Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Best program to remove a rootkit and worm


  • Please log in to reply
1 reply to this topic

#1 c.evans23

c.evans23

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:04:35 PM

Posted 20 July 2010 - 08:15 AM

Any help is greatly appreciated.

I have a small network of about 40 computers. One of them came down with a rustock spambot, and have since found out that it has some sort of rootkit and a worm. It has now spread to probably 3 other coputers.

What is the best program to run to stop and isolate the rootkit?

I can handle removing the worm, but I need to contain it.

Edited by hamluis, 20 July 2010 - 09:12 AM.
Moved from XP to Am I Infected forum ~ Hamluis.


BC AdBot (Login to Remove)

 


#2 c.evans23

c.evans23
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:04:35 PM

Posted 21 July 2010 - 09:20 AM

Alright... a little more info. It definately is the Rustock Spambot. I'm running windows XP.

I have run all of the following and have been unable to remove it.

AVG - scanner and root removal
panda root removal
spysweeper
spydoctor
spybot S&D
malwarebytes
avira
Microsoft onecare
Norton

I am trying rootkill now and hopefully it will allow malwarebytes to catch it.

Does anyone have any info on removing Rustock? Cannot find it in the registry.

Any help is greatly appreciated.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users