![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
|||
|
|||
|
Hello,
I have done the run & read me first and am still having problems so I am posting my logs hoping you guys can help. You have helped me amazingly in the past so I would greatly appreciate it if you can fix me this now. OS: W7 x64 CPU 1090t X6 RAM 8 GB disk space: about 3 TB including flexraid parity that is out of date. Found this virus about a week ago. Came home from work and my wife had been on and AVG was up reporting about 10 viruses. So I don't know what she was doing. As soon as I boot into normal mode AVG finds this virus (located c:\windows\system32\services.exe). I have been logged in in safe mode with networking. I scanned it several times with AVG, maleware bytes, super anti spyware, and spybot before going through the detailed run & read me first. All of those scans kept finding viruses and would remove all but the services.exe. I realize this is a critical system file for windows (and its locked) so I read some posts about doing a restore. wasn't really sure I wanted/needed to go that far so I came to you guys. I do have about 3TB of disk space so some scans do take a while. I do not have a back up to this data but most of it is on separate drives from the OS. Of course I have not kept up on my parity backup (flexraid) so cannot rely on that. I am also out of the house a lot and cannot remote in, in safe mode. So I may have to take a day or two before responding to you. But I FTP off of this computer a lot so I really need to get it back up an running. Posted logs thank you for your help and patients! |
| Sponsored links |
|
|
|
#2
|
||||
|
||||
|
Please only use normal boot mode unless it is impossible to run in normal boot mode.
Rescan with HitmanPro
Quote:
Quote:
After reboot, run a new scan with RogueKiller and save a log as in original instructions and attach the new log. Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator). Then attach the below logs:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
|
#3
|
|||
|
|||
|
Quote:
Quote:
I am at work but will do this as soon as I get home tonight. Thank you, |
|
#4
|
|||
|
|||
|
Ok I think I did everything right. Here are the new logs. Thank you very much!
|
|
#5
|
||||
|
||||
|
Okay that's better but some Windows services have been broken and need to be fixed.
First see if you can delete the below two folders. Tell me if you cannot to this but continue on no matter what happens: C:\Windows\installer\{932ef130-854c-0447-f84e-552b47f200b6} C:\Users\Server 1\AppData\Local\{932ef130-854c-0447-f84e-552b47f200b6} Be patient while doing the below. The fixes can take quite awhile to run. Especially the permissions repairs. It may be best to kick it off and goto bed or do something else. It is better not to run anything while the repairs are going on. Download Windows Repair by Tweaking.com and unzip the contents into a newly created folder on your desktop.
Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator). Then attach the below logs:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| Sponsored links |
|
|
|
#6
|
|||
|
|||
|
Ok everything went fairly smooth. The only issue I had was while running mgtools I received a message that steelwerX WhoAMI stopped working. Before running the Windows Repair the system was very slow. Like it was under a high load and it wasn't. Cant really say if its better now has I have only done this post. but so far so good. Thank you! Please let me know if I am clean and should run the final steps.
|
|
#7
|
||||
|
||||
|
You're welcome.
Your BITS ( Background Intelligent Transfer Service ) is missing. This is needed for Windows Update to work. It's possible that other services are missing too like maybe Windows Defender. Download the below file and save it to your Desktop BITS.reg Then right click on it and select Merge. If prompted, allow it to be added to your registry. Then reboot. After reboot, run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator). Then attach the below logs:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
ugean (08-19-12) | ||
|
#8
|
|||
|
|||
|
Ok everything went smooth. I usually have windows updates set to notify but don't download or install. I have windows defender but I do not install the malicious software tool. I hate that thing. Also there is a printer firmware update that will screw up my printer. here are the new logs.
Thanks, |
|
#9
|
||||
|
||||
|
You're welcome. Your logs are good now.
If you are not having any other malware problems, it is time to do our final steps:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
ugean (08-20-12) | ||
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Cannot Delete Service.exe Lost all Anti Virus! Trojan FB and Condexe Infection! | gtrman4100 | Malware Removal | 1 | 08-04-12 06:38 |
| Avast! Professional 5 Anti-Virus service stopped running | Youshoe | Malware Removal | 1 | 05-29-10 20:13 |
| service manager virus | rangapurush | Malware Removal | 1 | 12-28-09 13:08 |
| Free AVG anti-virus version 8 and XP Service Pack 3 | oma | Software | 11 | 05-13-08 17:20 |
| IExplorer, Modem, Provider or Virus? Lose Service Constantly | NCAngel | Networking | 3 | 11-08-05 15:58 |