Win32:Rootkit-gen[Rtk]

So avast detects it everytime I startup windows the files are located in C:\users\Myname avast keeps blocking it and the virus seems to recreate itself Please i need help.

everytime i run malwarebytes and it freezes and it causes my pc to slow down

theres is also a weird program running on background powershell.exe

heres the log

also in msconfig startup theres a startup called “X” and the file is x.vbs

so after I restarted my pc the powershell.exe seems gone but avast threat blocked is still giving alerts that there is a new Win32:Rootkit-gen[Rtk]

NEW VIRUS FOUND IDP.ARES.GENERIC

heres all the threats

new virus is still IDP.ARES.Generic

Have you run Combofix?

if so why? also attach combofix log

Malware expert is probaly not online before tomorrow

I run combo in the morning. But dont worry i fixed it already i used the malwarebytes rootkit tool and it deleted the vbs script which is the reason why it keeps creating the virus if connected to the internet. You can close this now thanks btw :slight_smile:

thats also the reason why it runs the powershell thingy on startup