• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

Rootkit Question

name

Limp Gawd
Joined
Aug 27, 2005
Messages
454
I ran a scan with rootkit revealer and this is what I was shown:

Path: HKLM\SOFTWARE\Classes\webcal\URL Protocol
Timestamp: 7/2/2004 8:17 PM
Size: 13 bytes
Description: Data mismatch between Windows API and raw hive data.

Path: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Reinstall\
Timestamp: 10/26/2005 9:33 PM
Size: 0 bytes
Description: Key name contains embedded nulls (*)

Path: C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb
Timestamp: 11/2/2005 6:07 PM
Size: 64.00 KB
Description: Visible in Windows API, but not in MFT or directory index.

This is the first time I've scanned my system for rootkits and, after much searching on google and the sysinternal forum, I wasn't able to determine what these are or if I should do anything about them. I couldn't even locate the first two items in the regedit, assuming thats even where they are. Help would be appreciated.
 
Back
Top