My only online activities were to check mail and google one topic, yet the Caution.Rootkit virus returned one day after removal. Any ideas on how to permanently remove/prevent it from coming back?
Here is the log...
Starting Routine> Removing SystemCurrentControlSetServicesMessagingService_48db9a...#(PX5: - MD5: )...
Deleting Registry Key> HKLMSystemCurrentControlSetServicesMessagingService_48db9a
Deleting Registry Key> HKLMSystemCurrentControlSetServicesMessagingService_48db9a
Starting Routine> Removing SystemCurrentControlSetServicesOneSyncSvc_48db9a...#(PX5: - MD5: )...
Deleting Registry Key> HKLMSystemCurrentControlSetServicesOneSyncSvc_48db9a
Deleting Registry Key> HKLMSystemCurrentControlSetServicesOneSyncSvc_48db9a
Starting Routine> Removing SystemCurrentControlSetServicesPimIndexMaintenanceSvc_48db9a...#(PX5: - MD5: )...
Deleting Registry Key> HKLMSystemCurrentControlSetServicesPimIndexMaintenanceSvc_48db9a
Deleting Registry Key> HKLMSystemCurrentControlSetServicesPimIndexMaintenanceSvc_48db9a
Starting Routine> Removing SystemCurrentControlSetServicesUnistoreSvc_48db9a...#(PX5: - MD5: )...
Deleting Registry Key> HKLMSystemCurrentControlSetServicesUnistoreSvc_48db9a
Deleting Registry Key> HKLMSystemCurrentControlSetServicesUnistoreSvc_48db9a
Starting Routine> Removing SystemCurrentControlSetServicesUserDataSvc_48db9a...#(PX5: - MD5: )...
Deleting Registry Key> HKLMSystemCurrentControlSetServicesUserDataSvc_48db9a
Deleting Registry Key> HKLMSystemCurrentControlSetServicesUserDataSvc_48db9a
Starting Routine> Removing threats - Please wait...#...
Solved
What could cause the Caution.Rootkit virus to return a day later?
Best answer by RetiredTripleHelix
Hello,@ wrote:
So i have this according to WEBROOT . it foudn the virus and removed. Ok it did not remove and i am not able to access anything. It is part of teh rtansom ware HD@aolonline. This is a nasty piece of something. It removed any thing i cna try to do to get the REG or control panel ETC....
Please contact Webroot support and they will help you with your issues!
Thanks,
Daniel ;)
Technical Support
Submit a Support Ticket
or Call 1-866-612-4227
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.




