Am i infected?

Dscheksn

New Member
Thread author
Verified
Feb 3, 2013
15
No redirects anymore.
I run your "OTL-Code" but i see it changes my startuppage from http to https.
I know https is more secure but i think its more comfortable using http, it says its faster...or is https better?..=)

OTL-Logfile:[attachment=3517]

Its few text so maybe its more comfortable if i just copy/paste it here? :D
----------------------------------------------------------------------
========== OTL ==========
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.

OTL by OldTimer - Version 3.2.69.0 log created on 02112013_021230
----------------------------------------------------------------------
I just read your announcement STEP 4 : Check your Windows HOSTS file.

I found by going to that folder and checking my hosts file that my hosts file is ok but, i have more files than in your example.

- hosts.20130203-024818.backup < Whats this? Can i delete this?
- hosts.20130203-025445.backup < Whats this? Can i delete this?
- hosts.ccebak < This one malware? Quick research and i found some articles about firewals and malwares. :(
 

Attachments

  • 02112013_021230.txt
    488 bytes · Views: 85

Fiery

Level 1
Jan 11, 2011
2,007
HTTPS won't slow it down that much, you shouldn't notice much of a difference.

I found by going to that folder and checking my hosts file that my hosts file is ok but, i have more files than in your example.

- hosts.20130203-024818.backup < Whats this? Can i delete this?
- hosts.20130203-025445.backup < Whats this? Can i delete this?
- hosts.ccebak < This one malware? Quick research and i found some articles about firewals and malwares. :(

You can delete all of them, they are just backup copies of your host file. They won't do any harm since your current host file is clean as we reset it.

Run the ESET scan and see if it finds anything. If not, we will cleanup here :)
 

Dscheksn

New Member
Thread author
Verified
Feb 3, 2013
15
Fiery said:
Run the ESET scan and see if it finds anything. If not, we will cleanup here :)

I didn´t know which ESET scan so i googled it and did an ese online scan.
No Threats found, no log produced.
 

Fiery

Level 1
Jan 11, 2011
2,007
Ok, judging from your logs, if you are no longer experiencing any other issues, your PC seems to be clean!

Double click on OTL to run it
  • Click on the Cleanup button at the top.
  • You will be asked to reboot the machine to finish the Cleanup process. Choose Yes
  • This will remove itself and other tools we may have used.

Also, open adwCleaner and click Uninstall




Now that your PC is clean, I recommend you to create a new System Restore point then purge the old ones after.

For XP
How to create a Restore Point in XP
Delete all restore points except the most recent one

For Vista
Create a restore point
Delete all but the most recent restore point

For Windows 7
Create a restore point
Delete all but the most recent restore point - Click the Delete all but the most recent restore point link




Keep your system updated
  • Keeping your programs (especially Adobe and Java products) updated is essential. Update Checker will notify you if any of your programs require an update.
  • Microsoft releases patches for Windows and Office products regularly to patch up Windows and Office product bugs and vulnerabilities.
  • Please ensure you update your system regularly and have automatic updates on. You can learn how to turn Automatic Updates on here


I also recommend you to switch your antivirus program to a better one. Here are some suggestions:

In addition to your antivirus, you need additional protection such as a firewall and behavioural blocker.


Other steps that you may want to do to further protect your system/files:
  • Sandboxie - "Quarantines" your browser so anything that you do in it will be isolated from your system.
  • Backup important files regulary to an external hard-drive or USB

Here are only a few suggestions that will improve your system security. Should you wish to allow us to make full recommendations and set your PC up with maximum security, please start a thread here. Our community of PC enthusiasts and experts will give you feedback and help you secure your system from future malware infections.

Should you want to try a product but don't know how it performs, here is a list of current reviews to help you decide.


Internet Explorer may be the most popular browser but it's definitely not the most secure browser. Consider using other browsers with addition add-ons to safeguard your system while browsing the internet.

Firefox is a more secure, faster browser than Internet Explorer. Firefox contains less vulnerabilities, reducing the risk of drive-by downloads. In addition, you can add the following add-ons to increase security.
  • KeyScramber - Encrypts your keystrokes to protect you against keyloggers that steals personal & banking information
  • AdBlock - Disable/blocks advertisements on websites so you won't accidentally click on a malicious ad.
  • NoScript - Disables Flash & Java contents to avoid exploits or drive-by attacks
  • Web of Trust - Shows the website rating by other users and blocks dangerous and poor-rated sites

Google Chrome is another good browser that is faster and more secure than Internet Explorer by having a sandbox feature. Additionally, you can add the following add-on to Chrome to heighten security.


Lastly, it is important to perform system maintenance on a regular basis. Here are a few tools and on-demand scanners that you should keep & use every 1-2 weeks to keep your system healthy.

Other than that, stay safe out there! If you have any other questions or concerns, feel free to ask :)
 

Dscheksn

New Member
Thread author
Verified
Feb 3, 2013
15
Thank you very much =)
I have one question.

There is a window that until now didn´t appear.
It asks for telefonic acces to enter in the internet. Dont know how i can explain it well i hope you understand or wait i search for an immage.

It looks pretty much like this one.
http://www.virtualeidos.com/iecharri/pag/imag/Image2.gif

Greetings and thank you very much for helping.

When i go back home to germany in april i will donate a little bit of money for your help =)

Dont expect too much i want to study so i dont work.

greetings
 

Fiery

Level 1
Jan 11, 2011
2,007
Hi,

When does that window appear? Does it just show up on the Desktop screen? Does it happen upon every reboot?

That seems to be the modem properties. Are you using a wired connection to the internet?

It's my pleasure to help people :)
 

Dscheksn

New Member
Thread author
Verified
Feb 3, 2013
15
Iam using Wireless LAN, i configured The Routers DNs to comodo Secure dns

It Showed up when Desktop loaded and every Time i Tried to Download that eset online scanner for chrome.
 

Dscheksn

New Member
Thread author
Verified
Feb 3, 2013
15
Fiery said:
Have you try choosing "aceptar" or you click cancel everytime?

I press cancel everytime (2 times until it disappears), if i press accept there appears a new window where it says more or less like this.

"error, port 663 already in use (and much more text clicked it away so i dont remember all)
 

Fiery

Level 1
Jan 11, 2011
2,007
You don't use the modem for dial-up internet access right? Select both modems and click properties. There should be an option to disable it
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top