Jump to content

w23fdg0

Members
  • Posts

    8
  • Joined

  • Last visited

Reputation

0 Neutral

Profile Information

  • Location
    Europe
  • Interests
    Hardware, Software, Network, Security
  1. Thank you for your help. I learn a bit more about Rootkits and to solve them. Great work!
  2. - File deleted - Flash uninstall ok - Flash install ok - Flash works ok
  3. My Mind is blowing

  4. Ewww one File found as Gen:Trojan.Heur.Hype.cqW@amPT8Jn bitdefender_report.txt
  5. So hello again, Revo Uninstaller didnt delete all of Eset cause i have no rights. I boot in safe mode than i can delete the Regkeys and Folders. I think the Zeroaccess Bastard change something of the windows security. I found that MS article http://support.microsoft.com/kb/313222/en-us With this fixit you can restore the security defaults of Windows. In normal mode i can install NOD32 AV and it works without a error. Before i do that i made a Eset Online Scan the result was nothin found. I do now the Bitdefender Onlinescan. If its done i will write you back. BTW How can i uninstall the MS Recovery Console? Must i only edit the boot.ini and delete the cmdcons directory?
  6. TDSSKiller found nothing more. PC works ok, no redirections in the browsers, no popups but NOD32 Antivirus want start. The ESET Service says no rights zu start but i'm the local admin. OS is Windows XP Prof SP3. When i want to uninstall ESET it comes the Message that i have no rights to delete this Regkey: "HKLM\software\currentversion\plugin\01000103\Profiles\@My profile" I cannot change the rights of the key or give the right to me. Nero, Lightscribe and Retrospect was infected with the Win32.Patched.HN and Win32.Sirefef.CO + CH I deinstall the apps and the NOD32 Online Scanner found no more viruses on the PC. TDSSKiller_log.txt
  7. Hello D-FRED-BROWN, thx for your help and your time. I attached the two logs. ComboFix.txt checkup.txt
  8. Hello, i have a workstation infected with the Rootkit ZeroAccess. It has NOD32 Antivirus v4 installed but the ESET Service dont have the permission to start. I have no connection to the Windows 2008 Server but to the internet. I run Maxlook and Maxhandle they nothing found. Maxlook -Sig Log in attachment. Than i run Kaspersky Tdsskiller and it founds the Win32.Zaccess Rootkit and i Cure it. Please Help combofix_log.txt gmer_log.zip dds.txt attach.txt maxlook_sig.txt maxhandle_log.txt TDSSKiller.txt
  9. Hello i have the same problem with ZeroAccess. Must i start a new Thread or can i add my logs here too? Thx
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.