Skip to content


Reply
Legendary Emissary
malwarekiller
Posts: 3,936
Registered: ‎08-08-2011

Re: Scan is finding nothing... Something is wrong

Hi please cacel the avp scan...i will run the big boys.

 

Download ComboFix from the any of the locations given in this website:

    • IMPORTANT !!! You need to Save ComboFix.exe to your Desktop
      • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you are still unsure on how to do this, see here
      • Double click on ComboFix.exe & follow the prompts.
      • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
      • If you already have the Recovery Console preinstalled, it will not ask for the following. If it does prompt, allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.


      **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

      Posted Image

      Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

      Posted Image

      Click Yes, to continue scanning for malware. Please be patient and don't use the PC whilst it is scanning.

      When finished, it shall produce a log for you. Please copy & paste the contents of this log (also found at C:\ComboFix.txt) in your next reply at your topic.
      NEXT

      Download aswmbr.exe ( 1.8mb ) to your desktop. 

      http://public.avast.com/~gmerek/aswMBR.htm
       Double click the aswMBR.exe to run it  Click the "Scan" button to start scan.

      • Click the [Scan] button to start scan

      • On completion of the scan click [Save log], save it to your desktop and post in your next reply.

 

—————
Was this post helpful? Say “thanks” by giving me a “Kudo”!
Was your question answered or issue solved? Mark that post as an “Accepted Solution”!
Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

ok AVP canceled.. onto the next set of tasks..

Thanks again for all the help with this!

Please use plain text.
Legendary Emissary
malwarekiller
Posts: 3,936
Registered: ‎08-08-2011

Re: Scan is finding nothing... Something is wrong

No problem!

 

I am online now.

—————
Was this post helpful? Say “thanks” by giving me a “Kudo”!
Was your question answered or issue solved? Mark that post as an “Accepted Solution”!
Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

Combofix found Rootkit.ZeroAccess! in my tcp/ip stack

 

On to the next task

Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

[ Edited ]

aswMBR Scan Results

 

It did find a trojan - I've deleted the file

Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

Please go here:

C:\WINDOWS\System32\nlssrv32.exe

 

Upload this file here:

www.virustotal.com

 

Tell me if it gets detected my any scanners....  this file is clean

Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

I tried the OTL fix you suggested on page 2 and my computer locked up

lost my entire desktop.

 

I cold booted and it's fine so I'm not sure the fix took..

 

But I'm getting slammed by internet web threats... Anyway to stop this?

Please use plain text.
Legendary Emissary
malwarekiller
Posts: 3,936
Registered: ‎08-08-2011

Re: Scan is finding nothing... Something is wrong

[ Edited ]

Hi..i think combofix failed in curing rootkit zaccess...Re-run aswmbr and if the trojan is detected press fix button once the scan completes and the OTL fix did work...as OTL kills explorer before the fix thats the reason u lost your desktop.

 

Download the latest version of TDSSKiller from here and save it to your Desktop.
download link:http://support.kaspersky.com/viruses/utility

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image

  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    Posted Image

  • Click the Start Scan button.

    Posted Image

  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image

  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

    Posted Image

  • Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.If TDLFS File system is found it can be deleted.

A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.

 

NEXT

 

  • Download RogueKiller and save it on your desktop.  
  •     Quit all programs 
  •     Start RogueKiller.exe.  
  •     Wait until Prescan has finished ... 
  •     Click on Scan

  
   

  • Wait for the end of the scan.   
  •     The report has been created on the desktop.   
  •     Click on the Delete button.

  
   

  • The report has been created on the desktop.
  • Next click on the ShortcutsFix  
      
      
  • The report has been created on the desktop.

Please post:  
  
All RKreport.txt text files located on your desktop

—————
Was this post helpful? Say “thanks” by giving me a “Kudo”!
Was your question answered or issue solved? Mark that post as an “Accepted Solution”!
Please use plain text.
Stone Emissary
lorimckay
Posts: 44
Registered: ‎01-19-2012

Re: Scan is finding nothing... Something is wrong

Should I rerun that OTL fix? I gave it about 5 min and when the screen didn't come back up I cold booted.

 

Also is someone keeping a list of stores launching attacks? I know now who stole my credit card info

the first time... I knew it was one of the web stores I went to but now I know who.

Please use plain text.
Legendary Emissary
malwarekiller
Posts: 3,936
Registered: ‎08-08-2011

Re: Scan is finding nothing... Something is wrong

[ Edited ]

Hi.

 

No need to re-run OTL fix...Just follow my instructions.

—————
Was this post helpful? Say “thanks” by giving me a “Kudo”!
Was your question answered or issue solved? Mark that post as an “Accepted Solution”!
Please use plain text.