Vundo etc found

Discussion in 'Malware Help (A Specialist Will Reply)' started by hudson29, Mar 10, 2009.

  1. hudson29

    hudson29 Private E-2

    This computer had no symptoms.. but since I was fixing other computers and their networked, I figured I might as well go at this one..

    Here are the logs.

    The spyware blaster log is missing, but I can't seem to find it and don't recall it finding anything.

    If I'm not having any pop up issues etc, is disabling windows messenger worthwhile?

    I've removed the old versions of Java that will show up in the log files.

    Also I will try to get everyone to not use their desktop as a dumping ground.

    Thanks for any and all assistance.
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Yes, you should disable messenger:
    Run this: Disable/Remove Windows Messenger to remove Windows Messenger. Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.

    I am not seeing any malware, though you really need to empty out your temp files:
    And I can only assume that someone created this:
    Your SAS log is here:
    Code:
    C:\Documents and Settings\Andrew McNally\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Logs\"
    supera~1.log  Mar  9 2009        1090  "SUPERAntiSpyware Scan Log - 03-09-2009 - 15-21-51.log"
    
    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They are useful as backup scanners. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.

      • Delete the C:\combofix folder from combofix (if it exists)

    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    8. After doing the above, you should work thru the below link:

     
  3. hudson29

    hudson29 Private E-2

    Tim,

    Thanks for the reply.

    I'll uninstall Combofix, I ran it running through the gauntlet.

    Emptying out the temp directory is a good idea. Those programs aren't even used to the best of my knowledge.

    Regards,

    Hudson
     
  4. hudson29

    hudson29 Private E-2

    Tim,

    Actually a quick question.. does ComboFix actually fix anything without any special arguments? Or does it just generate logs?

    Thanks,

    Hudson
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It does fix that it finds.....(sometimes incorrectly). It is more a tool for revealing malware that some of the other scans don't catch. Plus there are many commands that inform and help remove items.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds