win32 agent yvr

Discussion in 'Malware Help (A Specialist Will Reply)' started by aarson, Dec 26, 2008.

  1. aarson

    aarson Private E-2

    ive tried running a whole bunch of different spyware and malware removal programs, spybot found it (win32 agent yvr) but couldnt fix it, it keeps telling me to restart my computer and try again. can some one please help me. i ave attach a hjt log.
     

    Attached Files:

    Last edited: Dec 26, 2008
  2. Corporal Punishment

    Corporal Punishment Head of Software Shenanigans Staff Member

    Please begin by clicking Start > Control Panel > System > Hardware > Device Manager > View > Show Hidden Devices.
    • Scroll down to “Non-plug and Play Drivers” and click the plus icon to open those drivers.
    • Then search forTDSSserv.sys
    • Let me know if you find this or not.
    • If you do find it, right click on it, and select Disable. Do not try to uninstall it.
    • Also if TDSSserv.sys is found and you disable it, then reboot.
    • After reboot continue on with the below cleaning instructions.

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
     
  3. aarson

    aarson Private E-2

    i did not find TDSSserv.sys i just ran spybot again and the winagent wasnt there anymore. i dont know what i did but the last 4-5 times i ran spybot it found win32agent yvr and when i clicked fix it said could not fix because its attached to the memory this may be fixed by alowing spybot to run on start up, so i did, and still got the same thing, time after time, i dont know what was different about this time but it seems to be gone.
     
  4. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

  5. aarson

    aarson Private E-2

    i have just posted the new log please let me know if im okay, thanks
     

    Attached Files:

  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    :)

    aarson,

    Please run the tools listed in the below link, so we can take a good look at your machine.

    READ & RUN ME FIRST. Malware Removal Guide



    You need to attach (See: HOW TO: Attach Items To Your Post ) the below logs created while running the requested scans
    • SASlog.txt log from SuperAntiSpyware.
    • Malwarebytes Anti-Malware log
    • ComboFix.txt (normally C:\ComboFix.txt)
    • MGlogs.zip - normally it is C:\MGlogs.zip - only attach this log from MGtools.exe DO NOT attach any logs seen in the MGtools folder.
    • You will need to post 2 messages to attach all four logs since only 3 attachments are allowed in any single message. Post all of them in one thread.
    • Be patient after posting your logs and wait for one of the helpers to get to you. It can take a while to read thru all of the logs and to create individual fixes for you.
     
  7. aarson

    aarson Private E-2

    here is three of 4.
     

    Attached Files:

  8. aarson

    aarson Private E-2

    and here is the combofix log. SAS found nothing but MB seemed to find a whole bunch. please let me know if im okay thank you
     

    Attached Files:

  9. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    aarson

    1)
    Why didn't you have Malwarebytes' Anti-Malware fix what it found?

    2) Your version of SUPERAntiSpyware is outdated.

    The current version as of 11:33pm today is:
    Program version: 4.24.1004
    Core: 3693
    Trace: 1669

    Un-install your current version, run CCleaner, download the most recent release in the below link, then immediately update both SAS & MBAM. Then , re-run both scanners (fixing what they find) and also re-run MGTools.exe.

    READ & RUN ME FIRST. Malware Removal Guide

    We need these new logs:
    • SASlog.txt log from SuperAntiSpyware.
    • Malwarebytes Anti-Malware log
    • ComboFix.txt (normally C:\ComboFix.txt)
    • MGlogs.zip - normally it is C:\MGlogs.zip - only attach this log from MGtools.exe DO NOT attach any logs seen in the MGtools folder.
    • You will need to post 2 messages to attach all four logs since only 3 attachments are allowed in any single message. Post all of them in one thread.
    • Be patient after posting your logs and wait for one of the helpers to get to you. It can take a while to read thru all of the logs and to create individual fixes for you.
     
  10. aarson

    aarson Private E-2

    i did have mbam remove them, but i saved the log before i fixed and must have uploaded the wrong on, i rescanned with the new sas and mbam and also the mgtools. so these are all new logs.
     

    Attached Files:

  11. aarson

    aarson Private E-2

    here is the new combofix log
     

    Attached Files:

  12. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    ;)

    Hello, aarson!

    Just a couple of things to do.


    The below fixes are specific to your problem and should only be used for issue(s) on this machine. Also, please do not install any other software while we are still working with you unless instructed. Once we have given you the all clean and final instructions you will be free to install what you want.

    Step 1:
    Please look in Add/Remove Programs for the following and uninstall if found. If you get any errors just make a note and proceed

    Step 2:
    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Step 3:
    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    *Make sure you tell me if you get a success message.


    Step 4:
    Run Ccleaner

    Step 5:
    Now install the latest Sun Java Runtime Environment


    Step 6:
    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, use right click and select Run As Administrator).


    Then attach the below logs to your next reply:
    • C:\MGlogs.zip

    Make sure you tell me if you had any problems running this procedure and give a description of how things are working now!

    Thanks!
    dr.m
     
  13. aarson

    aarson Private E-2

    i followed every step posted here, when i removed spybot 1.4 it completely removed all of spybot even version 1.6 which wasnt in add/remove and i know i installed it, let me know when i can get it again, the registry merge was successful. when i ran the mg analyse this program, i had to leave my house for a half an hour, i had it minimized at the bottom of my screen and when i came back i wasnt able to select anything at the bottom of my screen not even my start button, this has never happened before, so i hit the start button on my keyboard (that worked) and restarted my computer. i was then able to finish the procedure successfully, everything seems be running fine now, thank you.
    let me know when its ok to install software again.
     

    Attached Files:

  14. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    ;)

    I'm sorry that I kept you waiting, aarson... but I needed to watch some NFL Play-Off games to relax. And - "You're Welcome!"

    Your logs look good! If you are not having any other malware problems, it is time to do our final steps:
    Safe surfing! http://i268.photobucket.com/albums/jj5/drmoriarty/Emoticons/char145.gif
     
    Last edited: Jan 12, 2009

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds