MajorGeeks Support Forums

Go Back   MajorGeeks Support Forums > ----------= PC, Desktop and Laptop Support =---------- > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 06-27-12, 23:27
mpetro1 mpetro1 is offline
Private First Class
 
Join Date: Feb 2009
Location: Baltimore, MD
Posts: 64
Thanks: 68
Thanked 0 Times in 0 Posts
Default Windows Custom Management

Hi, I had a Fake Trojan on my PC. It said I had 1000 problems with Trojan's, it would not let me get online or use any removal tools. I was able to use Malwarebytes Anti-Malware in Safe Mode and it removed the fake virus. I'm not sure if it removed all of it! I have a desk top icon that i'm not sure about, it's a blue box and has a power button icon in the middle of it (it looks like the button to turn on your computer). below the icon it says sdsetup[1].exe. I'm no expert on computers, that's why I'm asking for someone to check my logs! I will also attach the first scan from Malwarebytes that removed the Trojan! Sorry in advance if you didn't need it!
Attached Files
File Type: txt RKreport[1].txt (1.9 KB, 2 views)
File Type: txt mbam-log-2012-06-27 (20-48-41).txt1.txt (2.7 KB, 1 views)
File Type: txt mbam-log-2012-06-27 (22-10-55).txt2.txt (1.8 KB, 1 views)
File Type: zip hitmanpro.zip (285 Bytes, 2 views)
Reply With Quote
Sponsored links
  #2  
Old 06-27-12, 23:30
mpetro1 mpetro1 is offline
Private First Class
 
Join Date: Feb 2009
Location: Baltimore, MD
Posts: 64
Thanks: 68
Thanked 0 Times in 0 Posts
Default Re: Windows Custom Management

Quote:
Originally Posted by mpetro1 View Post
Hi, I had a Fake Trojan on my PC. It said I had 1000 problems with Trojan's, it would not let me get online or use any removal tools. I was able to use Malwarebytes Anti-Malware in Safe Mode and it removed the fake virus. I'm not sure if it removed all of it! I have a desk top icon that i'm not sure about, it's a blue box and has a power button icon in the middle of it (it looks like the button to turn on your computer). below the icon it says sdsetup[1].exe. I'm no expert on computers, that's why I'm asking for someone to check my logs! I will also attach the first scan from Malwarebytes that removed the Trojan! Sorry in advance if you didn't need it!
I hope I attached MGtools log!
Attached Files
File Type: zip MGlogs.zip (180.8 KB, 1 views)
Reply With Quote
  #3  
Old 06-28-12, 17:26
thisisu's Avatar
thisisu thisisu is offline
Malware Consultant
 
Join Date: Apr 2006
Location: Houston, TX
Posts: 8,179
Thanks: 270
Thanked 1,437 Times in 1,356 Posts
Default Re: Windows Custom Management

Hello mpetro1

From Add/Remove Programs (via Control Panel), please uninstall the below:
  • Java(TM) 6 Update 16

Please download Disable/Remove Windows Messenger to your desktop.
  • Double-click MessengerDisable.exe to run it.
  • Place checkmarks in "Uninstall Windows Messenger" and "Hide Messenger from Outlook Express"
  • Click Apply
  • Click Exit

Quote:
Originally Posted by mpetro1 View Post
I'm not sure if it removed all of it! I have a desk top icon that i'm not sure about, it's a blue box and has a power button icon in the middle of it (it looks like the button to turn on your computer). below the icon it says sdsetup[1].exe.
Delete it, it's here:
  • C:\Documents and Settings\Carol\Desktop\sdsetup[1].exe.lnk

__

Now install the current version of Sun Java from: here

__

The rest of your logs are clean.

If you are not having any other malware related problems, it is time to do our final steps:
  • Any programs we had you download and/or install can be removed at this time.
  • If we had you download and run ComboFix, here is how to uninstall it:
    • Press and hold the Windows key and then press the letter R on your keyboard.
    • This opens the Run dialog box.
    • Copy and paste the below text inside the text-field:
      • "%userprofile%\desktop\ComboFix" /uninstall
    • Now press ENTER
    • ComboFix will extract its files one last time and you should receive a notification that ComboFix has been uninstalled shortly after.
  • You can re-enable your Disk Emulation software at this time via DeFogger.
  • If we had you create or download a registry patch or "fix" script, these can be deleted at this time.
  • Go into the C:\MGtools folder and run the MGclean.bat file to remove additional traces of our tools.
  • Now we will toggle System Restore to remove any infected system restore points.
  • Lastly, here is a guide to protect you from future infections: How to Protect yourself from malware!
  • Be safe
__________________
Facebook . Twitter . Blog . VirusTotal
Reply With Quote
The Following User Says Thank You to thisisu For This Useful Post:
mpetro1 (06-28-12)
  #4  
Old 06-28-12, 22:54
mpetro1 mpetro1 is offline
Private First Class
 
Join Date: Feb 2009
Location: Baltimore, MD
Posts: 64
Thanks: 68
Thanked 0 Times in 0 Posts
Default Re: Windows Custom Management

Thank you! My computer is running great now!!


Mike
Reply With Quote
  #5  
Old 06-29-12, 14:55
thisisu's Avatar
thisisu thisisu is offline
Malware Consultant
 
Join Date: Apr 2006
Location: Houston, TX
Posts: 8,179
Thanks: 270
Thanked 1,437 Times in 1,356 Posts
Default Re: Windows Custom Management

You're welcome, Mike.
Be safe
__________________
Facebook . Twitter . Blog . VirusTotal
Reply With Quote
Sponsored links
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Windows Management Instrumentation (WMI) Issue / Vista Ultimate nomorebigideas Software 0 04-08-08 12:07
Memory Management Issues in Windows mr_flea Software 1 04-18-06 21:03
Windows Management Error KegMan51 Software 7 08-25-05 11:25
Windows Management Instrumentation(WMI) corrupted... TechStupid Software 2 08-09-05 12:01
Memory Management Maxwell Software 5 05-08-03 18:22


All times are GMT -5. The time now is 18:44.

MajorGeeks.Com Menu

MajorGeeks.Com \ All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ NEW! PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads

MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds


All content Copyright MajorGeeks.com source code Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger