FRUTRATION freshinstall gets infected

Discussion in 'Malware Help (A Specialist Will Reply)' started by subverse, Nov 1, 2006.

  1. subverse

    subverse Private E-2

    I formated my PC and started fresh did all updates ran S&D with Teatimer and ad-aware. About 10 days later im infected AGAIN!!!!:mad:
    what could possibly be causing this. I am only running google products and skype. I dont use IE, only firefox 2.0.

    if i run s&d fix problem and reboot the same problems are back
    when i start teatimer _allows_!!!??? a reg change for something called search assistant and search page change.

    s&d shows:

    advertising.com
    avenue a, inc
    casalemedia
    CN.wAQdN188
    CoreMetrics
    DoubleClick
    FastClick
    HitBox
    mediaPlex
    SexList
    statcounter
    Webtrendslive

    here is a hjt log:

    Edit by bjgarrick: Inline log attached!

    Any help would be appreciated and even more so im curious how this could have happened. Also how do i stop this from happening in the future.

    Thanks
     

    Attached Files:

    Last edited by a moderator: Nov 2, 2006
  2. subverse

    subverse Private E-2

    My system
    winxp pro sp2
    amd turion 64 mobile
    1.79ghz 512mb
     
  3. subverse

    subverse Private E-2

    ok

    Im a bad poster and i now know I shouldnt have posted my hjt log. I have now followed all directions show here: http://forums.majorgeeks.com/showthread.php?t=35407
    i have not toggled system restore yet because i still have some remaining malware. I did not run counterspy because i was able to run both MS defender and malware removal.

    I will now begin to attach logs.
     

    Attached Files:

  4. subverse

    subverse Private E-2

    and three more logs
     

    Attached Files:

  5. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Your logs look good man, what problems are you having?

    Are you familiar with VirtuaWin?
     
  6. subverse

    subverse Private E-2

    virtua win is just a program to toggle many desktops. I started to get some pop ups and activescan is still picking up malware. S&D is also still finding:
    Avenue A, Inc.
    DoubleClick
    FastClick
    MediaPlex
     
  7. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Attach the log from Spybot so I can see exactly what it's picking up.

    Run CCleaner to clean up cookies and temp files.

    Also, for the Panda detections, manually locate the folder below and check the files. If they appear to be legit leave them, if they do not or your not sure delete them. If you like you can upload them to the online scan below for analysis.

    C:\Documents and Settings\ds\My Documents\etaoldbackup\home\ds

    Online Malware Scan
     
  8. subverse

    subverse Private E-2

    Ran CC before and again. I dont think i need to be concerned about the files in etabackup. It is from a pine mbox on an old linux server. The s&d log is attached.
     

    Attached Files:

  9. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Run a full Spybot scan, after the scan is complete, right click in the scan area where the red entries are and select "Save results to file" and attach this log to your next post.
     
  10. subverse

    subverse Private E-2

    One less entry on this round: log is attached.
     

    Attached Files:

  11. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Did you run CCleaner? This should take care of those cookies that Spybot is detecting.
     
  12. subverse

    subverse Private E-2

    i run CC and then spybot s&d results in a cleanslate!!!
    However, if i let firefox run for a few minutes and then run s&d doubleclick and fastclick return right away.

    im running Zonealert now instead of the MS firewall
     
  13. subverse

    subverse Private E-2

    here is my SD log
     
  14. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    This is normal, each time you open any browser and access the internet you will have cookies. It's normal for this to occur, run CCleaner once a day and you'll be fine.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds