Thread: MSN virus
View Single Post
Old 11-26-2006, 08:50 AM   #4 (permalink)
Susan528
Analyst, Security Team
 
Join Date: Nov 2006
Posts: 215
OS: WinXP Pro


Hi forcifer, I am so sorry but the scan above indicates you have a rootkit present.

Quote:
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32

pe386 detected, use a Rootkit scanner
You have a very serious infection. I can not promise to be able to totally clean your PC. Do Not use this PC for any financial use. If you have used the PC for financial use since you were infected I suggest you contact the financial institutions and let them know your accounts might have been compromised.
You may wish to reformat and start over. I can try to clean it if you wish to go that route. Let me know.

Lets go ahead and do the rootkit scan though.

Download Gmer from here:
http://www.gmer.net/gmer.zip
  • Disconnect from internet and close running programs.
  • There is a small chance this app may crash your computer so save any work you have open.
  • Double click gmer.exe
  • Let the gmer.sys driver load if asked.
  • If it gives you a warning at program start about rootkit activity and asks if you want to run scan...say Ok.
  • If no warning....
  • Click "rootkit" tab and click "scan"
  • Once done click "copy"
  • Open Notepad and hit "ctrl+v" to paste log.
  • Reconnect to internet and post log please.
__________________



Proud member of ASAP since 2005

If you feel we've helped you, Please donate to the forum

Last edited by Susan528; 11-26-2006 at 08:51 AM.
Susan528 is offline