A little problem..

Discussion in 'Malware Help (A Specialist Will Reply)' started by Rayster, Jul 6, 2008.

  1. Rayster

    Rayster Private E-2

    Hello again sir chaslang! Its me again hehe.

    Right now I got a small problem.

    In my FOLDER Options I can't click the "Show Hidden Files"

    And I can't directly click my C: and D: because when it does, Windows give me options to Open With some software I got in my PC.

    So I would like to ask if I need to do all the steps in order to fix my problem.
     
  2. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Yes, you will need to go through the steps, again.

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions. If something does not run, write down the info to explain to us later but keep on going. Do not assume that because one step does not work that they all will not.

    READ & RUN ME FIRST. Malware Removal Guide
     
    Last edited: Jul 13, 2008
  3. Rayster

    Rayster Private E-2

    Sir Shadow, hmm just wondering, since my other files can't show hidden files I'm asking if its ok for the Spyware Tools to detect it? All the Spyware Softwares in the list..

    I just remember sir chaslang help me to uncover it last time, but I think I forgot how I did it. To Unhide the unhidden files....
     
  4. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Malware very well may be the cause of the problem. When MGTools is ran it will automatically toggle the registry values, to what we need them to be, in order to view hidden files and folders.
     
  5. Rayster

    Rayster Private E-2

    So I need to download the MGTools in order to view the Hidden Files and Scan?
     
  6. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    You don't need to toggle anything. MGTools will do it for you. Follow the steps in the Read Me & Run instructions.
     
  7. Rayster

    Rayster Private E-2

    Sir here are the logs you've requested. Feel free to give me some advice.

    Thanks ;)
     

    Attached Files:

  8. Rayster

    Rayster Private E-2

    And the last one the MGTools
     

    Attached Files:

  9. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Download
    - Pocket Killbox

    Copy the contents of the below quote box to Notepad; Save As FixReg.reg to your Desktop; make sure File Type: is set to All Files (*.*).
    Close Notepad.

    Locate FixReg.reg on your Desktop. Double-click on it and answer 'Yes' when asked if you want to merge with the registry.

    Run HijackThis. Click the 'Do a system scan only' button. Place a checkmark in the box next to the following lines:
    Click on the 'Fix checked' button. Wait for HijackThis to finish; close HijackThis.

    Now run Pocket Killbox:

    Choose Tools -> Delete Temp Files and click Delete Selected Temp Files
    Then after it deletes the files click the Exit (Save Settings) button.

    NOTE: Pocket Killbox will only list the added files it is able to find on the system. So when you do the below, if some files do not show in the list after pasting them in, just continue..



    Select:
    • Delete on Reboot
    • then Click on the All Files button.
    • Please copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):
    • Return to Killbox, go to the File menu, and choose Paste from Clipboard.
    • Click the red-and-white Delete File button.

      Click Yes at the Delete on Reboot prompt. Click OK at any PendingFileRenameOperations prompt (and please let me know if you receive this message!).
    If Killbox does not reboot or you get a Pending Operations type error message just reboot your PC yourself.

    What is Drive F? It is infected.

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it.

    Then attach the below log:

    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     
    Last edited by a moderator: Jul 8, 2008
  10. Rayster

    Rayster Private E-2

    Well I don't know what Drive F is. I only have until Drive E.

    I need to uninstall some programs cause my Hard Disk space is getting smaller.

    And also the last MGTools Logs.
     

    Attached Files:

  11. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    If you are not having any other malware problems, it is time to do our final steps:

    1. You can uninstall SUPERAntiSpyware now.
    2. We recommed you keep Malwarebytes Anti-Malware as a scanner. It uses no resources except a little disk space until you run a scan.
    3. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop & renamed it like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • %userprofile%\Desktop\combo-fix /u
        • Notes: The space between the cf and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\cf folder from combofix.
    4. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    5. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Go to add/remove programs and uninstall HijackThis.
    7. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    8. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    9. After doing the above, you should work thru the below link:
     
  12. Rayster

    Rayster Private E-2

    I did delete all the required files but the combo-fix will not.

    here's the quote I paste in the RUN:
    %userprofile%\Desktop\combo-fix /u

    I don't know how but it gives me this error:
    http://i58.photobucket.com/albums/g252/rayster025/Error-1.jpg

    Also I notice that my clock settings is 24 hours! No AM or PM can be found. What happen?

    After your confirmation I will Disable my System Restore and Enable it.
     
    Last edited: Jul 9, 2008
  13. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Use "%userprofile%\Desktop\combo-fix /u" , include the quotes
     
  14. Rayster

    Rayster Private E-2

  15. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Shadow meant to say the below. ;)

    Use "%userprofile%\Desktop\combo-fix" /u


    The /u is outside of the quotes. :)
     
  16. Rayster

    Rayster Private E-2

    Hi sir chaslang Your always my savious! :D Thanks ^_^

    Right now I got:

    Kaspersky Internet Suite w/ Firewall
    Spybot - Search and Destroy
    Malwarebytes Anti-Malware

    ...just want to ask if I need to install a Firewall like Onli8ne Armor? Since my AV has one.. and also its been almost 2-3 days I left my computer with no Firewall, and just thinking how will I know if my pc is clean?

    Last step to do is Disable and Enable my System Restore and Install the specified softwares to protect me against Malwares.

    Lastly, can you recommend a good software for a good uninstall? I just want to uninstall some of my files with no hassle.
     
  17. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You only need one software firewall so just use what you already have.

    You don't normally need one since most programs have their own uninstaller or they use Windows Installer. If you with to purchase a program to do uninstalls, I suggest you ask what people like in the Software Forum. The below download folder has a few choices:

    Admin Tools
     
  18. Rayster

    Rayster Private E-2

    I will be sticking with my Kaspersky Internet Security since it has AV and Firewall. And right now I'm cleaning my Program Files, some unused files will be uninstalled. Right now I'm experiencing slow start up and shutdown. I wonder why.

    And after this I will Disable and Enable my System Restore and report it here. Thank you very much ^_^
     
  19. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome.

    Your slow startup/shutdown is probably just due to the software you are running. Protection software does have to hook into your operating system and this will cause delays in startup and shutdown.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds