[Tfug] Use Knoppix to Dis-Infect Windows Machines

AJHEIN ajh66 at aztecfreenet.org
Tue Apr 4 03:27:34 MST 2006



There already is one, chntpw. I have used it to change the admin 
password, (I can never remember it)but it is supposed to be able
to edit the registry hives. It is not on knoppix but it is on 
some of the naughty Knoppi, I think I saw it on STD. 

-andy
>
>
>Yes!  IMHO one could do this (write a Linux-hosted Windows RegEdit.)
>
>Seems IMHO a good sort of project for open source,
>because someone could write a basic one and then people
>could write add-ons/upgrades to handle special cases.
>
>On the other hand, Angus is right that reliably de-malware-ing a Windows
>computer
>can involve a lot of nitty little special things that can
>be a pain in the ass through their number if nothing else.
>
>But a Linux-hosted RegEdit would be a big step towards
>a fairly thorough de-malware-izer for Windows systems.  IMHO.
>
>In fact, I wonder if someone has already written one?
>
>Chris
>
>
>At 10:42 PM 3/28/2006 -0700, you wrote:
>>Which leads me to a question....The registry is just (in essence) a huge
>>list of (binary or hex) settings organized by a hierachy.  It wouldn't be a
>>simple bash script, but couldn't one (in theory) create a Windows RegEditor
>>for Linux?
>>
>>(Assuming MS doesn't knock your doors down and sue the pants off of
>>you......)
>>
>>-Chris
>>
>>On 3/28/06, Angus Scott-Fleming <angussf at geoapps.com> wrote:
>>>
>>> On 28 Mar 2006 at 18:13, Mike Martinet  wrote:
>>>
>>> > This sounds excellent.  I can't wait to try it out.
>>> >
>>> > http://hacks.oreilly.com/pub/h/2521
>>>
>>> Most off-line scanners don't clean the registry, though, so you still need
>>> to
>>> do some cleanup in Windows.
>>>
>>> --
>>> Angus Scott-Fleming
>>> GeoApps, Tucson, Arizona
>>> 1-520-290-5038
>>> +-----------------------------------+
>>>
>>>
>>>
>>> _______________________________________________
>>> Tucson Free Unix Group - tfug at tfug.org
>>> Subscription Options:
>>> http://www.tfug.org/mailman/listinfo/tfug
>>>
>>_______________________________________________
>>Tucson Free Unix Group - tfug at tfug.org
>>Subscription Options:
>>http://www.tfug.org/mailman/listinfo/tfug
>>
>
>_______________________________________________
>Tucson Free Unix Group - tfug at tfug.org
>Subscription Options:
>http://www.tfug.org/mailman/listinfo/tfug
>
>


More information about the tfug mailing list