Malware removal

Discussion in 'Malware Help (A Specialist Will Reply)' started by triblenaharki, Jul 17, 2007.

  1. triblenaharki

    triblenaharki Private E-2

    here are the logs after i completed the malware removal process. please look at this and get back to me. thanks

    P.S: I did run Ccleaner, Spybot Search & Destroy in safe mode but couldn't run counterspy in safe mode. Instead i ran that in normal mode.
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    You need to tell us what malware problems you are having!

    Also you need to attach the other three requested logs from the READ ME:
    CounterSpy - only for Windows XP, 2K, & NT users
    Bitdefender - from step 6
    Panda Scan - from step 6


    Is your copy of Spyware Doctor a paid version or a free trial version?
     
  3. triblenaharki

    triblenaharki Private E-2

    i really don't know what is the problem but i wanted to run that process coz my computer was running slow and it started after i downloaded this software called "aires" to watch movie from internet.
    I did run counterspy and it detected 32 risks and 1 quarantine. I clicked the Fix tab after scan to fix it. I didn't get any kind of log file during that process. Since i have Norton 2007 for virus scan, i skipped the Bitdefender and panda.

    the system doctor i have is the trial version. let me know if i need to run that process again.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Many slow PC problems are not malware related. Never heard of "aires" but uninstall it if you think it cause you problems.

    You have to create the log as instructed in the READ & RUN. Try running it again and create a log if anything is still found. If nothing is found, uninstall CounterSpy because it is only a trial and will also add to your slow PC problem.

    Nothing in the READ ME is optional. You must run those scans and attach the logs. And if your PC is running slow, the first thing I would suspect is Norton.

    You mean Spyware Doctor. If it is a trial, uninstall it because it does nothing for you and is also slowing down your PC.
     
  5. triblenaharki

    triblenaharki Private E-2

    so it ok if i uninstall the Norton from my system and download other antivirus from MG. I am just sick of looking for right antivirus.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes but make sure it is completely uninstall before installing another antivirus. Norton rarely uninstalls cleanly. Look at you HijackThis log and log from ShowNew (newfiles.txt) to see if anything from Norton or Symantec still appears after uninstalling it.

    You can get plenty of free choices in the below link. I recommend you give AVG Free a try.

    How to Protect yourself from malware!
     
  7. triblenaharki

    triblenaharki Private E-2

    are we supposed to fix the log files produced by hijakthis or we have to send to MG.
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    NO!!!! HijackThis is not a malware scanning/detection tool. If you fixed everything it found you would mess up your PC.

    You already posted your log! Why are you asking this? Are you asking this in referenece to uninstalling Symantec? Did you uninstall it? Do you still see stuff running? If yes, try this Norton Removal Tool (SymNRT) Do you still see stuff running? If yes, attach a new HJT log and also a new logs from ShowNew.
     
  9. triblenaharki

    triblenaharki Private E-2

    Actually all the log file i send you previously was for my GF pc which seems to be working properly now. But i had to run that process in my computer too which was seriously affected by malwares. i have uninstalled all the malwares that i know of, but still running slow. I just uninstalled norton 360 from my PC. Last night i did run Ccleaner and defragmentation in that. Even after that it seems to be running slowly. I had also uninstalled all the unwanted program that i was not using. I want to run malware removal process now
    before doing that i still have some question:
    1) I have following files in program files: windowsXP-KB 935448-x86-ENU.exe (Hotfix Package), accessbridge-2_0.exe and vbrun60sp6.exe( WIN32 Cabinet Self-Extractor). i can't remember why did i downloaded this and let me know if i need to get rid of this.
    2) Also in ADD/Remove program I see this files: Livereg(symantec corporation), MSXML 4.0 SP2(kb927978). let me know if i need to take action on this files too.

    Right now i have disconnected all the internet connection in my computer and do not have any virus protection.
    Do i need to install AVG before i start running malware removing process in my PC?

    I am trying to run that process in safe mode if it doesn't work i'll do it from normal mode. is it ok if i can run those process from safe mode for those which works and run rest of the process in normal mode?
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You need to start a new thread for this other PC. Just be sure to clearly state that it is another PC you are cleaning.


    It is an update from Microsoft for your Realtek HD Audio Control Panel. You can delete the file if you already installed the update.

    See: http://www.microsoft.com/downloads/details.aspx?FamilyId=74AD4188-3131-429C-8FCB-F7B3B0FD3D86&displaylang=en


    If you are uninstalling all Symantec software, yes LiveReg or LiveUpdate need to go. No you cannot uninstall the kb927978 patch. See: http://www.microsoft.com/downloads/details.aspx?FamilyId=24B7D141-6CDF-4FC4-A91B-6F18FE6921D4&displaylang=en

    You should install, update, and run a full scan with AVG and fix anything it finds. Do this before running the READ ME?

    Yes! We even mention that it the READ ME.
     
  11. triblenaharki

    triblenaharki Private E-2

    what do i need to do with all the downloads and logs with my previous PC during READ ME process?
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You can remove everything you downloaded and installed and all of the logs. However I do recommend that you keep Spybot installed and that you also work thru the How to protect yourself link I gave you in message # 6. I recommend that you install SpywareBlaster that you will see in that link. It does not use any system resources and adds some significant protection. Also it is a good idea to keep CCleaner and use it regularly to cleanup the garbage that accumulates.
     
  13. triblenaharki

    triblenaharki Private E-2

    Is it Ok to keep setup and zipfile from downloads or i need to delete all that too? and how do i get rid of hijackthis.exe "renamed- analyse.exe" file.
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Which ones are you referring too? There is no problem keeping everything however you have to realize many programs (especially malware removal related) update constantly. Thus you must be sure you are using current versions of programs.

    Run HijackThis but select the Open Misc Tools section button. Now slide the scroll bar down so you can see the Uninstall HijackThis button and click it. This just removes it from the registry. You then need to go delete the folder where you installed HijackThis.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds