Combofix Log Empty

Discussion in 'Malware Help (A Specialist Will Reply)' started by beedawg, Dec 28, 2007.

  1. beedawg

    beedawg Private E-2

    I've run combofix three times. Only on the third time was Windows XP able to reboot. Combofix said it was creating a log file for me, but the log file is nearly empty. There are a couple of lines at the top, but I noticed that it deleted a lot of files, and none of that activity is recorded in the log file.

    I was hit with something yesterday afternoon. I've seen some of the same symptoms mentioned in recent posts: the black screen with the warning, the IE window recommending a Diocleaner, disabled Task Manager... I'm going through the "Read and Run Me First" article, which is very helpful and very well written. I've installed and started running Spybot. I'll post log files when I get them.

    Thanks in advance. This appears to be an excellent site.

    Edit: I've disconnected my XP computer from the DSL modem to try to contain the damage. I'm working on my wife's Macbook. I'm downloading files to my flash drive and transferring them to the infected computer.

    Beedawg
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    You should only run ComboFix once. Each time you run it, it overwrites the previous log and thus you would lose information on previous deletions.


    Don't worry about ComboFix now. Just finished the rest of the READ & RUN ME.
     
  3. beedawg

    beedawg Private E-2

    I finished the rest of the READ & RUN ME, and my computer seems to be fine. There were two really minor issues, not even really worth reporting, but I will anyway, just in case it's of value of to someone.

    My original, pre-infestation desktop wallpaper would come up on startup, but after about 10 or 15 seconds, it would be "covered" with by a blue desktop. I say covered, because that's what it seemed like to me, but maybe it was just being replaced. When I'd right-click on the desktop and select "Properties", there was no indication of the original wallpaper being there. At first, I wanted to find out what was doing that, but I finally decided it wasn't worth the trouble, and I manually set it back to the original setting.

    The second things was that my date and time formats were changed, probably to the default Windows settings, like this:

    2007-12-28 19:17

    Again, no big deal, and I think I remember on the programs I ran telling me that it was going to change my date and time settings, and not to worry because it would change them back later.

    I'm extremely grateful for this web site and the help I got here. I really wondered if I'd be able to salvage my computer. I've never had any kind of infection in 10 or so years of internet, and my security procedures were totally lax. I learned a lot from the experience.

    Thanks to all the wonderful people who created this site and keep it running. I'm very grateful to you all.

    Beedawg
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You should attach the requested logs so we can check them to be sure you are clean.

    This happened because ComboFix never finished running properly.

    You can fix your clock from Control Panel ->Regional and Language Options and then on the Regional Options tab click the Customize button then on the next form click the Time tab. Then change the Time format to what you want. It explains there what the lower case and upper case letters will do. Upper case H is giving you 24 hour clock settings.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds