RTKT_VERST.ZLK
Microsoft : Worm:Win32/Verst.B; Kaspersky : Trojan.Win32.Agent2.luh
Windows 2000, XP, Server 2003
Threat Type: Trojan
Destructiveness: No
Encrypted: Yes
In the wild: Yes
OVERVIEW
This Trojan may be dropped by other malware.
It exports functions used by other malware.
TECHNICAL DETAILS
Arrival Details
This Trojan may be dropped by the following malware:
- WORM_AUTORUN.ZLK
Rootkit Capabilities
This Trojan is used by other malware for its rootkit functionalities.
Other Details
This Trojan exports functions used by other malware.
It does the following:
- Its rootkit capabilities enables it to hide processes and files of its mother component.
SOLUTION
Step 1
For Windows XP and Windows Server 2003 users, before doing any scans, please make sure you disable System Restore to allow full scanning of your computer.
Step 2
Remove malware files dropped/downloaded by RTKT_VERST.ZLK
Step 3
Scan your computer with your Trend Micro product and note files detected as RTKT_VERST.ZLK
Step 4
Restart in Safe Mode
Step 5
Search and delete the file detected as RTKT_VERST.ZLK
Did this description help? Tell us how we did.