![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
|||
|
|||
|
I'm helping out my Girlfriends brother out of state and I need help on this. It's an older HP Pavilion with Windows XP. I'm pretty sure it's infected to heck and back. Here my logs, thanks for the help. I know some of the Scans are a little older but nothings been done or changed in between any of them. Some take 4+ hours to scan so hopefully thats okay. ^^;;
|
| Sponsored links |
|
|
|
#2
|
|||
|
|||
|
The other scans...
|
|
#3
|
||||
|
||||
|
Give the below a run!
Do not mouseclick combofix's window while it is running. That may cause it to stall. Now attach the below new logs and tell me how the above steps went.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MagnusKain (03-15-09) | ||
|
#4
|
|||
|
|||
|
Okay all set... heres the logs
(By the way I ran all these while in safe mode w/networking. Please let me know if I should have ran them in Normal mode or if it was okay and didn't matter.) Thank you. |
|
#5
|
|||
|
|||
|
and the forth...
|
| Sponsored links |
|
|
|
#6
|
||||
|
||||
|
Unless we specify to user safe mode (like in the READ ME), you should always use normal boot mode.
It appears that you did not do step 2 of the READ ME. You really should do this now just in case we need to look for any hidden files. However a registry patch that I'm going to give you below will do it automatically (assuming you get the registry patch to work). Run this Disable/Remove Windows Messenger to remove Windows Messenger. Uninstall the below old versions of software: Java(TM) SE Runtime Environment 6 Update 1 McAfee.com Agent Make sure you reboot after uninstalling the above! After reboot, now install the current version of Sun Java from: Sun Java Runtime Environment Run HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now: O2 - BHO: (no name) - {3FF2A511-80BC-4B83-9690-D0B7C2587AE0} - C:\WINDOWS\System32\vturq.dll (file missing) After clicking Fix, exit HJT. Copy the bold text below to notepad. Save it as fixme.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry. Quote:
Quote:
Now attach the below new logs and tell me how the above steps went.
Make sure you tell me how things are working now! Reminder Note: Once we have determined you are malware free you will need to disable System Restore, reboot, and re-enable system restore per step 8 of the READ & RUN ME. This only applies to if using WinXP or WinMe.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
|
#7
|
|||
|
|||
|
Okay sorry I've been posting slowly on this. I'm navigating around a family and there PC time. Anyways. I couldn't get McAfee.com Agent to uninstall. I get a Internet script error everytime. The uninstall progress then doesn't go anywhere (Tried in Safe Mode and same.) So I've done all the steps with no problem cept that and heres the logs. Thank you so much.
|
|
#8
|
|||
|
|||
|
and HJT log....
|
|
#9
|
||||
|
||||
|
Download Your Uninstaller! 2006 5.0.0.360, save to desktop and install.
Locate McAfee.com Agent and uninstall this way. Once you complete this, reboot and let me know how things are running. Also attach a fresh GetRunKey and ShowNew logs. |
| The Following User Says Thank You to bjgarrick For This Useful Post: | ||
MagnusKain (03-15-09) | ||
|
#10
|
|||
|
|||
|
All right, I belive it's all gone. Still slow but I'm assumeing it's the ram. Double check it all for meh. Thank you all.
|
| Sponsored links |
|
|
|
#11
|
||||
|
||||
|
Your logs are clean. If you are not having any other malware problems, it is time to do our final steps:
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| I am still getting popups and other junk | JoeJoe515 | Malware Removal | 16 | 10-20-06 23:20 |
| E mail junk | driley43 | Malware Removal | 27 | 12-31-05 18:35 |
| Too much junk mail | whicky1978 | Networking | 5 | 11-30-05 18:31 |
| Registry Junk | oledave7 | Malware Removal | 3 | 05-25-05 21:41 |
| too much junk | coach0022 | Software | 3 | 10-20-04 06:33 |