Malware problems.....

Discussion in 'Malware Help (A Specialist Will Reply)' started by srodbell, Feb 18, 2006.

  1. srodbell

    srodbell Private E-2

    First of all I would like to thank whoever is responsible for the Run Me and Read Me first. I have used it extensively in the last 24 hours and believe I have followed the instructions correctly.

    Originally Ad-Aware would blow up when I tried to use it and Safe mode would not work. I was able to clean many things and finally figured out I needed Vundofix.exe to get Ad-Aware and safe mode up and running. I have subsquently run all the suggested programs several times until I got a clean bill of health from all programs with the exception of Active Scan.

    I have attached a Hijack This file and the Active Scan report. It seems I still have alittle left.

    Please advise. Thanks in advance for your help.
     

    Attached Files:

  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

  3. srodbell

    srodbell Private E-2

    Here are the results from ewido and hijack this. thanks again.
     

    Attached Files:

  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Please look in Add/Remove Programs for the following and uninstall them if found:

    Ewido

    Now scan with HijackThis and check the boxes for the following entries:
    ( Make sure ALL browser windows are closed when you click FIX )

    O20 - Winlogon Notify: req - C:\WINDOWS\

    Again, make sure ALL browser windows are closed when you click FIX.

    Now, Please boot into Safe Mode, be sure you have the Viewing of Hidden Files & Folders Enabled per the tutorial. Now, navigate to and DELETE the following if they should remain:

    C:\WINDOWS\system32\FLEOK Delete this whole folder if it exist!

    C:\WINDOWS\system32\kyf.dat

    Next, run CCleaner to clean up cookies and temp files.

    Finally, I would like you to flush your System Restore points. Please follow the instructions in the below:


    • Disable and Re-enable System Restore

    • Turn OFF System Restore to flush any bad Restore Points.

    • Then, follow the instructions at the bottom of the linked page to Re-enable the Restore Utility which will create a fresh restore point.
    After you complete the above reboot once more and then scan with HijackThis and attach the new log.

    Let me know of any problems you may have encountered with the above instructions and also let me know how things are running now.
     
  5. srodbell

    srodbell Private E-2

    I completed the suggested steps. Everything seems fine. Attached is my Hijackthis log. Subsequent to the attached log, I deleted 3 references to bitdefender on lines 09,09 and 3rd item numbered 16. I hope that is okay.

    Thanks for your help.
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    You didn't attach anything to your previous post?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds