Andro1d

Trusted Helpers
  • Content Count

    737
  • Joined

  • Last visited

Posts posted by Andro1d

  1. Hello and Welcome to the forums. :)

    I am MoNsTeReNeRgY22 and I will be assisting you with your malware problem today.

    Please visit this web page for instructions for downloading and running ComboFix:

    http://www.bleepingcomputer.com/combofix/how-to-use-combofix

    Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan; you may re-enable them after the scan.

    Post the log from ComboFix when you've accomplished that, along with a new HijackThis log.

  2. Nice job your log looks clean!

    Please use the following suggestions to help prevent reinfection.

    Also, you may delete any tools I had you download during the cleaning process.

    System Restore maintains a backup of your programs and may also backup infections, so please reset it to make a clean Restore Point.

    Please do this:

    On the Desktop, right-click My Computer > click Properties > click the System Restore tab.

    Check Turn off System Restore.

    Click Apply > a window will pop up and ask if you really want to turn it off > click Yes.

    Please wait a few moments to let it clear.

    Now please remove the check from Turn off System Restore.

    Click Apply, and then click OK.

    System Restore will be working again and will have a new Restore Point.

    The following is a list of tools and utilities that I like to suggest to people. This list is full of great tools and utilities to help you understand how you got infected and how to keep from getting infected again. As a note, all of the tools and utilities mentioned are either free or have free versions available.

    Malwarebytes' Anti-Malware - A very powerful tool which searches and kills malware that infects your system.

    **Tutorial on installing & using this product can be found HERE**

    SpywareBlaster - Great prevention tool to keep malware from installing on your system.

    **Tutorial on installing & using this product can be found HERE**

    SpywareGuard - Works as a Spyware "Shield" to protect your computer from getting malware in the first place.

    **Tutorial on installing & using this product can be found HERE**

    ZonedOut - Puts over 5000 sites in your restricted zone so you'll be protected when you visit innocent-looking sites that aren't actually innocent at all.

    ATF Cleaner - Cleans temporary files from IE and Windows, empties the recycle bin and more. Great tool to help speed up your computer and knock out malware that like to reside in the temp folders.

    It is important to run only one of each type of protection program in resident mode at a time since conflicts can make them less effective. This would mean only one resident antivirus, firewall and scanning type of anti-spyware. Programs like SpywareBlaster and IE-Spyads do not conflict with any of these since they don't have a real time scanning engine that would conflict.

    Windows Updates - It is highly recommended to make sure that both Internet Explorer and Windows are kept current with the latest critical security patches from Microsoft. To do this just start Internet Explorer and select Tools > Windows Update, and follow the online instructions from there.

    It is also highly recommended to stay on top of your updates at all times, for Windows and all the above mentioned applications. This will ensure that you stay protected at the maximum level possible.

    Finally, I strongly recommend action-smiley-036.gifHow did I get infected in the first place? (by Tony Klein)

    Good luck and safe surfing :)

  3. Hello all,

    Well a few of my buddies and I are doing a project for school, and we have a lot of video footage that we have to make into a film for this project. I happen to be the "tech" in the group so I am in charge of putting all the footage together and adding subtitles, transitions, voice over's etc. Basically I am asking for recomendations of any good programs that would help me put a good movie/project together. I will admit I am quite new to the video area of computing, but I fell once I play around with it I can easily get it done. Any recommendations you have are highly appreciated, even if it is shareware we will purchase a copy of it if it is a great program and easy to use. If you have any questions please don't hesitate to ask. Hope to hear from you soon!

    Thanks again,

    MoNsTeReNeRgY22

  4. Nice job your log looks clean!

    Please use the following suggestions to help prevent reinfection.

    Also, you may delete any tools I had you download during the cleaning process.

    System Restore maintains a backup of your programs and may also backup infections, so please reset it to make a clean Restore Point.

    Please do this:

    On the Desktop, right-click My Computer > click Properties > click the System Restore tab.

    Check Turn off System Restore.

    Click Apply > a window will pop up and ask if you really want to turn it off > click Yes.

    Please wait a few moments to let it clear.

    Now please remove the check from Turn off System Restore.

    Click Apply, and then click OK.

    System Restore will be working again and will have a new Restore Point.

    The following is a list of tools and utilities that I like to suggest to people. This list is full of great tools and utilities to help you understand how you got infected and how to keep from getting infected again. As a note, all of the tools and utilities mentioned are either free or have free versions available.

    Malwarebytes' Anti-Malware - A very powerful tool which searches and kills malware that infects your system.

    **Tutorial on installing & using this product can be found HERE**

    SpywareBlaster - Great prevention tool to keep malware from installing on your system.

    **Tutorial on installing & using this product can be found HERE**

    SpywareGuard - Works as a Spyware "Shield" to protect your computer from getting malware in the first place.

    **Tutorial on installing & using this product can be found HERE**

    ZonedOut - Puts over 5000 sites in your restricted zone so you'll be protected when you visit innocent-looking sites that aren't actually innocent at all.

    Firewall A firewall is very important, in order to protect your computer from hackers. I notice that you don't have one installed! Therefore I recommend Comodo, Online Armor, or Outpost.

    **Tutorial on Firewalls can be found HERE**

    It is important to run only one of each type of protection program in resident mode at a time since conflicts can make them less effective. This would mean only one resident antivirus, firewall and scanning type of anti-spyware. Programs like SpywareBlaster and IE-Spyads do not conflict with any of these since they don't have a real time scanning engine that would conflict.

    Windows Updates - It is highly recommended to make sure that both Internet Explorer and Windows are kept current with the latest critical security patches from Microsoft. To do this just start Internet Explorer and select Tools > Windows Update, and follow the online instructions from there.

    It is also highly recommended to stay on top of your updates at all times, for Windows and all the above mentioned applications. This will ensure that you stay protected at the maximum level possible.

    Finally, I strongly recommend action-smiley-036.gifHow did I get infected in the first place? (by Tony Klein)

    Good luck and safe surfing :)

  5. Hello again,

    Well it didn't clean the files as I thought it would. Lets try a different scanner to make sure we aren't getting false positives.

    Lets run an F-Secure online scan for Viruses, Spyware and RootKits:

    • Go to http://support.f-secure.com/enu/home/ols.shtml
    • Scroll to the bottom of the page and click the Start scanning button. A window will pop up.
    • Allow the Active X control to be installed on your computer, then click the Accept button
    • Click Full System Scan and allow the components to download and the scan to complete.
    • If malware is found, check Submit samples to F-Secure then select Automatic cleaning
    • When cleaning has finitished, click Show report (this will open an Internet Explorer window containing the report)
    • Highlight and Copy (CTRL + C) the complete report, and Paste (CTRL + V) in a new reply to this post

    If Automatic cleaning with Submit samples hangs, click Cancel, then New Scan

    • When the cleaning option is presented, Uncheck Submit samples to F-Secure
    • Click Automatic cleaning
    • When cleaning has finitished, click Show report (this will open an Internet Explorer window containing the report)
    • Highlight and Copy (CTRL + C) the complete report, and Paste (CTRL + V) in a new reply to this post

    Notes:

    • This scan will only work with Internet Explorer
    • You must have administrator rights to run this scan
    • This scan can take several hours, so please be patient

  6. Hello again,

    Lets do the following to see if it will clean your archives.

    You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

    Step 1:

    Download the eScan Antivirus Toolkit Here. Save it to the Desktop.

    Before running the program we need to update the signature files first in Step 2.

    Step 2:

    Updating the eScan Antivirus Toolkit with the latest files:

    1.) Double-click on the mwav.exe file saved to the Desktop; it will extract the program files to a new folder called Kaspersky at the root of the C:\drive. (C:\Kaspersky.)

    2.) Double-click on My Computer, double-click on the Hard Drive (usually the C:\drive), find and double-click on the Kaspersky folder; inside the Kaspersky folder, find and double-click on the kavupd.exe file. Double-clicking on the kavupd.exe file opens the Windows command prompt (DOS screen) and updates the program with all the latest signature files.

    3.) After the update is complete, the bottom of the command prompt will read "Press any key to continue", press any key to close the screen. Close eScan for now. You need to also close all Windows Explorer windows (or "My Computer" windows) to allow a refresh.

    4.) *Important* : in order to complete the update process, you must now do the following:

    - Using Windows Explorer (or "My Computer"), go to C:\Downloads and "Copy" all files present in that folder

    - "Paste" the files in C:\Kaspersky

    - Allow the overwriting of existing files, when prompted

    - Close Windows Explorer

    Please do not run a scan with the eScan Antivirus Toolkit utility yet.

    Step 3:

    Next, please reboot your computer in Safe Mode by doing the following :

    • Restart your computer
    • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
    • Instead of Windows loading as normal, a menu with options should appear;
    • Select the first option, to run Windows in Safe Mode, then press "Enter".
    • Choose your usual account.

    Step 4:

    From Safe Mode, run the eScan Antivirus Toolkit. Please follow these instructions:

    1.) To run the eScan Antivirus Toolkit program, look for a file called mwavscan.com inside the C:\Kaspersky folder.

    2.) Double-click on the mwavscan.com file; this will open the eScan program.

    3.) With the eScan interface on your Desktop, make sure that these boxes under Scan Option are checked : Memory, Registry, Startup Folders, System Folders, Services.

    4.) Check the Drive box, this will enable the All Local Drives radio button below it. Make sure it is activated.

    5.) Below these boxes, make sure the box Scan All Files is checked, not Program Files.

    6.) Click the Scan Clean button and let the utility run until it completes a thorough scan of your hard drive. When the scan has finished it will read Scan Completed. Do not Exit the tool just yet.

    7.) Open a new NotePad file (click on "Start" >> "All Programs" >>"Accessories" >> "NotePad"), then Copy/Paste the content of the Virus Log Information window into that file, and save it. eScan also creates a full log inside the C:\Kaspersky folder (named mwav.log), but it is huge and cannot be posted on a forum. Please post the content of the log you have saved (into NotePad) in your next reply, once all steps are completed.

    Reboot your computer into normal Windows.

  7. Hello and Welcome to the forums. :)

    I am MoNsTeReNeRgY22 and I will be assisting you with your malware problem today.

    Step 1

    Please download ATF Cleaner by Atribune.

    • Double-click ATF-Cleaner.exe to run the program.
      Under Main choose: Select All
      Click the Empty Selected button.

    If you use Firefox browser

    • Click Firefox at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    If you use Opera browser

    • Click Opera at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    Click Exit on the Main menu to close the program.

    Step 2

    Please do an online scan with Kaspersky WebScanner

    Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.

    Click on the Accept button and install any components it needs.

    • The program will install and then begin downloading the latest definition files.
    • Once they are downloaded, the database will be updated.
      Please accept any ActiveX or Java notifications
    • After the files have been updated, go to the left side of the page under the Scan section and select My Computer.
    • This will start the program and scan your system.
    • The scan will take a while so be patient and let it run.
    • Once the scan is complete, click on View scan report
    • Now, click on the Save Report as button.
    • Save the file to your desktop.
    • Copy and paste that information in your next post.

  8. Hello again,

    Step 1

    Please download ATF Cleaner by Atribune.

    • Double-click ATF-Cleaner.exe to run the program.
      Under Main choose: Select All
      Click the Empty Selected button.

    If you use Firefox browser

    • Click Firefox at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    If you use Opera browser

    • Click Opera at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    Click Exit on the Main menu to close the program.

    Step 2

    Please do an online scan with Kaspersky WebScanner

    Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.

    Click on the Accept button and install any components it needs.

    • The program will install and then begin downloading the latest definition files.
    • Once they are downloaded, the database will be updated.
      Please accept any ActiveX or Java notifications
    • After the files have been updated, go to the left side of the page under the Scan section and select My Computer.
    • This will start the program and scan your system.
    • The scan will take a while so be patient and let it run.
    • Once the scan is complete, click on View scan report
    • Now, click on the Save Report as button.
    • Save the file to your desktop.
    • Copy and paste that information in your next post.

  9. Hello and Welcome back to the forums. :)

    I am MoNsTeReNeRgY22 and I will be assisting you with your malware problem today.

    • Please download random's system information tool (RSIT) from here and save it to your desktop.
    • Double click on RSIT.exe to run the program.
    • Click Continue at the disclaimer screen.
    • Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)