![]() ![]() |
Jan 13 2009, 02:44 AM
Post
#16
|
|
![]() Classroom Teacher Group: Classroom Teacher Posts: 817 Joined: 18-April 07 From: Thailand Member No.: 69,587 Operating System: XP Pro SP2 - Vista Ultimate |
First Combofix:
Now lets Reset and Re-enable your System Restore to remove any infected files that have been backed up by Windows. The files in System Restore are protected to prevent any programs from changing those files. This is the only way to clean these files: (You will lose all previous restore points which are likely to be infected, but that's good news). Turn OFF System Restore.
Restart your computer. Turn ON System Restore.
System Restore will now be active again. Now just to make sure, lets run a different online scan with the ESET Online Scanner Note: You will need to use Internet Explorer for this scan
|
|
|
|
Jan 13 2009, 09:16 PM
Post
#17
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 33 Joined: 1-May 06 Member No.: 54,641 Operating System: 2k, xp home, xp pro |
Hi again...
I did the first part of that early this morning, then cranked up the anti-virus and let it run when I left for work. It reported nothing, and here's the log. I haven't heard any reports of AVG throwing messages today, so that might have been it. Thanks! -Dave # version=4 # OnlineScanner.ocx=1.0.0.635 # OnlineScannerDLLA.dll=1, 0, 0, 79 # OnlineScannerDLLW.dll=1, 0, 0, 78 # OnlineScannerUninstaller.exe=1, 0, 0, 49 # vers_standard_module=3761 (20090113) # vers_arch_module=1.064 (20080214) # vers_adv_heur_module=1.066 (20070917) # EOSSerial=ffe027c3167c604b81e48dbb1d17196a # end=finished # remove_checked=true # unwanted_checked=true # utc_time=2009-01-13 02:09:31 # local_time=2009-01-13 07:09:31 (-0700, US Mountain Standard Time) # country="United States" # osver=5.1.2600 NT Service Pack 3 # scanned=210669 # found=0 # scan_time=2626 |
|
|
|
Jan 13 2009, 09:25 PM
Post
#18
|
|
![]() Classroom Teacher Group: Classroom Teacher Posts: 817 Joined: 18-April 07 From: Thailand Member No.: 69,587 Operating System: XP Pro SP2 - Vista Ultimate |
Hey Dave,
Well your log appears clean again! The first thing we need to do is to remove any remaining tools that you have used. This is so that should you ever be re-infected, you will download updated versions. It will also remove any quarantined Malware from your computer. Click Here to download OTCleanIt Double-click OTCleanIt.exe to run it. Click the Clean up button Click Yes to the reboot. Now delete any logs that you have left over on your desktop, and any tools that OTCleanIt missed. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ For some useful tips on staying clean, along with links to some freeware to help, have a look at this page. To find out more information about how you got infected in the first place, you can read this article. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Now as with any rootkit infection, there is always the chance that something has remained hidden away, so I will keep this log open for the next couple of days. If you have any further problems post another reply here. OK, all the best, and stay safe! Best regards, RatHat |
|
|
|
Jan 13 2009, 09:41 PM
Post
#19
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 33 Joined: 1-May 06 Member No.: 54,641 Operating System: 2k, xp home, xp pro |
Thanks RatHat, it's doing the reboot now.
I gave you guys a plug on my blog, so hopefully any Silverlight folks that have problems will show up at your door http://geekswithblogs.net/WynApseTechnical.../12/128592.aspx Hopefully I won't be back, at least not with this go-around. Thanks again... -Dave |
|
|
|
Jan 13 2009, 09:45 PM
Post
#20
|
|
![]() Classroom Teacher Group: Classroom Teacher Posts: 817 Joined: 18-April 07 From: Thailand Member No.: 69,587 Operating System: XP Pro SP2 - Vista Ultimate |
You are more than welcome Dave!
And I hope that you wont be back (and I mean that in the nicest way!) |
|
|
|
Jan 16 2009, 11:40 PM
Post
#21
|
|
![]() Classroom Teacher Group: Classroom Teacher Posts: 817 Joined: 18-April 07 From: Thailand Member No.: 69,587 Operating System: XP Pro SP2 - Vista Ultimate |
Since this issue appears to be resolved ... this Topic has been closed. Glad we could be of assistance.
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread. Everyone else please begin a New Topic. |
|
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
2 | shbrooks | 25 | Today, 03:35 AM Last post by: shbrooks |
|||
![]() |
16 | Poopkabob | 301 | Today, 01:01 AM Last post by: Poopkabob |
|||
![]() |
6 | renobruce | 65 | Yesterday, 11:43 PM Last post by: renobruce |
|||
![]() |
4 | whoopie | 71 | Yesterday, 05:33 PM Last post by: whoopie |
|||
|
Time is now: 21st November 2009 - 04:55 AM |