Removing Rootkit Viruses

Dennard T.: Is there some program I can install to help for get rid of a rootkit virus?


Clyde A. Lettsome, PhD, PE, MEM Answer: Rootkit viruses are often difficult to remove because they are often to adapt and move to avoid detection and deletion. According to how sophisticated the virus is and the time the virus was installed, there are a few low tech and cheap methods for removing the virus. Perform the following steps in order. STOP when you no longer detect symptoms (unexplainable changes to your computer settings, regular advertisement pop-ups, etc) of the virus.

  1. If available, run a manual virus scan on your computer for the virus. If detected, try to remove the rootkit with your recently updated virus protection software.
  2. If you know the name of the rootkit virus it may be possible to download removal software from a TRUSTED site.
  3. Restart your computer in safe mode. Then choose system restore date that takes you to a point a date when your computer worked as you expected it to work. Note: Some rootkits hide in system restore files so monitor this possible fix carefully.
  4. If all else fail, save all your personal files on an external device. Reformat your hard drive and reinstall all programs and personal files when you are finished.

Good Luck!

Are you a struggling with a technical question? Would the answer to the question improve your life or business? Submit your technical questions (100 words or less) to AskTheExpert at View Archives >>