also @ TechSpot: Adobe Creative Cloud apps now available; Photoshop CC includes new features

Have spyware infection Abebot on my PC!

Discussion in 'Virus and Malware Removal' started by Esuper, Mar 31, 2008.

  1. Esuper Newcomer, in training Posts: 34

    Here is the latest log, Thanks
  2. Blind Dragon TechSpot Evangelist Posts: 4,048

    We should be pretty much done with Combofix.

    Trend Micro Housecall Free Online Scanner

    • It`s one of the very few online scanners that will actually disinfect viruses etc.
    • First Open Internet Explorer
    • Go to Trend Micro's Housecall website which can be found HERE
    • Click on the link that says "Scan now. It's Free"
    • A new tab will open where you will have to tick a box to agree to the terms of service.
    • Click "Launch House Call"
    • Follow any additional on screen instructions
    • Select any infections then Fix Checked after the scan

    After the fix is done through housecall, Launch Hijackthis - scan and save a log

    Attach the fresh hijackthis log back here, this one can take a while depending on how many infections are left and your connection speed. Just be patient with it as you are almost done.
  3. Esuper Newcomer, in training Posts: 34

    Hi Blind Dragon, I have to let it run over night, i guess, my connection speed is slow. I'll post it once it finish. Thanks for the support here.
  4. Blind Dragon TechSpot Evangelist Posts: 4,048

    It will speed up towards the end, the timer isn't always accurate
  5. Esuper Newcomer, in training Posts: 34

    i just blow it!!! After a long hour of scanning finaly reach to clean the infection, i click on it and it say no able to remove, Ask me to buy their Product, and need to run another round of Scanning??? Any other solutions??? Thanks. And i only able to continue this at nite, I'll log in again tonite. Thanks again!!
  6. Esuper Newcomer, in training Posts: 34

    Here is the fresh Hijackthis log. Thanks
     
  7. Blind Dragon TechSpot Evangelist Posts: 4,048

    Did you happen to catch the name of the infection it found?

    I have never had housecall suggest that I buy anything, from my experience if it can find it, then it could remove it.

    Sorry about that. I will look into it further and hold off on recommending them until it's sorted.
  8. Esuper Newcomer, in training Posts: 34

    Yea, so dump, i didnt write it down and click fix, total of 5 infected one.
    Hope there is somethings thats can download and run the scanning instead of Online scanning, my connections is super slow. Please keep me updates, if there is a solution to fix this. Thanks!!!
  9. Blind Dragon TechSpot Evangelist Posts: 4,048

  10. Esuper Newcomer, in training Posts: 34

    I already have using AVG, How do i get the log file??
  11. Blind Dragon TechSpot Evangelist Posts: 4,048

    AVG AntiSpyware
    • Launch AVG AntiSpyware
    • Click on the Update Icon at the top, then click Start Update in the left pane
    • After the update click on the Scanner Icon at the top, then select the settings tab, in the first section "How to act?" click on recommended actions and change it to delete.In the reports section make sure it is set to Automatically generate report after every scan
    • Click back to the Scan tab and select Complete System Scan
  12. Esuper Newcomer, in training Posts: 34

    AVG AntiSpyware?? i only have AVG free edition antivirus? is the same program?
  13. Esuper Newcomer, in training Posts: 34

    Sorry, i dont have AVG AntiSpyware, downloading it now. Thanks
  14. Blind Dragon TechSpot Evangelist Posts: 4,048

    No it is not.

    AVG Anti Spyware
    • Download and install the latest version of AVG Anti Spyware
    • Click Save File on the box that pops up after clicking the link
    • The AVG installer will download to your desktop, Double click on this Icon
    • In the installer Click Next, I agree, Next, Install, after it extracts the files, check box to launch AVGAS then Finish
    • With the program launched, Select the Icon at the top that says UPDATE then Start Update in the left pane
    • Now select the Icon at the top that says SHIELD then at the top of the left pane change "Resident Shield is ..." from Active to Inactive
    • Click on the Scanner Icon at the top, then select the settings tab, in the first section "How to act?" click on recommended actions and change it to delete.In the reports section make sure it is set to Automatically generate report after every scan
    • Click back to the Scan tab and select Complete System Scan
  15. Esuper Newcomer, in training Posts: 34

    here is the files. thanks
  16. Blind Dragon TechSpot Evangelist Posts: 4,048

    Looks like the infections that showed were in restore points and quarantine folders. Have you had any more symptoms?

