Hello, o mods and members of this forum. I'd greatly appreciate some assistance, thanks in advance. I have a recurring hacktool.rootkit appearing in my c:\windows\system32\drivers folder. It appears masquerading as various types of .sys files. Symantec catches and quarantines a new one every time I boot up.
I stumbled upon this post:
http://forums.techguy.org/malware-re...rus-moved.html
and followed similar steps. I got killbox, killed the processes, quarantined the files, premanently deleted them, and a new one pops up on each boot. Ran safe mode, ran roguefix.bat a few times, it just won't die.
Thanks in advance for anyone willing to help.
Attached is my rootkit revealer output in JPEG format (couldn't get it to save so I printscreen-pasted) and my hijack this report.