(https://s26.postimg.cc/3mryanz3d/screenshot_457.png)
HijackThis Fork is a settings scanner that can find common settings changes made by malware and other software. Advanced users can use it to find and reset settings that have changed. Like most system tools, this app requires admin rights.
https://github.com/dragokas/hijackthis
Changelog
[2.9.0.18]
Fixed bug in loading HJT due to incompatible icon for 32-bit OS.
[2.9.0.17]
Default font for lists is replaced by "MS Sans Serif", 10pt.
Added hotkeys: Ctrl + F (search), Ctrl + A (select all).
Improved compatibility with 64-bit OS when you open files for editing or its properties (in ProcMan, StartupList, ADS Spy).
Little corrections in French translation.
Other little edits of errors and interface.
Microsoft certificates database is updated.
[2.9.0.16]
Fixed crash when parsing misformatted (encrypted) jobs due to error in stream reader.
French translation is updated.
https://github.com/dragokas/hijackthis
Changelog
[2.9.0.26] - Aug 5, 2020
Added partial compatibility when running as a limited user.
[2.9.0.25] - Aug 2, 2020 (Nightly build - Release candidate)
Databases:
Updated O22, O23 bases (MS Office, MS Visual Studio are also whitelisted if possible).
O22 - Added the ability to analyze Microsoft rundll32 based tasks.
Updated names of Windows editions.
Appended well-known DNS lists.
Reference IE StartPage, SearchPage, Search & Custom Assistant are replaced with msn.com or removed due to broken links.
Functional:
Added checking of Windows / user startup-shutdown scripts policies.
Added O18 - Printer Port: detecting suspicious file ports for Spooler Shadow Jobs (thanks to Alex Ionescu for the article and NickM for helping with the fix).
When you request to restore from an ABR backup, a new backup is automatically created to enable rollback (may help to recover from a non-bootable state).
Added calculation of files SHA1 hash; you can switch between SHA1 / MD5 in the settings.
New switch: /sha1 - calculate SHA1 hash of files.
Context menu: added "Disable / Enable" item for services and tasks.
Fixes:
O22 - added compatibility with tasks in UTF16 encoding.
Uninstall Manager: Fixed the "Save List" button (thanks to Severnyj for the notification).
Improved ini file disinfection functions, added Unicode format processing.
Improved registry backup functions, QWord support.
The function to get the file size sometimes returned 0 for files from System32.
Context menu is no longer blocked during ReScan.
Interface:
Font for scan results changed "10" => "9" (Bold).
Added left and right indents in the "About ..." menu windows.
"About" - "Version history": fixed trimming of the end of the text.
The scrolling position is no longer reset at the end of the scan.
Fixed the transparency of the program icon.
Other:
Updated internal manual on switches.
All internet links are replaced with https.
Added https protocol to the verification criteria.
R4 - PendingFileRenameOperations disabled in /startupscan mode due to false positives.
https://github.com/dragokas/hijackthis
(https://s26.postimg.cc/3mryanz3d/screenshot_457.png)
HijackThis Fork is a settings scanner that can find common settings changes made by malware and other software. Advanced users can use it to find and reset settings that have changed. Like most system tools, this app requires admin rights.
Whats new:>>
- Several AppLocker fixes are done (thanks to regist for report, analytics and support):
- O7 - AppLocker: Added detection of "ManagedInstaller" rule.
- O7 - AppLocker: Fixed hash-based rule displayed one record instead of multiple.
- O7 - Applocker: Improved "Fix all" procedure.
https://github.com/dragokas/hijackthis
Changelog
[2.10.0.26] - Feb 13, 2023
- Fixed system reboot on Windows 11.
[2.10.0.25] - Jan 14, 2023
- Fixed freeze while fixing O7 - TroubleShooting: (EV).
- Whitelists Windows 11 has been updated.
- Added detection of Windows Defender policies and restoring AMSI providers.
[2.10.0.24] - Jan 11, 2023
- Fixed ignore list operation when "Calculate checksum" option is enabled (thanks to Gordon-Dry for the notification).
[2.10.0.23] - Sep 03, 2022
- Context menu: Added button "Copy" - "File Argument".
- Search: Save lastly entered phrase after program exits.
- ADS Spy: fixed functionality of "Browse" button (thanks to Alexyz21 for report).
- Uninstall manager: fixed location of "Remove Software" button.
[2.10.0.22] - Aug 29, 2022
- Digital Signature Checker Tool: New buttons "Add folder", "Clear list".
- Translation corrected.
[2.10.0.21] - Aug 28, 2022
- Added free memory info and total CPU loading*.
* loading data may be overestimated on weak processors.
- Cut down icon metadata causing false positive detection by Yara rules (VT).
- Fixed Hosts template and its ACL permissions according to reference.
- O22 - Added -32 prefixes for 32-bit tasks on 64-bit OS.
- Tools=>Unlock file/folder: Improved recurvive procedure of reset permissions.
[2.10.0.20] - Aug 02, 2022
- Several AppLocker fixes are done (thanks to regist for report, analytics and support):
- O7 - AppLocker: Added detection of "ManagedInstaller" rule.
- O7 - AppLocker: Fixed hash-based rule displayed one record instead of multiple.
- O7 - Applocker: Improved "Fix all" procedure.
https://github.com/dragokas/hijackthis