Hello,
I have a windows 64 vista hp laptop with
Viruses: Win64.zaccess.b, sirefef and all the other relative trojans.
So I've been having problem with this rootkit virus probelm for a while now, a long time. I came to a point where I don't know if I have it or don't.
Problems that I still have:
1. Possibly related to: Ads "recommended" that show up at the bottom right of 'any' browser, its not exactly a pop-up, its this box with text-ad inside of it, sometimes its inside an iphone box. Also the browser redirects randomly to other sites from google.
2. Firewall is blocked.
3. Task Scheduler is corrupted or has a bad image.
my aswmbr.txt doesn't show any rootkits or atleast to my knowledge:
The only one that spotted the rootkit was microsoft essentials but it did nothing, and almost messed up my pc because it kept restarting every 10mins. Finally I turned off the auto restart and I got kaspersky and it did take'em out, and then 7hrs later it happens again the same BS. Now its not showing anything infected, but who knows maybe tomorrow it comes up again. A day later nothing shows up and and then finally I got malewarebyes that comes up with yet another rootkit virus (rootaccess)! This last action was done today.
Could you please help me?
I have a windows 64 vista hp laptop with
Viruses: Win64.zaccess.b, sirefef and all the other relative trojans.
So I've been having problem with this rootkit virus probelm for a while now, a long time. I came to a point where I don't know if I have it or don't.
Problems that I still have:
1. Possibly related to: Ads "recommended" that show up at the bottom right of 'any' browser, its not exactly a pop-up, its this box with text-ad inside of it, sometimes its inside an iphone box. Also the browser redirects randomly to other sites from google.
2. Firewall is blocked.
3. Task Scheduler is corrupted or has a bad image.
my aswmbr.txt doesn't show any rootkits or atleast to my knowledge:
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-05 14:31:47
-----------------------------
14:31:47.698 OS Version: Windows x64 6.0.6001 Service Pack 1
14:31:47.698 Number of processors: 2 586 0x170A
14:31:47.699 ComputerName: OMAR-SIDKY UserName: Omar Sidky
14:31:49.052 Initialize success
14:31:54.722 AVAST engine defs: 12070501
14:32:00.680 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
14:32:00.682 Disk 0 Vendor: FUJITSU_MHZ2320BH_G2 8909 Size: 305245MB BusType: 3
14:32:00.725 Disk 0 MBR read successfully
14:32:00.727 Disk 0 MBR scan
14:32:00.732 Disk 0 unknown MBR code
14:32:00.735 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 292471 MB offset 63
14:32:00.760 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 12770 MB offset 598982656
14:32:00.879 Disk 0 scanning C:\Windows\system32\drivers
14:32:11.488 Service scanning
14:32:36.010 Modules scanning
14:32:36.016 Disk 0 trace - called modules:
14:32:36.052 ntoskrnl.exe CLASSPNP.SYS disk.sys hpdskflt.sys acpi.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys
14:32:36.056 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004df6790]
14:32:36.061 3 CLASSPNP.SYS[fffffa60007a7b3a] -> nt!IofCallDriver -> [0xfffffa8005cecb20]
14:32:36.065 5 hpdskflt.sys[fffffa6001fec0ee] -> nt!IofCallDriver -> [0xfffffa8004be48f0]
14:32:36.070 7 acpi.sys[fffffa60008faff6] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004be7060]
14:32:37.181 AVAST engine scan C:\Windows
14:32:39.404 AVAST engine scan C:\Windows\system32
14:36:37.922 AVAST engine scan C:\Windows\system32\drivers
14:36:56.638 AVAST engine scan C:\Users\Omar Sidky
14:48:18.030 AVAST engine scan C:\ProgramData
14:54:47.176 Disk 0 MBR has been saved successfully to "C:\Users\Omar Sidky\Documents\MBR.dat"
14:54:47.177 The log file has been saved successfully to "C:\Users\Omar Sidky\Documents\aswMBR.txt"
The only one that spotted the rootkit was microsoft essentials but it did nothing, and almost messed up my pc because it kept restarting every 10mins. Finally I turned off the auto restart and I got kaspersky and it did take'em out, and then 7hrs later it happens again the same BS. Now its not showing anything infected, but who knows maybe tomorrow it comes up again. A day later nothing shows up and and then finally I got malewarebyes that comes up with yet another rootkit virus (rootaccess)! This last action was done today.
Could you please help me?