Forum Home
Press F1
 
Thread ID: 111879 2010-08-15 10:13:00 TDL3 rootkit removal apsattv (7406) Press F1
Post ID Timestamp Content User
1128004 2010-08-15 11:26:00 That's why I plan to use it. apsattv (7406)
1128005 2010-08-15 11:39:00 Thats the "Fun" part about rootkits - The buggers hide, they often need dedicated software to remove, and even then you can never be 100% sure.

They can hide from all the AV's, clone them selves with random names/properties, the moment you think they have gone - Whamo-- back again.

Combofix -- I've used it plenty of times, and only had two PC's ever fail to boot afterwards. But you have to know how to repair them if that happens.
wainuitech (129)
1128006 2010-08-15 12:07:00 http://www.gmer.net/ zqwerty (97)
1128007 2010-08-16 16:43:00 Thanks for the offer but they prefer not to have a total stranger looking at it .

I will try some more tools on it overnight .

Did you notice this:

Speedy Gonzales
Member
Join Date: Dec 2004
Location: Auckland
Posts: 32,354

If you cannot trust him with your computer for a look-see, then you've insulted him mightily . I would trust him with my wife-first born female child and my credit cards .

Maybe not my beer or bass guitars - but, hey! Ya gotta hold something dear!
SurferJoe46 (51)
1128008 2010-08-16 19:52:00 You're better off backing up data, formatting the HDD and reinstalling Windows. There is no way you can be sure the system is clean after what happened when there could be things on it that no virus checker will ever know about. GoodHour (12218)
1128009 2010-08-16 20:00:00 You're better off backing up data, formatting the HDD and reinstalling Windows. There is no way you can be sure the system is clean after what happened when there could be things on it that no virus checker will ever know about.

Possibly this may be a good idea but I don't believe it can be done remotely via Teamviewer.
Snorkbox (15764)
1128010 2010-08-16 20:47:00 I had one recently too, ended up formatting, was easier in the end. Can be rewarding if you do remove it tho Gobe1 (6290)
1128011 2010-08-16 21:13:00 www.bleepingcomputer.com

tdsskiller saved me from a format,had a rootkit in the registry that would not delete by the usual methods

tdsskiller has been added to a USB drive along with the usual removel tools
Lawrence (2987)
1128012 2010-08-17 09:14:00 Did you notice this:

Speedy Gonzales
Member
Join Date: Dec 2004
Location: Auckland
Posts: 32,354

If you cannot trust him with your computer for a look-see, then you've insulted him mightily . I would trust him with my wife-first born female child and my credit cards .

Maybe not my beer or bass guitars - but, hey! Ya gotta hold something dear!

I'm aware of his reputation, no disrespect was meant to him
apsattv (7406)
1128013 2010-08-17 12:01:00 Yep, I have had tdsskiller do the job on a friend's machine. linw (53)
1 2 3