![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
|||
|
|||
|
Seems to be an epidemic in the making with this awful Sirefef trojan. My Dell desktop, like many others' as I've been reading in this forum, has been infected. I have been able to complete the 'show hidden folders' instruction and also implement Defogger. I have also run all restore options using F8 options without success in removing the virus. After reading Datenshi (and others), it seems the common element is to go ahead and attached the log text files. Therefore, I have already run FRST64 and have attached the resulting frst.txt and search.txt files. Your assistance in 1) stopping the rebooting so I can proceed with the READ ME FIRST instructions (if so indicated) and 2) ultimate eradication is very much appreciated! Helpful data:
Windows 7 64-bit Virus infiltrated yesterday (8/11/12) - mid day May have been via a fake Adobe Flash Player "update" notice Thank you. |
| Sponsored links |
|
|
|
#2
|
||||
|
||||
|
Save fixlist.txt to your flash drive.
Now reboot back into the System Recovery Options as you did previously. Run FRST and press the Fix button just once and wait. The tool will make a log on the flashdrive (Fixlog.txt). Please attach this to your next message. (See how to attach) Now boot into normal Windows can continue with the below. Running MGTools.
__________________
Major cake licker. YCLAHTW, BYCMHD!! Major Geeks on Facebook Major Geeks Newsletter |
| The Following User Says Thank You to TimW For This Useful Post: | ||
despuser (08-12-12) | ||
|
#3
|
|||
|
|||
|
Thank you for your response.
Fixlog.txt attached. Upon reboot received blue screen; system then requested Startup Repair or Boot Normally ("Your computer was unable to Start"). Default was Startup Repair and no keyboard or mouse control to select either one so system continued with Startup Repair -- unable to cancel -- still running after ~~15 minutes. Will await your instruction. Thanks again. |
|
#4
|
|||
|
|||
|
Okay - system startup finally ended. MGTools run. MGlogs.zip attached.
MES btw is orange and it says "unprotected". All else seems okay so far. |
|
#5
|
||||
|
||||
|
Looks good, but you really need to run CCLeaner and clean out your temp folders.
If you are not having any other malware problems, it is time to do our final steps:
Malware removal from a National Chain = $149 Malware removal from MajorGeeks = $0
__________________
Major cake licker. YCLAHTW, BYCMHD!! Major Geeks on Facebook Major Geeks Newsletter |
| The Following User Says Thank You to TimW For This Useful Post: | ||
despuser (08-12-12) | ||
| Sponsored links |
|
|
|
#6
|
|||
|
|||
|
You guys are awesome!
Looks like all is well again. Had to uninstall and reinstall a fresh copy of MSE --after which I ran a scan and it didn't find anything so hopefully we have resolved this issue. Thank you again. |
|
#7
|
||||
|
||||
|
Good to know and you are most welcome.
![]()
__________________
Major cake licker. YCLAHTW, BYCMHD!! Major Geeks on Facebook Major Geeks Newsletter |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Sirefef infection | Craig55 | Malware Removal | 1 | 08-07-12 01:26 |
| Sirefef infection... HELP!! | vaio.user | Malware Removal | 1 | 07-25-12 02:06 |
| GAC_64\Desktop.ini - Win32:Sirefef-PL Infection | YourTransistor | Malware Removal | 4 | 07-10-12 13:02 |
| win32/sirefef.ab and win64/sirefef.p infection fix.txt needed | swfrancoiss | Malware Removal | 11 | 07-08-12 00:27 |
| Sirefef.Y, B and Root.0Acess infection | OzzyOzren | Malware Removal | 3 | 07-05-12 00:01 |