My Logs from Malware Removal

Discussion in 'Malware Help (A Specialist Will Reply)' started by missbetty, Oct 9, 2008.

  1. missbetty

    missbetty Private E-2

    Here are my logs that were requested, I do think I got rid of it but these logs will tell the truth. The RKFree program is a program I put on myself for personal reasons, helps me with passwords, and I am the only one using this machine. (Hope I got this in the right spot) And I couldn't find the ComboFix.txt to add with the logs.
     

    Attached Files:

  2. Doc13%

    Doc13% aka Kestrel13! aka Emms

    Hi

    The combofix log is usually located on your C Drive

    C:\ComboFix.txt please also upload this for review :)
     
    Last edited: Oct 9, 2008
  3. missbetty

    missbetty Private E-2

    I did a search for combo fix and it came back with nothing, so not sure what else I can do to look for it. I had the search look in hidden folders also but nothing.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    The log is right where you were told it would be:
    Code:
    "C:\"
    $AVG8~1.VAU   Sep 20 2008              "$AVG8.VAULT$"
    boot.bak      Oct  7 2008         210  "Boot.bak"
    boot.ini      Oct  7 2008         281  "boot.ini"
    caisslog.txt  Oct  7 2008      305124  "caisslog.txt"
    CMDCONS       Oct  7 2008              "cmdcons"
    combofix.txt  Oct  7 2008      162334  "ComboFix.txt" [COLOR=DarkRed]<-------Here![/COLOR]
    
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi

    I’m not seeing an awful lot to do, but let’s tend to a couple of things…

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    1) We don't recommend putting anything in the Trusted Zone unless it is absolutely necessary. Do you really require excite.com to be in your Trusted Zone? If not let hijackthis fix the entries when we do the below.

    2) Run C:\MGtools\analyse.exe by double clicking on it. (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:



    After clicking Fix, exit HJT.


    3) Next I would like for you to navigate to:

    C:\Documents and Settings\Betty Hicks\Application Data\ 65824F

    Open up the folder entitled 65824F and without clicking on any of the contents, could you just make note of what is in there and let me know in your next post please. Thanks.

    4) I see from your logs that you currently have Xoftspy installed. I would advise you to uninstall this using add and remove programs unless you paid for it.


    5)

    • run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this
    • and also please attach the combofix log we previously requested which will be found at:

      C:\ComboFix.txt

    Thanks
    Kestrel13!
     
    Last edited by a moderator: Oct 10, 2008
  6. missbetty

    missbetty Private E-2

    Hi Tim,

    I went and looked and for the life of me I can not find that text. I took a screen shot to show you what I'm looking at and attaching it to this post. I know I did not delete anything related to any of the programs I used to clean the machine. Hope you can help me find this file. Lol

    Betty
     

    Attached Files:

  7. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    continue on with the above instructions Missbetty and I will get back to you regarding the combofix log :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds