|
Rustock.A (lzx32.sys) Removal
Kaspersky on-line file scanner detects the "winsyst32.exe" file as: Trojan-Clicker.Win32.Costrat.ac:
No additional information found on the site.
But after google it I found another names for this rootkit:
Rustock.A, Mailbot.AZ, Backdoor.Rustock.A.
The rootkit creates the boot driver with name "PE386" and stores the rootkit body in the Windows\System32:lzx32.sys.
UnHackMe detects and removes rootkit using Partizan anti-rootkit technology.
Note! It doesn't detect the rootkit using the signtature scans. If a rootkit changes the service name it will be detected as well.
Partizan Windows boot monitoring allows you to detect the rootkits on the earlist study of the Windows boot process.
Download and see the video story.
|
|
 |
|
UnHackMe
Supported Windows NT4/2000/XP(64)/2003(64)/Vista.
Compatible with all known antiviral software.
Free updates. On-line support.
System Requirements.
|
|
 |
 |
|
|
 |
If your tool had not worked, I was going to rebuild my disk from scratch, loading all my apps, downloads, etc. This would have cost me probably 2 days of work.
Great news! What I did last night with UnHackMe just stumbling around the system has cleared the problem!!
I can't tell you how delighted I am.
All the best... Dave Gardner
|
 |
 |
|
|
 |
Bob Schmulian:
Absolutely love it and have recommended to many people!
Ian Robinson:
It is FANTASTIC! It has saved my life on more than one occasion since
I purchased it less than 6 months ago. I now would not run my system without it...
it's worth many times the cost! The service and support are terrific.
Helpful - friendly - and accommodating; and generally a
reply is received within 12 hours. Just great.
Theodore Soucie:
Since RegRun was installed my system is more stable. I use to experience freezeup daily. I have not had a crash.
|
 |
 |
|
|