Help me get cleaned up pleeease

Discussion in 'Malware Help (A Specialist Will Reply)' started by jackbar, Nov 15, 2006.

  1. jackbar

    jackbar Private E-2

    I have struggled through the necessary preparation before posting, I hope Its all present and correct
     

    Attached Files:

  2. jackbar

    jackbar Private E-2

    hope you can assist me with my next steps, I appreciate any time you can spare me.

    cheers
    jackbar
     

    Attached Files:

  3. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Download Pocket KillBox
    • Save it to your desktop or a place easy to find.
    • Do not run it yet
    Now scan with HijackThis and check the boxes for the following entries:
    ( Make sure ALL browser windows are closed when you click FIX )

    O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

    Again, make sure ALL browser windows are closed when you click FIX.

    Next, run CCleaner to clean up cookies and temp files.

    Now, Copy and Paste C:\WINDOWS\Downloaded Program Files\USDR6_0001_D18M2707NetInstaller.exe into the box – If it exists, it will show up in Blue. Check the option to Delete on Reboot and Click the Red X and Yes to the confirmation message. A message will ask if you want to reboot now – Click YES and allow your PC to reboot.

    • If you get an error message about Pending Operations, just reboot your computer manually.

    After you complete the above, REBOOT and proceed with the rest of this fix...

    Finally, I would like you to flush your System Restore points. Please follow the instructions in the below:

    • Disable and Re-enable System Restore

    • Turn OFF System Restore to flush any bad Restore Points.

    • Then, follow the instructions at the bottom of the linked page to Re-enable the Restore Utility which will create a fresh restore point.
    After you complete the above reboot once more and then scan with HijackThis and attach the new log.

    Let me know of any problems you may have encountered with the above instructions and also let me know how things are running now.
     
  4. jackbar

    jackbar Private E-2

    Firstly thank you very much for your time and knowledge.

    I've had a go at the fix you gave me in the short time I have this morning.
    here is the new hjt log.

    cheeers
    jackbar
     

    Attached Files:

  5. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Your log looks good, are you having any further problems?
     
  6. jackbar

    jackbar Private E-2

    no real running problems but I am still showing 1 virus (Infected with: Win95.CIH.Gen) and around 150 infected files.
    Are these quarantined in my out of date Trend Micro PCcillin AV?
    Could you please advise on how to remove these and then recommend me a good antivirus and firewall to use? preferably free+ any tips on installation of newAV/uninstall of old
    Thanks again for any help you can give me mate, I really do appreciate it.
     
  7. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    If they are in Quarantine you're ok, however if the AV is outdated then I recommend uninstalling. This should remove those files so all will be good.

    I personally recommend AVG AntiVirus, I've used it for a while with no problems.

    You should see this article on How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds