Couple of days back, my orginisation pc's were hit my a virus. The virus would make network traffic very slow hence slowing down applications. Symantec then showed up virus as Hacktool.Rootkit and the path was C:/WINDOWS/system32/drivers/ndisvvan.sys
In some of the PC's i even found some dummy network controllers created.
So i formatted all the pc's effected with slow network speed and deleted auto run files created on the servers which were connected to these pc's
Now the problem is though there is SEP installed and the definition is upto date, Windows security Alert shows that there is no AV present or defintion out of date for the pc's i formatted and then connected back on the network. it started poping up once i connected them back on the network. As of now i am facing no issues on performance of these pc's but i am a little concerned on this alert suggesting me the virus might still be in the network.
Any help in this regard to sort out this problem???