Outlook contacting ox-social.bidsystem.com/w/1.0

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by missourigeek, Mar 10, 2013.

  1. missourigeek

    missourigeek Private E-2

    I use Outlook for e-mail and about a week ago Outlook started displaying a messing "contacting ox-oscial.bidsystem.com/w/1.0 while deleting e-mail. I haven't noticeably seen any issues with any other application but Outlook. I have a dual boot Win7/Win8 system and my Outlook PST file resides on a different hard drive that I store all of my data on. I have followed the read me and ran all the applications on the Win7 boot. The problem still exists. I have attached the logs. Any help would be appreciated. I have numerous e-mails int the .pst file that I don't want to loose.
     

    Attached Files:

  2. missourigeek

    missourigeek Private E-2

    Attached are the logs for Win8. It looks like I forgot to save the Hitman Pro log for Win8. The other thing I should mention is that this problem occurs with Outlook when using it in either Win7 or Win 8.
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    This is for Win7.

    Re run Hitman and have it delete Potential Unwanted Programs

    Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.

    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.

    Are there still issues with outlook? If so i'm not sure it's to do with malware...


    Run it again then please and attach log.
     
  4. missourigeek

    missourigeek Private E-2

    Attached is the Win8 Hitman file. The registry fix for Win7 completed successfully but it didn't fix the problem. Since this happens in both versions of windows do you think that it is something either in the PST file or the profile. I don't really have any other profiles on my computer that anyone uses.
     

    Attached Files:

  5. missourigeek

    missourigeek Private E-2

    There seem to be numerous posts showing up on the web about this problem but I don't see that anyone has a fix for it yet.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Re run Hitman, have it delete suspicious files and potential unwanted programs. Reboot, how are things now? (If still acting up, i'm going to refer you to the software forum)
     
  7. missourigeek

    missourigeek Private E-2

    I ran Hitman again and deleted potential unwanted programs. I didn't see an option to delete suspicious files but there was an option to upload them to the cloud. I have attache an image of the configuration. Still no change. I am going to create a new PST file for Outlook and see what happens.
     

    Attached Files:

  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes create the new file and let me know.
     
  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  10. missourigeek

    missourigeek Private E-2

    I set up the Outlook rules that other people suggested were working for them, but it didn't seem to delete all of the messages. Maybe I didn't set the rules up correctly. Does anyone have any other suggestions?
     
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I would say post in the software forum for further advice with this. :) Best of luck.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Press and hold the Windows key [​IMG] and then press the letter R on your keyboard. This opens the Run dialog box.
      • Copy and paste the below into the Run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 4 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    5. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others) and running MGclean.bat did not remove, you can delete these files now.
    8. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 6 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds