Keylogger successfully removed, but cannot get back online

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by noavatars, Dec 10, 2011.

  1. noavatars

    noavatars Private E-2

    Today, I noticed my PC was infected by what appeared to be the "Keylogger" virus (or at least this is what one of the error messages said). I also noticed that my internet connection was down, and that I could not get online (PC was online and working normally last night).

    I was able to clear out the virus using the "Spyware Removal" instructions provided here. I no longer get the error messages and fake "security scanning" that I was getting before. However, I am still unable to get online.

    I followed the network repair instructions listed in the SAS section, and rebooted, but still can't get online. Strangely, the Windows network center says I am connected, but I can't ping any internet IPs, nor can I browse to any websites.

    I am attaching my logs here as instructed; any help is appreciated!!

    Best,
    Dave
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Is your McAfee software working okay. Does the McAfee Firewall show any problems ( like it is not running ) ?


    Uninstall the below software:
    Conduit Engine

    Now we need to use ComboFix
    • Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
      • If it is not on your Desktop, the below will not work.
    • Also make sure you have shut down all protection software (antivirus, antispyware...etc) or they may get in the way of allowing ComboFix to run properly.
    • If ComboFix tells you it has expired or need to be updated to a new version, make sure you allow it to update.
    • Open Notepad and copy/paste the text in the below quote box into it:
    • Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
    • At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
    • You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
    • Now use your mouse to drag CFscript.txt on top of ComboFix.exe
    • Follow the prompts.
    • When it finishes, a log will be produced named c:\combofix.txt
    • I will ask for this log below
    Note:

    Do not mouseclick combofix's window while it is running. That may cause it to stall.

    If after running Combofix you discover none of your programs will open up because you recieve the following error: Illegal operation attempted on a registry key that has been marked for deletion then you will need to reboot your computer which will normally fix this problem.

    Now download the current version of MGtools and save it to your root folder. Overwrite your previous MGtools.exe file with this one.

    Run MGtools.exe ( Note: If using Vista or Win7, make sure UAC is still disabled. Also don't double click on it, use right click and select Run As Administrator )

    Now attach the below log:
    • C:\ComboFix.txt
    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     
  3. noavatars

    noavatars Private E-2

    McAfee was a free trial which has expired, so no options can be selected.

    Logs are attached.

    When I attempted to reboot after following your instructions, I got an "unable to start" message. I ran startup repair and it booted up successfully, but I still can't get online.

    Please let me know what to do next.
    Dave
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay then you need to uninstall it now and then reboot. After reboot, redownload MGtools ( a new version is out ) and rerun it. Attach the new MGLogs.zip file.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds