Advice on openstream.am

Discussion in 'Malware Help (A Specialist Will Reply)' started by gazlo, Mar 4, 2011.

  1. gazlo

    gazlo Private E-2

    Hi

    My pc has been going slow for ages so i suspected a virus/malware. AVG didnt find anything, neither did malwarebytes so i tried windows onecare live scanner- it found openstream.am and said it was a serious threat.

    I followed your basic guidelines for malware removal etc, ran all the scans- (they only found 1 trojan as far as i know) and ran one care again and its still found the trojan.

    So i just wondered, is this trojan likely to have 'seen' any of my passwords, as this is my laptop i use for work, so i log in to my website etc- no credit cards but bank log ins?

    Ill post tomo with the logs if trojan hunter doesnt get rid of it.

    Anyone know what will get rid of it?

    This is a great forum for malware resources, thanks;)
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It will download random files to your system. I suggest you run the requested scans and attach them when you are ready.
     
  3. gazlo

    gazlo Private E-2

    cheers Tim ..will let you know


    Thanks :)
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  5. gazlo

    gazlo Private E-2

    Logs included Re: Advice on openstream.am

    Hi

    My pc is very slow, so as per my previous posts i ve followed all the 'read me' instructions and used all the scanners etc. Even though i had used all the scanners i tried onelive scanner again and it found the openstream.am virus again but then onelive said it had deleted it.


    Im including my logs here, the 1st 3 are grouped into one but they are all here to see if you guys can see anything in the logs.

    Thanks

    ps this forum ha been a great resource, very useful even if there are no more virus'
     

    Attached Files:

  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not seeing any malware in your logs. If one live removed the file, then you can do the final cleanup:

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0

    Help Support MajorGeeks
    Buy Discounted Software @ Majorgeeks Store. Giveaways Too!

    Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies

    MajorGeeks on FaceBook
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds