I would appreciate some help with viruses

Status
Not open for further replies.
I seem to be plagued by viruses at the momment which i can not seem to kill permanantly could someone help, I have had Trojan.Pakes, BGates dialer trojan, iworm_attck_v122.02, dialer kotu and downloaders on my main computer and on my laptop. I have Norton on my system and ewido and have tried SmitFraudFix along with those programs, but it has not managed to permanently clear up the blighters. I am going to tackle the computers one at a time and would appreciate some help from some bright sparks. Please help. :giddy:
 
Hello and welcome to Techspot.

That`s not a full HJT log.

Go HERE and follow the instructions exactly.

Post a fresh HJT log into this thread, only after doing the above.

Regards Howard :wave: :wave:
 
it came back

I followed the link and followed the instructions as best as i could but a trojan virus returned, please could you help
 
Download the Pocket killbox programme from HERE. Extract it, but don`t run it yet.

You might want to copy and paste these instructions into a notepad file. Then you can have the file open in safe mode, so you can follow the instructions easier.


Boot into safe mode, under your normal user name. See how HERE. http://www.bleepingcomputer.com/forums/tutorial61.html

Turn off system restore.(XP/ME only) See how HERE. http://www.bleepingcomputer.com/forums/tutorial56.html

In Windows Explorer, turn on "Show all files and folders, including hidden and system". See how HERE. http://www.bleepingcomputer.com/forums/tutorial62.html

Run HJT with no other programmes open(except notepad).Click the scan button. Have HJT fix the following, by placing a tick in the little box next to(if there).

O20 - Winlogon Notify: wineil32 - C:\WINDOWS\SYSTEM32\wineil32.dll

Click on the fix checked button.

Close HJT.

Run the killbox.exe file. When it loads type the full path to the file you would like to delete in the field and check the delete file on reboot button. press the Delete File button (looks like a red circle with a white X). It will prompt you to reboot, select no until you have finished inputting the files you want to delete, only then allow it to reboot and hopefully your files will now be deleted.

This is the filepath you need to enter into killbox.

C:\WINDOWS\SYSTEM32\wineil32.dll

Once your system has rebooted, turn system restore back on.

Run HJT again and fix the O20 - Winlogon Notify: wineil32 - C:\WINDOWS\SYSTEM32\wineil32.dll
entry, which should now say file missing.

Regards Howard :)
 
Status
Not open for further replies.
Back