RTKT_FARFLI.SMA


 PLATFORM:

Windows 98, ME, NT, 2000, XP, Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Rootkit

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This Rootkit may be dropped by other malware. It arrives as a component bundled with malware/grayware/spyware packages. It may be unknowingly downloaded by a user while visiting malicious websites.



It may be used by other malware in performing their malicious routines.



  TECHNICAL DETAILS

File Size:

28640 bytes

Memory Resident:

Yes

Initial Samples Received Date:

05 Jan 2010


Arrival Details


This Rootkit may be dropped by other malware.


It arrives as a component bundled with malware/grayware/spyware packages.


It may be unknowingly downloaded by a user while visiting malicious websites.



Other Details



  SOLUTION

Minimum Scan Engine:

8.900


Step 1


Scan your computer with your Trend Micro product and note files detected as RTKT_FARFLI.SMA


Step 2


Restart in Safe Mode

[ Learn More ]


Step 3


Restart in normal mode and scan your computer with your Trend Micro product for files detected as RTKT_FARFLI.SMA If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check this Knowledge Base page for more information.


Step 4


Scan your computer with your Trend Micro product to delete files detected as RTKT_FARFLI.SMA If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check this Knowledge Base page for more information.


Did this description help? Tell us how we did.