Please check my scans

Discussion in 'Malware Help (A Specialist Will Reply)' started by pennypocket, Dec 28, 2010.

  1. pennypocket

    pennypocket Private E-2

    I have had one of my accounts logged into (2CO) and was told that there could be malware on my system. Thanks you for any help.

    Hope I have done it all correctly.
     

    Attached Files:

  2. pennypocket

    pennypocket Private E-2

    Here is the root repeal log
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Who told you this? What is 2co?:confused

    To begin with, please disable Spybot's TeaTimer.

    How to disable Spybot's TeaTimer

    If you did not deliberately set this proxy yourself then please include it in the HJT fix below: (But I suspect you did set it yourself)

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix exit HJT.

    Observation. I see the below in your c:\windows\win.ini file. Do you know what this is for? If not, you may want to delete these lines and reboot.

    You can just load it into notepad or any other text editor and modify it.

    Other than that I am not seeing any malware.
     
  4. pennypocket

    pennypocket Private E-2

    Thank you.

    2CO is like paypal. I found an unauthorised purchase.

    I will try and work through the other things you kindly mentioned - thank you.

    I have another computer that I need to check too - a shared one.

    Thank you.
     
  5. pennypocket

    pennypocket Private E-2

    Thanks you. I have done what you advised. I could do the win.ini edit as it would not save (came up with an error).

    Thank you again. You are very kind.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    What kind of an error?
     
  7. pennypocket

    pennypocket Private E-2

    Says:

    Cannot create the C:\windows\win.ini file
    Make sure that the path and filename are correct.
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I will have Chaslang comment on this as soon as he gets chance. In the mean time I would like to say that apart from that, and the proxy setting, I wasn't seeing anything unusual. Run this and attach the results.

    Run this and attach the results.

    Using ESET's Online Scanner
     
  9. pennypocket

    pennypocket Private E-2

    Thank you (again)

    Attaching file as requested
     

    Attached Files:

    • log.txt
      File size:
      842 bytes
      Views:
      4
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    ENSURING that UAC is disabled please continue with the below:

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds