Rootkit Results a Bit Overwhelming - Guidance Please

djlipsy

New member
Rootkit Results a Bit Overwhelming - Guidance Please

I have a very long Rootkit Deepscan Result List that I don't know how to interpret...

There was only one file that was singled out:

Type: File
Object: SafeOS.Mount:$WIMMOUNTDATA:$DATA
Location: C:\$WINDOWS.~BT\Sources\SafeOS\
Details: Unknown ADS

But then I have nearly 500 (!) Registry Key entries like the one below, all with the notation under the "details" column: "No admin in ACL":

Type: Key
Object: {02DDA8BD-182F-4C35-A0F7-9CC378822AC3}
Location: HKLM\SOFTWARE\Classes\Wow6432Node\Wow6432Node\CLSID\
Details: No admin in ACL

Any help I could get would be appreciated!
Thanks!
David
 
Last edited by a moderator:
Hello djlipsy,

Those files appear to be normal. The RootAlyzer is an analyst tool, sometimes even legitimate software may use rootkit technologies.

Do you suspect an infection, is that why you ran the scan?

Best regards.
 
Back
Top