Skip to main content
Published May 20, 2009 | Updated Apr 16, 2011

WinNT/Rustock

Detected by Microsoft Defender Antivirus

Aliases: Spam-Mailbot.c!Rootkit (McAfee) Backdoor.Rustock (Sunbelt Software) Backdoor.Rustock (Symantec)

Summary

WinNT/Rustock is a component of Win32/Rustock - a multi-component family of rootkit-enabled backdoor trojans, which were historically developed to aid in the distribution of 'spam' e-mail. First discovered sometime in early 2006, Rustock has evolved to become a prevalent and pervasive threat. Recent variants appear to be associated with the incidence of rogue security programs.
Manual removal is not recommended for this threat. Use the Microsoft Malicious Software Removal Tool, Microsoft Security Essentials, Microsoft Safety Scanner, or another up-to-date scanning and removal tool to detect and remove this threat and other unwanted software from your computer. For more information on Microsoft security products, see http://www.microsoft.com/protect/products/computer/default.mspx.
Follow us