Partizan.exe is a part of antirootkit software

False Positive Alert! Symantec detects Partizan antirootkit software as a worm

Partizan.exe is a NATIVE executable file (driver) related to the Partizan antirootkit technology.
Greatis Software (c) Copyright 2007-2008.
Partizan.exe is located in the %WinDir%\System32.
Partizan.exe is automatically created by RegRun Security Suite, UnHackMe or RegRun Reanimator.
The partizan.exe driver is automatically recreated by RegRun or UnHackMe after manual deletion the file.
MD5 (Partizan.exe) = 11dc6c421c2b97a059b3b1bb0ca12a32
Partizan exe could not be executed in the normal Windows mode because Partizan.exe is Native Windows API application like "check disk".
Partizan.exe is started by Windows from BootExecute registry value after Windows autocheck.
Partizan.exe contains the version information in the file: "Partizan - First Bootwatch Anti-Rootkit".
ProductName:  RegRun Security Suite, UnHackMe.

Partizan is not spyware, adware, malware.

March 1 2008.
We contacted the Symantec support center and we are waiting for response.
Get the latest information from Symantec forum
We hope the problem was resolved as well.

March 4 2008
The problem has been resolved. Article has been updated
Partizan.exe and partizan.sys excluded from Symantec malware database.
Look at the good article described the problem from beginnning.

 
More information about Partizan technology take a look at the article here
Add or See Comments (>10)
}