adware/trojans in system restore

Discussion in 'Malware Help (A Specialist Will Reply)' started by rhaneski, Apr 30, 2005.

  1. rhaneski

    rhaneski Private E-2

    I have followed the spyware removal instructions that are posted.
    I have not run hijack this

    everything scanned clean in safe mode. so i rebooted to normal mode. the online trojan scan shows several trojans and adware including altnet.d cachback.b and total velocity.a to name a few in c:\system volume\ restore... even though system restore is off. ie is still sometimes redirected but not as often as before.

    what did I miss?
    any help would be appreciated
    xphome
    ie6
    mcafee virus scan
    Thanks
    Ray
     
  2. XspeedyX

    XspeedyX Private E-2

    Read http://forums.majorgeeks.com/showthread.php?t=35407

    Download the following:

    Ad-Aware SE.......Install, click Check for Updates now and get any updates, then exit.

    Ad-Aware VX2 Cleaner Plug-In.....Install only

    Spybot................Install, do the search for updates now and get any updates, then exit.

    McAfee AVERT Stinger.....No installation required! Ready to run as is

    - Run all of those too see if they pick up anything.

    Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post)
     
  3. rhaneski

    rhaneski Private E-2

    Thanks
    The hjt log and what adaware and spubot cvaught are attached
     

    Attached Files:

  4. XspeedyX

    XspeedyX Private E-2

    You should delete all the stuff that spybot + adaware finds

    I cant seem to open the log file, now i cant view mine, so just ask chaslang.
     
  5. rhaneski

    rhaneski Private E-2

    how do I send it to him?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds