


R2 avast! Antivirus avast! Antivirus c:\program files\alwil software\avast5\AvastSvc.exe R2 aswFsBlk aswFsBlk c:\windows\system32\drivers\aswFsBlk.sys R1 pxrts pxrts c:\windows\system32\drivers\pxrts.sys R1 aswSP aswSP c:\windows\system32\drivers\aswSP.sys R0 pxscan pxscan c:\windows\system32\drivers\pxscan.sys ĪV: avast! Antivirus *Enabled/Updated* įF - Ext: Java Quick Starter: - c:\program files\java\jre6\lib\deploy\jqs\ff Microsoft Windows XP Home Edition 5.1.26.

Here are the DDS and Gmer logs/attachments: My system is not really having any strange behavior anymore, but was wondering if there is still some kind of infection on it. I scanned atapi.sys on the virustotal website and found nothing. So Combofix and Rootrepeal keep finding something, where no other malware scanners are. I've done scans with many different rootkit scanners and they found nothing until I tried rootrepeal and found this in part of the log:Īddress: 0xB9F31000 Size: 96512 File Visible: - Signed:. I've gone through these steps several times now and keep getting the same thing. The next day I did a combofix scan and it detected rootkit activity. I did nothing else to the system except allow windows update to run. After getting everything back up and running I did a combofix scan and found nothing. Just to be safe I flashed the bios, put in the a windows sp3 bootdisk did a fixmbr, reformatted the hard drive, and reinstalled windows. Out of curiosity I ran the scan again and it found rootkit activity and after it reset it found nothing. After the computer reset it would do a complete scan and find nothing. I ran some programs and could not find anything until I ran combofix (I know, I know!) and it said it found rootkit activity and would reset the computer. About a week ago Firefox froze up and couldn't display any pages on the internet.
