BOT/Virus Warnings From DSL Provider

I would still pull off any content you dont want to lose- before continuing. Even though writing a new MBR shouldnt cause any problems, its a just in case really.

ok to write a new MBR using the Windows installation media:

Insert the CD or DVD into the drive and restart your computer.
if upon restart it boots back in Windows then you will have to change the device boot order in the BIOS.

If it boots off the CD:
Setup will load. From the options chose:
Repair using recovery console, Press R
forget that look here instead.
 
Hi Shelf life,
I will attempt the rewrite of the MBR, but I am going to leave the infected machine off the network until I finish my taxes.

From my online research, again thanks for links you have provided, it would appear that I was infected due to some deficiency in my total protection system. I had all the XP updates installed, along with updated Firefox browser, and the XP firewall active, so I am not sure what happened. Also it would appear that none of the current mainstream anti-virus/anti-malware programs would have stopped it. (Neither AVG or spybot could find anything, yet my ISP provider was reporting malicious activity)

Could an old non updated Java version have allowed the rootkit in??

What I am after is not only cleaning the machine but any sort of 'CSI' clues that would indicate which 'weakness' that allowed this to happen. Lacking this info, I am hesitant to put the machine back into the network, less the same infection occur again.

Any insight is much appreciated.
Thanks
 
A single trojan could fetch a rootkit. Standard antimalware software could remove common malware and miss the rootkit. Malware is either user installed (unknowingly) or installed via a vulnerability in your OS, browser or software. The user installed ways, social engineering tricks are limitless.
an old non updated Java version have allowed the rootkit in
its possible, any outdated software that interacts with a web site could be vulnerable, Adobe products are popular targets.

See link

I will try to find some interesting links for you to read.
 
Back
Top