Jump to content

AVG 2014 - Rootkit or False Positives?


Jrod

Recommended Posts

Alright, I just recently updated AVG from 2013 to 2014 version. Upon initial scans after the update, it returned 8 reports of what, by all accounts, appears to be claims of a rootkit within operating system files (sysenter hook). Obviously these files cannot be deleted as normal protocol with an infected file. AVG offers no suggested action in remedying the matter. I've researched the results and find nothing other than people posting on AVG's forums with the same issues, giving me the suspicion that this is more likely a false positive than a legitimate threat. Most of their "help" is just suggesting making a Rescue CD and resetting your Master Boot Record.... needless to say, I really don't want to go fucking with the operating system boot files; I'm not all that proficient in extensive infection removal. Other programs such as Windows defender show no such infections, so I wanted to see if anyone else has come across this instance as well.

This is the result of the scan with a level 2 (of 3) threat warning:


"";"SYSENTER hook -> 0xFFFFF80002E74B80, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E74B80, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E74B80, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E74B80, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E748C0, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E748C0, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E748C0, <unknown>";"Infected"
"";"SYSENTER hook -> 0xFFFFF80002E748C0, <unknown>";"Infected"
 

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...