View Single Post
Old 01-19-2008, 09:13 AM   #4 (permalink)
tetonbob
Manager, Security Center, TSF Academy; Analyst, Security Team
 
tetonbob's Avatar
 
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,795
OS: 2000 Pro; XP Pro; XP Home


Re: Bad Malware infection - Spy-rid, InfeStop, Easy Spyware Cleaner

Hello and Welcome. Please subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

Before beginning the fix, read this post completely. If there's anything that you do not understand, kindly ask your questions before proceeding.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

---------------------------------------------------------------------------------------------

This machine is pretty well messed up. I strongly recommend you back up any valued data before performing the next steps.

Aomong other infections showing, you have the latest version of the Vundo infection. It is a file infector, and replaces many legit exe files in startup. It's possible these applications will need to be reinstalled.

---------------------------------------------------------------------------------------------

Please visit this webpage for instructions for downloading and running ComboFix. Take your time and read the page completely. If there's anything you don't understand, post back and ask questions first, before proceeding.

http://www.bleepingcomputer.com/comb...o-use-combofix

If, while you're performing those instructions, you need to install the Windows XP Recovery Console using ComboFix, a log will be produced, CF-RC.txt

Post that log before continuing any further, and do NOT reboot your machine until I've reviewed it.

If you have a Windows XP CD with which to install the Windows XP Recovery Console as directed in the Guide, or already have the Windows XP Recovery Console installed, post the log from ComboFix when you've accomplished all that, along with a new HijackThis log.
__________________
Practice Safe Surfing
Because what you don't know, CAN hurt you.
Proud Member of ASAP since 2005
Proud Member of UNITE since 2006

Microsoft MVP - Consumer Security 2009
tetonbob is offline