Rootkit.Agent.ga
|
Description:
|
Rootkit
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Thursday, April 24, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
A rootkit is a program designed to take fundamental control (in Unix terms "root" access, in Windows terms "Administrator" access) of a computer system, without authorization by the system's owners and legitimate managers.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "Rootkit.Agent.ga"
Threat Info
View All
Detected Items
- Detected Files:
- Detected Files with variable Filenames:
MD5: 01F4112EE9F2E11B8E952E4FF026B319 Size: 17152
%SYSDIR%\drivers\IsDrv118.sys
%SystemDiskRoot%\System Volume Information\_restore{1115F404-6026-4FC3-90A9-D84AA333B54A}\RP200\A0737676.sys
%SystemDiskRoot%\System Volume Information\_restore{1115F404-6026-4FC3-90A9-D84AA333B54A}\RP199\A0736676.sys
%SystemDiskRoot%\System Volume Information\_restore{1115F404-6026-4FC3-90A9-D84AA333B54A}\RP199\A0736612.sys
c:\WINDOWS\system32\drivers\nvmini.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP82\A0048383.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP82\A0047380.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP81\A0046380.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP80\A0044380.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP80\A0043386.sys
%SystemDiskRoot%\System Volume Information\_restore{E4C1A335-B8CD-402F-A901-3183B1D04D67}\RP79\A0042380.sys
and next 131 variations.
Detecting items list:
- Files by MD5
MD5: 01F4112EE9F2E11B8E952E4FF026B319 Size: 17152
«
Go to Software Database