Rahack.b manual removal:
Kill processes:
syshid.exe
Delete registry values:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysser
HKEY_CURRENT_USER\exefile\Shell\Open\Command\(default)=syshid.exe "%1" %*
HKEY_CURRENT_USER\CLSID\{3040DD03-9C5A-4563-AC2E-0026188C25A9}
Unregister DLLs:server.dll
Delete files:syshid.exe, server.dll, system.vbs
Misc:Exact file location:
syshid.dll, server.dll - C:\Windows\System, C:\Windows\System32 or C:\Winnt\System32
system.vbs - C:\Documents and Settings\[Current User]\Start Menu\Programs\Startup
Post Comment: