BleepingComputer.com: Ig0.Exe file keep wanting to download/open+Rookit.TDSS

Jump to content

Forum Guidelines

Posted Image Read the following topic before creating a new topic in this forum. It contains instructions on the what we would like you to post, which will enable us to help you more quickly.

Preparation Guide For Use Before Using Malware Removal Tools and Requesting Help


Posted Image Unfortunately, with the amount of logs we receive per day, the average response time is 5 days. I want to assure you, though, that your topic will be looked at and responded to. So please be patient.


Posted Image DO NOT RUN ComboFix unless requested to.


Posted Image Only members of the Malware Response Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


Posted Image When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Posted Image Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
  • 3 Pages +
  • 1
  • 2
  • 3
  • You cannot start a new topic
  • This topic is locked

Ig0.Exe file keep wanting to download/open+Rookit.TDSS Don't know how to remove it

#31 User is offline   fuzzybunnie 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 20
  • Joined: 07-June 11
  • Gender:Female
  • Location:London, UK

Posted 27 June 2011 - 06:50 AM

OTL Log

========== COMMANDS ==========


OTL by OldTimer - Version 3.2.24.1 log created on 06262011_181451

My husband said it might be worth mentioning that on Thursday, one of my email accounts sent a spam email to all of my contacts... In the email, it said that I had bought an ipad from this link and how great it was, etc! My mom actually believed it, have no idea if she clicked the link... don't know if that has anything to do with the malware/trojan we removed...

Other than that, I did the Combofix uninstall, and have looked + downloaded some of the things you have recommended :)

This post has been edited by fuzzybunnie: 27 June 2011 - 06:51 AM


#32 User is offline   SweetTech 

  • Agent ST
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 12,662
  • Joined: 15-March 09
  • Gender:Male
  • Location:Antarctica

Posted 27 June 2011 - 09:10 AM

Hi!

Please visit this link here: http://www.bleepingcomputer.com/tutorials/windows-vista-system-restore-guide/

Follow the instructions for disabling system restore, and then follow the instructions for enabling system restore.

This will flush out all your old restore points, and then when you turn it back on it will create a new one.

Please do the above, and post back confirming you've done such.
Have I helped you? If you'd like to assist in the fight against malware, click here Posted Image


The instructions seen in this post have been specifically tailored to this user and the issues they are experiencing with their computer. If you think you have a similar problem, please first read this topic, and then begin your own, new thread. I do not offer private support via Private Message.

#33 User is offline   fuzzybunnie 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 20
  • Joined: 07-June 11
  • Gender:Female
  • Location:London, UK

Posted 27 June 2011 - 09:45 AM

Ok, disabled, then enabled it... not restarted the computer...

#34 User is offline   SweetTech 

  • Agent ST
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 12,662
  • Joined: 15-March 09
  • Gender:Male
  • Location:Antarctica

Posted 27 June 2011 - 09:52 AM

You did or didn't restart the computer?
Have I helped you? If you'd like to assist in the fight against malware, click here Posted Image


The instructions seen in this post have been specifically tailored to this user and the issues they are experiencing with their computer. If you think you have a similar problem, please first read this topic, and then begin your own, new thread. I do not offer private support via Private Message.

#35 User is offline   fuzzybunnie 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 20
  • Joined: 07-June 11
  • Gender:Female
  • Location:London, UK

Posted 27 June 2011 - 09:57 AM

Did not - wasn't sure if I should yet?

#36 User is offline   SweetTech 

  • Agent ST
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 12,662
  • Joined: 15-March 09
  • Gender:Male
  • Location:Antarctica

Posted 27 June 2011 - 10:02 AM

Yeah, you can go ahead and do that now
Have I helped you? If you'd like to assist in the fight against malware, click here Posted Image


The instructions seen in this post have been specifically tailored to this user and the issues they are experiencing with their computer. If you think you have a similar problem, please first read this topic, and then begin your own, new thread. I do not offer private support via Private Message.

#37 User is offline   fuzzybunnie 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 20
  • Joined: 07-June 11
  • Gender:Female
  • Location:London, UK

Posted 27 June 2011 - 10:55 AM

Ok, have restarted computer! (had lunch)

#38 User is offline   SweetTech 

  • Agent ST
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 12,662
  • Joined: 15-March 09
  • Gender:Male
  • Location:Antarctica

Posted 27 June 2011 - 11:06 AM

You should be good to go now. :)
Have I helped you? If you'd like to assist in the fight against malware, click here Posted Image


The instructions seen in this post have been specifically tailored to this user and the issues they are experiencing with their computer. If you think you have a similar problem, please first read this topic, and then begin your own, new thread. I do not offer private support via Private Message.

#39 User is offline   fuzzybunnie 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 20
  • Joined: 07-June 11
  • Gender:Female
  • Location:London, UK

Posted 27 June 2011 - 11:09 AM

Yay! Hopefully I won't run in to any more trojans, etc :/

Thank You So Much for your help! I still don't feel entirely secure, but I'm sure it's normal to feel that way when their computer has been infected!

I donated, to help with the 'malware cause'! :)

#40 User is offline   SweetTech 

  • Agent ST
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 12,662
  • Joined: 15-March 09
  • Gender:Male
  • Location:Antarctica

Posted 27 June 2011 - 11:17 AM

You're more than welcome! I'm glad that we were able to work together to solve the issues you were experiencing with your computer.

Quote

I donated, to help with the 'malware cause'!
Thank you very much. :)

Please take care!

Kindest Regards,
SweetTech.

____________________________________________________

Since it appears that the issues you were experiencing with your computer have been resolved, I am going to close this thread. If you should need the thread re-opened please send me a Private Message (PM) with a request to re-open the thread, as well as the link to the thread in question, and I'd be happy to re-open the thread.

Have I helped you? If you'd like to assist in the fight against malware, click here Posted Image


The instructions seen in this post have been specifically tailored to this user and the issues they are experiencing with their computer. If you think you have a similar problem, please first read this topic, and then begin your own, new thread. I do not offer private support via Private Message.

Share this topic:


  • 3 Pages +
  • 1
  • 2
  • 3
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users