New: Help keep this site independent with few ads by buying a Gizmo Cap or T-shirt or by Donating
Hot: Get  free personalized security suggestions from Gizmo's Security Wizard
Help: Know your freeware? Then suggest a hot product or become a reviewer or moderator for Gizmos

 

Probably the Best Free Security List in the World

Introduction

Motto: Si vis pacem, para bellum.

 

The products for each category are listed with the best free products first. The products are almost exclusively free with some exceptions: products where there is no free alternative,  good products that offer a lifelong license, and exceptional products.

Please inform me for dead/false links, and give suggestions for new applications with the form located at the end of this list!

Alias: http://tinyurl.com/free-security

Keys:

My current choice(s) for real-time protection

Good malware detection/removal tool(s)

♦  Noteworthy product(s)

$ Not free

  Supports 64-bit

  Free version only provides malware detection. Removal included in the paid version.

Portable version exists.

Anti-virus:
#Microsoft Security Essentials

Avast!
Avira AntiVir 
Panda cloudantivirus
AVG Anti-Virus
Returnil with Fprot
Spyware Doctor with antivirus
Ad-Aware
Preventon  
Rising

Zillya
Nano
Kingsoft
Clam Sentinel
Twister $

Anti-malware (Can be run alongside with an AV):
#Prevx
Immunet
Clam Antivirus
Rising PC doctor
Hazard Shield
Windows Defender

Security suite (anti-virus, anti-malware and firewall):
Comodo
Forticlient

AV/AM trials:
Emsisoft   (works as scanner after trial period)
Kaspersky
Avira
Nod32

Back to Index

Scanners

AV-Scanners:
Hitman Pro 
Trendmicro
Kaspersky
Norton Security Scan
Bitdefender free
MWAV  
Wuzzup 
VBA32check
MalAware
Online Armor Cloudscanner  
Sophos Threat Detection Test
ClamWin
Comodo cloud scanner

Anti-malware scanners:
Malwarebytes Anti-Malware
Superantispyware
NoVirusThanks
Spy Sweeper
Spyware Doctor
Spy-Emergency
CA antispyware

Spybot S&D

Portable antivirus/antimalware:
DrWeb cureit
Emsisoft Emergency USB Stick files
Superantispyware
VIPRE Rescue 
AVZ  AVZ database
Norman malware cleaner

Trendmicro Sysclean 
ClamWin portable 

Multi-AV scanners:
Multi-AV scan
Antivirusmulti

AV Rescue CD:
Avira
Kaspersky
F-Secure 
Panda
BitDefender
DrWeb
GData
AVG 
more

Integrate several rescue disks:
Sardu

Anti-rootkit:
Gmer
Kernel Detective
RootRepeal
Rootkit Unhooker
SpyDllRemover
XueTr

VBA anti-rootkit
Sophos
Sanity check
Gmer: mbr-rootkit
Gmer: catchme (user-mode)
Rootkitty (boot cd)
Other

Anti-rootkit discussions:
 1  2  3  4  5  6

Memory scanner:
Threatexpert memoryscanner
SuperRKill
Rkill

AV/AM definition files:
Avira
Malwarebytes Antimalware
Superantispyware
Avast

Back to Index

Tools for virus removal

Tools for most common viruses:
F-secure easyclean
McAfee Stinger
MS Malicious Software Removal Tool
Avira AntiVir Removal Tool

Tools for stubborn malware:
Norton Power Eraser
Combofix
Smitfraudfix
Bytehero
SafeReturner

Removal tools for specific viruses:
BitDefender
Kaspersky
F-Secure
Symantec
Panda Software

Collection of anti-malware tools:
Anti-malware toolkit

Additional AV-spesific tools
Avira

Guides for malware removal:
MajorGeeks
Clean 64-bit machine
Michael Horowitz
Pcophinas
 

Malware removal help sites:
Bleepingcomputer
Malwareremoval
Dslreports
Atribune
Malware Removal
Remove fake antivirus

Back to Index

Online-scanners

File scanning with several scanners:
Virustotal (♦Uploader)
Novirusthanks (Uploader)
Jotti
Virscan
Filterbit
Viruschief

Scanning of several zipped files:
Avira

Online-scanners:
Kaspersky
F-Secure

BitDefender
BitDefender qscan
Eset
Panda Software
a-squared
OneCare
Superantispyware
Mcafee
CA
Comodo

Back to Index

Firewalls

Limited versions of commercial firewalls:
Outpost 
Online Armor 
Zonealarm
Sunbelt Kerio 

free Firewalls:
Comodo
PCTools
Privatefirewall
Jetico
Iolo
Sygate
Webroot  
NetVeda Safety.Net
Ashampoo
Filseclab

Simple firewall:
Ghostwall

Windows firewall:
XP firewall guide

Configuring XP firewall
Vista firewall guide
Vista firewall control
Windows 7 firewall control
Diagnose and fix Windows Firewall service problems

Gateways:
Endian 
Untangle
Smoothwall

Replacement for router firmware:
Tomato
DD-WRT

About NAT routers and hardware firewalls:
article 1

Back to Index

HIPS

Behaviour blocker:
ThreatFire 

Classical strong HIPS:
Malware Defender (note)
Comodo defence+
Spyware Terminator
Real time defender
EqSecure 3.41, (Alcyon ruleset)
System Safety Monitor

Classical lightweight HIPS:
#Winpatrol
System shields
Arovax Shield (XP,V)

Anti-keylogger:
SpyShelter
Quaresso
CoDefender
Snoopfree
DataGuard AntiKeylogger
KL-detector
PSMA
Zemana $

Registry protection:
MJ Registry Watcher

Anti-executable:
Process Guard (XP)
Trust-no-exe
Winsonar
Faronics $

White/blacklisting anti-executable:
Bluepoint security $

Drive firewall:
DriveSentry
SensiveGuard
CoreForce
PE Guard
$

File/Folder Monitoring Software:
Tiny Watcher
SilentNight Inspector
FileChecker
FileMap by BB
Osiris
TheFolderSpy

Anti Dialer:
A-Squared Anti Dialer
Dialer shields

Back to Index

System hardening-HIPS

System & Program Files Protection:
System Protect

MBR protection:
MBRguard

Memory firewall:
Comodo memory firewall

Address space randomization:
WehnTrust

USB-firewall:
No Autorun
USB protect
Net Studio USB FireWall
Ninja Pendisk! 
Autorun Eater
MxOne
USB WriteProtector
USB Drive Antivirus
more

Shutdown prevention:
Shutdownguard

Back to Index

System hardening

Guides for securing your PC:
BlueZanetti
Cyber Security Tips
Real security
installing and using DropMyRights
disabling autorun (XP)
disabling autorun (V)

Limited user account (LUA):
# Vista, 7
XP

More secure browser:
Iron
CromePlus
Comodo Dragon
Google Chrome
Firefox
Epic
Opera
Google Chrome Frame

More secure pdf-reader:
Sumatra

More secure media player:
KMPlayer

More secure image viewer:
Irfanview

Hardening tools:
Invincible Windows
Harden-It
Secure-It
SafeXP
XPantispy
Security & Privacy Complete
Seconfig XP
Samurai
Windows Worms Doors Cleaner

USB-autorun disabling:
Panda USB and AutoRun Vaccine
Flash disinfector
Thumbscrew

Script-file protection:
Script Defender
ScripTrap

Protection against scripts embedded on web pages:
No Script

Protection against flash embedded on web pages:
Flash block
Blitzableiter

SRP (Software Restriction Policy):
instructions 1
instructions 2
PGS - Pretty Good Security

Adding user rights:
Sudo for windows
suDown

Limiting user rights:
SuRun

Hardening processes:
Microsoft EMET

Improved Group Policy Editor:
Doug's Windows XP Security Console

Running program with dropped rights:
DropMyRights.net
PsExec
StripMyRights
1-defender

Hardware-based security:
Determine Processor Security Features

Protection against .LNK vulnerability:
Shortcut Antivirus
.LNK checker
Sophos

Protection against  DLL preloading remote attack:

Microsoft

Back to Index

Sandboxing-virtualization

Sandboxing (for browsers/IM/etc):
#Sandboxie
GeSWall
Bufferzone
EdgeGuard Solo
Safespace
RTD Smart
#Defensewall $
AppGuard $
AppRanger $

System virtualization:
Returnil
Powershadow 2.6 (Key)
Virtual Protect
Wondershare time freeze
Shadow Defender $

Rollback software:
Comodo time machine
Rollback Rx  $
Firstdefence-ISR $
Eaz-fix $

Locked system :
Windows Steadystate  (XP,V)
Faronics Deep Freeze $

Desktop virtualization:
Mojopac
Icore
Ceedo $

Virtual players:
VmWare player, VmWare converter, EasyVMX converter
moka5 live PC + Fearless Browser

Virtualization software:
VMWare
VirtualBox
VirtualPC
VMLite
VMToolkit

Virtualized browser:
Inmunos

Portable OS:
Ubuntu linux

Linux live CD:
LinuxMint
Puppy
Simply Mepis
Slax
Ubuntu

Back to Index

Vulnerability scanning and updates

Windows-system security analyzing:
NeXpose Community Edition
MS Baseline Security Analyzer
Nessus
Belarc Advisor
Protector Plus
WinUpdatesList

Windows-system security analyzing (OS+installed programs):
♦Secunia
F-secure health check

Updates for installed programs:
several here

Updates from Microsoft:
Shavlik Patch Google® Gadget
Ryan VM's pack
Keep set-up packages up-to-date

Searching for drivers:
Device Doctor
Several here and here

CD With All Current Drivers for Windows:
DriverPack Solution 9
Many here

Package for most important media addons:
All in One Runtimes

Check website vulnerabilities:
Zerodayscan

Penetration testing:
Metasploit Framework

Back to Index

Browser security

Anti-phishing/malware browser plugins:
♦WOT
Webutation
LinkExtend
McAfee Siteadvisor
PcTools Browserdefender
Norton Safeweb
Surfcanyon
Netcraft toolbar
Bitdefender anti-phishing
Sitehound
Web Security Guard
TrendProtect
Comodo Verification Engine

Real-time link scanning:
SmartScreen Filter (IE)
AVG Linkscanner

Finjan SecureBrowsing
Qualys

Manual link scanning:
♦VTzilla
UrlVoid
IPVoid
Webutation
LinkScanner
Dr.Web plug-in
Unmask Parasites
Online link scan
vURL
Norton
Finjan
AVG
DrWeb
TrendMicro

Prevent Blackhat Search Engine Optimization:
Zscaler

Check the web trader:
Shopping assistant

Anti-phishing Firefox plugins:
IDND
ShowIP

Check real URL:
bit.ly preview
Untiny url
TrueURL
expandmyurl
longurlplease

Ad blocking:
♦Adblock Plus  (blocklists)
Adsweep
Simple-adblock
TACO
AdblockIE
Adblocking for Chrome
Ad Muncher $

Pop-up blockers:
PanicWare Pop-Up Stopper
EMS Free Surfer

Back to Index

IP-blocking/hardening

Blocking connections to malware domains:
Trend Micro Web Protection Add-On

Blacklists for Explorer:
Spyware Blaster

Internet proxy+blacklist:
SquidGuard

Host File management:
Hostsman
HostsXpert
B.I.S.S. Host Manager

Host files (blocking malware and advertisements):
Hostfile
Hosts
Mvps

Other IP-block lists:
CoU IP blocklist updater (Outpost firewall, Online Armor)

Caching/filtering and blocking pseudo-DNS server:
DNSKong

Internal proxies:
Proxomitron + JD list
Sidki's Proxomitron config
IdnWebShield
BFilter
Polipo

External proxies:
Freecap
Socscap

Better DNS:
Sunbelt ClearCloud
OpenDNS
NortonDNS
Comodo DNS
Google DNS
ScrubIT

local DNS proxy:
Acrylic

IP-blocking:
Peerblock
PeerGuardian 2 

Parental control:
Kidzui
K9 Web Protection
Parentalcontrolbar
Glubble
GoGoStat (Facebook)

Spam filters
SpamAssassin
SpamBayes
SpamCop
Spamihilator
SPAMfighter
Comodo Antispam
Mailwasher
Spam Manager

Back to Index

Privacy

Facebook privacy:
ReclaimPrivacy
Privacy Check
Openbook
Zesty

Chat privacy:
Bitdefender chat encryption

Search engines with high privacy:
ixquick

Eliminate ad-data tracking:
Privacychoice

Fake identity generator:
Fakenamegenerator

Anonymity tests:
deanonymizer
XeroBank
Decloak

Checking your own ip:

Show My IP
IP Adress
Danasoft

Checking your DNS:
Check DNS-settings
How malware hijacks DNS

Collection of tools:
Anoniem-surfen
EPIC

Free VPN connection:
Comodo Trust Connect login page info info2
Hotspot shield
UltraVPN
Loki
It's Hidden

Free online proxy:
Xerosurf
Proxify
Vtunnel
Anonymouse
Ninjacloak
PimpMyIP
Zend2
Proxybrowsing
more here

SSH and SFTP client:
Tunnelier
WinSCP
FileZilla

Anonymous browsers:
Jondofox
XeroBank

Anonymous browsing tools:
Ultrasurf
Foxyproxy
Tor
JAP

Spoofing mac address:
Macmakeup
Macshift

Cookie-control:
♦CS lite
Cookie monster
CookieSafe
Cookie culler
Maxa

LSO killing:
BetterPrivacy
Objection

Key scrambling:
#KeyScrambler Personal
NextGen Antikeylogger

Virtual keyboard:
Trendmicro Transaction Guard
Neo's safekeys

Safeguarding banking session:
My banking advice
#Prevx SafeOnline (free here)
Trusteer Rapport
ID Vault

Password management:
Lastpass
Passwordmaker
Password Safe
RoboForm
Keepass
Any password
Secure login
RoboForm2Go

Generating secure passwords:
Password Cards
GRC

E-mail encryption:
PGPFreeware
Comodo SecureEmail
Gpg4win

VPN sofware:
Logmein Hamachi
Comodo EasyVPN

Browsing without a trace:
Portable Firefox 
Browzar

Removal of jpeg metadata:
JPEG and PNG stripper
jScript
BatchPurifier LITE

Removal of doc metadata:
Doc Scrubber

Automatic analyzing of EULA:
Eulalyzer
Spywareguide

Other:
Google Analytics Opt-out Browser Add-on
SSL-protected Google
Secure HTTPS server: Perspectives
Referrer control
Detection of web bugs:Ghostery
Service for one-time passwords: KYPS
Protection against search data profiling: Trackmenot
HTTPS-everywhere
VPNLive - collection of proxy and VPN
Secure search engine connection

Back to Index

System monitoring

System monitoring and diagnostic:
System Explorer
System info for Windows (SIW)
What's Running
Change Analysis Diagnostic tool
EVEREST Home Edition
Anvir task manager
Fresh Diagnose
Multimon
Hijack Hunter

Hardware monitoring and diagnostics:
PC Wizard
Sisoft Sandra lite
Crystalmark
MKN PerformanceMonitor

Hardware, network and software inventory:
Lansweeper

Process/startup/etc scanners:
ProcessExplorer 
DTaskManager
Process Hacker
Autorun Angel
Autoruns
Silent runners
Run Scanner
Startup control panel
Startup Guard
Autostart Explorer
Tizer
Ez-PC-fix

Process/startup/etc scanners with analyzing help:
Eset SysInspector
RSIT
  (note)
Sreng (download)
HijackThis (help1 , help2)
FreeFixer
Hijack Hunter
a2 HiJackFree (help)
Kaspersky GSI
Security Task Manager
Runalyzer
Dart Bit
OSAM Autorun manager
Autorun Angel

Realtime process monitoring:
Process monitor
ProcessActivityView
SpyMeTools

Monitor file system activity:
Malware Activity Watcher

Monitor hard disk activity:
What's my computer doing?

Monitor hard disk health:
Acronis Drive Monitor

Monitor memory:
MKN MemoryMonitor

Monitor USB-activity:
USBDeview

Monitor registry and file changes:
RegShot
SpyMeTools
RegFromApp
Installwatch
InstallSpy
SystemSherlock
NT Filemonitor

Detect packed drivers:
Mischel Packed Driver Detector

Searching files and processes:
fileresearchcenter
processlibrary
Bit9 fileadvisor
Sans institute

File Type Inspector:
TrID

Executable Inspection:
PEiD
Mandiant red curtain

Checksum calculation:
♦Hashtab
Md5summer
Hashcalc
FileVerifier++

Other:
How to verify the Integrity of Windows system files, (sfc /scannow)
How To Check System Files For Digital Signatures
Memory usage analysis: MEMMAP
USB activity monitor
Check injected DLLs
Monitor debug output: DebugView
Debugger for Windows: WinDbg
Monitor kernel object activity: ObjMon
Monitor files in your website automatically: Websites Cop

Back to Index

Network traffic monitoring

Port checking:
ActivePorts
TcpView
CurrPorts+IPNetInfo
Roadkil's Scan Port

Botnet diagnosis:
Trendmicro RUBotted

Network traffic monitoring:
Networx
Netmeter
F-secure web trail
Network lights
Urlsnooper
ProcNetMonitor

Network traffic analyzing:
Wireshark
NetworkMiner
Nmap
Cain & Abel
IpSniffer
Microsoft Network Monitor
Analyzer

NIDS:
Snort
Bothunter

Control internet traffic priority:
NetBalancer

DNS-performance test:
GRC

Internet speed test:
Speedtest

Ping:
Emco Ping Monitor

Other:
Protection against ARP poisoning
Securing wireless network
Recover router password
 
Back to Index

System cleaning

Versatile cleanup tool:
RegRun Reanimator
Virus effect remover

Process killing:
APT
KillProcess
ProcX

File shredders:
Eraser
UltraShredder
File Shredder

Wipe deleted files:
Prevent restore

Versatile tool for removing infection traces at bootup:
BlitzBlank
Threat Killer

Unlocking files:
Unlocker
LockHunter
Emco UnLock IT

File killing:
KillBox
Brute force uninstaller (guide)
FileASSASSIN
Avenger
Emco MoveOnBoot
Guide for killing files

Killing registry entries:
RegASSASSIN

Free locked files:
WhoLockMe
Tizer

Device&driver analyzing:
ServiWin
Pserv.cpl

Registry editing:
Registrar lite
Regalyzer
RegSearch

System cleaning:
⇒ CCleaner  CCEnhancer
DiskMax
Comodo system cleaner
Easy Cleaner
RegSeeker
Tweaknow RegCleaner
ATF-Cleaner
CleanUP!
PureRa
FCleaner
KCleaner lite (note)
Wipe
System Ninja

Maintenance & Optimization:
WinUtilities
Ashampoo WinOptimizer
Glary utilities

Collection of tools:
Mztweak

Alternate data streams:
StreamArmor
ADSSpy
Assasin G13

Shell extensions:
ShellExView

Tool for balancing process CPU:
Process lasso
♦Process tamer

Disk defragging
Auslogics disk defrag
Defraggler

Registry defragging:
PageDefrag

Uninstallers:
Revo uninstaller
Zsoft uninstaller
Add/Remove Pro
Install Rite
EMB uninstaller

Uninstall Programs Packaged with Windows Installer in Safe Mode
SafeMSI
Raymond cc

Tracking registry and files changes when installing software:
Many here

MRU-list deleting:
MRU-Blaster

Removing unwanted (preinstalled) Windows/software:
PC Decrapifier
Office 2007 remover
AV removal (many tools)
AppRemover
AV removal 2 (many tools)
Old versions of Java
Old versions of Flash
List of uninstallers

Back to Index

File rescuing from Usb-drive/hard disk:
PC Inspector File Recovery
Photorec
DiskDigger
Avira UnErase
Recuva
Easeus

File rescuing from memory cards:
PC Inspector smart recovery

Rescuing files from corrupted hard disk:
Unstoppable Copier
DataRescue's DD

Unstoppable copying:
♦TeraCopy

Versatile tool for coping files:
RichCopy

Rescuing files from broken CD/DVD:
IsoBuster
IsoPuzzle
CDcheck
Recovery Toolbox

Write error resistant DVD:s:
dvdisaster

Back to Index

Encrypting

Versatile tool for encrypting:
FREE CompuSec

Hiding files/folders:
My Lockbox
Easy file locker
Hidefolders

Encrypting files:
AxCrypt
DsCrypt
KGB archiver
Crypt4free
EncryptOnClick
Cryptainer LE
Androsa FileProtector
ICE encrypt

Encrypted USB-stick:
Encrypt Stick

Disk/drive encryption:
Comodo

Encrypting with virtual drives:
TrueCrypt
Secret disk
FreeOTFE
Safehouse Explorer

Encrypting for usb-drive:
Cryptainer LE
USB flash security
Rohos Mini
SecureStick

Steganography:
Hide in picture
Steghide
DIIT
Invisible secrects
Guide1
Guide2

Back to Index

Backup

Data Backup:
Free File Sync
Fbackup
Syncback
Karen’s Replicator
Comodo Backup

Cobian backup
XXCopy
Robocopy
Areca Backup
GFI Backup
Hobo Copy
Toucan
FileHamster

Timemachine for data:
Genie Timeline

Windows-based backup:
Create system Image (7)

Network backup:
Bacula

Syncronization tools:
PureSync
Fullsync
FreeFileSync

Online-disk:
♦Mozy
Adrive
Idrive
Dropbox

Memopal
Gmail Drive shell extension
Skydrive explorer (Windows Live)
more

Host and share files:
Gigasize
Rapidshare
4shared
Sendspace

Registry backup:
Erunt

Programs for mbr backupping and restoring:
Many  here

Creating images from hard disks on-line:
Paragon Express
Macrium Reflect Free
Easeus
DriveImageXML
Drive Snapshot
Comodo backup
Roadkil's Disk Image
Terabyte Image For Windows $

Backupping hard disk with Live-Cd:
GParted+Clonezilla
G4U
PC INSPECTOR™ clone maxx
Partition Logic

Hard disk cloning:
HDClone free (CD)

Raw copy of hard disks:
Roadkil's Raw Copy

Hard disk wiping:
Darik's Boot & Nuke
Active Kill Disk
PC INSPECTOR™ e-maxx
Disk wipe
Roadkil's Disk Wipe

Backup drivers:
Drivermax
Double Driver

Other:
Backing Up EISA Hidden PQSERVICE Partition and MBR on a New Laptop
Backup and Restore Vista OEM Activation License

Back to Index

Versatile tool for trobleshooting:
Microsoft fix it center
Techtoolkit

Resque disks:
UBCD4win
Trinity
BartPE
BootDisk
UBCD
Omega
Norton Bootable Recovery Tool

Partition recovery:
Minitool

Windows Vista resque disks:
Neosmart

Windows 7 resque disks/USBs:
Neosmart
Raymondcc

Boot-CD registry editor:
PC regedit

Rescuing and troubleshooting:
Paragon Resque Kit
Memtest86+
Sisoft
SystemResqueCD
Shockfamily Knoppix
BSOD survival guide

Boot, resque, partitioning etc.
Parted Magic
Easeus

Fixing MBR:
Fixing MBR with Boot-CD
another
Fixing MBR

Disk recovery(data, partition, boot sector):
TesktDisk
Partition Find & Mount

Make bootable linux USB:
UBootNetin
LiLi

Make bootable Windows USB:
A bootable USB
WintoFlash

Recover a hanging system:
Antifreeze

Solve problem drivers:
Bluescreenview
Whocrashed

Repairing of broken internet connection:
Winsockxpfix
Winsockfix
Lspfix
Autodebug for Winsock
Repairing of broken internet connection (V)
Network test tool

Restore Corrupted Folder Options and Advanced Settings:
Tool 1

Tool 2
Fix corrupted .exe association  another
Fixpolicies
XP Quick Fix Plus
Dial-aFix
Computer Repair utility kit

Tools for speeding up (re)install:
Ninite Multiple App Installer
Allmyapps

Windows reinstall guides:
How to Rebuild your Computer
Windows reinstall
Install, reinstall, or uninstall Windows
installing windows xp from a usb key

Recover installations keys:
The Magical Jelly Bean Keyfinder
Recover Windows key for unbootable system
Retrieve the Software Installation Keys

Recover/reset system passwords:
boot cd for reseting windows passwords
How to reset windows account password
How to recover Windows password
Reset BIOS Password

Back to Index

Miscellaneous

Security program lists:
Spywarewarrior
Alken
firewallguide

Best security forums:
Wilders Security

Blogs:
Sunbelt
F-secure lab
Safe and Savvy

Portable application launchers:
PortableApps
App.etizer
Asuite

Remote control:
Teamviewer
LogMein
RealVNC
Crossloop
TwinVNC

Other:
Symantec threat meter

Back to Index

Tests and malware analysis tools

AV/AM testing methodology:
My proposal

AV-laboratories:
support@emsisoft.com
newvirus@kaspersky.com
virus@avira.com
report@prevxresearch.com
https://analysis.f-secure.com/

Eicar test virus:

Eicar AntiVirus test file

Test spyware:
Spycar
Scoundrel Simulator

System shutdown test:
ZeroDay test

Keylogger/screencapture/webcam  etc. tests:
Zemana
AKLT
SpyShelter
SKL

HIPS/Firewall-tests:
Comodo
Matousec

Buffer overfolw test:
Comodo

Firewall/port tester:
GRC
AuditmyPC
Hackerwatch
Hackerwhacker

Router crash test:
GRC

DNS security test:
GRC

Email security test:
GFI

Other security tests:
Test my PC
PC Flank

Anti-rootkit tests:
Hideproc

Process termination:
SPT

Browser tests:
Web Check
Popup Check

Test sites:
Av Comparatives
Matousec
Virus Info
Anti Malware Test
Shadow Server
Kareldjag
PCSL - PC Security Labs
Remove-malware
MRG
Antivirus software challence
Virus.gr

Info and tools on malware analysis:
Malwareinfo
MTC

Real-time analysis for sandboxed malware:
Buster Sandbox Analyzer

Online sandbox for malware analysis:
Threatexpert

Sunbelt Sandbox
CIMA
Anubis
Norman Sandbox
Joebox
Autovin
Wepawet
BitBlaze
Eureka
Comodo

Malware samples and hostile sites:
MDL      
Offensive Computing
Malwaredatabase
Malware-Research
Malwaredomains
Malwarebytes

GSI parser:
Getsysteminfo

View HTTP Request and Response Header:
Web sniffer

Back to Index

Vista/Windows 7 specific security

Better UAC:
#TweakUAC
Norton UAC Tool

Better XP mode:
VMLite
VMware

DEP:
turning DEP on

SEHOP:
Turning SEHOP on

Back to Index

Notes

# My current choices for real-time protection

Vista laptop:

  • LUA
  • Windows Firewall
  • Sandboxie Pro
  • Prevx free with SafeOnline
  • TweakUAC

XP desktop:

  • Defencewall personal firewall
  • Prevx with SafeOnline
  • Winpatrol Plus

This is setup for my friends and relatives:

  • Microsoft Security Essentials
  • Windows Firewall
  • Prevx free with SafeOnline
  • LUA (Vista, 7)
  • TweakUAC (Vista, 7)

♦ Other noteworthy products

  • WoT
  • Adblock Plus
  • Virustotal uploader
  • Secunia software inspector
  • CS lite
  • Process tamer
  • Mozy
  • Teracopy
  • VTzilla

Malware detection/removal tools

Below a combat proven cleaning process for removing stubborn malware. (Start with boot cd:s to kill most resistance before going to Windows.)

  1. AV boot cd -  Avira/Kaspersky
  2. UBCD4Win  + DrWeb Cureit/Emsisoft Emergency*
  3. Hitman Pro**
  4. Malwarebytes antimalware
  5. Prevx free + manual cleaning with UBCD4Win if needed
  6. Switch Windows firewall on.
  7. Winpatrol (For manual analysis: HOSTS-file, startups etc.)
  8. Clean Alternate Data Streams (ADS)
  9. Uninstall old AV. Install new AV and scan with it.
  10. Remove with CCleaner  temp-files and clean registry. (Take registry snapshot before cleaning.)
  11. Verify the Integrity of Windows system files (sfc /scannow)
  12. Check for Windows/Microsoft  updates.
  13. Check updates of other programs with Secunia sofware inspector
  14. Check DNS-settings. Here  more info.  
  15. Empty the system restore and create a new restore point. (XP, Vista/7)
  16. run chkdsk /r

*) Notice, that all these portable antimalware can be used with UBCD4Win boot cd.

**)  If you meet a malware that still blocks executables, try a "Force Breach" start of Hitman Pro (hold the left Ctrl-key until the man with the ladder appears while opening Hitman Pro). If you get UAC prompt you need to keep holding ctrl while you acknowledge the message. In case the internet connection is broken or unavailable, start a Early Warning Scoring (EWS) scan by selecting it from the Next button. This will also reveal: 1) The use of a local proxy server  (an indication of malware redirecting or sniffing your web activity). 2) Check and fix an invalid Winsock stack. 3) Detect problems with NDIS (Network Driver Interface). 4) Track down rootkits or other malware that are cloaked, perform suspicious activity or have many bad characteristcs (unethical construction and/or behavior).


My banking advice

Use one LUA for ALL everyday use and make another LUA which is used ONLY for banking. The point is, that if the everyday LUA is infected, the infection is limited to that account. (99.99% safety guaranteed. This of course requires, that  you are not yet infected, and don't install malware with adminstrative rights in the future.)

And get the free version of Prevx SafeOnline.


Direct link forbidden

Due to site politics direct links to executable files and non-green WOT-sites are forbidden. In such cases replace [dot] with . and the link will work.


Other anti-rootkits

There are numerous anti-rootkits. I give here some more.  They may be very good, but I cannot recommeded them, as I don't know anything about their quality:


My proposal for a simple AV/AM testing methodology

Cleaning test
1.install AM
2.boot
3.run Tiny watcher
4.real-time protection off
5.take 10 samples, check at Virustotal
6.install samples (monitor with Process explorer to see if really runs)
7.boot
8.realtime protection on
9.Clean, boot, Clean, boot, Clean, boot,.....
10.run TW again (what is left)
11.Check rootkits (+others) with Prevx free + Hitman pro

Protection test (samples)
1.take 10 samples (checked at Virustotal)
2.install AM
3.boot
4.run Tiny watcher
5.install samples (monitor with Process explorer to see if really runs)
6.Boot
7.Clean, boot, Clean, boot, Clean, boot,.....
8.run TW again (what is left)
9.Check rootkits (+others) with Prevx free + Hitman pro

Protection test (exploits)
1.take 5 exploits
2.install AM, old adobe, old java, old flash
3.boot
4.run Tiny watcher
5.run exploits (monitor with Process explorer to see if really runs)
6.Boot
7.Clean, boot, Clean, boot, Clean, boot,.....
8.run TW again (what is left)
9.Check rootkits (+others) with Prevx free + Hitman pro


Prisoners on remand (might be somewhat useful, but not recommended)

RemoveIT Pro  (too many dangerous false positives)
Multi-AV Scanning Tool (some reports of crippling the system)
Replace UAC (This company makes also a rogue called True Sword)
Winpooch (not compatible with XP SP3)
WIPS (PoC-software, very demanding)
Digital defender, Blue Atom, Innobate , Moon Secure (low detection rate AV)
Corbitek, Emco Malware destroyer , Mysystemexpert (low detection rate AM)


Doing time in jail (not recommended)

NoAdware (rogue)
IObit Security 360, IObit  Advanced SystemCare Free, IObit Uninstaller, IObit Smart Defrag (probable MBAM database theft)


Probably the Best Free Security List in the World (c) 2009-2010 Antti Koponen
Disclaimer: Some of these programs may harm your PC (especially when misused). Use at your own risk.

Back to Index

Related items and articles
Related Free Anti-malware Software

Related Security Articles

Share/Save
4.732875
Average: 4.7 (146 votes)
Your rating: None

Comments

by J.L. on Fri, 09/03/2010 - 02:40  (#57163)
by ako on Fri, 09/03/2010 - 06:40  (#57182)

How is this related to security? Is this alternate DNS? Where are the IP addressess for their DNS servers?

by J.L. on Tue, 08/31/2010 - 20:31  (#57058)
by ako on Tue, 08/31/2010 - 21:05  (#57060)

:)

by ako on Tue, 08/31/2010 - 07:13  (#57026)

I'll check these.

by ako on Mon, 08/30/2010 - 19:38  (#57004)

See Prisoners on remand (might be somewhat useful, but not recommended)

by ako on Sat, 08/28/2010 - 22:25  (#56920)

Tx!

by AlanMcAlan on Fri, 08/20/2010 - 19:23  (#56435)

Hey Ako, this is becoming a monster! Looking great! I am really liking the new area you added about removing stubborn malware.

by ako on Fri, 08/20/2010 - 20:36  (#56437)

I'd be happy if people will find it useful.
P.S. Thanks for encouragement! :)

by Thank you (not verified) on Tue, 08/17/2010 - 02:28  (#56144)

Thank you Ako for adding my website: http://realsecurity.web.officelive.com/default.aspx to your list. I greatly appreciate it!

by ako on Tue, 08/17/2010 - 09:00  (#56174)

You are welcome :)

by Hobbit (not verified) on Sat, 08/14/2010 - 17:27  (#56018)

In the anonymous browsing tools you refer Ultrasurf

In http://www.lewrockwell.com/orig9/green-p3.1.1.html (Practical Internet Privacy) you can read: "Well, you would normally avoid government-funded freebies that log everything. One such service is Ultrasurf – linked to the Falun Gong run GIF Inc, and headed by an NSA scientist to break Chinese censorship."

by ako on Sat, 08/14/2010 - 23:23  (#56037)

The overall opinion of that page seems OK.

by ako on Thu, 08/12/2010 - 07:06  (#55845)

:-)

by J.L. on Sun, 08/08/2010 - 20:49  (#55652)

http://www.anti-malware-test.com/?q=node/184
Vba32 did great, while Sophos was satisfactory.

by ako on Sun, 08/08/2010 - 21:04  (#55653)

Tx!

by Cruz (not verified) on Sat, 08/07/2010 - 13:58  (#55574)

How about Tizer Rootkit Razor(Free)

[Commercial software names removed. Please post about freeware only. We are a freeware site.]

by ako on Sat, 08/07/2010 - 21:31  (#55602)

Is it good?

by J.L. on Fri, 08/06/2010 - 18:11  (#55549)

BTW, Eset SysInspector, Process Explorer, RunScanner, and SanityCheck supports 64-bit as well.

by ako on Sat, 08/07/2010 - 10:22  (#55569)

Tx!

by J.L. on Thu, 08/05/2010 - 03:32  (#55475)

FreeFixer (supports 64-bit)

by ako on Thu, 08/05/2010 - 12:12  (#55495)

Tx!

by ako on Mon, 08/02/2010 - 08:43  (#55339)

Tx!

by vpnlive (not verified) on Sun, 08/01/2010 - 15:04  (#55301)

No body can make proxy better then this

http://vpnlive.net

by ako on Sun, 08/01/2010 - 20:17  (#55318)

Tx!

by ako on Sun, 08/01/2010 - 12:44  (#55294)

Tx!

by Sputnik (not verified) on Sun, 08/01/2010 - 01:09  (#55271)

Could you please change the link for "Immunet" because the actual link leads to a "Page not found" notification with an automatic redirection to the new page.

The new address is : >http://www.immunet.com/main/index.html

by ako on Sun, 08/01/2010 - 12:44  (#55295)

Tx!

by kendall on Sun, 08/01/2010 - 05:07  (#55275)

Interestingly, that "page not found", if you wait a few seconds, forwards automatically to the correct page.

by vuyye (not verified) on Mon, 07/26/2010 - 13:23  (#54947)

MRG ? I would not recommend them to anyone, strage methodology, fake reviews,

by Anonymousio890 (not verified) on Tue, 07/27/2010 - 08:24  (#54972)

You are 100% Right!

MRG is just a cover-up of ssupdater.com (a Warez site).

Anyone, who knows enough the AV Testing sector, will not trust MRG!

Better stay with the AMTSO members:

www.amtso.org/members.html

by MidnightCowboy on Tue, 07/27/2010 - 08:56  (#54974)

This is old news which was never real news at the time it was posted years ago. MRG is now a respected member of the software testing community although the relevance of what any of them do varies according to personal need.

Wilders is one of the most acknowledged forums in this area and this is an example of what their members are saying now:

"Their methodology is clear and in my eyes well chosen"

Sveta from MRG responds to questions at Wilders and also to myself whenever I ask. You can't get much more open and interactive than that.

You should never make software choices on the basis of one set of test results alone, but accumulate information from a variety of sources and then decide which best meets your own criteria. As for reliability, only select those whose websites are rated "green" by WOT. True this is not 100% infallible but is still the best guide as WOT ratings change very quickly if something dodgy is uncovered.

by ako on Tue, 07/27/2010 - 09:08  (#54975)

No need to comment, MC explained it very clearly :-)

by MidnightCowboy on Mon, 07/26/2010 - 13:44  (#54948)

Bit like PC Mag then :) So who would you recommend and why should these be any more relevant, or believable?

by Sputnik (not verified) on Sun, 07/25/2010 - 19:43  (#54919)

There is "Secret disk" in the "Hiding files/folders" category.

I think it should go in the "Encrypting with virtual drives" category.

by ako on Mon, 07/26/2010 - 11:25  (#54943)

Thanks!

by J.L. on Sun, 07/25/2010 - 17:11  (#54913)

Hide in Picture (http://sourceforge.net/projects/hide-in-picture/)
Good Steganography tool.

by ako on Sun, 07/25/2010 - 17:22  (#54914)

Thanks!

by Sputnik (not verified) on Sat, 07/24/2010 - 17:46  (#54873)

Would you consider, ako, to add a new category : Steganography ?

I think it can be considered as security software in the sense that, a little bit as the "Hiding files/folders" category, it's purpose is to hide something inside something else so to protect it.

Thank you

by ako on Sat, 07/24/2010 - 17:55  (#54874)

Good idea!

by Demon (not verified) on Sat, 07/24/2010 - 06:38  (#54850)

i think you should add trinity rescue kit to your list

by ako on Sat, 07/24/2010 - 18:00  (#54875)

It is there already :)

by Sputnik (not verified) on Sat, 07/24/2010 - 00:12  (#54828)

There is one category actually missing in this very exhaustive list : softwares for hiding folders and files.

In this category I would suggest "Hide Folders" :

>http://www.hidefolders.org/

I am not saying it is the best, I just mention it as a reference.

This one can only hide folders, not files.

by ako on Sat, 07/24/2010 - 05:01  (#54842)

Thanks!

by wbriggs1 (not verified) on Tue, 07/20/2010 - 19:22  (#54602)

Great page and I know it is a lot of work. As soon as you have a lot of time on your hands, could you add an annotation or section for portable applications?

by ako on Tue, 07/20/2010 - 20:34  (#54605)

Good idea, but this is huge task. I would need help to do it.

by J.L. on Tue, 07/20/2010 - 00:40  (#54555)

Sophos Anti-Rootkit (supports 64-bit). Can't provide link because of spam filter.

by ako on Tue, 07/20/2010 - 09:19  (#54572)

Thanks!

by BillBrad (not verified) on Mon, 07/19/2010 - 16:14  (#54529)

For backup I use PureSync. Consider adding it to your list.

What I like most is that it has an (optional)auto-backup feature which will backup any changes you make to a file or folder immediately when you make them. With a scheduled backup, the file is vulnerable to loss between its creation time and the time of the next backup. With immediate auto backup, you're totally covered. I rest easy that my downloaded music and videos won't disappear unexpectedly.

by ako on Mon, 07/19/2010 - 18:12  (#54537)

Thanks!

by J.L. on Sun, 07/18/2010 - 19:38  (#54486)
by ako on Sun, 07/18/2010 - 20:20  (#54487)

Thanks! The number of existing anti-rootkits is huge (one can find dozens from the rootkit discussions links). I will only add new if they have been found really strong. Have you any links showing that SC is as strong/even stronger than those listed at the moment? (I will add it anyway, as it seems to have some interesting features :-)

by J.L. on Tue, 07/20/2010 - 00:34  (#54554)

One feature stands out is 64-bit compatibility. Not really sure how effective it is though.

by J.L. on Sun, 07/18/2010 - 03:40  (#54446)
by ako on Sun, 07/18/2010 - 08:07  (#54464)

Thanks!

by Mike Owen (not verified) on Sun, 07/18/2010 - 00:16  (#54441)

This article (or set of articles) is a really distinguished public service. Many congratulations?

by ako on Sun, 07/18/2010 - 08:08  (#54465)

Thank you! :-)

by DublinDon (not verified) on Sat, 07/17/2010 - 18:42  (#54428)

Looks like Comodo Security suite has had 64 bit capability since 2008 but on your list it doesn't have the 64 bit sticker.
Why is that?

by ako on Sat, 07/17/2010 - 19:58  (#54430)

Thanks!

by THB (not verified) on Sat, 07/17/2010 - 17:11  (#54426)

I'm running AVG, Ad-Ware and Spy-Bot together. Anyone see a conflict with these as a problem?
Thanks

by ako on Sat, 07/17/2010 - 19:59  (#54431)

I think no conflict with them....

by Jim Brock (not verified) on Thu, 07/15/2010 - 16:18  (#54333)

Here's another link for your privacy section.

The most comprehensive opt-out wizard and Firefox opt-out protector.

http://www.privacychoice.org

by ako on Thu, 07/15/2010 - 18:28  (#54336)

Thanks!

by J.L. on Thu, 07/15/2010 - 02:13  (#54298)

Post new comment

The content of this field is kept private and will not be shown publicly.