Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.
|
|||||||
Step 8 of 8-step Removal Instructions
![]() |
|
|
|
Thread Tools |
|
#1
|
|||
|
|||
|
Step 8 of 8-step Removal Instructions
Hello,
I just wanted to check with you guys to make sure that I've successfully removed this virus from my computer. I did Step 1 with Symantec Antivirus. I couldn't find any monitoring programs in Step 3, so I did nothing. I ran CCleaner twice, as well as Malwarebytes twice. I've attached the logs as requested. Thanks a bunch! Last edited by kimsland; 01-06-2009 at 10:56 AM.. |
|
#2
|
||||
|
||||
|
Good Morning! We have a few thing to deal with. I would have like you to tell us what "this virus" was!
First, you have Vundo malware in the restore points. We will remove the old restore points when your system is clean. In the meantime, do NOT use System Restore. Quote:
Quote:
Start> Run> msconfig> enter> Selective Startup> Startup tan> UNCHECK any Viewpoint entries> Apply> OK Start> Run> services.msc> double click on the Viewpoint Service> change the Startup type to Disabled Control Panel> Add/Remove Programs> UNINSTALL Viewpoint entries. Reboot into Normal Mode. Ignore the nag entry and close it after checking 'don't show this message again.' Stay in Selective Startup. Please verify that the following entries are for your corporate network. I cannot identify the CLSID and the only URL I can get is: http://classifiedventures.com/ Quote:
Please download ComboFix.: http://www.bleepingcomputer.com/comb...o-use-combofix With ComboFix, at the download window, please rename it to Combo-Fix(.exe) before downloading it. Please disable all security programs, such as antiviruses, antispywares, and firewalls. Also disable your internet connection. Quote:
|
|
|
|
#3
|
|||
|
|||
|
Thanks bobbye! This post was for the Sagipsul virus- I had assumed that this 8-step guide was for that virus specifically, since that's how i found the guide- sorry! I've followed your instructions up to the Combofix part. Viewpoint Manager has been successfully removed from my computer- is the Combofix part still necessary? I understand that Combofix may be the tool that removes the bugs from the restores, so if it is still necessary, I'll do it.
Also, classifiedventures is my corporate url. I've attached a new hijackthis.log file after having followed the viewpoint manager removal instructions- please take a gander! Thanks again |
|
#4
|
||||
|
||||
|
Quote:
The HijackThis logs is clean and the O20 - AppInit_DLLs: dcngzx.dll did not reappear. However, it is not uncommon to have other malware files with a bad AppInit entry. I would be more comfortable of you ran either SDFix or ComboFix to make sure we haven't missed any of those files. Please download SDFix and follow the direction on Post #7 here: http://www.techspot.com/vb/topic115941.html 1. Download and Install SDFix * Download SDFix and save it to your Desktop. * Double click SDFix.exe and it will extract the files to %systemdrive% (Drive that contains the Windows Directory, typically C:\SDFix) 2. Boot into Safe Mode * Restart your computer and start pressing the F8 key on your keyboard. * Select the Safe Mode option when the Windows Advanced Options menu appears, and then press ENTER. 3. Run SDFix Quote:
|
![]() |
| Thread Tools | |
|
|
| Similar Topics | ||||
| Topic | Category | Replies | Last Post | |
| Followed 8 step Viruses/Spyware/Malware Preliminary Removal | Virus & Malware removal | 12 | 10-07-2009 11:39 PM | |
| Completed 8-step Removal Instructions | Virus & Malware removal | 6 | 01-10-2009 02:30 AM | |
| Followed 8 step Viruses/Spyware/Malware Preliminary Removal | Virus & Malware removal | 4 | 01-05-2009 07:54 PM | |
| Step 8 of the 8-step Viruses/Spyware/Malware Preliminary Removal Instructions | Virus & Malware removal | 1 | 10-09-2008 11:50 AM | |
| UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions | Virus & Malware removal | 2 | 09-11-2008 03:21 PM | |
All times are GMT -4. The time now is 07:23 PM.


