ComboFix Problem not a valid application??

Discussion in 'Malware Help (A Specialist Will Reply)' started by toransilver, Dec 23, 2008.

  1. toransilver

    toransilver Private E-2

    I'm following the run and read first walkthrough and I've made it all the way to ComboFix without any major problems. when I get to the point where I'm supposed to double click the executable several windows (normally 3-4) pop up saying:

    C:\32788R22FWJFW\pv.cfexe is not a valid Win32 application

    I saw for one of the other anti-malware programs that this is the virus trying to trying to block the applications access or something, but the tutorial for Combofix says nothing on the matter, and from what i've seen searching the forums this is a rare problem.
    If you click away these boxes and attempt to continue on with the process you can go rather far (i've tried this several times, the farthest I've gotten was Completed Stage_50)

    I've deleted everything and reattempted the entire process, I've rebooted the computer and I've made sure I completed every step correctly.

    What should I do? should I skip this and try MGtools? and the re-attempt comboFix?

    P.S. I've got the Vurtumonde trojan.
    P.P.S. I can give any logs that you ask for, but I haven't completed the Read and Run thing quite yet.
     
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    http://www.majorgeeks.com/images/grenade.gifWelcome! to MajorGeeks.com!http://www.majorgeeks.com/images/grenade.gif

    For now just skip running ComboFix. Follow the below step and then try to proceed.

    Click Start > Control Panel > System > Hardware > Device Manager > View >
    • Show Hidden Devices.
    • Scroll down to “Non-plug and Play Drivers” and click the plus icon to open those drivers.
    • Then search for TDSSserv.sys
    • Let me know if you find this or not.
    • If you do find it, right click on it, and select Disable. Do not try to uninstall it.
    • Also if this is found and you disable it, then reboot and see if you can run the other scans that would not run.

     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds