Can't Figure Out Virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by nappy, Mar 22, 2009.

  1. nappy

    nappy Private E-2

    Hey guys. I went through the Malware Removal Guide and I still can't figure out what virus I may have or how to fix it. The problem is that I can't access any antivirus/antispyware/etc. websites or any of the microsoft websites such as windows update. I used another computer to be able to get all the Malware Removal tools and installed them on the computer I am having problems with. I ran all the scans from the Malware Removal guide and the problem hasn't been fixed. Any idea as to what this virus is and how I can remove it?
    I've attached my logs:
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    You have a Conficker infection.

    Please download The Avenger by Swandog46, and save it to your Desktop.
    • Extract avenger.exe from the Zip file and save it to your desktop
    • Run avenger.exe by double-clicking on it.
    • Do not change any check box options!!
    • Copy everything in the Quote box below, and paste it into the Input script here: part of the window:
    • Now click the Execute button.
    • Click Yes to the prompt to confirm you want to execute.
    • Click Yes to the Reboot now? question that will appear when Avenger finishes running.
    • Your PC should reboot, if not, reboot it yourself.
    • A log file from Avenger will be produced at C:\avenger.txt and it will popup for you to view when you login after reboot. You can just close this notepad window.



    Now to finish this off and to add some redundancy, we need to use ComboFix again.
    • Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
      • If it is not on your Desktop, the below will not work.
    • Also make sure you have shut down all protection software (antivirus, antispyware...etc) or they may get in the way of allowing ComboFix to run properly.
    • Open Notepad and copy/paste the text in the below quote box into it:
    • Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
    • At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
    • You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
    • Now use your mouse to drag CFscript.txt on top of ComboFix.exe
    • Follow the prompts.
    • When it finishes, a log will be produced named c:\combofix.txt
    • I will ask for this log below
    Note:

    Do not mouseclick combofix's window while it is running. That may cause it to stall.

    Now run Ccleaner!

    Now goto this link Using MGtools and download the new version of MGtools.exe from the black bold print link in the first sentence. Overwrite your previous MGtools.exe file with this one.

    Run MGtools.exe ( Note: If using Vista make sure UAC is still disabled. Also don't double click on it, use right click and select Run As Administrator )

    Now attach the below log:
    • C:\avenger.txt
    • C:\ComboFix.txt
    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     
  3. nappy

    nappy Private E-2

    Thanks chaslang! I will try this out tonight and will let you know how it goes.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What is your status?
     
  5. nappy

    nappy Private E-2

    Sorry for the delay. I tried running the avenger program, but it kept shutting down whenever I tried to start it up for some reason. I did however remove the conficker virus through the symantec fix downadup tool. Everything is working perfectly now! Thanks again for the help.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome.

    Is suggest that you download the current version of ComboFix and run another scan. Attach this new log. This is just a safety precaution since some tools do not always do a complete job in removing Conficker.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds