HELP- Infected by Malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by ADLERON, Mar 14, 2008.

  1. ADLERON

    ADLERON Private E-2

    Sorry about My English its not my Mother Toungue.

    I followed "Read and Run Me First", I tried SAS it cleaned Voundu maleware.
    Spybot dosen't work.
    Tren Micro scan result: Worm_Bagle.JT


    I am a novice, So If you explain me slow I will get it fast.
    Please Help, Tnx
    Ronen
     
  2. Lev

    Lev MajorGeek

    Welcome to MajorGeeks.com!

    You need to finish all the instructions in the Read and Run Me First you followed. As you are still experiencing problems you should attach the requested logs so that an Authorized Malware Fighter can help you.

    Read & RUN ME FIRST Before Asking for Support
     
  3. ADLERON

    ADLERON Private E-2

    I read "Read and Run Me First" try to follow all steps.
    here are the logs requested
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We have numerous things to remove, but I can't do so without the C:\MGLogs.zip ...please attach it to your next reply.

    In the meantime:
    Please disable all anti-virus and anti-spyware programs while we do the following:

    Run C:\MGtools\analyse.exe by double clicking on it. This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip.
     
  5. ADLERON

    ADLERON Private E-2

    Hi

    My Computer Started working Properly, Without Detect any malware\ Troj. or Viruses, And All problem gone!
    Can I be sure Everything OK?

    And a Huge tnx for Majorgeeks:hyper
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I can't tell you one way or the other without seeing the MGLogs.zip that I asked for.
     
  7. ADLERON

    ADLERON Private E-2

    Here it is

    TNX AGAIN
    I'm really apreciate it
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Looks good....you have an awful lot of logs in C:\Windows\.......you may wish to clean them out.

    Also you need to install JAva:
    Java Runtime 6

    If you are not having any other malware problems, it is time to do our final steps:

    If we used ComboFix, you can delete the ComboFix.exe file, C:\ComboFix folder, C:\QooBox folder, C:\WINDOWS\nircmd.exe, C:\combofix.txt and C:\ComboFix-quarantined-files.txt logs that was created.
    If we had you run Avenger, you can delete all files related to Avenger now.
    If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    If you are running Windows XP or Windows ME, do the below:
    * Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
    * Then reboot and Enable System Restore to create a new clean Restore Point.
    After doing the above, you should work thru the below link:
    *How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds