Help please: Laptop rescued from dozens of malware - but is it now 100% clean?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by garth, Oct 25, 2008.

  1. garth

    garth Private E-2

    Hi. I've spent many hours over the last few days cleaning my cousin's laptop for him - he and his family are pretty ignorant of internet security (i plan to change this!) and the machine was in pretty bad shape when I first booted it up with probably a couple of hundred different malware issues, likely it's been a zombie for a long time.

    To start with it had WinAntiVirusPro 2006, 2007 & 2008 on it hijacking the desktop so I cleaned that with SmitFraudFix, SmitRem, RogueRemover, and removed several other issues (BHOs etc) using HijackThis, KillBox, HijackFree.

    Originally the PC had McAfee security on it which had expired and not been updated in a very long time, so I removed this and installed ZoneAlarm Free, AVG8, Spybot & Ad-Aware as these free products have always served me well. Scans with the latter three products then removed lots of malware. I plan to install SpywareBlaster later.

    I removed some minor startup issues using msconfig and upgraded the RAM in the machine from 256MB to 1GB and it then seemed to be running like a dream, but given the poor state a few days ago I was still suspicious and want to be certain there's nothing still lurking and compromising security.

    Searching for more tools and advice led me to discover your forum, which is extremely helpful, you guys have my complete respect for what you're doing here.

    I followed all the instructions in "READ & RUN ME FIRST" and Windows XP cleaning method and the various tools did find some more issues which earlier scans missed. The results of this are in MGlogs1.zip which I created yesterday evening.

    Having read your info about using msconfig & doing the scans in normal startup mode, I then sorted the startup issues using HijackThis (nothing malicious I don't think - Sonic RecordNow Update Manager trying to install, various Dell support stuff I don't want to bother running).

    Finally I ran an extra full scan using SuperAntiSpyware, which only came up with some grumbles about tracking cookies - this is all AVG has picked up too in the scans i've done since most of the cleaning was done.

    I just reran MGTools to create new logs following the HijackThis changes I made and the most recent spyware scan. These are in MGTools2.zip

    I would appreciate it if you could cast your expert eyes over these logs and let me know if i've missed anything - i've spent so long cleaning this machine that I want to make sure it's spotless before I give it back along with a lecture on safe internet usage!

    Many thanks

    GW
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Not seeing anything major......two things to uninstall:
    Java 2 Runtime Environment, SE v1.4.2_03
    Viewpoint Media Player

    And I am seeing that you at one time had PCTools Firewall Plus....did you uninstall it for Zone Alarm?

    After a reboot ---
    Donwload and install:
    Java Runtime 6
     
  3. garth

    garth Private E-2

    Thanks for looking Tim, yes you're right, I did have PCTools on there, got the entire 2009 security suite on a magazine disk but didn't rate it (autoupdates wouldn't work) and took it off. Have left their "Browser Defender" toolbar on it though.

    Cheers, i'll take that Viewpoint plugin off along with all the other AOL related stuff which I think came with the machine and doesn't get used.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    No problem....safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds