Author Topic: Root kit  (Read 16227 times)

0 Members and 1 Guest are viewing this topic.

tp1012

  • Guest
Re: Root kit
« Reply #15 on: September 30, 2012, 05:36:21 PM »
With regards to the root key is that gone?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #16 on: September 30, 2012, 07:34:46 PM »
I saw no indication of a rootkit, what file(s) was Avast reporting ?


tp1012

  • Guest
Re: Root kit
« Reply #17 on: September 30, 2012, 08:09:53 PM »
C:/windows/winsxs/x86_windowssearchengine_...... < multiple long file names here

In AVASTS report, when trying to move to chest/delete it comes up with access denied (5)


Also Windows Updates will not install at the moment, they all seem to fail


« Last Edit: September 30, 2012, 08:13:12 PM by tp1012 »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #18 on: September 30, 2012, 09:29:03 PM »
OK that is a probable false positive,

run farbar service scanner



Tick "All" options.
Press "Scan".
It will create a log (FSS.txt) in the same directory the tool is run.

Please copy and paste the log to your reply.

tp1012

  • Guest
Re: Root kit
« Reply #19 on: September 30, 2012, 09:38:49 PM »
log

Thanks for all your help. Its much appreciated.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #20 on: September 30, 2012, 09:46:42 PM »
Which updates are failing.. Could you post the KB number


tp1012

  • Guest
Re: Root kit
« Reply #21 on: September 30, 2012, 10:00:06 PM »
windows service pack 1





I just installed Online Armour and was wondering what firewall action i should expect from the AVAST. I see a few different countries of origin Is this usual?
« Last Edit: September 30, 2012, 11:03:51 PM by tp1012 »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #22 on: September 30, 2012, 11:26:35 PM »
What error does it give you when it fails ?  Avast servers are worldwide

tp1012

  • Guest
Re: Root kit
« Reply #23 on: September 30, 2012, 11:41:32 PM »
80010108 is the most recent one

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #24 on: October 01, 2012, 12:03:10 AM »
Could you follow the steps on this page http://windows.microsoft.com/troubleshootwindows7sp1

tp1012

  • Guest
Re: Root kit
« Reply #25 on: October 01, 2012, 11:11:21 AM »
Thats worked, thanks for the link. Do you have any ideas on other problems that could be causing the black screen during start uP?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Root kit
« Reply #26 on: October 01, 2012, 03:32:27 PM »
How long does the black screen last for ?  as a 1 or 2 second delay can be normal

tp1012

  • Guest
Re: Root kit
« Reply #27 on: October 01, 2012, 05:47:57 PM »
Hi, the screen lasts from boot up right until teh log in screen. the keyboard lights up if i have cap locks/numlocks on. Also i just did a final scan with avast and (having installed super anti sypware) it comes back saying the former program has two viruses in its process? are these false positives?




« Last Edit: October 01, 2012, 05:53:09 PM by tp1012 »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37527
  • Not a avast user
Re: Root kit
« Reply #28 on: October 01, 2012, 05:58:29 PM »
Hi, the screen lasts from boot up right until teh log in screen. the keyboard lights up if i have cap locks/numlocks on. Also i just did a final scan with avast and (having installed super anti sypware) it comes back saying the former program has two viruses in its process? are these false positives?





did you do a custom scan, where you selected everything......especially "memory scan"


tp1012

  • Guest
Re: Root kit
« Reply #29 on: October 01, 2012, 05:59:28 PM »
Yes. I read a post about custom scans although my understanding wasnt 100%