Howdy there and welcome to TSF Forums
I'm Steve and I will be helping you throughout this fix.
Before beginning the fix, read this post completely. If there's anything that you do not understand, kindly ask your questions before proceeding. It is IMPORTANT that you don't miss a step. Please perform everything in the correct order/sequence.
Vista users please make sure you all run commands with administrator rights (right click icon - run as administrator)
Please
Subscribe to this Thread to get immediate notification of replies as soon as they are posted. To do this click
Thread Tools, then click
Subscribe to this Thread. Make sure it is set to
Instant notification by email, then click
Add Subscription
Please note that the forum is very busy and if I don't hear from you within three days from this initial posting then the thread will be closed.
We will begin with ComboFix.exe. Please visit this webpage for download links, and instructions for running the tool:
http://www.bleepingcomputer.com/comb...o-use-combofix
* Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
Please include the
C:\ComboFix.txt in your next reply for further review.
Please scan with a fresh copy of GMER
This time I want you to
rename it before you save it to your hard drive. When promted save the file as
arkscan
First delete the version of GMER that you are currently running.
Download
GMER Rootkit Scanner from
here or
here.
- Extract the contents of the zipped file to desktop.
- Double click GMER.exe. If asked to allow gmer.sys driver to load, please consent .
- If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO.
Click the image to enlarge it
- In the right panel, you will see several boxes that have been checked. Uncheck the following ...
- Sections
- IAT/EAT
- Drives/Partition other than Systemdrive (typically C:\)
- Show All (don't miss this one)
- Then click the Scan button & wait for it to finish.
- Once done click on the [Save..] button, and in the File name area, type in "ark.txt"
- Save it where you can easily find it, such as your desktop and attach it in your next reply
__________________
If we have helped you then please consider
donating

Proud Member of ASAP & UNITE Since 2007