also @ TechSpot: Onion Pi transforms Raspberry Pi into anonymous Wi-Fi hotspot

I think I am infected with an awful virus

Discussion in 'Virus and Malware Removal' started by Elvira1, Oct 11, 2012.

Post New Reply
  1. Jay Pfoutz Malware Helper Posts: 4,286   +49

    Download Windows Repair (all in one) from this site

    Install the program then run it.

    Go to Step 2 and allow it to run CheckDisk by clicking on Do It button:

    [IMG]



    Once that is done then go to Step 3 and allow it to run System File Check by clicking on Do It button:

    [IMG]


    Go to Step 4 and under "System Restore" click on Create button:

    [IMG]


    Go to Start Repairs tab and click Start button.

    [IMG]


    Please ensure that ONLY items seen in the image below are ticked as indicated (they're all checked by default):

    [IMG]

    Click on box next to the Restart System when Finished. Then click on Start.

    Once done, let me know if the speed has boosted.
  2. Elvira1 Newcomer, in training Posts: 34

    It's faster, but still very, very slow to start up, load my settings, and browse. I do see improvements though. My audio still sounds somewhat jarbled and choppy and should be a lot faster.

    I appreciate your help and sticking with me all this time.
  3. Elvira1 Newcomer, in training Posts: 34

    I found this file: Z@R4B.tmp, which appears to a backdoor trojan dropper in the following location:

    C:\Documents and Settings\(user name)\Local Settings\temp

    The file is hidden and goes undetected by Avast and MalwareBytes Pro.
  4. Elvira1 Newcomer, in training Posts: 34

    Svchost.exe file shows up 8 times constantly in task manager.
  5. Jay Pfoutz Malware Helper Posts: 4,286   +49

    CCleaner Temporary Files Cleaning

    NOTE: If you already have this installed, you don't have to reinstall it.

    Please download CCleaner Slim and save it to your Desktop - Alternate download link

    When the file has been saved, go to your Desktop and double-click on ccsetupxxx_slim.exe
    Follow the prompts to install the program.

    • Double-click the CCleaner shortcut on the desktop to start the program.
    • A prompt will ask you if you want CCleaner to do a check to see what cookies it needs to keep. Allow that operation.
    • On the Cleaner tab, click on Run Cleaner on the bottom-right to run the program.
    • Important: Make sure that ALL browser windows are closed before selecting Run Cleaner, or it will ask if you want the program to close them for you (when you do this, all unsaved data may be lost in the browser).

      Caution: Only use the Registry feature if you are very familiar with the registry.
      Always back up your registry before making any changes. Exit CCleaner after it has completed it's process.


      Hitman Pro

      Please download Hitman Pro
      • After the download completes please double click the program to run it.
      • Accept the terms of the license agreement and click Next
      • Let the scan run. It will not take long
      • When the scan finishes, and all the files have been uploaded to the Scan Cloud, click Next
      • Click Next again. At the bottom left you will see Export Scan Results To XML File. Click that and save it in a convenient location
      • Upload log.xml here for review please
  6. Elvira1 Newcomer, in training Posts: 34

    Here's my Hitman Pro log. I left off the self- identifying part at the beginning because I forgot to save the file as xml and could not upload it as txt:

    Scan date . . . . . . : 2012-10-27 18:27:45
    Scan mode . . . . . . : Normal
    Scan duration . . . . : 34m 23s
    Disk access mode . . : Direct disk access (SRB)
    Cloud . . . . . . . . : Internet
    Reboot . . . . . . . : No
    Threats . . . . . . . : 0
    Traces . . . . . . . : 6
    Objects scanned . . . : 714,923
    Files scanned . . . . : 22,664
    Remnants scanned . . : 158,913 files / 533,346 keys
    Cookies _____________________________________________________________________
    C:\Documents and Settings\leahjewel\Cookies\03DN0UZ6.txt
    C:\Documents and Settings\leahjewel\Cookies\8T5NIUTW.txt
    C:\Documents and Settings\leahjewel\Cookies\DFGGLKO0.txt
    C:\Documents and Settings\leahjewel\Cookies\EWXELNS3.txt
    C:\Documents and Settings\leahjewel\Cookies\T6IME2GD.txt
    C:\Documents and Settings\leahjewel\Cookies\VP9JBAAD.txt

    [/code]
     
  7. Jay Pfoutz Malware Helper Posts: 4,286   +49

    Okay, next rundown of problems...
  8. Elvira1 Newcomer, in training Posts: 34

    Uh oh. I'm in trouble again. I found the following on my system via Malwarebytes Pro: Hijack.Comsysapp . What to do? What to do?

    Attached Files:

  9. Jay Pfoutz Malware Helper Posts: 4,286   +49