PDA

View Full Version : RootAlyzer



momentaryloss
2013-01-25, 15:32
Finally upgraded to SpyBot2 and ran the RootAlyzer deep scan with the following results:

:: RootAlyzer Results
File:"Hidden file","C:\Windows\System32\null"
File:"Unknown ADS","C:\Windows\winsxs\amd64_microsoft-windows-p..rastructureconsumer_31bf3856ad364e35_6.0.6002.18005_none_11e6a32ee5f1495f\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\Windows\winsxs\amd64_microsoft-windows-p..rastructureconsumer_31bf3856ad364e35_6.0.6001.18000_none_0ffb2a22e8cf7e13\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\Windows\PLA\System\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"No admin in ACL","C:\Users\Full access\AppData\Local\Temp\~DF6DB.tmp"
File:"No admin in ACL","C:\Users\Full access\AppData\Local\Temp\~DF9DA9.tmp"
File:"Unknown ADS","C:\Users\All Users\TEMP:5D432CE3:$DATA"
File:"Unknown ADS","C:\PerfLogs\System\Diagnostics\20111021-0003\report.xml:Qgrg2rf1Znaluncm1kfl1xla5h:$DATA"
File:"Unknown ADS","C:\PerfLogs\System\Diagnostics\20111021-0002\report.xml:Qgrg2rf1Znaluncm1kfl1xla5h:$DATA"

I have scanned my machine with McAfee (yes the people who make me uninstall and reinstall SpyBot when I reinstall the virus checker) and Sophos and (not surprisingly) they found nothing.

I also cannot find some of these files in my file manager which is interesting.

Does anyone have any idea about which of these files I should be worried about and why?

Thanks

spybotsandra
2013-01-28, 14:15
Hello,

That does not look bad, some diagnostic and temp files.

Best regards
Sandra
Team Spybot

momentaryloss
2013-01-28, 14:36
Thanks.

I am usually very careful, but much of the credit must go to having Spybot up-to-date on the computer (and all my family's machines, whether they like it or not!) since day one.

Time to make another donation for your continued sterling work, I think.

:thanks:

spybotsandra
2013-01-28, 15:39
Thank you very much for your offer to make a donation. :)