atapidrv.sys - Dangerous
atapidrv.sys
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
AtapiDrv.sys is Trojan/Backdoor.
Kill the file AtapiDrv.sys and remove AtapiDrv.sys from Windows startup.
Malware: C:\sand-box\load.exe
Removed: C:\WINDOWS\system32\drivers\AtapiDrv.sys
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.04.01 Suspicious:W32/Malware!Gemini
Kaspersky 7.0.0.125 2010.04.01 Trojan.Win32.Tdss.azvo
McAfee 5937 2010.03.31 -
Microsoft 1.5605 2010.03.31 -
NOD32 4992 2010.04.01 a variant of Win32/Kryptik.DLH
Additional information
File size: 69120 bytes
MD5 : 33157597db16fdfb9e5b47455bdd7a79
SHA1 : 5094366b2b31e81a0669148aa6df71d64beda573
SHA256: ab980e74feb1eb4ca9c60d7b4a7781f6e4c4cbfe0ab45124aaa479634a5042a9
http://greatis.com/blog/how-to-remove-ma...