potential malware

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by clixto, Apr 2, 2014.

  1. clixto

    clixto Specialist

    browsers have been acting up and trojans have been found during a recent scan. Attached are my results. Thank you in advance
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Rerun MBAM and have it fix what it found. Then do the same with Hitman. Have it fix the one malware trace and the PUP's.

    Please download AdwCleaner by Xplode and save to your Desktop.
    • Double click on AdwCleaner.exe to run the tool.
      Vista/Windows 7/8 users right-click and select Run As Administrator
    • Click on the Scan button.
    • AdwCleaner will begin...be patient as the scan may take some time to complete.
    • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R#].txt) will open in Notepad for review (where the largest value of # represents the most recent report).
    • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
    • Attach the logfile to your next next reply.
    • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
     
  3. clixto

    clixto Specialist

    Do I delete everything from the hitman scan? All of the Ask bar, Conduit, Jotzey,softonic, PC optimizer pro?
     
  4. clixto

    clixto Specialist

    I'm not sure what to keep from the attached if any?
     

    Attached Files:

  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes. ;)
     
  6. clixto

    clixto Specialist

    what about from AdwCleaner?
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Yes, let ADW clean everything. Then after a reboot, let me know how things are running.
     
  8. clixto

    clixto Specialist

    ok sounds good. I'll do it when I get home. Thanks
     
  9. clixto

    clixto Specialist

    Also I noticed 2 icons on my desktop that look like ghost files that are named desktop.ini?? Should I delete these? Also should I turn on UAC and change viewing hidden files back?
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No! It's because hidden files and folders are set to show during the clean up process.
    Only when TimW gives you final steps. He may not be finished yet.
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You didnt tell me how things are running now.
     
  12. clixto

    clixto Specialist

    Seems ok right now.
     
  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good to know.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    7. If you are running Win 8, Win 7, Vista, Windows XP or Windows ME, do the below to flush restore points:
      • Refer to the instructions for your WIndows version in this link: Disable And Enable System Restore
      • What we want you to do is to first disable System Restore to flush restore points some of which could be infected.
      • Then we want you to Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     
  14. clixto

    clixto Specialist

    Thanks again for all the help!! Cheers
     
  15. clixto

    clixto Specialist

    What should I do about those destop.ini files on my desktop?
     
  16. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    If you have followed final instructions, they shouldn't be there. They are legit files, they are showing whilst hidden files and folders were set to show during malware removal procedures. ;)
     
  17. clixto

    clixto Specialist

    I skipped defogger by mistake then went back.
     
  18. clixto

    clixto Specialist

    I change to show hidden folders back and it disappeared from my desktop. Was that the fix?
     
  19. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you ran the clean up bat, it should have disappeared. But you did the right thing to remove them. ;)
     
  20. clixto

    clixto Specialist

    I have another question..not sure if this is malware related...I'm noticing that when I click my pointer on the mouse to enter text in a search field, the flashing vertical line you get moves below the space area..and I have to move the cursor up and click again where it should normally go (for searching through google or typing in a password). Should I be concerned about this?
     
  21. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    That is an issue for the software forum. ;)
     
  22. clixto

    clixto Specialist

    this started after I cleaned up the comp. I'LL POST IN SOFTWARE...THX AGAIN
     
  23. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are welcome. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds