Another problem. It's been running for 1/2 an hour now and all it's said is
"Please wait.
Combo fix is preparing to run."
I read not to click on the window or it might stall and haven't.
When it has finished, dss will open two Notepads main.txt and extra.txt -- please copy (CTRL+A and then CTRL+C) and paste (CTRL+V) the contents of main.txt and extra.txt in your next reply.
Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)
Please then reboot your computer in Safe Mode by doing the following :
Restart your computer
After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
Instead of Windows loading as normal, the Advanced Options Menu should appear;
Select the first option, to run Windows in Safe Mode, then press Enter.
Choose your usual account.
Open the extracted SDFix folder and double click RunThis.bat to start the script.
Type Y to begin the cleanup process.
It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
Press any Key and it will restart the PC.
When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
(Report.txt will also be copied to Clipboard ready for posting back on the forum).
-----------------------------
Post back both logs after finished. Remember to ATTACH Extra.txt on the Deckards SS Log.
Another problem... the malware has made it so that notepad won't open. Actually it opens and stops responding and closes. I'll try running SD Fix and get back to you.
And another problem. Followed the instructions to run SD fix but all I saw was the script window appear and dissapear in a matter of 2 seconds. Had no option to type Y or anything else.
Nothing seems to work the way it should.
I am starting to think that we should just finalize this computer with a format/reinstall. The infection has gone into an astronomical amount of Windows Files. Let's try a few more things though .. I don't give up that easily
EDIT: Please download another ComboFix from the safe computer and boot into safe mode (Dont copy it over yet!). After doing so, rename it on the flash drive Combo-Fix.exe Then place the file on your Safe Mode desktop and try to run it again.