|
#1
|
|||
|
|||
|
Trojans/helper.dll/helper.sig
Ok, so in the last few days when I start my machine or restart it a window pops up. C:\Program Files\Common In the window are Helper.dll, Helper.sig, _helper.dll and _helpre.sig. Ive run Ad-Aware full scan as well as SuperantiSpyware and so far the only file other than spyware that has been deleted is _helper.dll. Im still going through the steps that are advised in UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions
Any help would be appreciated Dave Last edited by PsychoDave; 08-20-2008 at 09:33 PM.. |
|
#2
|
|||
|
|||
|
Ok, ive stopped on step 9. I downloaded CCleaner and ticked all the boxes but got tones of warning messages upon doing so...now im not so sure I want to run that. Will not ticking every box leave a possibility of missing some sort of spyware/malware/virus?
|
|
|
|
#3
|
|||
|
|||
|
I ended up running the CCleaner a few times untill 0 files were found and deleted...
Last edited by PsychoDave; 08-20-2008 at 09:34 PM.. |
|
#4
|
|||
|
|||
|
Ran Panda Antirootkit programme, no rootkits found
|
|
#5
|
||||
|
||||
|
once you finish post the 3 logs here
hijackthis SAS or MBAM ComboFix |
|
#6
|
|||
|
|||
|
Here is the HJT Log, SAS and ComboFix to follow
|
|
#7
|
||||
|
||||
|
Post a fresh hijackthis log after you have ran SAS and ComboFix
|
|
#8
|
|||
|
|||
|
Just ran ComboFix and reran SAS...here are the logs
Rerunning HJT now... |
|
#10
|
||||
|
||||
|
* Click here to download FindAWF.exe and save it to your desktop.
|
|
#11
|
|||
|
|||
|
heres the AWF log file...
|
|
#12
|
||||
|
||||
|
post a fresh hijackthis log
|
|
#13
|
|||
|
|||
|
fresh HJT log as of 9:55pm 8/21
|
|
#14
|
|||
|
|||
|
any verdict?
|
|
#15
|
||||
|
||||
|
Right click Here and select Save As to download WinHelp2002's DelDomains.inf. Please save the file somewhere you can find it like on the desktop. To run the inf file, right click on it and select Install.
================================================= Now run hijackthis and place a check next to the items below then click on fix items then exit hijackthis and reboot. O15 - Trusted Zone: *.whataboutadog.com O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab3.cab O16 - DPF: {C915801D-6F00-49CD-8A9A-8DE5C11ADDC1} (Pixami Drag/Drop Upload UI Control) - http://www.photoworks.com/pixami/DragDropUploader.cab O16 - DPF: {F229AB32-7BF9-4225-B78F-B4680AE6FC23} (Snapfish File Upload ActiveX Control) - http://www.snapfish.com/SnapfishUpload.cab ==================================== Please run an on-line virus scan at http://www.kaspersky.com/virusscanne...can</font></b> or if that doesnt work, you can use TrendMicro or BitDefender. (Please make sure to post the results of the scan(s) in your next reply) |
|
#16
|
|||
|
|||
|
Dave if you resolve it can you let me know the steps. I have the exact same problem as you. My computer keeps restarting also.
|
|
#17
|
|||
|
|||
|
here is the new HJT Log
The virus scan detected and deleted a bunch of infected files but for some reason the log didnt save... There were a ton of Trojans and some worms |
|
#18
|
||||
|
||||
|
Download & Install SDFix
Boot into Safe Mode
Run SDFix
|
|
#19
|
|||
|
|||
|
Ok, I ran SDFix, here is the report...not sure what it says but after rebooting and finishing the Common folder opened and still has the helper.dll, helper.sig and _helper.sig files
![]() |
|
#20
|
||||
|
||||
|
ComboFix
Go to Microsoft's website => http://support.microsoft.com/kb/310994 Select the download that's appropriate for your Operating System ![]() Download the file**& save it as it's originally named, next to ComboFix.exe. ![]() Now close all open windows and programs, including all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
Please post the C:\ComboFix.txt along with a new HijackThis log for further review. Caution - do not touch your mouse/keyboard until the scan has completed. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop. Combofix is a very powerful tool so please do NOT do anything without instruction |
![]() |
| Thread Tools | |
|
|
| Similar Topics | ||||
| Topic | Category | Replies | Last Post | |
| Please help me. I have 2 trojans :( | Virus & Malware removal | 6 | 05-15-2007 05:00 PM | |
| Trojans! | Virus & Malware removal | 3 | 04-03-2007 03:22 PM | |
| IM trojans on net ... | Virus & Malware removal | 8 | 02-13-2007 09:42 PM | |
| Trojans R Us atm lol | Virus & Malware removal | 9 | 10-23-2006 06:32 PM | |
| A BHO ( Browser helper object) | Virus & Malware removal | 2 | 10-23-2006 07:48 AM | |
All times are GMT -4. The time now is 09:40 PM.





