Jump to content

how do i confirm i have a rootkit...


Recommended Posts

hi everyone, this my first post ; this is the results,

Files Infected:

C:\WINDOWS\SoftwareDistribution\Download\9866fb57abdc0ea2f5d4e132d055ba4e\msscript.ocx (Trojan.Dropper) -> Quarantined and deleted successfully.

C:\WINDOWS\SoftwareDistribution\Download\9866fb57abdc0ea2f5d4e132d055ba4e\netbios.sys (Rootkit.Agent) -> Not selected for removal.

C:\WINDOWS\Web\Wallpaper\welcome\AWhelper.dll (AdWare.WebHancer) -> Quarantined and deleted successfully.

and please let me know what i need to do , my os is windows xp-sp3, avira10, rollback rx, executable lockdown this was just installed about 1 month ago, and my firewall is online armor....please help and thanks..

Link to post
Share on other sites

Hello waver1 ,Welcome to Malwarebytes.org

You do seem to have some infection , so please let our experts look at it - Please follow these directions -

As we don't work on Malware removal or diagnostics in the general forums this will guide you to get help -

Please print out, read and follow the directions here, skipping any steps you are unable to complete. Then post a NEW topic here.

One of the expert helpers there will give you one-on-one assistance when one becomes available.

After posting your new post make sure under options that you select Track this topic and choose one of the Email options so that you're alerted when someone has replied to your post - Please be patient as the experts are a bit busy at times -

Alternatively, as a paying customer, you can contact the help desk at support@malwarebytes.org

Thank You - :)

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.