Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Hidden Rootkit

Does anyone know what this unremovable rootkit belongs to?

There is no other available info on it.

Is there a way to remove it, without rebuilding HD?

\HKEY_USERS\S-1-5-21-1390067357-299502267-725345543-1006

\HKEY_USERS\S-1-5-21-1390067357-299502267-725345543-1006_Classes

 running XP-SP3

:14657


This thread was automatically locked due to age.
Parents
  • Thank you Christian,

    HKEY_USERS_S-1-5-21-1390067357-299502267-725345543-1006 is hidden, wouldn't that make it a rootkit?

    What is SAR?

    using xp-home

     Using version 1.3.1 of sophos rootkit . 

    V.1.5 will not work on my machine. 

    Dan

    :15411
Reply
  • Thank you Christian,

    HKEY_USERS_S-1-5-21-1390067357-299502267-725345543-1006 is hidden, wouldn't that make it a rootkit?

    What is SAR?

    using xp-home

     Using version 1.3.1 of sophos rootkit . 

    V.1.5 will not work on my machine. 

    Dan

    :15411
Children
No Data