Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I'VE BEEN SO PATIENT!!!! PLEASE HELP!!!!!!


  • This topic is locked This topic is locked
1 reply to this topic

#1 cjackiejohn

cjackiejohn

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:04:11 AM

Posted 28 April 2011 - 10:26 AM

BleepingComputer.com: infected with malware keeps redirectingJump to content

0 unread notifications

Signed in as cjackiejohn

My ProfileMy SettingsMy ContentMessenger (0 New)Manage Ignored Users
Sign OutHelpSearch This topicSearch section: This topic This forumForumsMembersHelp FilesCalendarBlogs Advanced BleepingComputer.comForumsTutorialsStartup ListSpyware RemovalUninstall ListWelcome GuideMembersBlogsBleepingComputer.com> Security> Virus, Trojan, Spyware, and Malware Removal LogsRulesView New Content
Bleeping Computer's NewsBleepingComputer.com Blogs RSS feedForum Guidelines
Read the following topic before creating a new topic in this forum. It contains instructions on the what we would like you to post, which will enable us to help you more quickly.

Preparation Guide For Use Before Using Malware Removal Tools and Requesting Help


DO NOT RUN ComboFix unless requested to.


Only members of the Malware Response Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
Page 1 of 1
Start New Topic Add Reply Stop watching topic
infected with malware keeps redirecting Do not know how to remove #1 cjackiejohn

New Member

Group:
Members Posts:
1 Joined:
24-April 11 Posted Yesterday, 09:03 AM

Please help....I originally had a virus Windows Rermoval. I managed to remove that virus, but then had ads running in the backround, as well as script page errors and being redirected to other sites. I did scan for viruses using malwarebytes, spybot, registry mechanic, revo, and finally Combofix. After running Combofix I received access denied errors, and ads still running in backround as well as being redirected. I am sending DDS.txt...

