Author Topic: Threat: Rootkit Hidden File  (Read 2626 times)

0 Members and 1 Guest are viewing this topic.

Brck

  • Guest
Threat: Rootkit Hidden File
« on: January 14, 2014, 07:59:55 AM »
Hello,
 
  Fairly recently I ran a full system scan, and found thousands of infected files. I attempt to remove them, but I usually get "Access is denied". What can I do? Here are screenshots of the report.

Brck

  • Guest
Re: Threat: Rootkit Hidden File
« Reply #1 on: January 14, 2014, 08:05:32 AM »
Another

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Threat: Rootkit Hidden File
« Reply #2 on: January 14, 2014, 08:17:29 AM »
if you put the mouse pointer on the vertical bar just in front of SEVERITY and dragg sideways...then the column opens and we can see the full file path

take new screenshot and attach



Brck

  • Guest
Re: Threat: Rootkit Hidden File
« Reply #3 on: January 14, 2014, 08:25:03 AM »
Thanks for the help.
« Last Edit: January 14, 2014, 08:30:17 AM by Brick »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Threat: Rootkit Hidden File
« Reply #4 on: January 14, 2014, 08:28:53 AM »
from the little i can see of the file path yet ....did you just update windows?


Brck

  • Guest
Re: Threat: Rootkit Hidden File
« Reply #5 on: January 14, 2014, 08:34:20 AM »
No major updates recently, though looking through the logs there was a Windows Defender update on 12/17/13, the date of this scan. Do these not look to be rootkits?

Edit: I did add a screenshot of the full file path which I left out the first time.
« Last Edit: January 14, 2014, 08:39:47 AM by Brick »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Threat: Rootkit Hidden File
« Reply #6 on: January 14, 2014, 08:38:10 AM »
avast sometimes give this detection after a windows update ...... have no idea why


Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Threat: Rootkit Hidden File
« Reply #7 on: January 14, 2014, 08:38:55 AM »
if you want a check.....

follow the guide and  attach the logs from Malwarebytes / OTL / aswMBR   http://forum.avast.com/index.php?topic=53253.0

when done, malware experts will be notified and help you


Brck

  • Guest
Re: Threat: Rootkit Hidden File
« Reply #8 on: January 14, 2014, 08:47:41 AM »
Thanks again, It is currently midnight here, so I will update tomorrow once I have the log and full scan completed.

Brck

  • Guest
Re: Threat: Rootkit Hidden File
« Reply #9 on: January 15, 2014, 08:23:07 AM »
Here's the Malwarebytes report
Running OTL now

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: Threat: Rootkit Hidden File
« Reply #10 on: January 15, 2014, 02:28:03 PM »
@Brick

As I can tell from posted SS, avast has been report only files which can not access for some reason.
This does not mean that these files are malicious. However, when you psot OTL and aswMBR log, I should be able to tell you more...
« Last Edit: January 15, 2014, 02:40:45 PM by magna86 »