Removing Malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by computerilliterate, Jan 1, 2007.

  1. computerilliterate

    computerilliterate Private E-2

    Ok im new here, i removed tons of viruses, trojans, a worm and spyware from my computer, with ad-aware, spybot search and destroy, avg free, avg anti-spyware, bit defender, and counterspy. haha ya i went all out. I then found you guys and went through steps 1-6. So here goes. thank you ahead of time.
     

    Attached Files:

  2. computerilliterate

    computerilliterate Private E-2

    Here are the other files. Thank you.
     

    Attached Files:

  3. computerilliterate

    computerilliterate Private E-2

    Re: HELP!! Removing Malware (have Hijack this!!!)

    Ok here is the logfile for Hijack this. Before i ran this i ran and removed spyware with spyware doctor. So im not sure if I still have any malware. thank you.
     

    Attached Files:

  4. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    You are running 2 Resident Antvirus applications. You only need 1. Having more that 1 resident Antivirus application on your computer will cause problems. They will interfer with each of and create conflicts, causing system performance to suffer. Pick one uninstall the other.

    You are using MsConfig to prevent several items from loading at Windows start. MsConfig is a diagnostic tool, and not intended to be used in the manner you are using MsConfig. Enable everthing you used MsConfig to disable. If you are recieving error messages, related to these items, at system start; we can fix this without using MsConfig.

    Download
    - Pocket Killbox

    Copy the contents of the below quote box to Notepad; Save As FixReg.reg to your Desktop.
    Close Notepad.

    Locate FixReg.reg on your Desktop. Double-click on it and answer 'Yes' when asked if you want to merge with the registry.

    Now Run HijackThis. Click the 'Do a system scan only' button. Place a checkmark in the box next to the following lines:
    Click on the 'Fix checked' button. Wait for HijackThis to finish; close HijackThis.

    Now run Pocket Killbox:

    Choose Tools -> Delete Temp Files and click Delete Selected Temp Files
    Then after it deletes the files click the Exit (Save Settings) button.

    NOTE: Pocket Killbox will only list the added files it is able to find on the system. So when you do the below, if some files do not show in the list after pasting them in, just continue..

    Select:
    • Delete on Reboot
    • then Click on the All Files button.
    • Please copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy):
    • Return to Killbox, go to the File menu, and choose Paste from Clipboard.
    • Click the red-and-white Delete File button. Click Yes at the Delete on Reboot prompt. Click OK at any PendingFileRenameOperations prompt (and please let me know if you receive this message!).
    If Killbox does not reboot or you get a Pending Operations type error message just reboot your PC yourself.

    Now boot into SAFE MODE

    Now run CCleaner. If you have Windows XP delete the contents of C:\WINDOWS\Prefetch.

    Then, as an added precaution, Go to Start -> Run and type: cleanmgr and then click OK. Make sure the boxes for these are checked:

    Temporary Files
    Temporary Internet Files
    Recycle Bin


    And Click OK.

    REBOOT to Normal Mode.

    Post a fresh HijackThis log.
     
  5. computerilliterate

    computerilliterate Private E-2

    Thank you for helping.
    I'm using AVG free, spybot search and destroy, ad-aware, and spy doctor. I just removed avg anti-spyware and bit defender. Is that allright?
    I just found out that my computer was not in normal mode. I did put it there before i started removing spyware? Or i thought i did. Will this be an issue? I'm now trying to everything else you told me.
     
  6. computerilliterate

    computerilliterate Private E-2

    I did not receive a messege.
    I did not modify msconfig to disable anything, and when i changed it to enable the one thing it was stopping, it still never. I'm not sure if im explaining this good enough:eek: .
    Their are some programs i would like to stop running at start up, but i wasnt sure how to do that. Thanks shadow
     

    Attached Files:

  7. computerilliterate

    computerilliterate Private E-2

    Re: Removing Malware ( So long, farwell)

    Thank you very much for helping Shadow_Puter_Dude. But as this is my moms computer, and im driving back home about 7 hours tomorrow, we will have to leave it as it is. Most of the problems are cured as far as I can tell. The internet pages are still turning pink for a moment when the page is loading. It's still a little slower, but before I found Magor Geeks it was barely runniing.
    This is not even half of the malware i found: (just what i wrote down near the end) iPhox, spyspotter, hotsearch bar, warez P2P,toolbar.888adware.surfside, downloader.Agent.C, adware.megasearch, trojanhorseLook2me, Trojan horse dropper.Agent.7.s, trojan horse Generic2.Exo, and a worm.
    As you can see im very gratefull for your help. If you do have anything else that will help me, i'm not leaving for 8 hours so you or anyone else can post it.
    Very Gratefull lando:wave
     
  8. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    I apologize for taking so long, to get back to you. I've been a little busy the las couple of days.

    The HijackThis log shows no visible signs of malware. The resident Protection afforded by Spyware Doctor may be responsible for the performance issues.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds