Log, please help

Status
Not open for further replies.
Incident Status Location

Adware:adware/alwaysupdatednewsNo disinfected C:\WINDOWS\SYSTEM32\Free LapTop Computer.ico
Adware:adware/ncase No disinfected C:\WINDOWS\SYSTEM32\saie_kyf.dat
Adware:adware/portalscan No disinfected C:\WINDOWS\SYSTEM32\winupdt.bin
Adware:adware/fizzle No disinfected C:\PROGRAM FILES\FwBarTemp
Adware:adware/ilookup No disinfected C:\WINDOWS\SYSTEM32\cache32_dsktptr
Adware:adware/savenow No disinfected C:\WINDOWS\SYSTEM32\wsxsvc
Adware:adware/elitebar No disinfected C:\Documents and Settings\Owner\Favorites\Finances & Business
Adware:adware/sidesearch No disinfected C:\Documents and Settings\Owner\Application Data\Lycos
Spyware:spyware/omi No disinfected Windows Registry
Adware:Adware/Thecoolbar No disinfected C:\Program Files\FwBarTemp\cohelper.exe
 
Getting closer.....

Reboot into safe mode..

Delete the following files/folders..

C:\WINDOWS\SYSTEM32\Free LapTop Computer.ico <--file

C:\WINDOWS\SYSTEM32\saie_kyf.dat <--file

C:\WINDOWS\SYSTEM32\winupdt.bin <---file

C:\PROGRAM FILES\FwBarTemp <--folder

C:\WINDOWS\SYSTEM32\cache32_dsktptr <--folder

C:\WINDOWS\SYSTEM32\wsxsvc <---folder

C:\Documents and Settings\Owner\Favorites\Finances & Business <--folder

C:\Documents and Settings\Owner\Application Data\Lycos <--folder

Run the Cleanup utility again and reboot/logoff when prompted.

Then post another Panda log.
 
Incident Status Location

Adware:adware/alwaysupdatednewsNo disinfected C:\WINDOWS\system32\NBA Giveaway.ico
*I just went ahead and took care of it. Is that all?
 
Yup.....

Well done. Your logs are clean. Any more issues? If not you should be good to go. We still have a few more items to address so please follow the instructions below.


Reset hidden/system files and folders

Windows XP
===============

  • Click Start.
  • Open My Computer.
  • Select the Tools menu and click Folder Options.
  • Select the View tab.
  • Deselect the Show hidden files and folders option.
  • Select the Hide file extensions for known types option.
  • Select the Hide protected operating system files option.
  • Click Yes to confirm.
  • Click OK.

Windows 2000
===============

  • Open My Computer.
  • Select the Tools menu and click Folder Options.
  • Select the View tab.
  • Select the Advanced settings box option.
  • Select the Hidden files Folders.
  • Deselect the Show all files option.
  • Click Yes to confirm.
  • Click OK.

Windows ME
===============

  • Open My Computer.
  • Select the Tools menu and click Folder Options.
  • Select the View tab.
  • Deselect the Show hidden files and folders option.
  • Select the Hide protected operating system files option.
  • Click Yes to confirm.
  • Click OK.

Windows 95/98/98SE
===============

  • Open My Computer.
  • Select the View
  • Select the Folder Options option.
  • Select the View tab. option.
  • Select the Advance Advanced settings box option.
  • Select the Hidden files folder.
  • Deselect the Show all files option
  • Click Apply to confirm.
  • Click OK.



Create a new System Restore point

Windows XP
===============

  • Click Start >> Run - type SYSDM.CPL & press Enter
  • Select the System Restore Tab
  • Tick on the checkbox - "Turn off System Restore on all drives"
  • Click Apply
  • Then untick the same checkbox & click OK
  • This deletes ALL restore points that had the infection and creates a clean one

Windows ME
===============

  • Click the Start tab.
  • Select the Settings option.
  • Select the Control Panel option.
  • Double Click the System icon Performance tab option.
  • Select File System
  • Select the Troubleshooting tab
  • Check the Disable System Restore box
  • Click Apply to confirm.
  • Click OK.

Reboot the PC and repeat the above procedure again
When you get to this option
  • Uncheck the Disable System Restore box

For Windows ME..we MUST create a new restore point now as Windows ME will not create one automatically until the computer has been on for 10 hours or 24 hours has passed. To create a new restore point follow the procedure below.

  • Click the Start button.
  • Point to Programs, point to Accessories, point to System Tools, and then click System Restore.
  • Choose Create a restore point, and then click Next.
  • In the Restore point description box, type a name for your restore point, and then click Next.
    Click OK



Enable Windows Auto Update
  • Go to Start>Run - type wuaucpl.cpl
  • Tick on the checkbox - "Keep my computer up to date"
  • Under settings, choose "Automatically download the updates, and install them on the schedule that I specify".
  • Click on "OK".

Please visit Microsoft's Window's Update Page and install the latest service packs, patchÂ’s and security updates for your system.


Recommended Protection Programs

Now that you are clean, to help protect your computer in the future I recommend that you get the following free programs:
  • SpywareBlaster to help prevent spyware from installing in the first place.
  • SpywareGuard to catch and block spyware before it can execute.
  • IESpy-Ad to block access to malicious websites so you cannot be redirected to them from an infected site or email.
  • WinPatrol to monitor any changes that programs make to the registry.

If you do not have a firewall, here are 4 free ones available for personal use:


In todayÂ’s world you MUST have an Antivirus program. If you do not have one, here are 3 FREE ones available for personal use:




In light of your recent issue, I'm sure you'll like to avoid any future infections. Please take a look at these well written articles
Please stay safe out there and take the helpful advice thatÂ’s been given. The goal here is to prevent the adware/spyware/virus/worms from getting on the system in the first place.
 
First off, thank you very very much for all your help! Secondly, I have MaCafee for a anti-virus program, which beats the ehck out of Norton (my old one) in my opinion...but is it good enough?

* On a side note, its obvious you deal with this stuff for a living, I assume? May I ask what you do and how you went about it? Im a college freshmen considering computers as a career...
 
McAfee is ok to use. Norton is such a resource hog. Personally I use AVG and haven't been infected in years. Actually....I do this on the side. I work for a Celluar phone company and just picked up the spyware removal stuff in my off time.

If you just want to learn how to read hijackthis logs and remove adware/spware there's a few academys online to teach you. We have one over at my home forum..

http://www.techsupportforum.com/showthread.php?t=29797

There's also a few others out there...

http://www.geekstogo.com/forum/index.php
http://forums.spywareinfo.com/index.php?
 
Status
Not open for further replies.
Back
Top Bottom