|
Taken Over by Malware
|
|
08-19-2012, 06:15 PM
(This post was last modified: 08-19-2012 06:58 PM by unc2002.)
|
|||
|
|||
|
Taken Over by Malware
Operating system: Windows 7
Architecture: 64 bit Antivirus software and on-demand scanners on this system : Norton Date and how issue started: Downloaded a photo shop program. System started just freezing. Tried antispy programs and they just freeze. Current issues and symptoms: Still just freezing. Currently in safe mode. Steps taken in order to remove the infection: Today I have tried the 5 step process "Remove Windows Maintenance Guard virus (Uninstall Guide)". I was on step 4 of your instructions running MalwareBytes and my computer froze just has its been doing on any spyware program I run. It had been running for 44 1/2 minutes scanned 201838 objects and had detected 1 bad object before it froze. The last object displayed was: \Windows\winsxs\amd64_microsoft-windows-systempropertiesremote_31bf3856ad364e35_6.1.7600.16385_none_f0ca3430257ea13f\SystemProperties. Even though MalwareBytes stopped I ran HitmanPro and it got 1 hit which it removed. I then ran MalwareBytes again, this time it ran 44 minutes. It scanned 201901 objects 0 objects detected. This time it stopped at \Windows\winsxs\amd64_microsoft-windows-systemrestore-main_31bf3856ad364e35_6.1.7600.16385_none.azd4c18eccf004d0\rstrui.exe. REQUESTED LOGS: OTL LOGaswMBR LOG Hope you have some ideas on what I can do. I have been trying for over a week to get my computer up with no luck. Thanks in Advance |
|||
|
08-20-2012, 12:27 AM
|
|||
|
|||
|
RE: Taken Over by Malware
Ok. I have found I have a Java/Agent.BV Trojan.
Can anyone help me now? Please..... |
|||
|
08-20-2012, 03:44 AM
|
|||
|
|||
|
RE: Taken Over by Malware
Hi and welcome to the MalwareTips.com forums!
I'm Jack and I am going to try to assist you with your problem. Please take note of the below:
Before we start: Please be aware that removing malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop. Because of this, I advise you to backup any personal files and folders before you start. Please run the following utility so that I can get a log of your system... STEP 1 : Run a scan with Combofix Please read and follow very carefully the below instructions
Download ComboFix from one of the following locations: COMBOFIX DOWNLOAD LINK #1 (This link will automatically download Combofix on your computer) COMBOFIX DOWNLOAD LINK #2 (This link will automatically download Combofix on your computer) VERY IMPORTANT !!! Save ComboFix.exe to your Desktop
Notes:
What's next? Please post in your next reply: 1.Combofix log 2.Let me know if you had any problems with the above instructions and also let me know how things are running now! |
|||
|
08-21-2012, 01:00 AM
|
|||
|
|||
|
RE: Taken Over by Malware
Thanks Jack. I really appreciate your help. Right off it has taken me awhile to get my documents and pictures backed up, but finally got that done. I have gotten combofix downloaded and ready to run. When I ran it, it came back and said Norton is running, but I can't find it. How can I find this and shut it down.
Thanks |
|||
|
08-21-2012, 05:33 PM
|
|||
|
|||
|
RE: Taken Over by Malware
Please skip this step for now,we will scan later with Combofix ..
Can you please perform the following scans: VERY IMPORTANT! Please run only one scan at the time!DO NOT START ALL THE SCAN AT ONCE! STEP 1: Run a scan with RogueKiller
The report has been created on the desktop.In your next reply please post: All RKreport.txt text files located on your desktop. STEP 2: Run a HitmanPro scan
STEP 3: Run a scan with ESET Online Scanner
STEP 4: Repair Background Intelligent Transfer Service 1. Click START 2. Type “cmd” in the Search Box and then press Enter 3. Right-click “cmd.exe" and select “Run as administrator” 4. Click “Continue” on the “User Account Control” Window 5. In the command prompt type the following command sc create BITS binpath= “c:\windows\system32\svchost.exe -k netsvcs” start= delayed-auto6.Restart your computer and check if the problem is solved. STEP 5: Run Temp File Cleaner by OldTimer
STEP 6 : Run a scan with OTL by OldTimer:
What's next? Attach the following logs to your post (You can find here details on how to use the Attachment System): 1.HitmanPro logs 2.RogueKiller logs 3.ESET log 4.OTL logs 5.Let me know if you had any problems with the above instructions and also let me know how things are running now! |
|||
|
08-22-2012, 03:25 AM
|
|||
|
|||
|
RE: Taken Over by Malware
Evening Jack,
Finally got everything ran, but sorry to say it still runs a very short period of time and then freezes. I am attaching the different logs that you asked for. There were no logs from HitmanPro & ESET. Also I am attaching a txt document titled "Malware - Claro". I am wondering if this is the cause of all this madness. Again thanks for all your help. Serena |
|||
|
08-23-2012, 08:30 PM
(This post was last modified: 08-23-2012 08:52 PM by unc2002.)
|
|||
|
|||
|
RE: Taken Over by Malware
Jack,
I had to finally uninstall Norton. It said it had an error and kept popping up trying to fix it, but it never could fix itself. I also uninstalled my Chrome browser just incase it was creating problems. Anyway after I did this I thought maybe now I can run the combofix, which I did. It ran up to the very last. It had the "Almost done...., Please wait...., ComboFix's log shall be located at c:\combofix.txt displayed when it hung up. I had to reboot the machine as it was froze. Once it rebooted though the log was there, so I am attaching it. I hope it sheds some insight into what is going on. Thanks, Serena PS Computer is still freezing. About the only difference now is the mouse will move around (didn't before), but when you click on something it does nothing, so essentially it still does nothing. |
|||
|
08-26-2012, 09:33 PM
|
|||
|
|||
|
RE: Taken Over by Malware
Fixed it myself
|
|||
|
« Next Oldest | Next Newest »
|
User(s) browsing this thread: 2 Guest(s)
Contact Us |
Privacy policy |
Return to Top |
Return to Content |
Lite (Archive) Mode |
RSS Syndication |
Members List |
Forum Team
MalwareTips.com is an independent website.All trademarks mentioned on this page are the property of their respective owners.





![Click on the Start button to perform a system scan [Image: roguekiller-1.png]](http://malwaretips.com/blogs/wp-content/uploads/2012/04/roguek-1.png)
![Press Delete to remove the malicious registry keys [Image: roguekiller-2.png]](http://malwaretips.com/blogs/wp-content/uploads/2012/04/roguek-2.png)
![Click on the Start button to perform a system scan [Image: roguekiller-1.png]](http://malwaretips.com/blogs/wp-content/uploads/2012/04/roguek-3.png)
![[Image: hitmanproscan4.png]](http://malwaretips.com/images/removalguide/hpro4.png)
![[Image: hitmanproscan5.png]](http://malwaretips.com/blogs/wp-content/uploads/2012/02/rsz_hpro5.png)
![[Image: hitmanproscan6.png]](http://malwaretips.com/images/removalguide/hpro6.png)

