Rootkit.tdss infection

Status
Not open for further replies.

rastaman

Posts: 21   +0
I seem to have been infected by the above mentioned rootkit. cant seem to get it removed by MBAM or SAS. I also tried using the tdsskiller by kaspersky but to no avail. I initial became aware of this after getting the TotalSecurity malware. MBAM was able to remove that but fails on the TDSS. It claims it was removed but returns after a reboot.m Below are my logs cant seem to get SAS log up. Thanks in advance
 
What version of Windows are you running? Remove AVG and install and run Avast free antivirus. See what it finds
 
Ok thanks I hadn't seen that OS abreviation, in the Hijackthis log... Windows 2000 SP3. Good luck :)
 
MBAM was able to remove that but fails on the TDSS

There is a line in Mbam that you check for removal of what it finds. When the logs has No action taken, it means you didn't check it. Update, check the line and rescan.

Are you doing specialized work with the terminal service Client? Maybe related to PMSI?

I don't know if this will work, but give it a try:

Go to start > run and type cmd
A dos Window will appear.
Type next in the dos window: netsh winsock reset catalog
hit enter.

Reboot and post a fresh HJT log.

You might want to hold off on changing the AV. You have other issues that need to be resolved.
 
Status
Not open for further replies.
Back