Guess he means this http://www.combofix.org/ :D
Ring0 - the source of inspiration
A forum for reverse engineering, OS internals and malware analysis
WTF is ComboFix?:lol:
3006345f-6baf-4669-a7e1-aaa310564be9This is not detection this is total fake. Interesting what will be if I will create the same named mutex on clean system? TDL3 infection verdict? :mrgreen: Apparently you don't need buggy paid sh*t from Dmitri Sokolov to remove TDL3 while system is _offline_. There is nothing to fix in registry.