would like to double check to make sure im not still infected

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by kilo85, Nov 27, 2012.

  1. kilo85

    kilo85 Private E-2

    hey guys me again

    I discovered after i had that virus a lot of my system registry stuff was missing and i could not use windows firewall, nor could i use windows updates, after a bit of messing about i managed to re-install both to the registry.

    I would now just like to double check with someone to make sure all parts of the virus have been removed, and not come back somehow.

    could someone please help me double check to make sure im not still infected?

    you can view the problem i had with the virus in this post

    http://forums.majorgeeks.com/showthread.php?t=267647

    thanks
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  3. kilo85

    kilo85 Private E-2

    Yes, It was Tim. He was more than helpful.

    ok Kes ill get cracking and post up logs tomorrow

    cheers
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    OK. I'll be floating about somewhere. :)
     
  5. kilo85

    kilo85 Private E-2

    Hey

    Sorry i did not reply, i have been pretty busy recently. Unfortunately i think i am still infected, hoping someone here can help me out.

    The problem i am having now is mainly noticeable with audio, not good as i am a music producer.

    The audio seems to be breaking up and distorting often, the only workaround i have is to manually disable the speakers under "playback devices", and turn it back on again, this normally fixes the problem for a few minutes before the sound gets distorted again.

    The audio seems to work fine if my CPU is very low, but if i have say two or three tabs open on youtube, or start adding effects in ableton the sound starts skipping and distortion occurs. I have never had a problem with this before so im 100% sure it is not my system specs that is causing the problem.

    I have tried everything to fix it, uninstalling and re-installing audio drivers. Even totally removing realtek audio (i use a pro 14 soundcard so i don't need it anyway).

    that said im not 100% sure it is a malware issue, as i have recently used a 3rd party driver updater to find and install new drivers, and i have also installed new chipsets, the problems started soon after all this.

    Hoping someone can help me out as this is turning into a bit of a nightmare to fix.

    I have attached the logs, and will be back soon to check for replys

    Thanks
     

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    c:\program files (x86)\AVG PC TuneUp 10.0.0.27 PreCracked <=--= Surely I do not need to mention that things like this invite in nasties. :)

    Re run Hitman and have it delete Malware remnants and Potential Unwanted programs.

    Delete these folders:
    • C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com
    • C:\ProgramData\SpeedyPC Software

    Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.

    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    We are going to be uninstalling your old version of FireFox and installing the new version. (Except to uninstall we will use Revo Uninstaller) So do the below to save bookmarks:

    • Run FireFox and click Bookmarks.
    • Then select Organize Bootmarks.
    • Then on the next window click File and then select Export. Save the bookmarks.html file to your Desktop for later use in importing.
    Now download and save the installer for the current version of FireFox but DO NOT install it yet. Get it here: Mozilla FireFox

    You will need exit FireFox now and use Internet Explorer to continue with the below until we reinstall FireFox.

    Start by uninstalling FireFox and then reboot. Do not skip the reboot.
    After reboot, delete the below folders:
    • C:\Program Files\Mozilla Firefox
    • C:\users\UserAccount\AppData\Roaming\Mozilla\Firefox

    where UserAccount is the actual user account name being used.

    Now reinstall FireFox from the file previously downloaded.
    Import your bookmarks file. (similar process to exporting).

    How is everything running now?
     
  7. kilo85

    kilo85 Private E-2

    Haha, oops.

    well, I blame my lack of finances :(
    kind of ironic though......

    I am working on your advice now, will get back today with an update on how things are going.

    Thanks Kestrel :)
     
  8. kilo85

    kilo85 Private E-2

    Well, touch wood everything "seems" to be working fine once again.

    Ableton is not skipping, even when I pile on loads of FX / synths, and firefox can run multiple videos without sound breaking up and distorting.

    oh, and fixME.reg was successfully added to the registry.

    Thanks a million Kestrel, you once again MajorGeeks come to the rescue, id be stuffed without your help. So thanks.

    Are there any other steps you would like me to take?

    Kilo
     
  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Cracked software WILL bring in infection. And if you ever needed help in the future, and we saw cracked software evidence, we could refuse to assist. :(

    Glad all is well now. :)

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 4 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 6 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     
  10. kilo85

    kilo85 Private E-2

    That said I think i spoke too soon.

    though things are indeed much, much better than they were before. Last night i played a video on youtube with only one tab open and the distortion started again.

    I have not taken any steps outlined in your last message, i will wait to see what you advise before taking any further action
     
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I think you had better post in the software forum about that anyway. ;)
     
  12. kilo85

    kilo85 Private E-2

    Thank you Kestrel13!

    All is good. your help is much appreciated!
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No problem. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds