Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
FBI moneypak help me please
Message
<blockquote data-quote="Fiery" data-source="post: 120499" data-attributes="member: 9"><p>Very infected PC, lot's of cleaning to do.</p><p></p><p>Open notepad and copy & paste the following:</p><p></p><p></p><p></p><p>and save it as <span style="color: #FF0000"><strong>fixlist.txt</strong></span> onto your flash drive.</p><p></p><p>Then, boot to system recovery, plug in your flash drive, open FRST and click <strong>fix</strong>. Post the generated log.</p><p></p><p>Attempt to boot to normal mode, if successful,</p><p></p><p>Download & SAVE to your Desktop RogueKiller or from <a href="http://www.bleepingcomputer.com/download/roguekiller/" target="_blank">here</a></p><ul> <li data-xf-list-type="ul">Quit all programs that you may have started.</li> <li data-xf-list-type="ul">Please disconnect any USB or external drives from the computer before you run this scan!</li> <li data-xf-list-type="ul">For Vista or Windows 7, right-click and select <strong>Run as Administrator to start</strong></li> <li data-xf-list-type="ul">Wait until Prescan has finished, then click on<strong> "Scan" </strong>button</li> <li data-xf-list-type="ul">Wait until the Status box shows "Scan Finished"</li> <li data-xf-list-type="ul">Click <strong> delete</strong> and wait until it saids <strong>deleting finished</strong></li> <li data-xf-list-type="ul">Click on<strong> "Report"</strong> and copy/paste the content of the Notepad into your next reply.</li> <li data-xf-list-type="ul">The log should be found in RKreport[1].txt on your Desktop<br /> Exit/Close RogueKiller+</li> </ul><p></p><p>Download TDSSkiller from <a href="http://support.kaspersky.com/downloads/utils/tdsskiller.exe" target="_blank">here</a></p><ul> <li data-xf-list-type="ul">Double-Click on <strong>TDSSKiller.exe</strong> to run the application</li> <li data-xf-list-type="ul">When TDSSkiller opens, click <strong> change parameters </strong> , check the box next to <strong>Loaded modules </strong>. A reboot will be required.</li> <li data-xf-list-type="ul">After reboot, TDSSKiller will run again. Click<strong> Change parameters</strong> again and make sure everything is checked.<br /> <img src="http://img.photobucket.com/albums/v257/MrChalee/clip.jpg" alt="" class="fr-fic fr-dii fr-draggable " style="" /></li> <li data-xf-list-type="ul">click <strong>Start scan </strong>.<br /> </li> <li data-xf-list-type="ul">If a <strong>suspicious object</strong> is detected, the default action will be <strong>Skip</strong>, click on Continue. (If it saids TDL4/TDSS file system, select <strong>delete</strong>)</li> <li data-xf-list-type="ul">If <strong>malicious objects </strong>are found, ensure <strong>Cure (default)</strong> is selected, then click <strong>Continue</strong> and <strong>Reboot now</strong> to finish the cleaning process.</li> </ul><p></p><p>Attach the log after (usually <strong>C:\</strong> folder in the form of <strong>TDSSKiller.[Version]_[Date]_[Time]_log.txt</strong></p><p></p><p>If you don't know how to attach the files, please follow the instructions here: http://malwaretips.com/Thread-How-to-use-the-attachment-system?pid=16072#pid16072</p><p></p><p>Download <strong>Malwarebytes Anti-Rootkit</strong> from <a href="http://downloads.malwarebytes.org/file/mbar" target="_blank">here</a> to your Desktop</p><ul> <li data-xf-list-type="ul">Unzip the contents to a folder on your Desktop.</li> <li data-xf-list-type="ul">Open the folder where the contents were unzipped and run <strong>mbar.exe</strong></li> <li data-xf-list-type="ul">Follow the instructions in the wizard to<strong> update</strong> and allow the program to <strong>scan</strong> your computer for threats.</li> <li data-xf-list-type="ul">Make sure there is a check next to <strong>Create Restore Point</strong> and click the<strong> Cleanup</strong> button to remove any threats. Reboot if prompted to do so.</li> <li data-xf-list-type="ul">After the reboot, perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If there are threats, click <strong>Cleanup</strong> once more and reboot.</li> <li data-xf-list-type="ul">When done, please post the two logs in the <strong>MBAR folder</strong>(<span style="color: #FF0000">mbar-log.txt</span> and <span style="color: #FF0000">system-log.txt</span>)</li> </ul></blockquote><p></p>
[QUOTE="Fiery, post: 120499, member: 9"] Very infected PC, lot's of cleaning to do. Open notepad and copy & paste the following: and save it as [color=#FF0000][b]fixlist.txt[/b][/color] onto your flash drive. Then, boot to system recovery, plug in your flash drive, open FRST and click [b]fix[/b]. Post the generated log. Attempt to boot to normal mode, if successful, Download & SAVE to your Desktop RogueKiller or from [url=http://www.bleepingcomputer.com/download/roguekiller/]here[/url] [list] [*]Quit all programs that you may have started. [*]Please disconnect any USB or external drives from the computer before you run this scan! [*]For Vista or Windows 7, right-click and select [b]Run as Administrator to start[/b] [*]Wait until Prescan has finished, then click on[b] "Scan" [/b]button [*]Wait until the Status box shows "Scan Finished" [*]Click [b] delete[/b] and wait until it saids [b]deleting finished[/b] [*]Click on[b] "Report"[/b] and copy/paste the content of the Notepad into your next reply. [*]The log should be found in RKreport[1].txt on your Desktop Exit/Close RogueKiller+ [/list] Download TDSSkiller from [url=http://support.kaspersky.com/downloads/utils/tdsskiller.exe]here[/url] [list] [*]Double-Click on [b]TDSSKiller.exe[/b] to run the application [*]When TDSSkiller opens, click [b] change parameters [/b] , check the box next to [b]Loaded modules [/b]. A reboot will be required. [*]After reboot, TDSSKiller will run again. Click[b] Change parameters[/b] again and make sure everything is checked. [img]http://img.photobucket.com/albums/v257/MrChalee/clip.jpg[/img] [*]click [b]Start scan [/b]. [*]If a [b]suspicious object[/b] is detected, the default action will be [b]Skip[/b], click on Continue. (If it saids TDL4/TDSS file system, select [b]delete[/b]) [*]If [b]malicious objects [/b]are found, ensure [b]Cure (default)[/b] is selected, then click [b]Continue[/b] and [b]Reboot now[/b] to finish the cleaning process.[/list] Attach the log after (usually [b]C:\[/b] folder in the form of [b]TDSSKiller.[Version]_[Date]_[Time]_log.txt[/b] If you don't know how to attach the files, please follow the instructions here: http://malwaretips.com/Thread-How-to-use-the-attachment-system?pid=16072#pid16072 Download [b]Malwarebytes Anti-Rootkit[/b] from [url=http://downloads.malwarebytes.org/file/mbar]here[/url] to your Desktop [list] [*]Unzip the contents to a folder on your Desktop. [*]Open the folder where the contents were unzipped and run [b]mbar.exe[/b] [*]Follow the instructions in the wizard to[b] update[/b] and allow the program to [b]scan[/b] your computer for threats. [*]Make sure there is a check next to [b]Create Restore Point[/b] and click the[b] Cleanup[/b] button to remove any threats. Reboot if prompted to do so. [*]After the reboot, perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If there are threats, click [b]Cleanup[/b] once more and reboot. [*]When done, please post the two logs in the [b]MBAR folder[/b]([color=#FF0000]mbar-log.txt[/color] and [color=#FF0000]system-log.txt[/color])[/list] [/QUOTE]
Insert quotes…
Verification
Post reply
Top