Laptop infection

Discussion in 'Malware Help (A Specialist Will Reply)' started by Ipheuria, Oct 25, 2009.

  1. Ipheuria

    Ipheuria Private E-2

    My GF's laptop got a nasty infection on Friday. After removing the hard drive and scanning it externally. I used some of my usual tools HiJack This, Combofix, and MalwareBytes. Then I ran into this forum grabbed all the tools and run through the steps outlined. After removing many different infections I still have a registry startup item that cannot be removed. I am attaching all the logs and any help would be much appreciated.

    There were two registry startup items

    HKLM\..\Run: [calc] rundll32.exe C:\WINDOWS\system32\calc.dll,_IWMPEvents@0

    HKLM\..\Run: [Rdoxosuwulecugof] rundll32.exe "C:\WINDOWS\ovowakec.dll",Startup

    The are re-created everytime they were removed. The first one has been successfully removed but the HKLM\..\Run: [Rdoxosuwulecugof] rundll32.exe "C:\WINDOWS\ovowakec.dll",Startup has not been removed by any of the tools.
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    We did not request a log of quarantined items from combofix. Could you please attach the complete C:\combofix.txt log into your next reply?

    Also you did not attach the C:\mglogs.zip log from running MGTools.exe

    I will need to see both of those before I can give you a fix.

    Thanks
    Kes13!
     
  3. Ipheuria

    Ipheuria Private E-2

    sorry for the delay, wanted to update. It's hard to get the laptop from my GF once it works even a bit. So I will get it tonight and grab the logs and post up later.
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No problem, post logs when you are ready. I shall be here waiting :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds