Can you tell me specifically what Endpoint is deleting? Most AVs have a log you can access - I'd like the full file path to whatever it is detecting, please.
Trojan.Agent/Gen-FakeAlert[Local] and Possible Rootkit Infection Need help making sure machine is clean & protected.
#16
Posted 08 February 2012 - 09:54 PM
#17
Posted 12 February 2012 - 02:48 AM
this is all i can find in the log
Combo Fix.exe Trojan.ADH.2 Cleaned by deletion File C:\Users\Drew\Desktop\
the attachments might help more
let me know if there is anywhere i should look
Combo Fix.exe Trojan.ADH.2 Cleaned by deletion File C:\Users\Drew\Desktop\
the attachments might help more
let me know if there is anywhere i should look
Attached File(s)
-
adh log.png (90.89K)
Number of downloads: 3 -
adh 2.png (88.07K)
Number of downloads: 3 -
adh log.png (90.89K)
Number of downloads: 2
#18
Posted 12 February 2012 - 09:24 AM
That was helpful, thanks. Those were all false positives. Is the ComboFix icon gone from your desktop now? Please do this for me:
Open notepad and copy/paste the text in the quotebox below into it:
Save this as peek.bat Choose to "Save type as - All Files"
It should look like this:
Double click on peek.bat & allow it to run. A notepad file will open. Copy that information into your next reply, please.
Open notepad and copy/paste the text in the quotebox below into it:
Quote
@echo off
dir /a /s "C:\combofix" > log.txt
notepad log.txt
del log.txt
dir /a /s "C:\combofix" > log.txt
notepad log.txt
del log.txt
Save this as peek.bat Choose to "Save type as - All Files"
It should look like this:
Double click on peek.bat & allow it to run. A notepad file will open. Copy that information into your next reply, please.
#19
Posted 12 February 2012 - 03:21 PM
The CFuninstall icon is still there, but the combofix icon is not.
here is what was in the log:
Volume in drive C has no label.
Volume Serial Number is 9287-437C
here is what was in the log:
Volume in drive C has no label.
Volume Serial Number is 9287-437C
#20
Posted 12 February 2012 - 03:33 PM
#21
Posted 12 February 2012 - 04:39 PM
Is my computer all clean?
If so, thanks so much for your help!
If so, thanks so much for your help!
#22
Posted 12 February 2012 - 04:58 PM

Help
This topic is locked



Back to top








