Sorry for the delay. I'm catching up now. As for this:
I'm running Windows XP Pro and my computer has become infected with malware.
Problems:
This doesn't tell us anything about what problems you're having that brings you to this conclusion. Often, the description helps us to know the best course to follow. There are several different malware infections showing in Mbam. Now we have to follow up and make sure all the entries get removed.
Multiple antivirus programs:You have both Avast and Symantec antivirus programs running. Also some indication of AVG. Please decided which you want to keep and remove the other. Multiple AV programs make the system more vulnerable. Tools to help
Norton Removal Tool
Avast Removal
Only download the tool for the program you
don't want to keep. Please reboot when finished.
The Restore points indicate this:
RP610: 6/18/2010 10:38:10 AM - Removed AVG 9.0
RP611: 6/18/2010 10:40:51 AM - Installed AVG 9.0
RP612: 6/18/2010 10:44:56 AM - avast! Free Antivirus Setup
Did you actually install Avast or just download it?
Run these programs:
After you have handled the multiple antivirus programs go ahead and run the following while I finsh checking the logs. I will need to write some script but you need to run Combofix first:
=================================
Please download ComboFix from Here[/b] and save to your Desktop.
[1]. Do NOT rename Combofix unless instructed.
[2].Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
[3].Close any open browsers.
[4]. Double click combofix.exe & follow the prompts to run.
- NOTE: Combofix will disconnect your machine from the Internet as soon as it starts. The connection is automatically restored before CF completes its run. If it does not, restart your computer to restore your connection.
[5]. If Combofix asks you to install Recovery Console, please allow it.
[6]. If Combofix asks you to update the program, always allow.
- Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
[7]. A report will be generated after the scan. Please post the C:\ComboFix.txt in next reply.
Note: Do not mouseclick combofix's window while it's running. That may cause it to stall.
Note: Make sure you re-enable your security programs, when you're done with Combofix..
==========================
Run Eset NOD32 Online AntiVirus Scanner HERE
- Tick the box next to YES, I accept the Terms of Use.
- Click Start
- When asked, allow the Active X control to install
- Disable your current Antivirus software. You can usually do this with its Notification Tray icon near the clock.
- Click Start
- Make sure that the option "Remove found threats" is Unchecked, and the option "Scan unwanted applications" is checked
- Click Scan
- Wait for the scan to finish
- Re-enable your Antivirus software.
- A logfile is created and located at C:\Program Files\EsetOnlineScanner\log.txt. Please include this on your post.
Questions:
1.
Is this your ISP?
IP 213.39.234.155:80
netname: ENERGY-NET
descr: Jazz Welle Plus Hamburg GmbH
descr: Winterhuder Markt 6 - 7
descr: D-22299 Hamburg
descr: Germany
country: DE
You have this set as the Internet Settings,ProxyServer = 213.39.234.155:80
But you also have an override to: Internet Settings,ProxyOverride = *.local
2.
Did you set the Search in Firefox for MyStart Search? This is bundled with Incredimail. I would suggest you use a more reliable and clean search engine. I can set that up in Firefox using the script if you want.
3.
Old Drivers: There are drivers and Services from 2000, 2001 and 2004. Have you ever gone through the system and uninstall programs you no longer use?