Presentationhost.exe virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by Aleei, Jul 10, 2015.

  1. Aleei

    Aleei Private E-2

    My computer is infected with presentationhost.exe. I had read in the forum what to do at first and ran "FRST64.exe" and have FRST.txt and Addition.txt. Im having the free of send this files to you attached, in order to you make me please to send the Fixlog.txt and MGlogs.zip, if that the case, and solve this threat in my computer. Excuse me if im so hasty, I realy sorry. Thankyou berry much in advance.
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Nothing attached. :)
     
  3. Aleei

    Aleei Private E-2

    Sorry, here they are...
     

    Attached Files:

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  5. Aleei

    Aleei Private E-2

    Mayor Sorry, my computer became unstable and crashed repeatedly running ComboFix. Now I am sending the analysis and junkware ComboFix Removal Tool (JRT). Thank Major Dilemma.:-o
     

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I don't WANT you to run Combofix, not once did the instructions say to.

    I want to see logs from you running : (if you are able to)

    • Malware Bytes
    • Hitman Pro
    • RogueKiller
    • TSDDKiller and
    • MGTools produces >>> MGlogs.zip
     
  7. Aleei

    Aleei Private E-2

    Im working...
     
  8. Aleei

    Aleei Private E-2

    Ok. I am sending the txt files requested. Malware Bytes.txt, HitmanPro.log, RogueKiller.txt and MGlogs.zip. Thankyou berry much.
     

    Attached Files:

  9. Aleei

    Aleei Private E-2

    The following steps could teach me please?
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You have attached everything I asked for. Thankyou. :) Reviewing the logs now....
     
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Re run Malware Bytes and this time have it quarantine/fix what it finds! :)



    http://img805.imageshack.us/img805/9659/rktigzy.gif Fix item using RogueKiller.

    Double-click RogueKiller.exe to run. (Vista/7/8 right-click and select Run as Administrator)
    When it opens, press the Scan button
    Now click the Registry tab and locate this detection:

    • [Hidden.From.SCM] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\odhlud (System32\drivers\uhocena.sys) -> Encontrado
    Place a checkmark next to this item, leave the others unchecked.
    Now press the Delete button.
    When it is finished, there will be a log on your desktop called: RKreport[2].txt
    Attach RKreport[2].txt to your next message. (How to attach)
    Reboot the machine.



    Delete this file:
    • C:\Windows\SysNative\drivers\uhocena.sys


    Re run Malware Bytes yet again and attach log.
     
  12. Aleei

    Aleei Private E-2

    La computadora ahora es mas estable y corre normalmente. Aqui estan los archivos solicitados. Gracias.
     

    Attached Files:

  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    De nada. ;)

    Re run RogueKiller once more and attach log please.
    Then do this: Run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this.
     
  14. Aleei

    Aleei Private E-2

    RogueKiller and MGtools done With reports...:)
     

    Attached Files:

  15. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Ready for final steps? All looks good! :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds