snifula - help!

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by compgirl, Dec 27, 2009.

  1. compgirl

    compgirl Private E-2

    Hello,
    Last week Spy Sweeper found the snifula trojan phisher on my computer. I ran all the programs as your thread on Snifula said and I am attaching the logs. It would be great if you would help me with this. Thanks in advance!
     

    Attached Files:

  2. compgirl

    compgirl Private E-2

    here are the remaining log files from the scans I ran
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    The scans took care of most of it, but let's finish up with having you do this:

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    Now use windows explorer to find and delete:
    c:\windows\Rcaliyiyimevocog.bin
    c:\windows\Xliqamewobeyitam.dat
    c:\windows\system32\fjhdyfhsn.bat
    C:\WINDOWS\temp\wfv2.tmp
    C:\Documents and Settings\arti\Local Settings\Temp\7ZOB.TMP

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).

    Then attach the below logs:

    * C:\MGlogs.zip

    Make sure you tell me how things are working now!
     
  4. compgirl

    compgirl Private E-2

    thank you for your reply!
    i will keep you posted.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good...but I would still like to see the new MGLogs.zip.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds