I have Search.us.com and TNT2user.exe !!

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by flywelder, Dec 16, 2012.

Thread Status:
Not open for further replies.
  1. flywelder

    flywelder Private E-2

    Ok Kestrel13, So far, I have organized and saved my book marks to the desk top. I have downloaded the new fire fox and saved it to the desk top.
    I have not gone to internet explorer or uninstalled fire fox or any other of the instructions as yet as I am waiting to hear from you about the comodo virus.

    I have attached a screen print of comodo's quarantined items for you to view, and advise me on, for I am afraid to delete anything we are using and that comodo feels is a virus or malicious.... you understand?
     

    Attached Files:

    Last edited: Dec 30, 2012
  2. flywelder

    flywelder Private E-2

    Kestrel13, I'm very happy with our progress and success! and I feel we're working well together! You deserve a big hand of applause!

    Now, I have attached screen prints of "logs" i am thinking may be of help to you,...and maybe not...I don't know. but, I will share that i am concerned about and not certain what to do with these "logs" mainly because I don't want to uninstall something you need me to keep. Plus as your my malware expert, and I am not certain but maybe me sharing the anti spyware logs may be of great benefit to you as you help me.?
    and not to mention but, alarming to me is that one of the reports says it found 241 malicious items!..and as far as i know Kestrel has, quarantined them. ...but 241 ! ...can't be! :confused help kestrel13.:)

    So might I ask you to look at both the screen prints attached and advise me what to keep and what to get rid of, and how I should proceed with the info in the screen prints.

    One of the screen prints is tittle super anti spyware home , I included this one so you can see how super anti spyware is configured on my comp. and it may trigger you to instruct me on how to better set it up to run etc. or you may see something that I obviously wouldn't and that is alarming. ... boy I so hope I am not being a nuisance. :-o: confused
    Thank you Kestrel13 !
     

    Attached Files:

    Last edited: Dec 30, 2012
  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    MGTools is safe. We know that ;) Comodo is wrong. It's a false positive.
    Well I cannot see the FULL file path of the "threats" as you can see from the screenshot, so expand the box across so I can see.
     
  4. flywelder

    flywelder Private E-2

    I do hope I understood your request and have executed your request properly. ;) Also, these reports that I spoke of in my last posting and that I have attached, are from Super Anti spyware and not Comodo. Ill send Comodo's list next.

    Some of the reports are so large!, that they do not fit entirely on my screen at one time, so I had to copy them in sections, as I indicated by using the words, 1st half and 2nd and final, and also, expanded.

    The super anti spyware screen shots of Quarantined items will not reveal any thing more when expanded across, but only if I expand downward. So i clicked on all the plus symbols (+) and I hope that is of benefit to you.

    The 12-17-2012 scan log shows a Trojan was discovered. The other items listed are tracking cookies.

    The 12-27-2012 scan log lists only tracking cookies
    which I have recently learned are not as much of a threat... am I understanding tracking cookie threats correctly, kestrel13?

    Also, if these items are quarantined, then they are no longer a threat and I need to just click on the remove button? is this correct interpretation Kestrel13?
     
  5. flywelder

    flywelder Private E-2

    Attached is Comodo's Quarantined list, expanded. Unfortunately it listed no other information when I expanded the screen? I also do not find any button to allow me to view more than what I see . :(

    I have attached a expanded screen print of comodo's event logs, maybe it can be of help? it to, offered no more info when I expanded it to fill my screen. :(

    And I want to say that Comodo and Super antivirus are running these scans and quarantining these items automatically. and then alerting me. So i hope that is ok to be happening kestrel13 ? I'll follow your instructions. :)
     

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I don't need to see anything else to do with SUPERantispyware thankyou. :) Or Comodo for that matter. At this point I am going to ask you if you have any ACTUAL malware problems now or not? You have to appreciate that we must wrap this up soon unless there really is something wrong. ;)

    Happy New Year to you by the way!
     
  7. flywelder

    flywelder Private E-2

    Now with the holiday and all it's trappings and activities behind me, I am back, thanks for waiting. Happy new year to you as well!
    Allow me to explain that I posted the reports because I thought you asked for them,..
    Well I cannot see the FULL file path of the "threats" as you can see from the screenshot, so expand the box across so I can see.

    I probably did the expanding incorrectly, and don't know if what I read is a n infection or 'a false positive' ( which I learned from you) thanks.

    I don't see any of the problems I was having and fire fox seems to be working fine.
    Thank you for all your help, patience, great instructions and vast knowledge, to rid my computer of the infection. Especially with my minimal computer knowledge and skills...for i was frustrated with my self!

    Should I clear my computer of anything we used or that was created from all that you had me download?.... A list would be helpful.
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You are most welcome. Safe surfing!

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 4 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 6 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     
  9. flywelder

    flywelder Private E-2

    Before we part. I will keep super anti spyware and Mal ware bytes anti malware programs. Yet I'm confused and worried, that these will not protect my computer. because, malware bytes I read, is not a complete protection program and is designed to run in conjunction with an AV program. ? :confused

    I have Comodo, but I'm just trying it, and have not paid for it, because I'm not thrilled with the ease of running it or the ease I am experiencing with interpreting the results it gives...! ( as your aware, ;))

    Am I wrong about Malwarebytes and it is a AV and I don't need to keep Comodo along with Malwarebytes?:confused


    I read the links you provided about AV programs. So many said they detect and remove________, ( a specific infection)

    I'm seeking a AV program that detects, finds, quarantines and removes competently any infection... and does so with out asking me a lot of questions I don't understand how to answer. thus I don't go this task of finding and removing and correcting the damage again. { once is enough for me ;) }
    What does that? :confused

    I look forward to your reply.
     
  10. flywelder

    flywelder Private E-2

    Yes I will keep Malwarebytes, if I can get the full version to work. I have attached a screen print of the window that pops up when I try to run the full version. For I have been trying to activate the trial for full version this whole time and it will not activate. :confused it is aggravating!
    And i will keep it if I can be assured it will be better than camodo and that I'll like it better.

    as for super anti spyware, I may keep it, but only of I can be assured I am not installing redundant programs.

    I am unsure and leery of these programs!:confused

    I look forward to reading your reply stuffed full of guidance, assurance and direction. :)
     

    Attached Files:

    Last edited: Jan 3, 2013
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Correct, it is antispyware. You should run 1 antivirus and 1 antispyware and 1 firewall.
    That you will never find or else this malware forum would not exists :-D
    You can further discuss this in the software forum.

    You can also discuss this in software forum if need be. ;) Thanks.
     
Thread Status:
Not open for further replies.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds