![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| HijackThis Log Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help. |
![]() |
|
|
Thread Tools |
|
|
#1 (permalink) | |
|
Registered User
Join Date: Jun 2008
Posts: 2
OS: Win XP SP3
|
Hi,
I'm having problems with Vundo. I keep getting a message from McAfee. The main symptom is loads of popups when I'm using the Internet for antispyware sites. I've tried a number of different things but have failed to remove it. I have attached the log from Panda and the 'extra' one from DSS. The main log from DSS is included below. Thanks, in advance, for your help. JEZ Quote:
|
|
|
|
|
|
#2 (permalink) |
|
Analyst, Security Team
Join Date: Feb 2005
Location: Eire
Posts: 1,897
OS: Vista, Ubuntu 8.04
|
Re: Vundo problems
Hi jezzie
Please don't wrap your posts in quote boxes Please read this post completely before beginning the fix. If there's anything that you do not understand, kindly ask your questions before proceeding. Please ensure that there aren't any opened browsers when you are carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix. We also suggest that you Subscribe to this thread to be notified of fixes as soon as they are posted by our Team. You can do this simply by clicking the "Thread Tools" button located in the original thread line and selecting "Subscribe to this Thread". IT IS IMPORTANT THAT YOU DON'T MISS A STEP & PERFORM EVERYTHING IN THE RIGHT ORDER. ================= We will begin with ComboFix.exe. Please visit this webpage for download links, and instructions for running the tool: http://www.bleepingcomputer.com/comb...o-use-combofix Please ensure you read this guide carefully and install the Recovery Console first. The Windows Recovery Console will allow you to boot up into a special recovery (repair) mode. This allows us to more easily help you should your computer have a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time. Once installed, you should see a blue screen prompt that says: The Recovery Console was successfully installed. Please continue as follows:
Please include the following reports for further review, and so we may continue cleansing the system: ================= Please download HijackThis to your desktop - this program will help us determine if there are any spyware/malware on your computer. Alternate link Make sure you close down EVERY open window and close ALL browser windows. The only thing that should be open is the HijackThis program. Double-click on the file you just downloaded. Click on the "Install" button to install. It will by default install to the directory - C:\Program Files\Trend Micro\HijackThis Upon install, HijackThis should open for you. Should it not open, navigate to C:\Program Files\Trend Micro\HijackThis and double click on HijackThis.exe
================= In your next post, please include fresh logs from:
__________________
![]() Member of UNITE If I have helped you in anyway, please DONATE to TSF Go raibh maith agat Last edited by alba : 06-11-2008 at 12:44 AM. |
|
|
|
|
#3 (permalink) |
|
Registered User
Join Date: Jun 2008
Posts: 2
OS: Win XP SP3
|
Re: Vundo problems
Hi,
When I dragged the downloaded file from Microsoft onto ComboFix.exe I got a stack of virus and spyware alerts. McAfee found RemAdm-ProcLaunch!171 and Spyware Doctor found Trojan-PWS.Bancos and Backdoor.VB.AYS. Obviously I didn't continue - what should I do? Thanks |
|
|
|
|
#4 (permalink) |
|
Analyst, Security Team
Join Date: Feb 2005
Location: Eire
Posts: 1,897
OS: Vista, Ubuntu 8.04
|
Re: Vundo problems
Hi jezzie
That is because the were probably brought down the viruses that is already on your PC it was only a coincidence that they popped up when you were dragging the file. I have reposted the instructions please follow them =============================== We will begin with ComboFix.exe. Please ensure you install the Recovery Console first. The Windows Recovery Console will allow you to boot up into a special recovery (repair) mode. This allows us to more easily help you should your computer have a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time. Once installed, you should see a blue screen prompt that says: The Recovery Console was successfully installed. Please continue as follows:
Please include the following reports for further review, and so we may continue cleansing the system: ================= Please download HijackThis to your desktop - this program will help us determine if there are any spyware/malware on your computer. Alternate link Make sure you close down EVERY open window and close ALL browser windows. The only thing that should be open is the HijackThis program. Double-click on the file you just downloaded. Click on the "Install" button to install. It will by default install to the directory - C:\Program Files\Trend Micro\HijackThis Upon install, HijackThis should open for you. Should it not open, navigate to C:\Program Files\Trend Micro\HijackThis and double click on HijackThis.exe
================= In your next post, please include fresh logs from:
__________________
![]() Member of UNITE If I have helped you in anyway, please DONATE to TSF Go raibh maith agat Last edited by alba : 06-19-2008 at 08:28 AM. |
|
|
![]() |
| Thread Tools | |
|
|