Am I clean - followed all steps in READ & RUN ME FIRST

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Zobags, Feb 18, 2007.

  1. Zobags

    Zobags Private E-2

    I completed all the steps in READ & RUN ME FIRST as well as few other things. My logfiles are attached. I am not experiencing any specific problems, but would like to know if my computer is now clean.

    I ran but could not get a log file for CounterSpy. But it found only three issues - all related to trustworthy software I had previously installed and uninstalled.

    In addition to the READ & RUN ME FIRST stuff, I also did the following.

    I ran Adaware, and it found and quarantined "IEHIJACKER.SEARCHEXE". Do I need to worry futher about this?

    I ran RootKitRevealer and it found several problems. The logfile for that will be attached to the next post.

    I ran the Backlight rootkit scan from f-secure.com. It found no issues. The logfile for that will be attached to another post.

    Also, I have 2 programs that do not show up in add/remove programs in Control Panel, but show up in the CCleaner uninstall list. However, when I try to uninstall them in CCleaner, I get the message "Could not locate uninstaller." The programs are "AutoUpdate" (I have heard this may be malware) and "WebFldrs XP". Do I need to worry about these?

    I have heard the uPnP in Windows is a big security problem, so I tried to run the Disable uPnP utility at http://grc.com/UnPnP/UnPnP.htm, but could not get it to work (it just kept hanging/not responding). So I manually stopped and disabled the "Universal Plug and Play Device Host" service. And I think manually stopped the "SSDP Discovery Service", but I could not figure out how to disable it (I am pretty sure I succeeded in stopping it but am not certain - when I rightclick it now I have the option to start it). Does this eliminate the risk?

    Finally, I am currently running the following security programs:
    ZoneAlarm Firewall 7.0 (Windows Firewall is off)
    AVG Free Edition 7.5
    Windows Defender 1.1
    SnoopFree Privacy Shield 1.0.7
    Is this setup OK?

    Any help is greatly appreciated.
     

    Attached Files:

  2. Zobags

    Zobags Private E-2

    More log files attached.
     

    Attached Files:

  3. Zobags

    Zobags Private E-2

    One last log file for Backlight from f-secure.com.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You don' show any malware problems in your logs.

    Okay now uninstall the Sunbelt CounterSpy trial since we are finished with it now! Then delete the below two folders left behind by the uninstall:
    C:\Documents and Settings\All Users\Application Data\Sunbelt Software
    C:\Program Files\Sunbelt Software

    Also delete the below folder from Viewpoint Media:
    C:\Documents and Settings\Geoff\Application Data\Viewpoint

    You are running Mozilla Firefox (1.5.0.9) consider uninstalling this and upgrading to the current version if you are so concerned with security. You can get it here:Mozilla Firefox


    To Stop and Disable the SSDP Dicovery Service use the below.
    • Click on Start, then Run ... type services.msc into the box that opens up, and press 'OK'.
    • On the page that opens, scroll down to SSDP Discovery Service
    • then right click the entry, select Properties and press Stop Service.
    • When it shows that it is stopped, next please set the Start-up Type to 'Disabled'.
    • Click OK until you get back to Windows.
    Did you use Spybot Seach & Destroy's Immunize feature? If not, make sure you do and keep it install and re-immunize after each update.
    Also I recommend that you install an enable all protection features of SpyWare Blaster
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds