Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.
MalwareByte's Anti-Malware Download

> Forum Guidelines

Read this topic before posting a log.


DO NOT post a ComboFix log unless requested to.


Only members of the HijackThis Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.

 
Closed TopicStart new topic
> Cannot run HiJackThis, spybot, adaware, Malwarebytes., Red circle with white cross with "your computer is infected" p
BigBillyk
post Nov 23 2008, 02:07 AM
Post #1


New Member
*

Group: Members
Posts: 2
Joined: 22-November 08
Member No.: 259,635



This notebook had antiviruspro2009 running.
I found this and removed.

I still have a red circle with white cross in the task bar that pop ups spyware detection messages.

I have tried to install all the above software with no luck! (I have also looked for Spyaxe and spyfalcon and found nothing)

If I double click the install of any of these programs nothing happens. The HDD buzzs for a moment and the popup appears telling me there is an infection again.

The browser also appears to be hijacked. Clicking the link from the search results of a google search, you are directed to anti virus or spyware sites.

Attached is the results of a month scan of the Random/random program. I hope it has some clues as to what is going on!

Thanks for your time!

Regards,

Attached File(s)
Attached File  RIST_LOG.txt ( 17.45k ) Number of downloads: 4
 
Go to the top of the page
 
+Quote Post
sundavis
post Dec 6 2008, 04:48 PM
Post #2


Forum Addict
******

Group: HJT Team
Posts: 1,544
Joined: 11-August 07
Member No.: 149,370



Hi,

Welcome to BleepingComputer HijackThis Logs and Malware Removal,BigBillyk. welcome.gif
My name is sundavis, I will be helping you to deal with your Malware problems today.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times. and we are trying our best to keep up.
If you have since resolved the original problem you were having, we would appreciate you letting us know. If not, then please do the following.
The log you presented had been a few days away. It may not show what it is. In the meantime, please refrain from making any changes to your computer. and please do in the following:

Please go to Here and Download System Repair Engine by smallfrogs

  1. Extract it to Desktop & double click SREng.exe to run it
  2. Select 'Smart Scan' & tick "Verify the digital signature of process modules"
  3. Click on the Scan button
  4. Before scanning the computer, Close all browsers and other programs except SREng.
  5. When finished, click on the Save Reports button & save the log to Desktop
  6. If you're experiencing the problem to run SREng, please right click SREng.exe, rename it to abc.com and rerun it.
You can refer to this thread for your reference.

In your next reply, please post back SREng log. Thanks
Go to the top of the page
 
+Quote Post
BigBillyk
post Dec 6 2008, 11:26 PM
Post #3


New Member
*

Group: Members
Posts: 2
Joined: 22-November 08
Member No.: 259,635



Hello Sundavis,

Thanks for getting back to me on this. I have sorted the problem out already!
I read many other forum posts on this site and found a suggestion to re-name the SD-Fix that I couldn't install. (Or any other malware software)

This did work and let me finally run some tools. (Many times)

It looks like the red-circle pop-up messages were coming from a rootkit. SD-Fix, anti-malware, adaware, avg and house-call with trend. Finally looks like it is gone!

Thanks again for your time,

Bigbillyk
Go to the top of the page
 
+Quote Post
sundavis
post Dec 7 2008, 12:02 AM
Post #4


Forum Addict
******

Group: HJT Team
Posts: 1,544
Joined: 11-August 07
Member No.: 149,370



Thanks for your feedback. Good luck!! smile.gif
Go to the top of the page
 
+Quote Post
Carolyn
post Dec 20 2008, 03:17 PM
Post #5


Bleepin' kitten
******

Group: HJT Team Coach
Posts: 2,046
Joined: 12-July 07
Member No.: 143,177



This thread will now be closed.
If you need this topic reopened, please contact a member of the HJT Team and we will reopen it for you.
Include the address of this thread in your request.
If you should have a new issue, please start a new topic.
This applies only to the original topic starter.
Everyone else please begin a New Topic.


--------------------
Member of ASAP (Alliance of Security Analysis Professionals)
Go to the top of the page
 
+Quote Post

Closed TopicStart new topic
2 User(s) are reading this topic (2 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 21st November 2009 - 07:38 PM


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides

© 2003-2009 All Rights Reserved Bleeping Computer LLC.