    Uninstall Combofix
    * Click START then RUN
    * Now type Combofix /u in the runbox
    * Make sure there's a space between Combofix and /u
    * Then hit Enter.

    * The above procedure will:
    * Delete the following:
    * ComboFix and its associated files and folders.
    * Reset the clock settings.
    * Hide file extensions, if required.
    * Hide System/Hidden files, if required.
    * Set a new, clean Restore Point.

    -----------------------------------------------------------------------
    Cleanup using OTMoveit2 by OldTimer
    Now we can clear out the rest of the programs we've been using to clean up your computer, they are not suitable for general malware removal and could cause damage if launched accidentally.

    Download OTMoveIt2 by OldTimer OTMoveIt2.exe and place it on your desktop.

    1. Double click OTMoveIt2.exe to launch it.
    If using Vista Right-Click OTMoveIt and choose Run As Administrator
    2. Click on the CleanUp! button.
    3. OTMoveIt2 will download a list from the Internet, if your firewall or other defensive programs alerts you, allow it access.
    4. Click YES at the next prompt (list downloaded, Do you want to begin cleanup process?)

    * When finished exit out of OTMoveIt2

    ---------------------------------------------------------------------------
    I recommend you keep
    1 anti virus program
    1 firewall
    Combo of Anti-Spyware (Spybot S&D, Adaware 2007, and MBAM)

    keep them updated.

    You can also turn on tea timer in Spybot:
    • Click on Mode at the top and make sure that Advanced is checked
    • Expand the Tools tab in the left pane
    • Single click on the Resident Icon also in the left pane
    • check Resident "TeaTimer" (Protection of over-all system settings) Active
    • Close spybot

    Also under Tools you can double-click System Startup in the right pane and disable programs from running at startup. This will free up system resources. For example if you don't use MSN Messenger everytime you run your computer you can disable it, then when you want to use it you can launch it through Start -> all programs, or make a shortcut on the desktop for it. That way it doesn't use resources when you aren't using it. Don't disable any entries in green though.

    And just to be sure
    Set correct settings for files
    • Click Start > My Computer > Tools menu (at top of page) > Folder Options > View tab.
    • Under "Hidden files and folders" if necessary select Do not show hidden files and folders.
    • If unchecked please check Hide protected operating system files (Recommended)
    • If necessary check "Display content of system folders"
    • If necessary Uncheck Hide file extensions for known file types.
    • Click OK

    clear system restore points

    • This is a good time to clear your existing system restore points and establish a new clean restore point:
      • Go to Start > All Programs > Accessories > System Tools > System Restore
      • Select Create a restore point, and Ok it.
      • Next, go to Start > Run and type in cleanmgr
      • Select the More options tab
      • Choose the option to clean up system restore and OK it.
      This will remove all restore points except the new one you just created.
  17. Esuper Newcomer, in training Posts: 34

    I'm curently using:
    AVG antivirus free edition OK??
    For firewall, i'm using AVG Anti-spyware, OK?
    And also Spyware doctor(latest)? Is this good enough?
  18. Blind Dragon TechSpot Evangelist Posts: 4,048

    AVG doesn't make a firewall

    Use a Firewall - It is very important that you use a Firewall on your computer. If you use the Windows Firewall you might think that's enough but it only controls inbound traffic. Simply using a Firewall in its default configuration can lower your risk greatly. Here are some firewalls which are free for personal use and most commonly used:
    Comodo
    Kerio
    Online Armor
    Zonealarm



    If it were my machine I would keep:

    AVG Free as active anti virus
    One of the above firewalls

    and the following anti-spyware:
    Spybot S&D
    Spyware Doctor
    MBAM

    Uninstall AVG anti-spyware as I think that version is a 30day trial
  19. Esuper Newcomer, in training Posts: 34

    btw, is my PC cure yet>>
  20. Blind Dragon TechSpot Evangelist Posts: 4,048

    I don't see any more infections. I really wanted to see an online scan result to be sure. But I feel that you machine is clean. If you have any further problems please let me know.