Hijackthis! Log * Virus Removal Help Needed!

Discussion in 'Malware Help (A Specialist Will Reply)' started by johnnycashish, Aug 7, 2009.

  1. johnnycashish

    johnnycashish Private E-2

    Hello!! My computer got infected and I've got the typical "signs": Home page is now a herbal supplement; I can't access many virus protection or MicroSoft sites; pop-ups, etc.

    I have Norton 360, Ad-Aware, and Spybot. I've run them several times (in regular and safe mode) and it detects stuff and I delete stuff but every time I reboot, "do_not_delete" and "ctfmon" and "pridl" (among other nasties) are in my registry. I can't seem to get rid of them.

    I am at my wits end and I have tried doing a system restore (again, I tried both in regular and safe modes -- post "sweeping") and I get the generic "could not restore -- try a different restore date" message. I've tried all of my restore points to no avail. I apologize if this is off-topic; I assume the malware is preventing me from restoring and I would love to simply turn back the clock if I can't remove the buggers.

    Can anyone help me? I have Windows XP SP2 (SP3 crashed me beyond belief). Before this infection I was successful in using system restore. I disabled all my spyware (sometimes this affects the system restore). If anyone can help me either remove all the buggers or successfully restore the system to before this attack, I would REALLY appreciate it! Below is a Hijack This! log for your reference. Thank you very much!!

    JC
     
    Last edited by a moderator: Aug 10, 2009
  2. johnnycashish

    johnnycashish Private E-2

    Hello! An update: I posted my issue with "bleepingcomputer.com" and they are going to try to walk me through this. I'll keep you updated. THanks!

    JC
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Then please stay with them as asking for assistance on two boards makes it a waste of time for one of them. :)
     
  4. johnnycashish

    johnnycashish Private E-2

    Tim, thanks for your reply. I agree; I certainly don't want to waste anyone's time. I stuck with "Bleeping" and at the end of the day it looks like I have a rootkit virus and although it should be able to be cleaned, I've been advised that I may not be able to trust my computer 100%. I think the smartest thing to do is wipe the drive and reinstall Windows XP (start from scratch, as it were). I'm done working with "Bleeping" on this matter.

    I received a few links (and also did some Google searching) on reinstalling Windows XP and I just have one question that I can't seem to find an answer to. Please let me know if you can help me out.

    The version of Windows XP has SP1 but not SP2 or SP3. I've read that I need to patch Windows BEFORE I go online, otherwise I am completely vulnerable. So I have a chicken-and-the-egg question: How do I patch XP without being able to surf Microsoft's site and complete the download? Do you think it's OK to connect to the internet with SP1 as long as the only site I go to is the Microsoft site?

    I also have another question: I have Norton 360 for my computer. It was running when I got attacked. I think I installed everything OK but now I doubt everything... What are your thoughts about this product? It scans my computer every night and it never seems to find anything but I can run a Spybot or Ad-Aware scan and some sort of tracking thing is always found. I also don't think I like the fact that Microsoft firewalls and Defender don't run along with Norton. Can you give me a quick education? I prefer to not reformat my drive again in the future....

    Thanks!
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You can always download your protection programs to another computer and transfer to yours before you get online.

    Frankly I think Norton is a resource hog....and unless you have a license that will last for a while, I would dump it for a freeware program such as AVG or Avast.

    You should work thru the below link:
    How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds