Author Topic: Sneaky Rootkit  (Read 3440 times)

0 Members and 3 Guests are viewing this topic.

jgakedty

  • Guest
Sneaky Rootkit
« on: April 14, 2013, 03:41:24 PM »
So my avast antivirus located a rootkit the other week, and upon encountering it in a boot scan avast would not allow me to delete or move it to the chest. I was forced to select ignore to proceed with the scan. Also with me being a little busy lately, I haven't been able to give this thing my full attention however I ran another bootscan recently with no results/threats found.
Being a little skeptical I glanced at the log of the first boot scan which listed the virus and the message read to the tune of 'location cannot be found.'

I'm worried and doubtful that the rootkit is gone, so if anyone can help me I'd be much appreciated. I have already located the thread for creating logs and such and am willing to follow those instructions for anyone who is able to lend a hand.

Offline mikaelrask

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1556
Re: Sneaky Rootkit
« Reply #1 on: April 14, 2013, 06:42:55 PM »
hey and welcome to the forum.

please follow this guide. a malware expert will help you from there 

http://forum.avast.com/index.php?topic=53253.0
Windows 8.1 amd a10-5700 64 bit
12 GB ram 1 tb hard drive. Avast 18, MBAM

jgakedty

  • Guest
Re: Sneaky Rootkit
« Reply #2 on: April 14, 2013, 09:09:07 PM »
Ok, here is everything. Let me know if I goofed somewhere.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Sneaky Rootkit
« Reply #3 on: April 14, 2013, 09:21:46 PM »
What was the name of the file on the report please

jgakedty

  • Guest
Re: Sneaky Rootkit
« Reply #4 on: April 14, 2013, 10:47:02 PM »
I'm not sure exactly what report you mean, but I can't seem to find the name of the rootkit from my avast program

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Sneaky Rootkit
« Reply #5 on: April 14, 2013, 10:48:11 PM »
Is the system behaving normally ?

jgakedty

  • Guest
Re: Sneaky Rootkit
« Reply #6 on: April 14, 2013, 10:50:48 PM »
Quite normally, however I'm worrisome that it may be a silent virus with intentions of stealing my data, passwords and such

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Sneaky Rootkit
« Reply #7 on: April 14, 2013, 11:12:29 PM »
I would have seen an indication of that on one of the logs

Sometimes Avast may detect rootkit activity when a windows programme is in the process of updating

jgakedty

  • Guest
Re: Sneaky Rootkit
« Reply #8 on: April 15, 2013, 01:09:40 AM »
Alright, I suppose that might have been the case considering my only option upon boot scanning was to ignore the issue. That and avast no longer being able to locate the issue as well.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Sneaky Rootkit
« Reply #9 on: April 15, 2013, 03:31:05 PM »
Run OTL and press the Cleanup button to remove it and its associated files