My sons PC got the TDL3 rootkit.

Discussion in 'malware problems & news' started by trjam, Feb 22, 2010.

Thread Status:
Not open for further replies.
  1. trjam

    trjam Registered Member

    :) I am so proud of him. I actually got popped by this. F-Secure detected it in a scan which is what he was using. It said it deleted it but on reboot my IE8 would either not connect or was redirecting me. Thank goodness for FD-ISR as he will be going into ShadowDefender from here on out. Teenagers:thumbd:
     
  2. Ibrad

    Ibrad Registered Member

    Hey not all teenagers get PC's infected, I am a teenager and I keep my PC Malware Spotless :D
     
  3. Saraceno

    Saraceno Registered Member

    You should have run hitman pro, they specialise in removal of this. :thumb:

    But if he knows how to use shadow defender, then you won't have to worry.
     
  4. trjam

    trjam Registered Member

    he doesnt and it doesnt matter because he will always be shadowed. Dont want to know how he got it either. Thought about Hitman but it takes over a hour to create a new snapshot and I want to finish tonight.
     
  5. CloneRanger

    CloneRanger Registered Member

    @trjam

    Congrats :D Just shows, it can and does happen to anyone sometimes. Fortunate you got a good plan.

    Was he in admin mode ?
     
  6. Saraceno

    Saraceno Registered Member

    Young dudes like admin mode, they install games and so on.
     
  7. The Hammer

    The Hammer Registered Member

    Did he have anything besides F-Secure ?
     
  8. optigrab

    optigrab Registered Member

    Assuming the rootkit was removed, the internet connection might have been restored easily: the rootkit might have made a simple change to the proxy settings - easy to correct.
     
  9. 1000db

    1000db Registered Member

    Sounds like you got it sorted out. I've used SD and FS together without any problems in the past. You'll have to exclude all of his game directories to save game data.
     
  10. siljaline

    siljaline Registered Member

Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice