There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
 
Tag Cloud
access audio avg avg 8 bios blue screen boot browser bsod computer crash css dell desktop driver drivers dvd email error excel explorer firefox firefox 3 freeze gimp graphics hard drive hardware help please hijackthis hjt install internet internet explorer itunes javascript keyboard laptop log malware monitor network networking openoffice outlook outlook 2003 outlook express password php popups problem router seo slow sound sp3 spyware startup trojan usb video virtumonde virus vista vundo windows windows xp winxp wireless youtube
Malware Removal & HijackThis Logs
Search
Search in:
 
Advanced Search
Tech Support Guy Forums > Security & Malware Removal > Malware Removal & HijackThis Logs >
Help computer constantly getting mal/???? alerts.


HELLO AND WELCOME! Before you can post your question, you'll have to register -- it's completely free! Click here to join today! We highly recommend that you print a copy of our Guide for New Members. Enjoy!

 
Thread Tools
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
08-May-2008, 10:46 AM #31
Yes, try uninstalling and reinstalling Avast.
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
09-May-2008, 09:10 AM #32
Ok, that's done and avast is running properly now. What's next?

Peter
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
09-May-2008, 06:22 PM #33
Is everything running fine with the system now?
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
10-May-2008, 12:02 AM #34
Evertything else seems to be ok, so I turned spysweeper back on and enabled everything again and ran a sweep, it picked up three possible viruses and quarentined them. I'm attaching the sesion log from spysweeper.

Hope this is nothing.
Attached Files
File Type: txt Spy Sweeper Session Log.txt (330.7 KB, 16 views)
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
10-May-2008, 01:26 PM #35
SpySweeper logs are tedious and difficult to read. The only things I saw were items already quarantined like in Qoobox which is where Combofix moves files and the others are in system restore, which we will be flushing out. If you see others, please point them out to me as my eyes can only take so much.
__________________
Microsoft MVP - Consumer Security

Alliance of Security Analysis Professionals
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
10-May-2008, 01:40 PM #36
That was it everything else appears to be fine.
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
11-May-2008, 01:48 PM #37
Here are some final instructions for you.

The following program will remove the tools we've used and their associated files and backups and then it will delete itself.

Please download OTMoveIt2 by OldTimer.
  • Save it to your desktop.
  • Make sure you have an Internet Connection.
  • Double-click OTMoveIt.exe to run it. (Vista users, please right-click on OTMoveIt2.exe and select "Run as an Administrator")
  • Click on the CleanUp! button
  • A list of tool components used in the cleanup of malware will be downloaded.
  • If your firewall or real-time protection attempts to block OTMoveIt2 to reach the Internet, please allow the application to do so.
  • Click Yes to begin the cleanup process and remove these components, including this application which will delete itself.
  • You will be asked to reboot the machine to finish the cleanup process. If you are asked to reboot the machine choose Yes.


Now you should turn system restore off to flush out all previous system restore points, then turn it back on and create a new restore point:

To turn off system restore, on the Desktop, right click on My Computer and click on Properties.
Click the System Restore tab.
Check Turn off System Restore.
Click Apply and then click OK.

Restart your computer, turn System Restore back on and create a restore point.

To create a new restore point, click on StartAll ProgramsAccessoriesSystem Tools and then select System Restore.

In the System Restore wizard, select Create a restore point and click the Next button.

Type a name for your new restore point then click on Create.


I also recommend downloading SPYWAREBLASTER for added protection.

Read here for info on how to tighten your security.


Delete Temporary Files:

Go to Start - Run and type in cleanmgr and click OK.
Let it scan your system for files to remove.
Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only things checked.
Press OK to remove them.
__________________
Microsoft MVP - Consumer Security

Alliance of Security Analysis Professionals
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
11-May-2008, 04:38 PM #38
Thanks all actions have been completed, everything seems to be ok>

Peter
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
11-May-2008, 08:15 PM #39
You're welcome.
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
11-May-2008, 09:37 PM #40
Thanks for all your help Cookiegal.

One last question, before you go, how do I turn autorun back on?

Thanks

Peter

Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
12-May-2008, 07:33 PM #41
Are you sure you want to do that? The risk of infection with that method is great since malware will run automatically if you insert an infected device.
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
13-May-2008, 09:42 AM #42
I'm not to worried about that side of things, the only things that get inserted in my drives are legitimate program disks, memory cards from my camera and my memory stick that I know has clean documents. I think my bigger threat, is surfing and trying to find something for nothing, which is probably what got me last time. I think I've learned my lesson there.
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
13-May-2008, 01:36 PM #43
OK then. I'm attaching a Fixautorun.zip file. Save it to your desktop. Unzip it and double-click the Fixautorun.reg file and allow it to enter into the registry.
Attached Files
File Type: zip FixAutorun.zip (343 Bytes, 1 views)
spike9's Avatar
Junior Member with 22 posts.
 
Join Date: Apr 2008
14-May-2008, 06:15 AM #44
Thanks for all your help.

Have a great summer.
Cookiegal's Avatar
Administrator with 51,851 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
14-May-2008, 12:31 PM #45
It's my pleasure and you have a great summer too.
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are Off
Refbacks are Off

You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 06:01 PM.
Copyright © 1996 - 2008 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.1.0
Powered by Cermak Technologies, Inc.