(Sorry for my English)
I also have big problem with this Win32/heur virus. I restarted my PC and boot to Safe mode with Network.
I have read your UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions and I've done all the steps. Before doing that let me tell you that I had disabled System Restore.
I attached to this thread the logs that you require to help me get rid of this virus once and for all.
Some notes:
1. It is neccesary to scan my computer with Avast or Avira first? I scanned it with AVG.
2. After step 4 (Malwarebytes Scanning) I didn't need to restart my computer.
3. After step 5 (SUPERAntispyware Scanning) I restarted my computer.
4. When I restarted my computer from step 5 I opened the task manager and I noticed the following files running: reader_s.exe, 4.tmp, A.tmp and iexplore.exe without having opened it myself. And then I terminated them manually. Malwarebytes and SUPERAntispyware found those files and deleted them but after rebooting the computer they reappeared.
5. I could't install Java on safe mode (because of Administrator rights) so I rebooted in normal mode and installed it.
6. I rebooted again in Safe mode with network and run Hijackthis. And again I opened the task manager and I noticed some strange proccesses running and I terminated them manually: 8.tmp, iexplorer.exe (again without having opened it myself) and reader_s.exe
7. After all these steps I scanned my computer with avast antivirus (avast scanned before Windows loading) and found 9 files with virus. Some of them were these files I metioned above (8.tmp, 4.tmp etc.) But avast found also virus in the file C:\Windows\System32\drivers\ndis.sys and to C:\Windows\System32\dllcache\ndis.sys and C:\Windows\System32\oobe\msoobe.exe. I deleted these files and now I don't have Network Connections. I tried reinstalling my network adapter and I also followed some instructions in the topic: "Network connections and sound not working after malwarebytes" regarding the network and Internet Connection but nothing happened. I tried to copy the missing ndis.sys file from another computer but then I had BSOD.
I think that now I'm not infected by win32/heur, but now I don't have network and Internet.
I also have big problem with this Win32/heur virus. I restarted my PC and boot to Safe mode with Network.
I have read your UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions and I've done all the steps. Before doing that let me tell you that I had disabled System Restore.
I attached to this thread the logs that you require to help me get rid of this virus once and for all.
Some notes:
1. It is neccesary to scan my computer with Avast or Avira first? I scanned it with AVG.
2. After step 4 (Malwarebytes Scanning) I didn't need to restart my computer.
3. After step 5 (SUPERAntispyware Scanning) I restarted my computer.
4. When I restarted my computer from step 5 I opened the task manager and I noticed the following files running: reader_s.exe, 4.tmp, A.tmp and iexplore.exe without having opened it myself. And then I terminated them manually. Malwarebytes and SUPERAntispyware found those files and deleted them but after rebooting the computer they reappeared.
5. I could't install Java on safe mode (because of Administrator rights) so I rebooted in normal mode and installed it.
6. I rebooted again in Safe mode with network and run Hijackthis. And again I opened the task manager and I noticed some strange proccesses running and I terminated them manually: 8.tmp, iexplorer.exe (again without having opened it myself) and reader_s.exe
7. After all these steps I scanned my computer with avast antivirus (avast scanned before Windows loading) and found 9 files with virus. Some of them were these files I metioned above (8.tmp, 4.tmp etc.) But avast found also virus in the file C:\Windows\System32\drivers\ndis.sys and to C:\Windows\System32\dllcache\ndis.sys and C:\Windows\System32\oobe\msoobe.exe. I deleted these files and now I don't have Network Connections. I tried reinstalling my network adapter and I also followed some instructions in the topic: "Network connections and sound not working after malwarebytes" regarding the network and Internet Connection but nothing happened. I tried to copy the missing ndis.sys file from another computer but then I had BSOD.
I think that now I'm not infected by win32/heur, but now I don't have network and Internet.