Vista Home Basic with Rogue & Fake AV plus malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by axlmastr, Aug 27, 2012.

  1. axlmastr

    axlmastr Private E-2

    Friend's Dell tower that was purchased as part of a lot in a storage sale. If it's not too bad he would like to use it as there are no recovery disks and I don't have a Vista Home Basic media disk. I followed malware guide for Vista and have posted the following logs. Machine is not currently connected to my network/internet to prevent something major getting to my machines. Once I see some actual removal I'll feel better about connecting this box. I know it's better to connect it to an active internet connection so the scanners can find and trap the more active malware, but I'm not quite ready to go there yet. Thanks in advance
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not finding any malware remaining in your logs. MBAM seems to have removed what little there was. However, I am also not finding any AV program installed. You need to install and Anti-Virus program!!

    You also need to use add/remove programs to uninstall:
    Java(TM) 6 Update 16

    Reboot and install:
    Java Runtime 7

    Tell me what malware issues you are having, if any.
     
  3. axlmastr

    axlmastr Private E-2

    Thanks TimW. I uninstalled the Java as requested and installed Java 7. I am running AVG Free on this machine but had it disabled while running scans. This machine is now on the net as I am writing and posting from it. I ran scans again and would like for you to look at the posts. Hitman seemed to find something but I did the ignore as instructed until you say otherwise. I updated everything (Windows update, shockwave, flash, etc.) once I put this machine on the net. I also added ZoneAlarm free as I do on all of my machines and those I support as an added barrier of protection. I did not update or use IE so I do not know its behavior. I use Firefox as primary. The user of this machine will probably use a combination of both.
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    They're no biggies, but you can have Hitman remove those items.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. You can uninstall RogueKiller and HitManPro.
    2. Go back to step 6 oof the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    7. After doing the above, you should work thru the below link:


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0
     
  5. axlmastr

    axlmastr Private E-2

    Thanks TimW! All is well with this one. The final steps have been taken and its running like a top :-D I'll be handing this one over to its owner. Thanks again for your expert help :wave

    This thread is considered closed.
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are quite welcome. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds