Jump to content


  • Posts

  • Joined

  • Last visited


0 Neutral
  1. Hi Kevin, I appreciate the help! I have followed the steps as you said, and here is the FRST.txt file. FRST.txt I see that FRST has found the rootkit at HKLM-x32\...\Run: [svcvmx] => "C:\Users\shibb\AppData\Local\ntuserlitelist\svcvmx\svcvmx.exe" -starup <==== ATTENTION What are the removal steps? I have not rebooted the infected PC yet; I left it in recovery mode.
  2. Addition.txt FRST.txt scan_180524-115931.txt Here are the logs.
  3. I have the smartservice rootkit on my machine, and I can't remove it. I have been unable to start malwarebytes, windows defender, or avast. Emsisoft Emergency Kit has been able to detect this rootkit at C:\WINDOWS\System32\Drivers\mouvqrty.sys. However, it has been unable to delete this file. EEK says that this file cannot be removed for your own safety, and it says a computer restart is required. However, after restarting the virus is still there. I tried multiple EEK scans to no avail. I also used Zemana anti malware to detect it, but it cannot remove smartservice either. Help would be appreciated.
  • Create New...