Raising the Bar: Rustock.A and Advances in Rootkits

Good evening :
For Cloussau, I’ve made, for System restore, thanks.
I think too it is lzx32.sys, this is the one pointed by spysweeper.
For my folder options, they are well turned in “all show”.
For Mauserme : Thnaks, i found (alone) this topic yesterday very late in the evening and downloaded it. I’ve made it this evening, Spysweeper is working, for me to verify if it still sees the file.
Many thanks, all, I come back to tell you if it works, for you to help the others (my english and my compure competences are too bad for i do the same).

I would suggest you might also consider proactive protection, in order to place files in the system folders and create registry entries you need permission. Prevention is much better and theoretically easier than cure.

Whilst browsing or collecting email, etc. if you get infected then the malware by default inherits the same permissions that you have for your user account. So if the user account has administrator rights, the malware has administrator rights and can reap havoc. With limited rights the malware can’t put files in the system folders, create registry entries, etc. This greatly reduces the potential harm that can be done by an undetected or first day virus, etc.

Check out the link to DropMyRights (in my signature below) - Browsing the Web and Reading E-mail Safely as an Administrator. This obviously applies to those NT based OSes that have administrator settings, winNT, win2k, winXP.

Good evening. All is ok on the computer, thanks to the removal porgramm and to the combination of spysweeper and avast which kept the system in a usable state suring all the time i used to sweep. Thnaks for all your help.
OK, DaviR, i’ll look at your suggessions and apply it.
To my charge, i clicked on a file i didn’t have to and i took the trojan like that, normally, i’m careful, one second of inattentinn and more than a week of sorrows :frowning:
Have a good night, and … thanks