About two weeks ago I was hit by the phony rogue "System Security" malware, which presents itself as a Windows security alert. I can't recall exactly how I got it, but I'm guessing I visited some very compromised site, and possibly and unthinkingly clicked a link I shouldn't have. (*cough*)
I've been using computers and online for a great number of years, and I've never been infected by anything...until a couple weeks ago. Because of my long fortune, I admit I was careless. I never really ran anti-virus software, or a firewall, or anti-malware software. In fact, I wasn't even educated on such things, which is ironic considering I have a background in computer science. But you know what they say...use it or lose it.
Well...once I was hit by this malware, my interest and knowledge of these things were re-sparked, and I began perusing various forums relating to security issues.
Okay, anyway, let's skip to the good stuff.
One day I found I had those annoying "System Security" messages, acting like Windows messages, and I found that I couldn't click on and start any process without it telling me that it was 'infected'. Fine. I restarted in safe mode and started reading up on this. I downloaded all the programs that you all know and recommend, and more. I ran MBAM and SAS and others. They found infections and eliminated them. (I'm trying to abbreviate this)
Okay so my computer seemed very clean and I thought I was in the clear but my curiosity got the better of me and I kept reading on. I read about something called 'rootkits', which I hadn't known about before 2 weeks ago, but once I did I understood the concept. Fine. I downloaded and ran about 3 different anti-rootkit programs.
Sure enough, I had the "Skynet" rootkit, or some variation thereof. I proceeded to attempt to delete hidden files, or whatever else was detected, through a few different anti-rootkit tools. I truly believe my system is clean, but I just want to be sure. My only very minor concern is a couple different anti-rootkit tools I run produce odd logs.
Really what this post is about is me asking a true expert to take a gander at the log results of a couple different anti-rootkit proggies I ran to see if they can tell me if there's still anything fishy about my system. And please note, I've gone as deep as my knowledge will take me. I've run Kernel Detective and gmer and kX-Ray and Radix, so I hope I have at least some foundation for this inquiry.
If you wish, I can post my logs for RootkitRepeal, Gmer, and any other ARK software.

Help
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
This topic is locked

Back to top










