Possible Malware Infection

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Captain Jazz, Apr 12, 2009.

  1. Captain Jazz

    Captain Jazz Private E-2

    Howdy,

    I ran through your process a few weeks ago and seem to have been fine. Now I'm having problems again so I reinstalled the malware programs and ran logs which are attached. Could you run through them to be sure I'm not missing something?

    Note: I cannot get Malwarebytes to run correctly so no log is attached. In the past I have gotten blue screen memory dumps but today the system just froze. It stopped 10 seconds in after having scanned 4638 files, 0 infections, and th file displayed was C:\windows\system32.

    Thanks very much!:-D
     

    Attached Files:

  2. Captain Jazz

    Captain Jazz Private E-2

    And by the way, if it helps, one of the problems I was having was with Internet Explorer 7. When loaded it would not connect and finally stopped responding. It took several time to end the program with Task Manager.

    Thanks again!
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Let's do this first:

    Use windows explorer to find and delete:
    C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}\chrome\content\ffjcext\ffjcext.xul

    C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\content\ffjcext\ffjcext.xul

    Tell me what issues you still have...and run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file.
     
  4. Captain Jazz

    Captain Jazz Private E-2

    Thanks, Tim. Sorry it took me so long to reply, a family thing came up. Deleted the files you requested and ran MGTools again, log attached. We were still having problems with IE 7 with freezing on startup (would not connect and had to use Task Manager to get the sucker to close) but I haven't tried it since we killed those files. I'll mess with it while you check the MGTolls log and let you know. Thanks for your help!
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean. Whatever issues you are still having with IE7 should be addressed in the software section.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They are useful as backup scanners. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.

      • Delete the C:\combofix folder from combofix (if it exists)

    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    8. After doing the above, you should work thru the below link:

     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds