Infected services.exe file?

Discussion in 'Malware Help (A Specialist Will Reply)' started by HJackson, Jul 26, 2012.

  1. HJackson

    HJackson Private E-2

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes there is a sign of zeroaccess infection present. Please follow ALL of the instructions below. Do not just stop once you have run TDSSKiller and MBRCheck there is more.

    I want you to run TDSSKiller so refer to the below for how to do so.

    TDSSkiller - How to run


    Please also download MBRCheck to your desktop
    • Double click MBRCheck.exe to run (vista and Win 7 right click and select Run as Administrator)
    • It will show a Black screen with some information that will contain either the below line if no problem is found:
      • Done! Press ENTER to exit...
    • Or you will see more information like below if a problem is found:
      • Found non-standard or infected MBR.
      • Enter 'Y' and hit ENTER for more options, or 'N' to exit:
    • Either way, just choose to exit the program at this point since we want to see only the scan results to begin with.
    • MBRCheck will create a log named similar to MBRCheck_07.16.10_00.32.33.txt which is random based on date and time.




    Now do not stop, please continue on with the below instructions too! :)

    v
    V
    V
    V
    READ & RUN ME FIRST. Malware Removal Guide
     
  3. HJackson

    HJackson Private E-2

    Thank you for your response.
    My computer is now booting fully to my desktop. But now a new problem has arose. I cannot use any 32 bit programs, I get the message "The subsystem needed to support the image type is not present." I get it with every 32 bit program. Only a few programs open (Zune, Lightroom and a few others which are installed to Program Files, instead of Programs Files(x86).
    With this problem I cannot run TDSSKiller or MBRcheck from the desktop, or using CMD from the recovery options. I did run the Kaspersky rescue disk, which found nothing.
    So now I am booting to desktop, with no 32 bit programs working, which are the majority of my programs. My internet connection is not working, which I am assuming is a part of this problem.
    I haven't ran any of those programs you have recommended, but my computer made some progress.
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    Attached is fixlist.txt
    • Save fixlist.txt to your flash drive.
    • You should now have both fixlist.txt and FRST64.exe on your flash drive.

    Now re-enter System Recovery Options.
    Run FRST64 and press the Fix button just once and wait.
    The tool will make a log on the flashdrive (Fixlog.txt).
    Please attach this to your next message. (How to attach)

    Now attempt to boot normally.

    --------------------

    Run FRST again, no fix just a scan and attach the log.

    You might not be able to run this but please try.

    Download OTL to your desktop.

    • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
    • Vista and Windows 7 users Right-click OTL and choose Run as Administrator)
    • When the window appears, underneath Output at the top change it to Minimal Output.
    • Check the boxes beside LOP Check and Purity Check.
    • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

    When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.

    Attach both of these logs into your next reply.
     

    Attached Files:

  5. HJackson

    HJackson Private E-2

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Try safe mode. Go back to my original post and see if you can follow any of the instructions in that mode.
     
  7. HJackson

    HJackson Private E-2

    It still states "The subsystem needed to support the image type is not present." on both programs.
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I suggest that you post about this in the software forum and then return here to complete malware removal once you can run all tools. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds