Thursday, December 4, 2008

Rustock Trojan

Removing Rustock
Categories: Trojan,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Trojans-downloaders downloads and installs new malware or adware on the computer.


Rustock Also known as:

[Kaspersky]Trojan-Downloader.Win32.Agent.ayc,Trojan-Clicker.Win32.Contrat.o,Backdoor.Win32.Pakes,Trojan-Clicker.Win32.Constrat.t,Trojan-Dropper.Win32.Agent.bjo,Trojan-Clicker.Win32.Costrat.ae,Trojan-Clicker.Win32.Costrat.bz;
[McAfee]Spam-Mailbot.c;
[Other]Win32/Rustock.I,Backdoor.Rustock.B,Win32/Rustock.J,Win32/Rustock.S,Trojan:Win32/Rustock,Backdoor.Rustock,Rustock.dam,Trojan:Win32/Costrat

Visible Symptoms:
Files in system folders:
[%SYSTEM%]\lzx32.sys
[%SYSTEM%]\xpdx.sys
[%SYSTEM%]\lzx32.sys
[%SYSTEM%]\xpdx.sys

How to detect Rustock:

Files:
[%SYSTEM%]\lzx32.sys
[%SYSTEM%]\xpdx.sys
[%SYSTEM%]\lzx32.sys
[%SYSTEM%]\xpdx.sys

Registry Keys:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\pe386
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\pe386
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\xpdx

Removing Rustock:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Removing Vxidl.AEI Trojan
Removing Rebrand.ComputerMonitorKeylogger Spyware

No comments: