Dos/Aleron.E problem

Discussion in 'Malware Help (A Specialist Will Reply)' started by jeromejewels, Apr 15, 2013.

  1. jeromejewels

    jeromejewels Private E-2

    Long time lurker, first time poster. Microsoft Security Essentials is picking up Dos/Alureon.E. I have tried as much as I know how to do. I went through your guide. MBR check log is attached. The TDDS Killer program ran fine, but it did not create a log zip file and would not create a MGTools folder. I manually created one, then ran the program again. It created logs in the tools folder but I'm really not sure which ones to attach. Are they all the .txt files?
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you went through the guide, please attach these logs:
    RogueKiller
    Hitman
    MBAM
    C:\MGLogs.zip.
     
  3. jeromejewels

    jeromejewels Private E-2

    Thanks! Still having problems with mglogs.zip. I wasn't putting logs in there so I manually put them in. Hopefully I put the correct ones in there. Thanks for the help!
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not finding any malware in your logs. What issues are you having, if any?
     
  5. jeromejewels

    jeromejewels Private E-2

    The main issue is when I start my pc, and Microsoft Security Essentials starts, it automatically hits with dos/Alureon.E. My network is totally inaccessible by internet or through other pc's. The only way I get around it is Microsoft Security Essentials has a pop up that says "clean pc", then click to restart pc, if I do this 4-5 times, I can restart without having Security Essentials finding it. then I can access my network.

    I have noticed since I followed your guide, Security Essentials still detects Alureon, but doesn't shut me out of network access. The only other strange thing is a random pop up from my Audio saying I just plugged something in, when I haven't touched a thing.

    Suggestions?
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Attach the log from running MSE.
     
  7. jeromejewels

    jeromejewels Private E-2

    Excellent! Thanks for the help. I think this is the correct one.
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It is referring to volume 4. What do you have on that partition?
     
  9. jeromejewels

    jeromejewels Private E-2

    Ok that is really above my pay grade. I am lost on that topic. Not sure were to go and look for that info. Let me do some research to find that out. Thanks for you help so far!
     
  10. jeromejewels

    jeromejewels Private E-2

    Guess I found where to see the partitions (yay!), but have no idea how to see what is on them. Here is the screen attached. I gather what your asking/telling me is...."listen here, you got something on that partition 4 that Security Essentials doesn't like" What could be my next step?
     

    Attached Files:

  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Try rerunning Hitman to see if it resolves it. Attach the new log.
     
  12. jeromejewels

    jeromejewels Private E-2

    Ok great. Here is new log.
     

    Attached Files:

  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Hitman recognized the infection, so now see if it will fix it.
     
  14. jeromejewels

    jeromejewels Private E-2

    Ok! Looks like Hitman removed it successfully! Yay! and after reboot, Microsoft Security Essentials icon is green and doesn't detect Alueron any further. My pc even rebooted faster.
     

    Attached Files:

  15. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good deal.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. You can uninstall RogueKiller and HitManPro.
    2. Go back to step 4 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    7. After doing the above, you should work thru the below link


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0
     
  16. jeromejewels

    jeromejewels Private E-2

    :cool
    Thanks so much for your help. I purchased Malwarebytes to also help me. I will follow the other guides on this site.
     
  17. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds