Winfixer Infection (ugh!)

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Raven001, Sep 10, 2005.

  1. Raven001

    Raven001 Private E-2

    Hi there,

    I've recently become infected with WinFixer on my brand new laptop (a IBM x41 tablet) and I can't figure out how to fix it. The symptoms are that often times while surfing I'll get popups directing me to WinFixer or TrafficExplorer.com. Neither AdAware nor Spybot picks up on this infection, unfortunately, but it's been driving me nuts.

    First question: Does anyone know the name for this annoying little bastard?

    Attached is my HJT log... I'd really appreciate it if someone could give it a look-see -- any suggestions would be greatly appreciated!

    Thanks in advance!


    Tyler

    PS - I saw the WinFixer thread below, but the steps listed don't seem to apply to my case (specifically, there's no CWShredder service that I can find). Thanks again!
     

    Attached Files:

  2. Raven001

    Raven001 Private E-2

    ..anyone?
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Sorry about the delay but it has been very busy here lately and this is the weekend which complicates things too. We can get this fixed. I have fixed many of these already but before we can get to the heart of the Virtumundo (aka Winfixer) problem, you need to follow some standard cleaning procedures. After that, it will be easier to get rid of Winfixer.

    Please read the announcement and sticky threads. HJT logs should only be posted. Please run the steps below.

    - Run ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

    Make sure you check version numbers and get all updates.

    - Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    After doing ALL of the above you still have a problem, boot into normal mode and make sure you follow these directions:


    - Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds