Hello,
I am trying to clean up a vista machine (newer Toshiba, 32bit Vista, service pack 1, core 2 duo)
Symptoms:
It has had a problem with google result links redirecting to ad pages. I saw in some of the results from the preliminary work "rootkit" elements.
Please take a look at the logs and let me know if there is any further steps that need to be taken.
I also ran Avast and it found 3 files that were removed -
File C:\Windows\System32\drivers\gxvxcqmvypeuinstwuvtpdtgdpsberwiqvtfc.sys is infected by Win32:Alureon-AW [Rtk], Repair: Error 42060 {The file was not repaired.}, Moved to chest
File C:\Windows\System32\gxvxcvgofsexwxwafbfrrcprdqtrpicuolsxg.dll is infected by Win32:Trojan-gen {Other}, Moved to chest
File C:\Windows\System32\gxvxcweeyyxbtmmcanxqvwxxuxlfyytadsvnc.dll is infected by Win32:Trojan-gen {Other}, Moved to chest
The machine has "Windows Live OneCare" installed, and I believe I had the virus Real Time Monitoring turned off for this during the steps.
Thank you for taking a look.
Peter
I am trying to clean up a vista machine (newer Toshiba, 32bit Vista, service pack 1, core 2 duo)
Symptoms:
It has had a problem with google result links redirecting to ad pages. I saw in some of the results from the preliminary work "rootkit" elements.
Please take a look at the logs and let me know if there is any further steps that need to be taken.
I also ran Avast and it found 3 files that were removed -
File C:\Windows\System32\drivers\gxvxcqmvypeuinstwuvtpdtgdpsberwiqvtfc.sys is infected by Win32:Alureon-AW [Rtk], Repair: Error 42060 {The file was not repaired.}, Moved to chest
File C:\Windows\System32\gxvxcvgofsexwxwafbfrrcprdqtrpicuolsxg.dll is infected by Win32:Trojan-gen {Other}, Moved to chest
File C:\Windows\System32\gxvxcweeyyxbtmmcanxqvwxxuxlfyytadsvnc.dll is infected by Win32:Trojan-gen {Other}, Moved to chest
The machine has "Windows Live OneCare" installed, and I believe I had the virus Real Time Monitoring turned off for this during the steps.
Thank you for taking a look.
Peter