives’ security check. AVZ supports for checking of multiple files types and archives. На настоящий момент проверяются архивы формата ZIP, RAR, CAB, GZIP, TAR; письма электронной почты и MHT файлы; CHM архивыAs of today, the following formats are supported: ZIP, RAR, CAB, GZIP, TAR; emails and MHT files; CHM files.
  • Проверка и лечение потоков NTFS. Проверка NTFS потоков включена в AVZ начиная с версии Система AVZGuard. Предназначена для борьбы с трудноудалимыми вредоносными програмами, может кроме AVZ защищать указанные пользователем приложения, например, другие антишпионские и антивирусные программыAVZ Guard. This is a special block, designed to combat hard-to-deal malware programs by prevention of the contamination. It can protect the AVZ itself from being disabled or modified, and other anti-spyware and antivirus programs as well.
  • Система прямого доступа к диску для работы с заблокированными файлами.Direct access to blocked files. Работает на FAT16/FAT32/NTFS, поддерживается на всех операционных системах линейки NT, позволяет сканеру анализировать заблокированные файлы и помещать их в карантин.AVZ allows the scanner to analyze the blocked files in the Operation System, and place them in quarantine as needed.
Software is portable and does not require installation on the hard drive. This feature makes it indispensable for the USB computer recovery kit, you can carry with you to treat affected systems.


Note that Website is in Russian, and there is no an English version so far. However, I have translated for you the most prominent features above, and the software itself has English interface, and works properly in all English-based Operating systems WinNT / Win2K / WinXP / Vista / Win7.

Direct Download (latest release 4.37): http://z-oleg.com/avz4.zip

The tool is highly recommended!!! It actually recovered highly impaired customer computers in multiple occasions. Драйвер мониторинга процессов и драйверов AVZPM

VirusTotal - Free Online Virus and Link Scanner

VirusTotal is a service developed by Hispasec Sistemas that analyzes suspicious files and URLs enabling the identification of viruses, worms, trojans and other kinds of malicious content detected by antivirus engines and web analysis toolbars.

This is a free online service, which does not require users to register for the site or login in any way. The operation is simple and straight-forward:
  • If you have file on your computer, which looks suspicious, you can submit it to the service for review and assessment. Submission can be performed in real-time through web form, via email or using VirusTotal's public API. Note the maximum file size is 20 MB.
  • You also can submit suspicious URL for review through the same web form or using VirusTotal's public API.
VirusTotal's main characteristics are:
  • Free, independent service.
  • Runs multiple antivirus engines.
  • Runs multiple file characterization tools.
  • Real time automatic updates of virus signatures.
  • Detailed results from each antivirus engine.
  • Runs multiple web site inspection toolbars.
  • Real time global statistics.
  • Analysis automation API.
  • Online malware research community.
  • Desktop applications (VTUploader, VTzilla) for interacting with the service.
Developers’ website: http://www.virustotal.com/


Avira AntiVir Personal Free Antivirus

Consistently at or near the top of independent efficacy testers, Avira's AntiVir remains one of the best freeware security solutions around. Its scans are flexible, allowing the user to fully scan both internal and external hard drives, run a preloaded scan--for rootkits, for example--or customize a scan. The latest version introduces antispyware protections, scanning tech that can crack open "locked" files, improved internal security to prevent AntiVir's files from being maliciously altered, and one-click threat removal--no more baby-sitting.

There are few interface changes in version 9, and older users are not likely notice anything different in the interface besides a refreshed banner logo. The main window offers left side navigation with drop-down menus and a central pane for more detailed information. AntiVir opens to the Status menu, informing you of your last scan, your last definition file update, whether the real-time guard is active, and premium upgrade link. Events logs changes to the program and the Reports tab keeps a history of threats. Both are exportable.


The Local Protection and Administration navigation options reveal the Scanner, Guard, Quarantine, and Scheduler features. Combined with the Configuration button located at the top of the central pane, users can customize their scans as necessary. Quarantined file information is on display, with options to scan it again, restore, delete, and e-mail the file to Avira. The rebuilt heuristic engine retains the same choices from the previous versions, and can be turned on or off in part or in full and offers three intensity levels. The scheduler offers much that other free antivirus programs don't, and the help features are excellent, with mouse-over information on each feature.


Savvy users will notice the removal of the on-demand e-mail scan, and AntiVir is still challenging to fully uninstall. Despite these hang-ups and the nag screen that follows definition file updates, AntiVir offers such effective protection and a well-rounded set of features that as long as the updates keep coming, it'll be our first line of defense.

Notable Advantages

  • Simple installation and setup.
  • Complete with the tools needed to protect your computer: anti-virus, anti-spyware, anti-adware, anti-dialer, anti-spam (not available in free version), and anti-rootkit and anti-phishing protection.
  • Easy one-click configuration system with individual settings for standard and expert levels.
  • Exceptional performance and detection ratings using the latest in scanning technology.
  • Frequent signature updates to ensure that the program is able to continuously protect you against malware and hackers.
  • Ability to scan every file directory and archive.
  • Ensures the protection of all active processes against intrusion and data interception.
  • Utilizes strong heuristic scanning to protect against previously unknown macro and boot record viruses.
  • Includes a special Game Mode for handling video game files (not available for free version).
  • Licenses up to three computers.
  • Includes new WebGuard module that allows you to safely web surf and download content from the internet.
WebGuard Features (not available for free version)

  • Checks files downloaded from the web for active viruses.
  • The ability to recognize defective content before it is installed onto your computer.
  • The ability to block, isolate or completely ignore compromised web sites.
  • The ability to excluded legitimate files and sites from examination.
  • Compatible with almost any available web browser.
Firewall Capability (not available for free version)

One of the biggest features of the Avira Premium Security Suite is the powerful firewall.  This priceless inclusion works as a two-way component that controls all incoming and outgoing activity via wired or wireless connection.  The firewall keeps you protected from treacherous intruders and attacks strong enough to paralyze your computer. Avira's firewall is very user-friendly and comes with adjustable slide controls for easy customization.

ParentalControl blocks websites unsuitable for children (not available for free version).

While there are certain limitation of the free version, you could see in the description, for those, who are not going to pay for the extra features, Avira offers a powerful and effective security solution, which is highly rated among experts and end users. Lately, it is residing among top three free antivirus solutions (sharing a winners circle space with Avast! and AVG), available on the market. Highly recommended!


Sources and Additional Information:

Data Recovery Techniques © 2008. Template by Dicas Blogger.

TOPO