What the Tech logo

What the Tech? It's as easy as 1,2,3! ( Log In | Register )
Easy as 1,2,3!

 
Closed TopicStart new topic
> [Closed] i need help in removing a malware/virus in my system...
rhivabanz15
post Oct 26 2009, 06:09 AM
Post #1


New Member
*

Group: New Member
Posts: 1
Joined: 26-October 09
Member No.: 88,531
Operating System: Windows XP



my computer is being bugged by a malware... it's making my screen freeze and i cant remove it/delete it/move to chest even when i run avast at start up... i'm in safe mode at the moment... could you help me remove it... there are 3 malwares namely:

win32:Agent-PSI[RTK] in system32\drivers\jzqfftmg.sys

win31:Malware-gen in system32\xpvjsupg.dll

C:\WINDOWS\SYSTEM32\qmhhufy.dllwm32.[morphine]\[UPX]Delf-HPR[Trj]
Go to the top of the page
 
+Quote Post
chamber
post Oct 26 2009, 10:54 AM
Post #2


G2G Staff
Group Icon

Group: Malware Team
Posts: 117
Joined: 8-May 09
From: ~/
Member No.: 85,654
Operating System: Linux



Hi,

Please download DDS and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.scr to run the tool.
  • When done, DDS.txt will open.
  • Click Yes at the next prompt for Optional Scan.
  • Save both reports to your desktop.
---------------------------------------------------

Please include the contents of the following in your next reply:

DDS.txt

Please attach the second file; Attach.txt. To attach a file, do the following:
  • Under the reply panel is the Attachments Panel
  • Browse for the attachment file you want to upload, then click the green Upload button
  • Once it has uploaded, click the Manage Current Attachments drop down box
  • Click on to insert the attachment into your post



Download RootRepeal from one of the following locations and save it to your desktop:
  • Double click to start the program
  • Click on the Report tab at the bottom of the program window
  • Click the button
  • In the Select Scan dialog, check:
    • Drivers
    • Files
    • Processes
    • SSDT
    • Stealth Objects
    • Hidden Services
    • Shadow SSDT
  • Click the OK button
  • In the next dialog, select all drives showing
  • Click OK to start the scan
    Note: The scan can take some time. DO NOT run any other programs while the scan is running
  • When the scan is complete, click the button and save the report to your Desktop as RootRepeal.txt
  • Go to File, then Exit to close the program

If the report is not too long, post the contents of RootRepeal.txt in your next reply. If the report is very long, it will not be complete if you post it, so please attach it to your reply instead.

To attach a file, do the following:
  • Click Add Reply
  • Under the reply panel is the Attachments Panel
  • Browse for the attachment file you want to upload, then click the green Upload button
  • Once it has uploaded, click the Manage Current Attachments drop down box
  • Click on to insert the attachment into your post
Go to the top of the page
 
+Quote Post
chamber
post Nov 2 2009, 05:11 AM
Post #3


G2G Staff
Group Icon

Group: Malware Team
Posts: 117
Joined: 8-May 09
From: ~/
Member No.: 85,654
Operating System: Linux



Due to inactivity this topic will be closed.
If you need help please start a new thread.
Go to the top of the page
 
+Quote Post

Closed TopicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 


RSS Time is now: 21st November 2009 - 07:06 AM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.
Member site: Alliance of Security Analysis Professionals | UNITE Against Malware
Memory Forums | Auto Repair Forum
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy