being redirected - fakealert

Discussion in 'Malware Help (A Specialist Will Reply)' started by bobwein, Nov 12, 2010.

  1. bobwein

    bobwein Private E-2

    got a fakealaert.cc trojan last week . & i am being redirected in firefox & IE. ran all the scans except combofix which did not run. i had to rename malewarebytes to get it to run

    any help would be greatly appreciated.
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you completed the Read and Run First instructions, then please attach the requested logs:
    SAS
    MBAM
    ComboFix
    C:\MGLogs.zip --> from running the C:\MGTools.exe.

    Then Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!


    Be sure to download TDSSKiller.exe (v2.4.0.0) from Kaspersky's website and not TDSSKiller.zip which appears to be an older version 2.3.2.2 of the tool.

    • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
      Vista/Windows 7 users right-click and select Run As Administrator.
    • If TDSSKiller does not run, try renaming it.
    • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
    • Click the Start Scan button.
    • Do not use the computer during the scan
    • If the scan completes with nothing found, click Close to exit.
    • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_14.17.05_log.txt) will be created and saved to the root directory ( usually Local Disk C ).
    • Attach this log to your next message
     
  3. bobwein

    bobwein Private E-2

    sorry it took so long. I was away for the weekend.
    running tdsskiller now.
    I can't find the sas log i got on friday.? I had to run the portable version.
     

    Attached Files:

  4. bobwein

    bobwein Private E-2

    ran tdsskiller. found rootkit.win32.tdss.tdl3

    cured.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You need to run CCLeaner and then make sure these folders are cleaned out:
    C:\windows\Temp\
    C:\Documents and Settings\Danielle.MENT\Local Settings\Temp\

    Tell me what issues you are still having, if any.
     
  6. bobwein

    bobwein Private E-2

    Thanks Tim.

    everything seems to be working great. no issues.
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good to know. You are most welcome. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds