Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Generic User Avatar

Combofix alternative?


  • Please log in to reply
6 replies to this topic

#1 jwmghf

jwmghf

  •  Avatar image
  • Members
  • 153 posts
  • OFFLINE
  •  
  • Local time:12:09 AM

Posted 23 November 2023 - 11:06 PM

Hey guys. I'm using Windows 10 now and I'm looking for an alternative program or programs to do what combofix did for Windows 7 and 8. If you could point me in the right direction I'll take it from there.
Thanks!!!


Edited by Chris Cosgrove, 24 November 2023 - 05:04 AM.
Moved from Win 10 Support to A/V and A/M software.


BC AdBot (Login to Remove)

 


#2 Pkshadow

Pkshadow

  •  Avatar image
  • BC Advisor
  • 12,306 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:On the Brow of the Hill, West Coast, Canada
  • Local time:09:09 PM

Posted 23 November 2023 - 11:09 PM

https://www.techspot.com/downloads/4716-malwarebytes.html

&

https://www.howtogeek.com/230158/how-to-run-malwarebytes-alongside-another-antivirus/


" mosquitoes really wake up everyday and choose violence "   — dalia (@_dalia7)
www.cnn.com/2020/07/23/health/mosquitoes-attraction-humans-future-wellness-scn/index.html
 

I-7 ASUS ROG Rampage II Extreme  / ASUS TUF Gaming F17 / I-7 4770K ASUS ROG Maximus VI Extreme


#3 MoxieMomma

MoxieMomma

  •  Avatar image
  • BC Advisor
  • 2,346 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:09 PM

Posted 23 November 2023 - 11:21 PM

Hi:

There's no real Combofix "replacement" for modern Windows OSs.

Malwarebytes is an anti-malware application with both real-time protection (paid) and passive, manual scanning (free) versions.
The publisher's download page is here:
https://www.malwarebytes.com/premium
(The download includes a free trial of the Premium version.)

FRST is the tool used today by trained malware experts.
It is NOT designed for home use by untrained persons:
https://www.bleepingcomputer.com/forums/f/252/frst-tutorial/


If you think you might be infected, I suggest starting with this tutorial:
https://www.bleepingcomputer.com/forums/t/34773/preparation-guide-for-use-before-using-malware-removal-tools-and-requesting-help/


Then, please post the requested logs in a new topic in the malware removal section:
https://www.bleepingcomputer.com/forums/f/22/virus-trojan-spyware-and-malware-removal-help/

#4 quietman7

quietman7

    Bleepin' Gumshoe


  •  Avatar image
  • Global Moderator
  • 61,818 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:12:09 AM

Posted 24 November 2023 - 10:55 AM

Combofix was never meant to be used as a general purpose malware scanner like Malwarebytes, Zemana AntiMalware, SuperAntispyware, AdwCleaner, etc which scan individual drives, different folders, the registry, etc on a computer for malware...nor was it designed to be a remote support tool. Since ComboFix does not support Windows 8.1 or Windows 10/11 malware removal experts and advanced users have been using FRST (Farbar Recovery Scan Tool).
 
The FRST tutorial was originally authored to provide guidance to trained helpers offering malware removal assistance at various forums.
 
I am a firm believer that if you're unsure how to use a particular security tool or interpret any logs it generates, then you probably should not be using it. Users often panic when they see log results they do not understand. Some security tools are intended for advanced users and experts, those who are knowledgeable of the Windows registry or to be used under the guidance of an expert who can interpret the log results and investigate it for malicious entries before taking any removal action. Some security tools will show everything they find that is a possible problem but you need to know what to remove and what not to remove. Incorrectly removing legitimate entries could lead to disastrous problems with your operating system.


.
.
Microsoft MVP Alumni 2023Windows Insider MVP 2017-2020, MVP Reconnect 2016-2023

Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Retired Police Officer, Federal Agent and Coast Guard Chief

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif


#5 quietman7

quietman7

    Bleepin' Gumshoe


  •  Avatar image
  • Global Moderator
  • 61,818 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:12:09 AM

Posted 06 December 2023 - 10:15 PM

Malwarebytes is not (and never was) an alternative to ComboFix.
 
Malwarebytes combined their Anti-Malware, Anti-Exploit, Anti-Ransomware,Website Protection into one product just called "Malwarebytes". It uses a combination of remediation technologies as well as proactive and signature-less technologies which were previously incorporated into their stand-alone Anti-Exploit and Anti-Ransomware products. Malwarebytes is better served as an adjunct anti-malware solution to complement and strengthen your protection when utilizing a traditional anti-virus solution.
 
ComboFix is/was a specialized first responder tool that has the ability to deal with multiple malware infections and has built in removal functionality which makes it very powerful. Combofix is/was intended by its creator to do two things: 1) automatically remove known infections and 2) provide a detailed system report similar to FRST/DDS that a trained expert can use to further investigate and remove malicious files and registry entries. ComboFix also provided a wealth of information about many areas of the operating system and registry in the comprehensive logs it created. That information provided advanced users a strategy for planning additional malware removal steps using other alternative tools.


.
.
Microsoft MVP Alumni 2023Windows Insider MVP 2017-2020, MVP Reconnect 2016-2023

Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Retired Police Officer, Federal Agent and Coast Guard Chief

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif


#6 MDD1963

MDD1963

  •  Avatar image
  • Members
  • 899 posts
  • OFFLINE
  •  
  • Local time:02:09 PM

Posted 10 December 2023 - 08:41 PM

The Tron script throws several different functional, quality tools/scanners/utilities in sequential fashion at a Win10/11 system that might help...

 

Extracted from MajorGeeks' summary description of Tron processes:

 

Stage One
Prep: rkill, ProcessKiller, TDSSKiller, Stinger, registry backup, WMI repair, sysrestore clean, oldest VSS set purge, create pre-run System Restore point, SMART disk check, NTP time sync

Stage Two
Tempclean: TempFileCleanup, CCleaner, BleachBit, backup & clear event logs, Windows Update cache cleanup, Internet Explorer cleanup, USB device cleanup

Stage Three
De-bloat: remove OEM bloatware; a customizable list is in resourcesstage_2_de-bloatoem; Metro OEM debloat (Win8/8.1/2012 only)

Stage Four
Disinfect: Kaspersky Virus Removal Tool, Sophos Virus Removal Tool, Malwarebytes, DISM image check (Win8/2012 only)

Stage Five
Repair: Registry permissions reset, Filesystem permissions reset, SFC /scannow, chkdsk (if necessary)

Stage Six
Patch: Updates 7-Zip, Java, and Adobe Flash/Reader and disables nag/update screens (uses some of our PDQ packs); then installs any pending Windows updates.

Stage Seven
Optimize: page file reset, defrag %SystemDrive% (usually C: skipped if the system drive is an SSD)

 

(For most modern systems running systems from NVME, one could reinstall an image backup in 5-8 minutes from a quality SSD-based backup in a few minutes, vice waiting the many potential hours the Tron script could and likely will take, but, that assumes one has an image backup, and alas...many folks do not. )

 

https://www.majorgeeks.com/files/details/tron.html


Asus Z270A Prime/7700K/32 GB DDR4-3200/GTX1060


#7 quietman7

quietman7

    Bleepin' Gumshoe


  •  Avatar image
  • Global Moderator
  • 61,818 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:12:09 AM

Posted 11 December 2023 - 08:52 AM

Tron is just a collection of various tools and utilities scripted together for advanced users. The author (vocatus) himself states "Tron is a glorified collection of batch files that automate the process of cleaning up and disinfecting Windows". Tron includes Rkill, ProcessKiller, TDSSKiller, Stinger, Kaspersky Virus Removal Tool, Sophos Virus Removal Tool and Malwarebytes. Tron also includes outdated tools like aswMBR and ComboFix which has not been updated in years and is not officially supported in Windows 8.1, 2000, 10/11.

Stage Nine
Manual stuff: Additional tools that can't currently be automated (ComboFix, AdwCleaner, aswMBR, autoruns, etc.)

About Tron

NOTE #3: Tron is a tool for technicians and technically-minded people; if you don’t know how to fix your computer without tron, you shouldn’t be using tron to fix your computer. No matter what your friend or some idiot on a YouTube video told you, tron is not and never has been intended to be run by people who do not understand the technology behind it. If, after reading the entirety of tron's documentation, you do not understand what tron is doing and how tron is doing it, you should not be using tron. If you persist in your desire to run tron, don't say you haven't been warned.

 

Fair Warning
Attempting to clean/fix a PC (with Tron or any other tool) that's been compromised by malware and such can result in partially or completely disabling that PC, and can require a full reinstallation of Windows to restore full functionality. This isn't a "Tron issue", this is just how PCs are. Before you run Tron, be aware that the act of cleaning/repairing your PC can inadvertently disable your PC or adversely affect your data in the process. Your system may or may not be repairable; your data may or may not be recoverable. If you choose to run Tron anyway you must be prepared for the possibility of reformatting the hard drive, reinstalling Windows, and recovering your data from a backup.


.
.
Microsoft MVP Alumni 2023Windows Insider MVP 2017-2020, MVP Reconnect 2016-2023

Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Retired Police Officer, Federal Agent and Coast Guard Chief

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users