Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.
|
|||||||
Download Now:
8 step removal process followed, attached are logs
|
|
Thread Tools | Search this Thread |
|
#1
|
|||
|
|||
|
8 step removal process followed, attached are logs
computer had antivirus system pro, i followed the 8 step removal, here are the logs
cannot open task manager via ctrl+alt+del or rightclick startbar > task manager, btw. Last edited by amaboo; 12-02-2009 at 02:00 AM.. |
|
#2
|
||||
|
||||
|
Looks like the tons of malware has done its damage... You will need to run some additional scans
|
|
#3
|
||||
|
||||
|
amaboo, why did you start another thread on the same problem 2 hours later? I made comment on that thread to ignore as help is being given here.http://www.techspot.com/vb/topic138981.html
And whenever you leave new HijackLogs, please be sure to include the heading such as: Quote:
[/B] Symantec Avira[/b] [B]
Norton Removal Tool OR Try this:
It's important to always have an updated and active anti-virus program on-board, however, so make sure you have another program downloaded before you uninstall Avira. Click on Start> Control Panel> Add/Remove Programs> highlight either Symantec/Norton entries- OR Aviira entry Last edited by Bobbye; 12-05-2009 at 12:50 PM.. Reason: cat on the keyboard |
|
#4
|
||||
|
||||
|
amaboo, what did you start another thread on the same problem 2 hours later? I made comment on that thread to ignore as help is being given here.http://www.techspot.com/vb/topic138981.html
And whenever you leave new HijackLog, please be sure to include the heading such as: Quote:
Symantec Avira
Norton Removal Tool OR Try this:
It's important to always have an updated and active anti-virus program on-board, however, so make sure you have another program downloaded before you uninstall Avira. Click on Start> Control Panel> Add/Remove Programs> highlight either Symantec/Norton entries- OR Aviira Entries Try this: * Open My Computer * Select the C:/ * Click Program Files * Click the AntiVir folder * Look for the uninstall icon, it may be in another folder called Avira. It's important to always have an updated and active anti-virus program on-board, however, so make sure you have another program downloaded before you uninstall Avira. Last edited by Bobbye; 12-05-2009 at 12:52 PM.. Reason: spell check, tags |
|
#5
|
|||
|
|||
|
i uninstalled antivir, and it seems to me that the virus came back? i was on firefox with my laptop and then i got a popup saying system security will perform a quick and free scan. what should i do?
|
|
|
|
#6
|
||||
|
||||
|
Oh good grief- I hope you could make sense out of my last reply. I just made mega corrections. Cat "pawed" the post button before I could run spell check and tags. So sorry!
Quote:
Run Eset NOD32 Online AntiVirus Scanner HERE Note: You will need to use Internet Explorer for this scan.
|
|
#7
|
|||
|
|||
|
it didn't save a log, but it said no threats found o-o
|
|
#8
|
||||
|
||||
|
What problems are you having related to the malware?
|
|
#9
|
|||
|
|||
|
sorry, took a while. i thought the virus was gone, but i guess not. i'm suspecting multiple viruses. running scans right now.
random pop-ups, windows defender was turned off apparently, a pop-up that said test came popping up and this debugger thing kept popping up. i don't know what's up with that laptop :[ my systematic kept telling me that virus was found and some were deleted, and some weren't. i'm really not sure what's wrong with that computer. please help ;-; |
|
#10
|
||||
|
||||
|
Okay, the scan are now a week old. If you want to attempt this again, you will need to run the initial programs again HERE.
Leave the 3 logs in your next reply. If I ask you to run something and ask for the log, you must give me the log. You're telling me: Quote:
|
|
#11
|
|||
|
|||
|
okay, systematic is my systematic antivirus. sorry about that. here are the logs.
and this is what i get from my antivirus: Scan type: Auto-Protect Scan Event: Threat Found! Threat: Trojan.Zbot!gen3 File: C:\WINDOWS\TEMP\noxr.tmp\svchost.exe Location: C:\WINDOWS\TEMP\noxr.tmp Computer: MYHPPAVILION User: SYSTEM Action taken: Clean failed : Quarantine failed : Delete succeeded : Access denied Date found: Monday, December 14, 2009 7:57:59 PM |
|
#12
|
||||
|
||||
|
For your understanding and in case you need to do a search for it, your antivirus programs is from Symantec, not systamatic. In the world of cyberspace and malware, it is very important that names and messages be correct.
If we start this again, you will need to finish the cleaning- stopping, then restarting a week later is not the way to go. The AV shows the malware in your tmp files. We will clean those. It is also in the restore points, so please do not use the System restore feature while we are cleaning.Please do this first: TFC (Temp File Cleaner) Download TFC to your desktop
TFC (Temp File Cleaner) will clear out all temp folders for all user accounts (temp, IE temp, java, FF, Opera, Chrome, Safari), including Administrator, All Users, LocalService, NetworkService, and any other accounts in the user folder. Please reopen HijackThis to 'do system scan only.' Check the following if present: (Entries in Green are Optional Removals) C:\Program Files\Viewpoint\Common\ViewpointService.exeSee Optional 1 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = O20 - AppInit_DLLs: hilavabi.dll c:\windows\system32\zazanezo.dll 023 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe See Optional 1 Optional 1 Description: Foistware> Viewpoint:You have Viewpoint Media Player installed on your system. This program is not malware but it is foistware in that it is usually installed without the user's knowledge or approval, and for this reason I recommend you remove it. If you actually use this program, I recommend you try using safe and free alternatives such as VLC Media Player: Close all Windows except HijackThis and click on "Fix Checked." If you have decided to remove Viewpoint, do the following when HJT has finished: To remove, find and remove Viewpoint Media Player Boot into Safe Mode
Finally, delete the following folders if they still exist: Open Windows Explorer> Programs: C:\Program Files\ViewManager\ <-- and delete this folder C:\Program Files\Viewpoint\ <-- and delete this folder Empty the Recycle Bin Then Download SDFix HERE and save it to your Desktop.
Follow with Run Eset NOD32 Online AntiVirus Scanner HERE Note: You will need to use Internet Explorer for this scan.
Inclide the following in your next reply: 1. SDFix report 2. Eset online scan log 3. New HJT log. |
|
#13
|
|||
|
|||
|
i have another problem now... when i reboot, i get the blue screen of death. when i tried safemode, i would get it. now, when i try rebooting normally, i get it too. it's going in a circle. i don't know what to do ;\
|
|
#14
|
||||
|
||||
|
What had you done before the BSOD started? What message is with it?
|
![]() |
| Similar Topics | ||||
| Topic | Replies | Forum | ||
8 step process followed and got reinfested - logs attached
|
20 | Virus and Malware Removal | ||
8 step process completed, logs attached
|
13 | Virus and Malware Removal | ||
8 step process followed. Logs attached, help
|
8 | Virus and Malware Removal | ||
Scan logs for 8-step removal process
|
4 | Virus and Malware Removal | ||
I am uploading my logs for the 8 step removal process
|
16 | Virus and Malware Removal | ||
| Thread Tools | Search this Thread |
|
|
All times are GMT -4. The time now is 02:39 PM.



8 step process followed and got reinfested - logs attached