Rootkit.Agent.att
|
Description:
|
Rootkit
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Tuesday, July 08, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
A rootkit is a program designed to take fundamental control (in Unix terms "root" access, in Windows terms "Administrator" access) of a computer system, without authorization by the system's owners and legitimate managers.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
RIMUOVI SPYWARE »
Geographical Distribution of Threat "Rootkit.Agent.att"
Threat Info
View All
Detected Items
- Detected Files:
- Detected Files with variable Filenames:
MD5: F19462858758C48506DD5C8BA24B8439 Size: 212480
%SYSDIR%\DRIVERS\ndisio.sys
%SYSDIR%\drivers\ndisio(2).sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP99\A0020717.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP98\A0020582.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP96\A0020572.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP94\A0020437.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP93\A0020417.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP92\A0020405.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP89\A0019393.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP109\A0021309.sys
%SystemDiskRoot%\System Volume Information\_restore{58DEBF9E-8D38-41FB-BF88-3C8E6BEAA4D3}\RP108\A0021308.sys
and next 9 variations.
Detecting items list:
- Files by MD5
MD5: F19462858758C48506DD5C8BA24B8439 Size: 212480
«
Go to Software Database