View Single Post
Old 08-12-2007, 12:41 PM   #8 (permalink)
Mortson
Registered User
 
Join Date: Aug 2007
Posts: 44
OS: XP Home


Send a message via MSN to Mortson
Re: Win32/Rustock.gen!C help needed please!!!

Quote:
Originally Posted by tetonbob View Post
What was alerting you to Rustock, and is it still?

---------------------------------

Uninstall the following via the Add/Remove Panel (Start->(Settings)->Control Panel->Add/Remove Programs) if they exist:

J2SE Runtime Environment 5.0 Update 11
Java 2 Runtime Environment, SE v1.4.2_03
Java(TM) SE Runtime Environment 6 Update 1


These are all outdated, and security risks by having them installed still. Unfortunately, Java does not uninstall previous version when you update, nor tell you that you should.

Leave Java(TM) 6 Update 2 alone, as it is the most recent.

---------------------------------------------------------------------------------------------


Open notepad and copy/paste the text in the quotebox below into it:



Save this as CFScript.txt




Refering to the picture above, drag CFScript.txt into ComboFix.exe

When finished, it shall produce a log for you, C:\ComboFix.txt. Post that log in your next reply.

Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall


When CF finishes running, the ComboFix log will open along with a message box--do not be alarmed. With the above script, ComboFix will capture a file to submit for analysis.

Ensure you are connected to the internet and click OK. A browser will open. Simply follow the instructions to copy/paste/send the requested file.

---------------------------------------------------------------------------------------------


Open HijackThis and click on 'Do a System Scan and save a Logfile'. Save the log file and post it here.

---------------------------------------------------------------------------------------------

Windows Live OneCare alerted me.

Thanks for your help so far. I'm just doing what you requested now.
Mortson is offline