Malware removal-disconecting DSL and removing Realtek DSL connection

Discussion in 'Malware Help (A Specialist Will Reply)' started by jschwisow, Sep 28, 2008.

  1. jschwisow

    jschwisow Private E-2

    I have gone through the Windows XP cleaning procedure and removed a bunch of malware that I was not aware I had. I think my problem started around the first of September. I continue to have the same problem which is my DSL connection will be disabled while I am online. I will have to cycle the modem to be able to use email or the internet even though my modem home page reports that my connection is up. I can reestablish function only to lose it again a while later. Also periodically my Realtek DSL installation will be removed the next time I boot the computer.

    I am attaching the first of the two logs and would apprerciate help on getting this problem corrected.

    Thanks,
    Jim
     

    Attached Files:

  2. jschwisow

    jschwisow Private E-2

    Here are my second two files.

    Jim
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Based on your logs, all of your malware has been removed except for the below folder which you need to delete now:
    C:\Documents and Settings\All Users\Application Data\hmvyhwhs

    If you are still having issues with your DSL connection, you need to check with your ISP as to why power cycling the DSL modem is necessary. Sounds to me like you are not running authentication software which may be needed to keep the connection (probably PPPoE authentication) active.

    There is also no malware reason for your Realtek DSL installation to disappear. If it is truly disappearing, it would sound like a system restore is being performed to go back to a restore point before the software was installed, but System Restore is not activated by itself.


    Now we need to cleanup some items from running ComboFix.

    Copy the bold text below to notepad. Save it as fixme.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significan amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix folder from combofix.
    3. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     
  4. jschwisow

    jschwisow Private E-2

    The REGEDIT4 to cleanup up ComboFix worked fine.

    I am still having trouble with my DSL connection. It is not related to my ISP as I can connect a different laptop and not have any trouble.

    I assumed it was a setting that had been changed due to the malware I had. Could it be hardware instead? Two things are happening. Occasionally when I turn off my laptop and restart it, my LAN will be removed. I have to reinstall it to be able to connect to the internet. I am not changing any restore points, just turning off and turning on the laptop the next day. I can reinstall the LAN by either using the setup CD from my ISP or if I turn off my laptop and disconnect the ethernet cable, phone line to the modem and unplug the modem, then repower the modem, connect the phone line, then the ethernet cable and then boot the laptop, the LAN will be back and working. The LAN may be fine for a week, then be gone two starts in a row and then be fine for several days to a week again.

    The second problem I have is that the LAN (DSL) looses function when I am using the internet or email. I can regain function by either cycling the modem, disconnecting the ethernet cable and then reconnecting it or going to the LAN and telling it to repair. I may loose function once or twice a day or other times it will be every few minutes for a while, then OK and then really causing problems again.

    I would certainly appreciate any input on the LAN,

    Thanks, Jim
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I suggest that you post these problems in the Software Forum. You may need to reinstall some software your ISP gave you for authentication or correct some setting.

    It's possible.

    Not malware. Again I suggest you post in the Software or Hardware forums.

    Again this does not sound like malware and the other forums sound like your best bet.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds