Remote Assistance

Discussion in 'Malware Help (A Specialist Will Reply)' started by SpywareEliminator, Sep 17, 2010.

  1. SpywareEliminator

    SpywareEliminator Private E-2

    Hi all,

    I was wondering if giving remote assistance to someone else could result in hack or spyware?

    Well, this is the situation. I allowed remote assistance to some guy a couple days ago as I had issues with a video course i purchased from him.

    So he said he needed to use my screen to better diagnose the problem. After the whole process he still couldn't solve the problem.

    Its not that there's anything wrong with my computer now, but I just want to be safe and sure that he didn't do anything funny.

    I'm not a technical expert or anything so insights would be deeply appreciated.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Yes it could. But if you were watching what was being done, it would not be difficult to spot.

    If you are having any issues, we suggest you run the READ & RUN ME FIRST. Malware Removal Guide
     
  3. SpywareEliminator

    SpywareEliminator Private E-2

    The Malware removal guide says to create backups for any important information. But how do I know if those files I backed up are not infected as well?

    What if they are infected and after cleaning I install them back and we are back to square one.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Create the backups. Once we are finished with the cleaning, we should know what files are infected and you can then run a malware scan on the backup device.
     
  5. SpywareEliminator

    SpywareEliminator Private E-2

    I have run the Malware removal process entirely.

    Super Anti spy and Malwarebytes found no threats.

    The only problem I had is running RootRepeal. It can't seem to run at all.

    Other than that, the logs for MGtools, combofix, SAS, Malwarebytes are all done.

    Advice on what I should do next?
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Don't worry about RootRepeal as it fails on numerous systems. Attach the logs for:
    ComboFix
    C:\MGLogs.zip
     
  7. SpywareEliminator

    SpywareEliminator Private E-2

    Attached them here. No need for SAS and malwarebytes log if they showed no threats right?
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:




    Support MajorGeeks with Geek Wear!
     
  9. SpywareEliminator

    SpywareEliminator Private E-2

    Thanks for the information. I couldn't find HijackThis in my system though.

    As for the System Restore part, do i disable system restore for all my drives?
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Only the drives that have a restore ability. And you are welcome.
     
  11. SpywareEliminator

    SpywareEliminator Private E-2

    Thanks. I have completed the whole process I think. I am now reading the list of protection tools to protect my computer.

    Any reccommendations for a good combination to use? There are so many tools I am not really sure which kind of combination works well without conflicts or slowing my system down.

    I currently use avast! and SAS and malwarebytes(both non paid). I do not have a software firewall, only the inbuilt firewall by windows.
     
  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I would suggest a firewall ( PCTools comes to mind). You may also wish to use Spyware Blaster to round out your protection.
     
  13. SpywareEliminator

    SpywareEliminator Private E-2

    Ok I will give PCtools a try. I recently tried comodo firewall. I know its good but i didn't really like it. Too many pop up alerts. Online armor looks good too.
     
  14. SpywareEliminator

    SpywareEliminator Private E-2

    I just installed pctools firewall. Not really a firewall expert but it seems to be fine so far.

    However I did notice that pctools firewall didn't do so well on matousec tests.

    Is there any specific settings that I should make with the firewall or leave it at default?
     
  15. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Just leave it at its default settings. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds