Trojan BHO

Discussion in 'Malware Help (A Specialist Will Reply)' started by belcant2, Jun 12, 2010.

  1. belcant2

    belcant2 Private E-2

    I think I have Trojan BHO because I get a popup asking me to sign into my adsl with my password etc all the time. Some other stuff happens too. I get "unknown software exception when I open some files, sometimes a drive, and then windows shutsdown momentarily.
    I have followed all your removal steps and here are the logs, all except superanti spyware because it didnt find aything.
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We still need the log from running the MGTools.exe. ---> C:\MGlogs.zip.
     
  3. belcant2

    belcant2 Private E-2

    I ran this and it I cant find it anywhere. Its not c drive. When I ran it it flashed on and off very quickly.
     
  4. belcant2

    belcant2 Private E-2

    ok I found the mgtools file, but theres alot in there and there isnt one under that name so I have put it all in a rar file for u. Sorry for my ignorance but I am willing to learn.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you have the C:\MGTools folder, then open it and double click on the C:\MGtools\GetLogs.bat. (Note: if using Vista, don't double click, use right click and select Run As Administrator).
     
  6. belcant2

    belcant2 Private E-2

    Ok, I did now what? Where do I look now, and 4 what.
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If MGTools ran correctly, then you would have the resultant logs at C:\MGlogs.zip.
     
  8. belcant2

    belcant2 Private E-2

    Well it isnt there. So I guess it didnt run properly.
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Let's have you re-download it: MGtools and save it to your root folder. Overwrite your previous MGtools.exe file with this one. Now run the exe file and see if you can get the logs.
     
  10. belcant2

    belcant2 Private E-2

    Now lets see if I can do that.
     
  11. belcant2

    belcant2 Private E-2

    Done. There is only one zip file and it was there last time and its just called "zip". If thats it then everything was very clear for an ignorant computer dunce let me.
     
  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    No, the file would be C:\MGlogs.zip. Tell me exactly what happens when you double click the C:\MGTools.exe.

    Also, it appears as though you ran ComboFix from a thumb drive.....D:\ ......it needs to be put directly on your desktop. Please move it there and run it again. Attach the new log.

    What issues are you having?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds