also @ TechSpot: Microsoft's Indian online store hacked, passwords and user data exposed
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.

Go Back   TechSpot OpenBoards > Tech Support > Virus and Malware Removal

Collaborate in the cloud with Office, Exchange, SharePoint, and Lync

Solved:I have the Downloader-BEW virus, need help!

Page 2 of 2 1 2
Thread Tools Search this Thread
  #21  
Old 10-15-2007
Newcomer, in training
 
Member since: Oct 2007, 13 posts
Howard,

I believe the InCD BAK folder still being there may have been my mistake. After I uninstalled Nero and verified that I "could' start in Safe Mode, I never went in and removed the InCD BAK folder. I thought the uninstall would have done that, so I didn't! My mistake.

OK, there was no InCD.exe file, but I found the BAK directory and deleted it. Here's my awf.txt file.
Attached Files
File Type: txt awf.txt (569 Bytes, 2 views)
  #22  
Old 10-15-2007
TechSpot Evangelist
 
Member since: Aug 2004, 25,949 posts
That`s now clean.

Your HJT log also appears to be clean.

However, in the interests of safety, I`d like you to do the following in order to make sure you have no other nasties lurking on your system.

Go and read the Viruses/Spyware/Malware, preliminary removal instructions. Follow all the instructions exactly.

Post fresh HJT, [color=red]AVG Antispyware[/color] and Combofix logs as [color=blue]attachments[/color] into this thread, only after doing the above.

Also, let me know the results of the Panda Antirootkit scan.

Regards Howard

[color=red]This thread is for the use of[/color] lemkorusyn [color=red]only. [color=blue]Please don`t post your own virus/spyware problems in this thread. Instead, open a new thread in our[/color] security and the web forum.[/color]
  #23  
Old 10-16-2007
Newcomer, in training
 
Member since: Oct 2007, 13 posts
Howard,

Wow! That took quite some time, but I followed the instructions to the letter and have finally finished. I have attached the log files for HJT, AVG Antispyware, and Combofix. The results of the Panda Antirootkit scan showed ZERO rootkits found.

Let me know if there is anything else I need to do!

Michael
Attached Files
File Type: log hijackthis.log (12.1 KB, 1 views)
File Type: txt Report-Scan-20071016-003416.txt (688 Bytes, 1 views)
File Type: txt ComboFix.txt (11.0 KB, 1 views)
  #24  
Old 10-16-2007
TechSpot Evangelist
 
Member since: Aug 2004, 25,949 posts
Delete all files in AVG Antispyware quarantine.

Your log files are clean.

Turn off system restore.(XP/ME only) See how HERE.

Now, turn system restore back on. This will have deleted all your old restore points and any nasties that are in them. It will also have created a new, clean restore point.


If you have any further virus/spyware problems, please post in this thread.

Regards Howard

[color=red]This thread is for the use of[/color] lemkorusyn [color=red]only. [color=blue]Please don`t post your own virus/spyware problems in this thread. Instead, open a new thread in our[/color] security and the web forum.[/color]
  #25  
Old 10-16-2007
Newcomer, in training
 
Member since: Oct 2007, 13 posts
Howard,

I did as you said and turned off and back on the system restore feature. I also created a restore point that I could name myself so I have something to go back to if needed.

You have been a GREAT help to me! This is the most I've ever had to do to remove a virus from my machine. Quite frankly, I don't know how it got on my machine. My kids all swear they didn't download and install anything (who can be sure? ) I have McAfee AV and it's worked wonderfully for many years ... until this Downloader-BEW virus. If you have any information on how this virus might have gotten past my firewall + McAfee AV I'd love to know.

Michael
  #26  
Old 10-16-2007
TechSpot Evangelist
 
Member since: Aug 2004, 25,949 posts
I don`t know exactly how your system became infected, but I can guarantee it was due to user action.

Read this thread HERE for info on keeping your system more secure.

Regards Howard

This thread is now closed: If you need this thread unlocking, please pm a moderator with a link to the thread.

[color=red]Only the original thread starter can do this. Anyone else, will be ignored.[/color]
Closed Thread
Page 2 of 2 1 2

Similar Topics
Topic Replies Forum
Sagipsul Virus - Have solved some problems, but I need more help 4 Virus and Malware Removal
Js/downloader agent virus 1 Virus and Malware Removal
JS/Downloader Virus infection 30 Virus and Malware Removal
I have the Downloader-BEW virus, need help! Please 11 Virus and Malware Removal
Downloader.BEW - mostly solved - need logs reviewed 8 Virus and Malware Removal

Thread Tools Search this Thread
Search this Thread:

Advanced Search
All times are GMT -4. The time now is 03:57 PM.