essexboy...just a follow-up on the rootkit thread......

forgive me first of all…I am new to the boards and a computer moron.

Now that is out of the way…my issue involves the very (apparently) common rootkit detection screen from Avast (free version if that matters) upon start up and then every so often in the middle of most any task. It prompts me to either ignore or delete…when I hit delete, it recommends a boot scan that I have run more times than I can count, and then it just keeps coming up no matter what.

I read your prior responses in a thread to a similar problem and tried Kapersky (again)…but this time with your suggested parameter changes. It detected 4 threats. The options were “copy to quarantine”, “skip” and “delete”…I did copy to quarantine and it began to cure and my avast alarm went off a bunch of times blocking the various items. As dumb as it is, I assume I should have turned off avast while running this? Anyway, while avast said no further action was necessary, running Kapersky again finds the same four threats.

Anyway…I will post again here when the detection prompt comes up because I was too ignorant last time to write down the rootkit file name. Just wanted to make sure in the interim that copy to quarantine was the same viable option as “cure” which was not available…and also if I should terminate avast temporarily while Kapersky attempts to remove.

Thanks, Mike

so…does this mean you have avast and kaspersky installed ?

follow this guide and attach logs from malwarebytes / OTL / aswMBR
http://forum.avast.com/index.php?topic=53253.0

If you could attach the TDSSKiller log I will have a look see

Here is the last one run -

Thanks, MJ

Re-run TDSSKiller and when the following item appears select delete

\Device\Harddisk0\DR0 ( TDSS File System )

Ok…thanks man.

Once done let me know if any problems remain