FANTOMAS_06
2008-04-29, 17:29
:oops:
Excuse my English, not very good, but I'am a "French'people" so ...
I had formated my Hard disks then reinstalled my Win XP SR2 and the necessary applications I'm using. This was yesterday, after a hard attack of "Backdoor.win32.Hupigon.tsy" that nothing had resolved. So Formating became more secure.
(Note thay my Antivir is the first thing installed and Uptodate)
Than today, I started the first deep scan with RootAlyser I just discover, and I get this result (The Quick Scan was OK !)
The "Information" says Please do not blindly use this script; in case of any doubt, visit
http://forums.spybot.info/
and ask for assistance !
That's what I'm doing.
// info: Rootkit removal help file
// copyright: (c) 2008 Safer Networking Ltd. All rights reserved.
:: RootAlyzer Results
Directory:"No admin in ACL","C:\System Volume Information"
RegyKey:"Zero char in key
name","HKEY_LOCAL_MACHINE","\SOFTWARE\Microsoft\Windows\CurrentVersion\","System\0"
// Attention: entries with a zero character will not be displayed correctly and may not work!
I'm thinking that some of you know how to change this safely if it seem to be necessary (with Regedit of course)
Thank you very much for your help.
Patrick.
Excuse my English, not very good, but I'am a "French'people" so ...
I had formated my Hard disks then reinstalled my Win XP SR2 and the necessary applications I'm using. This was yesterday, after a hard attack of "Backdoor.win32.Hupigon.tsy" that nothing had resolved. So Formating became more secure.
(Note thay my Antivir is the first thing installed and Uptodate)
Than today, I started the first deep scan with RootAlyser I just discover, and I get this result (The Quick Scan was OK !)
The "Information" says Please do not blindly use this script; in case of any doubt, visit
http://forums.spybot.info/
and ask for assistance !
That's what I'm doing.
// info: Rootkit removal help file
// copyright: (c) 2008 Safer Networking Ltd. All rights reserved.
:: RootAlyzer Results
Directory:"No admin in ACL","C:\System Volume Information"
RegyKey:"Zero char in key
name","HKEY_LOCAL_MACHINE","\SOFTWARE\Microsoft\Windows\CurrentVersion\","System\0"
// Attention: entries with a zero character will not be displayed correctly and may not work!
I'm thinking that some of you know how to change this safely if it seem to be necessary (with Regedit of course)
Thank you very much for your help.
Patrick.