W3i.IQ5.fraud....How do I remove this ?

Discussion in 'Malware Help (A Specialist Will Reply)' started by webertec, Mar 3, 2012.

  1. webertec

    webertec Private E-2

    Hi all, can't seem to get rid of this, spybot does not sort it, nor malware. using vista home, firefox, avg, free, and use no script, and collusion. Thanks for any help.............Not too pc savvy either !
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  3. webertec

    webertec Private E-2

    Hi Tim,

    Thanks for the reply, will scan again and give more info, will do it now, should take about half hour.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Attach the requested logs when you are ready.
     
  5. webertec

    webertec Private E-2

    Have done another scan on spybot, but cannot copy and paste the results, to post here. How do I do this ?, tried to copy and paste from the log, but no joy there either. Also down loaded Run Alyzer, but again could not copy and paste the results to post here.
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Didn't ask for run analyser. You should be able to copy and paste your logs into notepad and then attach those. Or just save the logs to your desktop and attach them on your next reply.
     
  7. webertec

    webertec Private E-2

    Hi Tim,
    Think I have done it at last !!

    W3i.IQ5.fraud: [SBI $467B1F92] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\Freeze.com

    W3i.IQ5.fraud: [SBI $678078F9] Settings (Registry key, nothing done)
    HKEY_LOCAL_MACHINE\SOFTWARE\W3i

    Right Media: Tracking cookie (Internet Explorer: User) (Cookie, nothing done)


    WebTrends live: Tracking cookie (Internet Explorer: User) (Cookie, nothing done)


    WebTrends live: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)


    Tradedoubler: Tracking cookie (Chrome: Chrome) (Cookie, nothing done)



    --- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---

    2009-01-26 blindman.exe (1.0.0.8)
    2009-01-26 SDFiles.exe (1.6.1.7)
    2009-01-26 SDMain.exe (1.0.0.6)
    2009-01-26 SDShred.exe (1.0.2.5)
    2009-01-26 SDUpdate.exe (1.6.0.12)
    2009-01-26 SDWinSec.exe (1.0.0.12)
    2009-01-26 SpybotSD.exe (1.6.2.46)
    2009-03-05 TeaTimer.exe (1.6.6.32)
    2010-01-29 unins000.exe (51.49.0.0)
    2009-01-26 Update.exe (1.6.0.7)
    2009-11-04 advcheck.dll (1.6.5.20)
    2007-04-02 aports.dll (2.1.0.0)
    2008-06-14 DelZip179.dll (1.79.11.1)
    2009-01-26 SDHelper.dll (1.6.2.14)
    2008-06-19 sqlite3.dll
    2009-01-26 Tools.dll (2.1.6.10)
    2009-01-16 UninsSrv.dll (1.0.0.0)
    2012-01-16 Includes\Adware.sbi (*)
    2012-02-28 Includes\AdwareC.sbi (*)
    2010-08-13 Includes\Cookies.sbi (*)
    2010-12-14 Includes\Dialer.sbi (*)
    2011-11-29 Includes\DialerC.sbi (*)
    2012-01-31 Includes\HeavyDuty.sbi (*)
    2011-03-29 Includes\Hijackers.sbi (*)
    2011-10-04 Includes\HijackersC.sbi (*)
    2010-09-15 Includes\iPhone.sbi (*)
    2010-12-14 Includes\Keyloggers.sbi (*)
    2012-01-24 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2012-01-10 Includes\Malware.sbi (*)
    2012-02-28 Includes\MalwareC.sbi (*)
    2011-02-24 Includes\PUPS.sbi (*)
    2012-02-28 Includes\PUPSC.sbi (*)
    2010-01-25 Includes\Revision.sbi (*)
    2011-02-24 Includes\Security.sbi (*)
    2011-12-13 Includes\SecurityC.sbi (*)
    2008-06-03 Includes\Spybots.sbi (*)
    2008-06-03 Includes\SpybotsC.sbi (*)
    2012-01-17 Includes\Spyware.sbi (*)
    2012-02-28 Includes\SpywareC.sbi (*)
    2010-03-08 Includes\Tracks.uti
    2011-09-28 Includes\Trojans.sbi (*)
    2012-02-28 Includes\TrojansC-02.sbi (*)
    2012-02-29 Includes\TrojansC-03.sbi (*)
    2012-02-24 Includes\TrojansC-04.sbi (*)
    2012-02-10 Includes\TrojansC-05.sbi (*)
    2012-02-28 Includes\TrojansC.sbi (*)
    2008-03-04 Plugins\Chai.dll
    2008-03-05 Plugins\Fennel.dll
    2008-02-26 Plugins\Mate.dll
    2007-12-24 Plugins\TCPIPAddress.dll

    Hope this helps, thanks
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Done what? You have not attached the requested logs from running the Read and Run First sticky.
     
  9. webertec

    webertec Private E-2

    Hi Tim,
    Have read the read and run, and have downloaded the super anti spyware, do I now do a scan and post the log ?, and then move on to the next step. Sorry about the other post, thought you could help with the results from spybot:confused
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You need to run all the requested scans and then attach the logs:
    SAS
    MBAM
    ComboFix
    C:\MGLogs.zip
     
  11. webertec

    webertec Private E-2

    Ok, thanks, this will take me some time
     
  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Attach them when you are ready. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds