Please Help with RemAdm-Proclaunch!171

Discussion in 'Malware Help (A Specialist Will Reply)' started by waterbearer, Mar 29, 2008.

  1. waterbearer

    waterbearer Private E-2

    Hello,

    As bizarre as it may sound, I think My PC may be infected with a Trojan that appears to somehow be associated with an application I’d downloaded from M/G.com.

    Approximately a week ago I downloaded and installed the Malware clean-up, detection and removal tools listed on the MajorGeeks.com “Read and Run me First” Malware Removal Guide. But to date I hadn’t had time to begin the actual process or run any of the applications.
    One of the downloads was Combofix.exe, which as instructed to, I'd downloaded to my Desktop for future use. Today, McAfee ran a scheduled Full Scan and much to my surprise, it detected RemAdm-ProcLaunch!171 at the following location:

    C:\Documents and Settings\ ----\Desktop\ComboFix.exe.

    A Google search of RemAdm-Proclaunch!171, produced a post in the Malware Removal thread right here at M/G. So now I’m confused about the status of that ComboFix.exe I’d downloaded from M/G, and how it at least appears to have been the source of Infection. Of course I may be mistaken about the latter,...I’d sure like to be, but either way, I’m in need of some help removing the Trojan please,…as soon as possible.

    My O/S is Windows XP SP2

    And at this point since I am new to the process, I'll wait for your reply to provide what ever other information you may need.

    Thanks in advance!
     
    Last edited: Mar 29, 2008
  2. abri

    abri MajorGeek

    Hi waterbearer,
    Welcome to MajorGeeks!


    We've recently removed Combofix from the READ & RUN ME because of problems that have been coming up among some users. The file you mention is a legitimate file for some uses, however, due to these other problems, we can't recommend you using this tool at this time. Please just delete the combofix.exe file.

    Thanks.
    abri
     
  3. waterbearer

    waterbearer Private E-2

    Hi abri,

    Thanks for your timely reply to my post. I’d been away from my PC over the weekend, but today I followed your instructions and deleted the combofix.exe file from my Desktop.. Is there anything more that you recommend I should do?
     
  4. abri

    abri MajorGeek

    Hi waterbearer,

    If your computer shows signs of malware, I recommend running the scans in the READ & RUN ME FIRST except for Combofix, which you've deleted. Combofix has been replaced with MalwareBytes, which you may want to add to your scans. The scans we have you run pick up a lot of common forms of malware which may be harmful or simply nuisances due to slowing down your computer. If you go through this process, you may wish to attach the requested logs here to be reviewed and checked for any items the scans weren't able to remove.

    abri
     
  5. waterbearer

    waterbearer Private E-2

    Hi abri,

    Yes, my computer was showing signs if infection that interfered with a few programs either running correctly or not at all. (Actually it was after troubleshooting several steps with no less than three AOL Techs. all of whom concluded that another unknown program was running in the background, that led me to MG to begin with. )

    So, I’ll add MalwareBytes to the scans and begin the procedures tomorrow, after which I’ll post the logs here as you‘ve suggested .

    Thanks again!

    waterbearer
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds