Thursday, November 10, 2011

How to Detect and Remove Rootkit Manually

In what is rootkit and types of rootkit and software to remove the rootkit. and today we post the manual method for remove the rootkt Step 1:- Enable Bootlog:- To Enable bootlog goto start then Run and type msconfig, goto boot tab and check box in front of bootlog and restart computer.

Step 2:- Open Windows folder:-
Now open the windows folder and search the name starting with following names, such as rot, gas, win32k.sys, gas etc you can find the full list here: rootkit list.
If any file have then get the path of that file.


Step 3:- Disable File Permission:-
Now open cmd and type below command

cacls your_path_here /d everyone
Type your path here instead of your_path_here. It denies the permission to all users and restart the computer.
Step 4:- Delete Rootkit:-
Now delete the file from it’s location, registry, temporary folder and prefetch folder by searching file and you have done it.

If you find any difficulty, you can also used the rootkit software.

No comments:

Post a Comment