MajorGeeks Support Forums

Go Back   MajorGeeks Support Forums > ----------= PC, Desktop and Laptop Support =---------- > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 07-28-12, 23:37
Superlost6's Avatar
Superlost6 Superlost6 is offline
Specialist
 
Join Date: Nov 2009
Location: Somewhere lost in time
Posts: 340
Thanks: 120
Thanked 0 Times in 0 Posts
Default Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

Hello..
I have a Dell Desktop PC w/ windows7 - The PC received what looks to be cool-web-search infection & possibly windows tools 2010 virus. Nevertheless, it appears I got it all as all the infection popups and High Jacks have stopped.

Before I give this PC back to my sister if you could check my logs to see if I need to do anything.
THANK YOU!

Superlost6

MGlogs.zip

combo-fix-log.txt

RKreport[2].txt

SUPERAntiSpyware Scan Log - 07-28-2012 - 23-28-56.log
Reply With Quote
Sponsored links
  #2  
Old 07-28-12, 23:59
Superlost6's Avatar
Superlost6 Superlost6 is offline
Specialist
 
Join Date: Nov 2009
Location: Somewhere lost in time
Posts: 340
Thanks: 120
Thanked 0 Times in 0 Posts
Default Re: Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

Sorry, I forgot one other log...
Attached Files
File Type: txt mbam-log-2012-07-29 (00-31-25).txt (3.8 KB, 1 views)
Reply With Quote
  #3  
Old 07-29-12, 00:13
Superlost6's Avatar
Superlost6 Superlost6 is offline
Specialist
 
Join Date: Nov 2009
Location: Somewhere lost in time
Posts: 340
Thanks: 120
Thanked 0 Times in 0 Posts
Default Re: Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

One last note:

I see there is two (2) Icons on my desktop marked " Desktop.ini " this don't seem normal to me?
Reply With Quote
  #4  
Old 07-29-12, 20:55
thisisu's Avatar
thisisu thisisu is offline
Malware Consultant
 
Join Date: Apr 2006
Location: Houston, TX
Posts: 8,162
Thanks: 269
Thanked 1,436 Times in 1,355 Posts
Default Re: Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

Hello Superlost6,

Please attach your log from HitmanPro

And those icons are your desktop are normal. They will be removed once we turn off "show hidden/system files" again.
__________________
Facebook . Twitter . Blog . VirusTotal
Reply With Quote
  #5  
Old 07-30-12, 03:28
Superlost6's Avatar
Superlost6 Superlost6 is offline
Specialist
 
Join Date: Nov 2009
Location: Somewhere lost in time
Posts: 340
Thanks: 120
Thanked 0 Times in 0 Posts
Default Re: Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

Here is the log
Thank you!
Attached Files
File Type: log HitmanPro_20120730_0426.log (2.7 KB, 1 views)
Reply With Quote
Sponsored links
  #6  
Old 07-30-12, 13:17
thisisu's Avatar
thisisu thisisu is offline
Malware Consultant
 
Join Date: Apr 2006
Location: Houston, TX
Posts: 8,162
Thanks: 269
Thanked 1,436 Times in 1,355 Posts
Default Re: Dell Desktop Virus Cleaned? LOG CHECK - PLEASE! Thanks

From Programs and Features (via Control Panel), please uninstall the below:
  • Ask Toolbar
  • Search Results Toolbar

Reboot.

__

Delete these folders if they still exist:
  • C:\Program Files\MyWebSearch
  • C:\Program Files\Ask.com
  • C:\Program Files\toolbar2

__


Open Notepad and copy everything in the code box below into it.
Code:
REGEDIT4

[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{348bd83c-b2cd-4319-a605-c96bb458dd80}]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
"{348bd83c-b2cd-4319-a605-c96bb458dd80}"=-
"{6c97a91e-4524-4019-86af-2aa2d567bf5c}"=-
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[-HKEY_CLASSES_ROOT\clsid\{348bd83c-b2cd-4319-a605-c96bb458dd80}]
[-HKEY_CLASSES_ROOT\clsid\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
  • File -> Save As -> Save as type: "All Files" -> File Name: fixme.reg > Save.
Now merge this into the registry by double-clicking it.
Let me know if the merge was successful or not.

__

If everything above was successful:

If you are not having any other malware related problems, it is time to do our final steps:
  • Any programs we had you download and/or install can be removed at this time.
  • If we had you download and run ComboFix, here is how to uninstall it:
    • Press and hold the Windows key and then press the letter R on your keyboard.
    • This opens the Run dialog box.
    • Copy and paste the below text inside the text-field:
      • "%userprofile%\desktop\ComboFix" /uninstall
    • Now press ENTER
    • ComboFix will extract its files one last time and you should receive a notification that ComboFix has been uninstalled shortly after.
  • You can re-enable your Disk Emulation software at this time via DeFogger.
  • If we had you create or download a registry patch or "fix" script, these can be deleted at this time.
  • Go into the C:\MGtools folder and run the MGclean.bat file to remove additional traces of our tools.
  • Now we will toggle System Restore to remove any infected system restore points.
  • Lastly, here is a guide to protect you from future infections: How to Protect yourself from malware!
  • Be safe
__________________
Facebook . Twitter . Blog . VirusTotal
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Computer Cleaned no virus spyware, running slow and redirecting. Karma12 Malware Removal 1 02-02-12 15:18
Dell Desktop + Dell Printer = "No Problem", Correct?!? grc123 Hardware 3 11-20-11 09:53
Desktop Secuity 2010 - please check my logs RedBikeBlueFord Malware Removal 5 07-17-10 15:48
Can someone check and see if I cleaned out everything please? Philbh3 Malware Removal 4 12-08-09 20:10
virus that cannot be cleaned / removed scotty2 Malware Removal 12 06-01-05 22:53


All times are GMT -5. The time now is 10:27.

MajorGeeks.Com Menu

MajorGeeks.Com \ All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ NEW! PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads

MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds


All content Copyright MajorGeeks.com source code Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger