BleepingComputer.com: I think I am infected please help

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

I think I am infected please help Maleware is getting me down. PLease Help

#16 User is offline   Cephalon 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 102
  • Joined: 20-July 11
  • Gender:Male

Posted 22 July 2011 - 01:26 AM

Hi and thank you for getting back to me :) Sorry it took me so long to reply, I just got off of work. Anyways I ran the Temp File Cleaner and it did like a Crash Dump and then went to a blue Screen and restarted, I am not sure it ran correctly unless that is normal behavior for it. I did it twice and both times the same thing. So i am thinking that must be normal behavior. I had to click on "Last Known Good Configuration" I hope that is normal... However, I will edit my post with the Scan Results in a few minutes :) Thank you again for your help and time. Going to run the online scanner now.

Okay, so the EsetScan is finally finished, and it found 4 Trojans.... Here are the results, This is the only log file it printed out for me.

Eset Scan Results:

C:\Users\Patrick\Desktop\BleepingComputer HELP\GooredFix Backups\C\Users\Patrick\Application Data\Mozilla\Firefox\Profiles\27h2rdyr.default\extensions\{0eb09088-3918-441a-a905-ee63270db78e}\chrome.manifest Win32/TrojanDownloader.Tracur.F trojan cleaned by deleting - quarantined

C:\Users\Patrick\Desktop\BleepingComputer HELP\GooredFix Backups\C\Users\Patrick\Application Data\Mozilla\Firefox\Profiles\27h2rdyr.default\extensions\{0eb09088-3918-441a-a905-ee63270db78e}\chrome\xulcache.jar JS/Agent.NDJ trojan deleted - quarantined

C:\Users\Patrick\Desktop\BleepingComputer HELP\GooredFix Backups\C\Users\Patrick\Application Data\Mozilla\Firefox\Profiles\s3nuttkc.default\extensions\{0eb09088-3918-441a-a905-ee63270db78e}\chrome.manifest Win32/TrojanDownloader.Tracur.F trojan cleaned by deleting - quarantined

C:\Users\Patrick\Desktop\BleepingComputer HELP\GooredFix Backups\C\Users\Patrick\Application Data\Mozilla\Firefox\Profiles\s3nuttkc.default\extensions\{0eb09088-3918-441a-a905-ee63270db78e}\chrome\xulcache.jar JS/Agent.NDJ trojan deleted - quarantined

**********************************************************************************************************************
So.... These must be the reason I was getting redirected all the time. Looks like Goored did find them, on a positive note after Goored the redirecting has stopped. But I hope these are really gone!!!! I hope they dont pop back up. Im not a professional so I do not know... Thank You again for your time, I really appreciate the GREAT OUTSTANDING SERVICE I have received from you!!! Whats Next?

This post has been edited by Cephalon: 22 July 2011 - 05:01 AM


#17 User is offline   Broni 

  • The Coolest BC Computer
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 22,167
  • Joined: 01-February 08
  • Gender:Male
  • Location:Daly City, CA

Posted 22 July 2011 - 07:50 PM

I'm rather sure the issue has been fixed by GooredFix.

Your computer is clean Posted Image

1. We need to reset system restore to prevent your computer from being accidentally reinfected by using some old restore point(s). We'll remove all old restore points and create fresh, clean restore point.

Turn system restore off.
Restart computer.
Turn system restore back on.

If you don't know how to do it...
Windows XP: http://support.microsoft.com/kb/310405
Vista and Windows 7: http://www.howtogeek.com/howto/windows-vista/disable-system-restore-in-windows-vista/

2. Make sure, Windows Updates are current.

3. Download, and install WOT (Web OF Trust): http://www.mywot.com/. It'll warn you (in most cases) about dangerous web sites.

4. Run Malwarebytes "Quick scan" once in a while to assure safety of your computer.

5. Run Temporary File Cleaner (TFC) weekly.

6. Download and install Secunia Personal Software Inspector (PSI): http://secunia.com/vulnerability_scanning/personal/. The Secunia PSI is a FREE security tool designed to detect vulnerable and out-dated programs and plug-ins which expose your PC to attacks. Run it weekly.

7. (optional) If you want to keep all your programs up to date, download and install FileHippo Update Checker.
The Update Checker will scan your computer for installed software, check the versions and then send this information to FileHippo.com to see if there are any newer releases.

8. When installing\updating ANY program, make sure you always select "Custom " installation, so you can UN-check any possible "drive-by-install" (foistware), like toolbars etc., which may try to install along with the legitimate program. Do NOT click "Next" button without looking at any given page.

9. Read How did I get infected?, With steps so it does not happen again!: http://www.bleepingcomputer.com/forums/topic2520.html
My Website

Posted Image

My help doesn't cost a penny, but if you'd like to consider a donation, click Posted Image




#18 User is offline   Cephalon 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 102
  • Joined: 20-July 11
  • Gender:Male

Posted 22 July 2011 - 09:11 PM

Awesome!!!! That is Great news!!! So I turned off system restore, restarted, then turned it back, and now I am going to run and install the other software to help keep my PC safe. Thank you for all your time and hard work helping me fix the redirect Virus. When I get paid I am going to donate. I had tremendous service and 100% quality. Thank you AGAIN!!! You really helped me!!!! I appreciate all of it. I can't Thank You Enough!!! Next is my Dad's desktop, he is having the same problem. But thats a whole different story. Anyways, thank you again and have a great week. :) :) :) Bleeping Computers is the Best Place on the net to get help with Computer related problems!!!

#19 User is offline   Broni 

  • The Coolest BC Computer
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 22,167
  • Joined: 01-February 08
  • Gender:Male
  • Location:Daly City, CA

Posted 22 July 2011 - 09:13 PM

You're very welcome Posted Image
My Website

Posted Image

My help doesn't cost a penny, but if you'd like to consider a donation, click Posted Image




Share this topic:


  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users