Can't Remove Malware Walpaper Displayed

Discussion in 'Malware Help (A Specialist Will Reply)' started by bper, Mar 7, 2008.

  1. bper

    bper Corporal

    Hi,

    Laptop running vista home premium has a walpaper which obscures the desktop saying that the computer is infected with spyware.

    I've run the tests as outlined in your "read this first" procedure. SuperAntiSpy found and fixed 37 problems, SpyBot fixed 3, ComboFix fixed some, but MGTools didn't seem to run properly - had a lot of unix like comands that failed.

    I have attached the logs from the scans, and also a screenshot of the walpaper

    I hope you can help.

    Thanks.
     

    Attached Files:

  2. bper

    bper Corporal

    The wallpaper says:

    "Warning! Your're in danger! Your computer is infected with spyware".

    The grammar and spelling is all wrong, and every time I change it, it comes right back so it's obvious that this is malware"
     
  3. bper

    bper Corporal

    There was no MGlogs.zip file created. Was there something that was incorrectly run?

    Is this a problem that was addressed before? If so, if you can point me to the link I will follow it.
     
  4. bper

    bper Corporal

    I ran HijackThis and removed the entries related to:

    O4 - "C:\WINDOWS\sysockeu.exe"
    O4 - "C:\WINDOWS\sysodkcs.exe"

    I ran SuperAntiSpyware again, and in Preferences, I selected the Repairs tab and selected the Repair Desktop Background, and the problem has seemingly been resolved.

    If this helps anyone, that is great. I don't know if this is a complete resolution of the problem, but the offending wallpaper is removed and all of the scans are clean.

    If anyone thinks that some bases may still not have been covered, please let me know so that I can address those as well.

    Thanks for your help.
     
  5. abri

    abri MajorGeek

    Hi bper,
    Welcome to the Malware Forum!

    Your MGlogs.zip can be found directly under C. If you don't find them, please try running GetLogs.bat which is located in the MGTools folder in C. Double click on GetLogs.bat and allow it to run to completion. When you use the attachments browse button with your next post, see if you can locate the logs by looking for them directly under C just above the superman icon. If they are not there, please tell me.

    Thanks.
    abri
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds