
02-24-2012 03:11 PM
Just like the other topic on here my TM AV hangs at DCT_FAKEAV. I have begun the process described in the other thread and this is the Combofix log. I am now working on the AVPTool. I am on Windows XP SP3 Home Edition.
Solved! Go to Solution.
02-24-2012 09:11 PM
Hi please avoid running combofix unless adviced.We dont need to avptool now.
Download aswmbr.exe ( 1.8mb ) to your desktop.
http://public.avast.com/~gmerek/aswMBR.htm
Double click the aswMBR.exe to run it Click the "Scan" button to start scan.

Click the [Scan] button to start scan

On completion of the scan click [Save log], save it to your desktop and post in your next reply.
02-24-2012 10:34 PM
Unfortunatly avptool has been running since I posted that 7 hours ago, It has three hours to go. Will do what you have posted once it has finished.It has already been running for 7 hours 9 minutes. I needed help ASAP and the other thread has exactly the same issue and no words in red saying not to do this step like some of the posts do, so I thought it was safe to at least get a head start.
02-24-2012 10:37 PM - edited 02-24-2012 10:37 PM
Just cancel AVP and continue with aswmbr
02-24-2012 10:40 PM
Ok AVP stopped Log coming up soon for aswmbr
02-24-2012 10:42 PM
As requested.
02-24-2012 10:42 PM - edited 02-24-2012 10:44 PM
I keep my eyes open for people seeking help so expect my replies in 5 minutes from your log unless i am offline.
02-24-2012 10:43 PM
Everything is fine in the log....
Please download Malwarebytes' Anti-Malware from Here
Double Click mbam-setup.exe to install the application.
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.
THEN
Download OTL to your Desktop.
http://www.geekstogo.com/forum/files/file/398-otl-
netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
consrv.dll
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\servic
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\servic
C:\Windows\assembly\tmp\U\*.* /s
CREATERESTOREPOINT
02-24-2012 10:48 PM
OTL Link doesnt work, gives me a oops google chrome cant find error... am doing the malwarebytes scan now
02-24-2012 10:49 PM
And:
Malwarebytes Anti-Malware (PRO) 1.60.1.1000
www.malwarebytes.org
Database version: v2012.02.24.04
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
user :: USER-635CB6885B [administrator]
Protection: Disabled
25/02/2012 5:47:32 PM
mbam-log-2012-02-25 (17-47-32).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 195401
Time elapsed: 3 minute(s), 54 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
Copyright (c) 1989-2012 Trend Micro Incorporated. All rights reserved.
