All my google searches were going to odd sites. Found this forum, and ran the steps. Before that...
McAfee full scan found and removed
Generic Rootkit.d!rootkit, file NTOSKRNL-HOOK
FakeAlert-FT, file c:\windows\system32\resdll.dll
Generic FakeAlert!htm, process IEXPLORE.EXE
Ad-Aware consistently found this in it's scans, and says reboot is required, but finds it again
Description: \\?\globalroot\systemroot\system32\uacrtaxvbkviw.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 942777 Family ID: 5401
Description: C:\WINDOWS\system32\UACqparpgjpfx.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 888515 Family ID: 5401
Description: C:\WINDOWS\system32\UACrtaxvbkviw.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 942777 Family ID: 5401
Description: C:\WINDOWS\system32\UACtjlalsmrnm.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 1243988 Family ID: 5401
Running the 8 steps...
Malwarebytes' AM seemed to install but would not run, finally renamed exe file and it ran. Did the same for SAS. All log files attached.
Can someone look at the logs and tell me if I am ok now and what I should do next?
McAfee full scan found and removed
Generic Rootkit.d!rootkit, file NTOSKRNL-HOOK
FakeAlert-FT, file c:\windows\system32\resdll.dll
Generic FakeAlert!htm, process IEXPLORE.EXE
Ad-Aware consistently found this in it's scans, and says reboot is required, but finds it again
Description: \\?\globalroot\systemroot\system32\uacrtaxvbkviw.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 942777 Family ID: 5401
Description: C:\WINDOWS\system32\UACqparpgjpfx.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 888515 Family ID: 5401
Description: C:\WINDOWS\system32\UACrtaxvbkviw.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 942777 Family ID: 5401
Description: C:\WINDOWS\system32\UACtjlalsmrnm.dll Family Name: Win32.Trojan.Tdss Clean status: Reboot required Item ID: 1243988 Family ID: 5401
Running the 8 steps...
Malwarebytes' AM seemed to install but would not run, finally renamed exe file and it ran. Did the same for SAS. All log files attached.
Can someone look at the logs and tell me if I am ok now and what I should do next?