Rootkit MBR zegost H found and located but no action taken
My system got infected by MBRzegost rootkit and I had to factory reset and reinstalled the windows, then installed bit defender and ran a full scan that detected 1 threat found under the name of Rootkit.MBR.Zegost.H(boot image) with no action taken. So I started Rescue Environment which detected the rootkit and located it but it is a zip file with PASSWORD PROTECTION.. So I desperately tried random numbers to unlock it but it didn't and bitdefender completed its scan saying that my device is clean with 1 unscanned file dt password protection.
I run Windows 11 which i updated after resetting my computer. My bitdefender is updated and now I am on my 30 days free trial. I also tried several other rootkit removers but all failed to even detect it. I tried the Microsoft offline scan but same thing didn't detect it. I tried to go manually to rootkit location and use any tool to know its password but of course it gave me unable to access. If anyone helps me please.
Comments
-
Generate bitdefender support tool logs: https://www.bitdefender.com/consumer/support/answer/1733/
Generate bitdefender connectivity logs: https://www.bitdefender.com/consumer/support/answer/9689/
Generate bitdefender BDsysLog: https://www.bitdefender.com/consumer/support/answer/1922/
Share the logs & your query with bitdefender support team by dropping them an email at bitsy@bitdefender.com
The support team will reply back to your query within next 24-48 hours excluding weekends.
Additionally, I would also advise you to run these portable scanners which do not require any installation to see if they can detect and remove the master boot record rootkit
* ESET Online Scanner: https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner.exe
* Download and run a scan with Kaspersky Virus Removal Tool: https://devbuilds.s.kaspersky-labs.com/devbuilds/KVRT/latest/full/KVRT.exe .Make sure you checkmark System Memory, Startup Objects, Boot Sectors & System Drive before running a scan.
* Dr.Web CureIt!: https://cdn-download.drweb.com/pub/drweb/cureit/1673308974.271/l44hmkvh.exe
Regards
Life happens, Coffee helps!
Show your Attitude, when you reach that Altitude!
Bitdefender Ultimate Security Plus (user)
0