BleepingComputer.com: Help with Virus/worm blocking anti virus and microsoft

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
  • 3 Pages +
  • 1
  • 2
  • 3
  • You cannot start a new topic
  • You cannot reply to this topic

Help with Virus/worm blocking anti virus and microsoft Please help

#1 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 09:35 AM

I have an XP pro laptop that gets alot of use sometime ago it stopped accessing Microsoft sites and i have been having issues with other software. So I have decided i need to try and fix it and am struggling I tried various things like using another machine to download AVG to a USB drive but it cant update.

This post has been edited by hamluis: 12 June 2011 - 09:46 AM
Reason for edit: Moved from XP to Am I Infected.


#2 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 09:53 AM

Thanks hamluis

#3 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 10:00 AM

first of all in this case you do not want to use avg if you are already infected clear avg off the flash drive and put on malwarebytes antimalware now if you can't run it in normal mode then try in safe mode (reboot the system and keep pressing f8 softly untill it shows you a menu) now if this does not work then you may have to wait for someone who is part of the MRT (malware removal team) to help you
My names firemaster1337 and I enjoy helping people solve their malware problems

#4 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 10:05 AM

Oddly just put USB into other machine (which has Mcafee) and Mcafee reported it had detected W32/conflicker.worm!inf so i guess that the problem?

#5 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 10:07 AM

try to get macafee to remove it then clear any other files on the usb then put on malwarebytesantimalware installer found at malwarebytes.org
My names firemaster1337 and I enjoy helping people solve their malware problems

#6 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 10:16 AM

I have Malware bytes now running on infected machine thanks for the help, hope it does the trick!

#7 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 10:22 AM

Good luck and once its done scanning please post the log on here by copying and pasting the text inside the log onto here
My names firemaster1337 and I enjoy helping people solve their malware problems

#8 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 10:41 AM

been going 30 minutes nothing yet :( should i be worried?

#9 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 10:43 AM

keep waiting
My names firemaster1337 and I enjoy helping people solve their malware problems

#10 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 10:44 AM

Ran MCafee on the USB drive and got W32/Conficker.worm.gen.a on it if thats any help

#11 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 10:48 AM

you can boot into safe mode and thats good
My names firemaster1337 and I enjoy helping people solve their malware problems

#12 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 10:57 AM

Sorry i think i am confused that was on the uninfected machine, infected machine still running antimalware

#13 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 11:26 AM

OK progress is slow but Malwarebytes has found 2 infected items so far, should i put the log up here?

When it finally finishes (1h14min so far)

EDIT: just finished found 3
Worm.conficker c:\Windows\system32\02.tmp
Worm.downadup c:\WINDOWS\system32\outmjk.dll
KoobFace.Trace c:\WINDOWS\mmsmark3.dat

What should i do now? "remove selected"?

This post has been edited by HDAV: 12 June 2011 - 11:30 AM


#14 User is offline   firemaster1337 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 146
  • Joined: 18-December 10
  • Gender:Male
  • Location:Canada

Posted 12 June 2011 - 11:29 AM

post the log
My names firemaster1337 and I enjoy helping people solve their malware problems

#15 User is offline   HDAV 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 18
  • Joined: 12-June 11

Posted 12 June 2011 - 11:37 AM

Log file:


Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Database version: 6705

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

12/06/2011 17:27:15
mbam-log-2011-06-12 (17-27-08).txt

Scan type: Full scan (C:\|E:\|)
Objects scanned: 324932
Time elapsed: 1 hour(s), 13 minute(s), 47 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
c:\WINDOWS\system32\02.tmp (Worm.Conficker) -> No action taken.
c:\WINDOWS\system32\outmjk.dll (Worm.Downadup) -> No action taken.
c:\WINDOWS\mmsmark3.dat (KoobFace.Trace) -> No action taken.

Share this topic:


  • 3 Pages +
  • 1
  • 2
  • 3
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users