911 it is an emergency I believe my computer has a trojen

Discussion in 'Malware Help (A Specialist Will Reply)' started by babyturk, Dec 31, 2008.

  1. babyturk

    babyturk Private First Class

    please review my logs I am in dire need.......
     

    Attached Files:

  2. babyturk

    babyturk Private First Class

    Can someone please look at my scans I have not turned my computer off because I am worried about the trojan on it.....I am worried my computer won't restart.....I would really appreciate it......
    thank you!!!
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  4. babyturk

    babyturk Private First Class

    here are my logs for your review
     

    Attached Files:

  5. babyturk

    babyturk Private First Class

    for some reason it says combofix exceeds the limit for me to post.....
     
  6. babyturk

    babyturk Private First Class

    here is the requested log
     

    Attached Files:

  7. babyturk

    babyturk Private First Class

    I hope I have done all the required steps to the scans. Please review I am sure my computer will appreciate it. I have not shut it down yet....
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Other than the fact that you have two AV programs installed, something we tell you not to do in the R and R instructions:
    avast! Antivirus"
    AVG 8.0

    Your logs are clean. Now uninstall one of those AV Programs.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They are useful as backup scanners. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.

      • Delete the C:\combofix folder from combofix (if it exists)

    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    8. After doing the above, you should work thru the below link:

     
  9. babyturk

    babyturk Private First Class

    Help my windows XP is infected with a bad virus (trojan) here is what happens to it...
    I was on msn one day and I received a link that said I have a certain amount of time to have a chance to win a laptop, I thought yes I am a student and can use a new computer. Well that was a bad choice I went and checked it out, they have gotten my password and my email (hotmail) and also access to my cell. as I gave them my cell number which was requested.... ever since I have checked out and sent the required information to them they have been infecting my friends computers on both facebook and msn live hotmail.

    What is happening when I am not even on my computer someone gets access or a trojan gets access into my computer and sends links to my male friends saying if you would like to see pictures of me with a link well my friends being curious checked out the link and of course are now infected with the same virus.....

    also when I am on msn messenger it will sign me out and say that I am signed on a different computer then requests that I sign back in again.....

    Please can someone please help me out...
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Disconnect yourself from the internet....literally unplug your cable. Use a different computer to change your password on any internet sites you use.

    Then use a different computer to download, transfer to the infected machine and run the scans that you did previously and attach the logs.
     
  11. babyturk

    babyturk Private First Class

    I am sorry but I don't understand what you are saying? how do I do this?
    can I use my blackberry cell to do this? When you say to download what do you mean and how do I transfer? I don't have access to another computer either that is why I am asking about my cell?
    Thank you for all the trouble and your help...
     
    Last edited: Jan 10, 2009
  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You don't have a friend or fellow student who could download the scans from the Read and Run First instructions and save them to a cd or a thumb drive?

    If not, then you will have to get online long enough to get to this site and do the downloads if you had already uninstalled them from the presious work we did.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds