Unsolved
This post is more than 5 years old
8 Posts
0
2983
June 23rd, 2006 03:00
hacktool.rootkit
dear all,
on the 19th norton came up with a message that I had hacktool.rootkit on my computer. it said it could not remove it, but it had been quarantined. I have scanned since and nothing comes up. I looked at symantec's own writeup on it, which was from 2001, 5 years ago. The instructions at that time for removal were extensive. I see other removal kits advertising themselves on google.
It would seem that norton would have come up with something after five years, especially if others have, that it would still show it if it was still there, or that it would have listed it as removed, if it were, and that they would have had a more recent writeup, and finally that since I had all the protections turned on, that after 5 years they would have found a way to protect me against getting it in the first place. Since they only told me about it on the 19 I presume that's when I got it. In the log of encountered viruses, which is nebulous as to what it actually did with them, there is another hacktool. -something.
It also stated in that symantic write-up, that if I had it on there it probably meant that someone had taken control of my computer, but nothing about whether they still had that control.
So this whole thing leaves me a bit confused, I'd say.
Thanks for all insights you can provide.
Life
0 events found
No Events found!


bamajim
10.4K Posts
0
June 23rd, 2006 11:00
lifej
There are many infections, and many different names for even the same infections. And the list is continually growing. Unfortunately, anti virus companies are hard pressed to keep up.
Whether your pc is under someones else's control would be hard to determine without further investigation. The fact the your antivirus recognized the intruder is a good thing.
If you feel that your pc is infected
Go Here And download HijackThis
Save it in a convenient permanent folder such as C:\\HJT\\, double click HijackThis.exe, and hit "Scan". When the scan is finished, the "Scan" button will change into a "Save Log" button. Press that, save the log, Ctrl-A to Select All, and copy its contents AT THE LINK BELOW
LINK
and include a description of the problem along with your log
Please do not be tempted to "fix" on your own. Hijackthis is a very powerful tool, if used incorrectly can cause system problems
bamajim
Training at Malware Removal University
mommywitcht
1 Message
0
June 25th, 2006 23:00
Ok...After reading this, I downloaded the HJT too. I had that stupid rootkit virus too, so I did a clean install of my Windows XP.
Can you take a peek at this and see if I have anymore rootkit left?
Message Edited by mommywitcht on 06-25-200607:20 PM