treelight
2015-04-30, 15:46
Hello, I've spent the better part of an hour looking to see if I could reslove this myself...but here I am pos
ting this. Apologies in advance ....
Vista, 32 bit, sp 2
// info: Rootkit removal help file
// copyright: (c) 2008-2015 Safer-Networking Ltd. All rights reserved.
:: RootAlyzer Results
File:"Unknown ADS","C:\Windows\winsxs\x86_microsoft-windows-p..rastructureconsumer_31bf3856ad364e35_6.0.6002.18005_none_b5c807ab2d93d829\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\Windows\PLA\System\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\PerfLogs\System\Diagnostics\20121113-0001\report.xml:Qgrg2rf1Znaluncm1kfl1xla5h:$DATA"
RegyKey:"No admin in ACL","HKEY_LOCAL_MACHINE","\SOFTWARE\Microsoft\Security Center\Svc\","S-1-5-21-1533950907-162137601-864722444-1000"
I did the scan in safe mode, because I was bombing out, which it turms out is a bad fan, (an older machine.) Did a file scan alson in safe mode. Both clean.
Would you take a look and see if I am okay with the above rootkit analysis?
Thanks very much.
T
ting this. Apologies in advance ....
Vista, 32 bit, sp 2
// info: Rootkit removal help file
// copyright: (c) 2008-2015 Safer-Networking Ltd. All rights reserved.
:: RootAlyzer Results
File:"Unknown ADS","C:\Windows\winsxs\x86_microsoft-windows-p..rastructureconsumer_31bf3856ad364e35_6.0.6002.18005_none_b5c807ab2d93d829\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\Windows\PLA\System\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh:$DATA"
File:"Unknown ADS","C:\PerfLogs\System\Diagnostics\20121113-0001\report.xml:Qgrg2rf1Znaluncm1kfl1xla5h:$DATA"
RegyKey:"No admin in ACL","HKEY_LOCAL_MACHINE","\SOFTWARE\Microsoft\Security Center\Svc\","S-1-5-21-1533950907-162137601-864722444-1000"
I did the scan in safe mode, because I was bombing out, which it turms out is a bad fan, (an older machine.) Did a file scan alson in safe mode. Both clean.
Would you take a look and see if I am okay with the above rootkit analysis?
Thanks very much.
T