DHL Mailing List Virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by Michael1980, Nov 12, 2010.

  1. Michael1980

    Michael1980 Private First Class

    hi, i recently received a email from someone at DHL who claimed that i had a package that needed to be picked up cause of a error in the address. it had a attachment to a mailing label in the zip file. i downloaded it and opened it cause i was expecting a package from Japan and as i understand DHL ships from other countries. Anyway when i unzipped the file it turned out to be a application. I double clicked it and it didn't seem to do nothing. so the next thing i did was something i should have done first, i googled "DHL Mailing List Virus". I learned there was a lot of other people who had this too. i couldn't find anything i can use. can someone please help me? apparently it takes a few days before the computer starts getting really messed up. i got this dhl virus two days ago. hopefully someone on here will help me get rid of what this application put on my computer after opening it.

    my computer stats:

    Windows 7 Home Premium
    AMD Phenom(tm) 9750 Quad-Core Processor 2.40 GHz
    8.00 GB RAM
    64-bit Operating System
    Gateway Desktop
    Kaspersky Anti-Virus 2011
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    The scans must have taken care of it since I am not seeing any issues in your logs. What issues are you still having, if any?
     
  3. Michael1980

    Michael1980 Private First Class

    hello

    oh ok. well i haven't noticed anything wrong since i opened that zip file that i got from the email two days ago. i was under the impression that something would turn up in a matter of time. i was hoping that the logs would show something. so to answer your question there are no problems that i can think of that i'm having cause of that DHL attachment. is there something else i can do to be sure i am still protected?
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you wish, you can run an online scan to see what it produces:
    eSet Online Scan.
     
  5. Michael1980

    Michael1980 Private First Class

    hello

    i used the eSet Online Scan and it picked up some infections that the other scans didn't pick up. i have attached the log. Is there anything else i should do now? i don't understand the scans didn't pick up that DHL mailing list virus? i mean i of course don't want it but I just wanna be sure it's gone. I feel like that the stuff's gonna hit the fan sooner or later when my computer gets completely infected by it. what can i do?

    thanks in advance.
     

    Attached Files:

  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Since I have not seen any evidence of the infection, I would suggest that you just keep an eye on things for a few days and report back. I will give you the final cleanup instructions, but you may wish to hold off on this until you are sure nothing else is happening.


    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:




    Support MajorGeeks with Geek Wear!
     
  7. Michael1980

    Michael1980 Private First Class

    hello

    it's been a while since i reported here. i've noticed lately that my computer will freeze every once in a while. no blue screen of death will appear but the mouse will work but no programs will respond when i click on anything on the screen. however if i do ctrl alt delete and bring up the task manager and then close it, everything is back to normal again. it's annoying! it happens a few times a day. do i have something on my computer that's doing this? have you heard of this problem? also i had a blue screen of death for the first time on this computer a few days ago. i was installing some third party software on my ipod (Rockbox) and i was selecting a bunch of items on a list while holding ctrl and then i got the blue screen. it said something at the top like "Bad Pool" i think. can't remember for sure. but i haven't gotten a blue screen since. i think it was a one time thing. any advice???

    thanks for continuing to help me. it's GREATLY appreciated :)
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Freezing could be caused by a number of things, not necessarily malware. I suggest you post in the software forum for that issue. :)
     
  9. Michael1980

    Michael1980 Private First Class

    oh ok. my bad. thanks for letting me know. will post there now.
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Not a problem. Good luck and safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds