malware not sure what it is

Discussion in 'Malware Help (A Specialist Will Reply)' started by OiMouseboy, Dec 26, 2007.

  1. OiMouseboy

    OiMouseboy Private E-2

    Hi I am having trouble removing some type of malware I am not sure what it is. At first I scanned with Ad Aware and it said it was virtumonde, so i selected to remove it and it removed it from my registry, and then I scanned again after rebooting and it was back, and then I downloaded a update for my ad aware and it said it was something called win32.trojandropper, and i selected to remove it and it removed it from my registry but after a reboot it was back again. Here is my hijackthis log.
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  3. OiMouseboy

    OiMouseboy Private E-2

    well I did all that. Ad-Aware is not finding anything not but spybot is still finding somethin. Virtumonde.generic: is what spybot is finding, i selected to fix it scanned again and nothing, restarted and it was back selected not to fix it ran vundofix.exe and it found nothing.
    I attacked the spybot log, mglogs, and combofix.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You appear to have skipped running AVG Antispyware! Why did you skip this?

    Also noted you are using Ewido AntiSpyware which is no longer supported as it was replaced by AVG Antispyware quite awhile ago. You should uninstall Ewido!


    Your logs show that you are basically clean. We just have a few minor things to do.

    Uninstall the below old versions of software:
    J2SE Runtime Environment 5.0 Update 6

    Make sure you reboot after uninstalling the above!

    After reboot, now install the current version of Sun Java from: Sun Java Runtime Environment


    Run C:\MGtools\analyse.exe by double clicking on it. This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    O20 - Winlogon Notify: wvuvspm - wvuvspm.dll (file missing)

    After clicking Fix, exit HJT.

    Copy the bold text below to notepad. Save it as fixme.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it
    double click it and allow it to merge with the registry.
    Now run Ccleaner!

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created

    Make sure you tell me how things are working now!
     
    Last edited: Dec 30, 2007
  5. OiMouseboy

    OiMouseboy Private E-2

    I ran AVG, I tried to follow the instructions on how to get a log from it, but could not figure it out. AVG came back clean though. I might have a different version of AVG and thats why I could not figure out how to get a log? I no longer use ewido I should uninstall that I forgot that I still had it installed. I have AVG free 7.5.516. I will try what else you told me and post the results.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I'm not sure if you are referring to the same thing as me. I'm saying AVG Antispyware which is not the same thing as AVG Free antivirus that you have installed. The READ ME clearly states AVG Antispyware and I did not see it in your log as being installed. Are you saying you have now installed AVG Antispyware and the scan comes up clean? If so, we don't need a log. If you have not run AVG Antispyware, you need to do that.

    Either way just complete the rest of my previous instructions.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds