I have a PC that appears to have a rootkit on it. Symptoms include the following:

AVG control and test programs have been deleted. Updates cannot be downloaded for any antispyware software. Any antimalware software running in normal mode does not find anything, or doesn't finish scanning, or cannot delete anything including cookies. Cannot create new folders on the hard drive or delete any files. You get the idea.

I tried connecting the hard drive to a clean PC as a slave drive and scanning it. Nothing of any consequence was found beyond a few cookies.

I was finally able to get MalwareBytes and SuperAntispyware installed. The logs from those are attached, although probably not of much use. I will try to obtain a HijackThis log next.


Malwarebytes' Anti-Malware 1.33
Database version: 1654
Windows 5.0.2195 Service Pack 4

2/16/2009 9:19:09 PM
mbam-log-2009-02-16 (21-19-09).txt

Scan type: Full Scan (C:\|)
Objects scanned: 126890
Time elapsed: 3 hour(s), 4 minute(s), 39 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)