Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming hard drive hardware hdmi internet laptop malware memory modem monitor motherboard network printer problem ram registry router security slow software sound toshiba trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > Virus & Other Malware Removal >
. .and now the confusion sets in (In Progress)

Reply  
Thread Tools
DJSword's Avatar
Computer Specs
Junior Member with 1 posts.
 
Join Date: Aug 2010
Location: Michigan
Experience: Beginner
02-Sep-2010, 09:32 PM #1
Wink . .and now the confusion sets in
HI,
OK, heres the deal! I have a Dell Opti Plex-MS Windows XP-Home Edition-Service Pk 2. I was having alot of problems with redirecting while on Internet Explorer. I decided to run a scan at windows Live. This informs me I have a win32/alureon.H. So I purchased Spyware Dr. and ran a scan and it claims to have removed the threat. I have Avg Free 9.0 so I ran another scan from this it claims there is a Trojan horse Adload_r.AKC and they are named C:\windows\system32\svchost.exe(1144):memory_001a0000 and marked inaccesable then this is repeated on the next line but only up to the number. Next one is C:\windows\explorerEXE.(3808):\memory_001a0000 and again repeated on the next line up to the number.
At this point I am no longer angry . . I am dissappointed in the abilities ofproducts to actually back their claims to solve issues. However the confusion over whelms my knowledge of what to do as I am somewhere between a beginner and intermediate depending on the subject when it comes to computers.
Hoping someone will help me with this and let me thank you right from the start.
DJSword
CatByte's Avatar
Malware Removal Specialist with 3,373 posts.
 
Join Date: Feb 2009
06-Sep-2010, 05:57 PM #2
Hi

Please do the following:



Please download MBRCheck.exe to your desktop.
  • Be sure to disable your security programs
  • Double click on the file to run it (Vista and Windows 7 users will have to confirm the UAC prompt)
  • A window will open on your desktop
  • if an unknown bootcode is found you will have further options available to you, at this time press N then press Enter twice.
  • If nothing unusual is found just press Enter
  • A .txt file named MBRCheck_mm.dd.yy_hh.mm.ss should appear on your desktop.
  • Please post the contents of that file.



NEXT



Please download DDS from either of these links

LINK 1
LINK 2

and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.pif to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
---------------------------------------------------
Please include the contents of the following in your next reply:

DDS.txt
Attach.txt.



NEXT


Download GMER Rootkit Scanner from here to your desktop. It will be a randomly named executable.
  • Double click the exe file.
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO, then use the following settings for a more complete scan.


    Click the image to enlarge it
  • In the right panel, you will see several boxes that have been checked. Ensure the following are unchecked
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop, and attach it in reply.

**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries
__________________
Microsoft MVP - 2010, 2011
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools


Similar Threads
Title Thread Starter Forum Replies Last Post
removed ram put it back and now the monitor has no signal kingdave Hardware 14 03-Sep-2008 05:20 PM
Fixed the fan in my Sony PCG-K37 laptop and now the computer won't start at all cj12101 Hardware 6 06-Jun-2008 01:34 AM
Spyware and virus problems, and now the NIC cork Virus & Other Malware Removal 2 10-Mar-2005 05:51 PM
Installed Asus 7700 Geforce2 GTS and now the display panel won't work rmay635703 Hardware 1 06-Dec-2003 11:33 PM
just installed second HDD and now the rig won't boot to windows Me scanner Earlier Versions of Windows 16 16-Jan-2003 11:30 AM


Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 11:28 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.