|
Posted by kalyan on September 22, 2008, 2:28 am
If you were Registered and logged in, you could reply and use other advanced thread options
Hi
pl post the log file for analysis
If you are not able to remove the rootkit
try this
http://download.nai.com/products/mcafee-avert/McafeeRootkitDetective.zip
http://www.sophos.com/products/free-tools/sophos-anti-rootkit/download/
http://research.pandasecurity.com/blogs/images/AntiRootkit.zip --
Warm Regards
Kalyan
> GMER 1.0.14.14536
>
> After scanning with Gmer a window popped-up indicating:
>
> [quote]
> GMER
> Warning !!!
> GMER has found system modification caused by ROOTKIT activity.
> [unquote]
>
> I examined all items and there one (1) item shown in red letters.
> Type: Libary
> Name: C:\Documents [***hidden***] @ C:\Documents[2216
> Value: 0x00400000
>
> I assume that this item is the culprit in question. I request guidance as
> how to proceed and eliminate this rootkit.
>
> TIA
|