.
DDS (Ver_11-03-05.01) - NTFSx86
Run by Paul at 21:30:23.65 on Tue 04/26/2011
Internet Explorer: 8.0.6001.19048
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.2038.963 [GMT -4:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Windows\system32\agrsmsvc.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Novatel Wireless\Novacore\Server\NvtlSrvr.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Toshiba\IVP\ISM\pinger.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Secunia\PSI\PSIA.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\svchost.exe -k imgsvc
c:\Toshiba\IVP\swupdate\swupdtmr.exe
C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files\Secunia\PSI\sua.exe
C:\Program Files\Registry Mechanic\regmech.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Sprint\Sprint SmartView\RcAppSvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Paul\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PP0NGDKB\dds[1].scr
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.yahoo.com/
uInternet Settings,ProxyServer = http=127.0.0.1:49526
uInternet Settings,ProxyOverride = *.local;<local>
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - No File
BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - No File
BHO: {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - No File
BHO: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No File
uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [RegistryMechanic] c:\program files\registry mechanic\RMTray.exe /H
mRun: [Sprint SmartView] "c:\program files\sprint\sprint smartview\SprintSV.exe" -a
mRun: [RDVCHG] "c:\program files\sprint\sprint smartview\RDVCHG.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [SSDMonitor] c:\program files\common files\pc tools\smonitor\SSDMonitor.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\secuni~1.lnk - c:\program files\secunia\psi\psi_tray.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - c:\users\paul\appdata\roaming\dvdvideosoftiehelpers\freeyoutubetomp3converter.htm
IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe
IE: {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - c:\program files\pokerstars.net\PokerStarsUpdate.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: igfxcui - igfxdev.dll
.
============= SERVICES / DRIVERS ===============
.
R1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\drivers\jswpslwf.sys [2008-3-17 20352]
R2 ConfigFree Service;ConfigFree Service;c:\program files\toshiba\configfree\CFSvcs.exe [2007-12-25 40960]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 21504]
R2 NvtlService;NovaCore SDK Service;c:\program files\novatel wireless\novacore\server\NvtlSrvr.exe [2010-1-11 82944]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2011-4-23 632792]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2008-11-5 809296]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-4-19 993848]
R2 Secunia Update Agent;Secunia Update Agent;c:\program files\secunia\psi\sua.exe [2011-4-19 399416]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files\tomtom home 2\TomTomHOMEService.exe [2009-6-3 92008]
R2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\toshiba\smartlogservice\TosIPCSrv.exe [2007-12-3 126976]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 CASprint;Sprint Con App Svc;c:\program files\sprint\sprint smartview\ConAppsSvc.exe [2010-12-15 124224]
S3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\jumpstart\jswpsapi.exe [2008-3-17 937984]
S3 netr28u;Linksys USB Wireless LAN Card Driver for Vista;c:\windows\system32\drivers\netr28u.sys [2007-8-16 552448]
S3 NWUSBPort2;Novatel Wireless USB Status2 Port Driver;c:\windows\system32\drivers\nwusbser2.sys [2010-12-15 174720]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2011-04-26 23:54:00 -------- d-sh--w- C:\$RECYCLE.BIN
2011-04-26 23:53:47 -------- d-----w- c:\users\paul\appdata\local\temp
2011-04-26 23:42:39 7071056 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\{1a2fa062-5090-4ccd-b486-008fb34bcdcb}\mpengine.dll
2011-04-25 01:41:39 98816 ----a-w- c:\windows\sed.exe
2011-04-25 01:41:39 89088 ----a-w- c:\windows\MBR.exe
2011-04-25 01:41:39 256512 ----a-w- c:\windows\PEV.exe
2011-04-25 01:41:39 161792 ----a-w- c:\windows\SWREG.exe
2011-04-24 02:38:01 -------- d-----w- c:\program files\iPod
2011-04-24 02:37:59 -------- d-----w- c:\progra~2\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-04-24 02:29:45 -------- d-----w- c:\program files\Bonjour
2011-04-24 02:02:29 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-04-24 01:53:00 -------- d-----w- c:\users\paul\appdata\local\Secunia PSI
2011-04-24 01:52:52 -------- d-----w- c:\program files\Secunia
2011-04-23 21:59:37 -------- d-----w- c:\program files\VS Revo Group
2011-04-23 19:17:23 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2011-04-23 19:17:23 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2011-04-23 19:17:23 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2011-04-23 19:17:21 506368 ----a-w- c:\windows\system32\msxml.dll
2011-04-23 18:20:24 -------- d-----w- c:\program files\Spyware Cease 2011
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll
2011-04-17 17:40:01 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin.dll
2011-04-10 21:10:41 -------- d-----w- c:\users\paul\appdata\roaming\DVDVideoSoftIEHelpers
2011-04-10 21:10:26 -------- d-----w- c:\program files\DVDVideoSoft
2011-04-10 21:10:26 -------- d-----w- c:\program files\common files\DVDVideoSoft
2011-04-06 20:20:16 91424 ----a-w- c:\windows\system32\dnssd.dll
2011-04-06 20:20:16 197920 ----a-w- c:\windows\system32\dnssdX.dll
2011-04-06 20:20:16 107808 ----a-w- c:\windows\system32\dns-sd.exe
2011-03-30 04:00:03 -------- d-----w- c:\users\paul\appdata\local\Sprint
2011-03-30 03:47:33 -------- d-----w- c:\program files\Sierra Wireless
2011-03-30 03:47:33 -------- d-----w- c:\program files\common files\PctelEapPeer Authentication
2011-03-30 03:37:08 -------- d-----w- c:\progra~2\Sprint
.
==================== Find3M ====================
.
2011-03-10 17:03:51 1162240 ----a-w- c:\windows\system32\mfc42u.dll
2011-03-10 17:03:51 1136640 ----a-w- c:\windows\system32\mfc42.dll
2011-03-03 15:42:03 739328 ----a-w- c:\windows\system32\inetcomm.dll
2011-03-03 13:25:11 2041856 ----a-w- c:\windows\system32\win32k.sys
2011-03-02 15:44:27 86528 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-02-22 14:13:01 288768 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-02-22 13:33:12 1068544 ----a-w- c:\windows\system32\DWrite.dll
2011-02-22 13:33:09 797696 ----a-w- c:\windows\system32\FntCache.dll
2011-02-22 06:21:28 916480 ----a-w- c:\windows\system32\wininet.dll
2011-02-22 06:17:08 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-02-22 06:16:53 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-02-22 06:16:40 71680 ----a-w- c:\windows\system32\iesetup.dll
2011-02-22 06:16:40 109056 ----a-w- c:\windows\system32\iesysprep.dll
2011-02-22 05:20:39 385024 ----a-w- c:\windows\system32\html.iec
2011-02-22 04:43:54 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2011-02-22 04:42:38 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-02-17 06:23:50 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-02-16 16:16:37 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-02-16 14:02:23 292864 ----a-w- c:\windows\system32\atmfd.dll
2011-02-02 22:11:20 222080 ------w- c:\windows\system32\MpSigStub.exe
.
============= FINISH: 21:31:24.52 ===============
Attached File(s)
Attach.txt (6.6K)
Number of downloads: 0 ark.txt (5.82K)
Number of downloads: 0

Report
Back to top MultiQuote
Quote
--------------------------------------------------------------------------------
Forum Home Operating Systems |-- Windows 95/98/ME |-- Windows XP Home and Professional |-- Windows NT/2000/2003/2008 |-- Windows Vista |-- Windows 7 |-- Linux & Unix |---- Live Linux |-- DOS/PDA/Other |-- Mac OS Hardware |-- Internal Hardware |-- External Hardware |-- System Building and Upgrading |-- Questions and advice for Buying a New Computer Software |-- Business Applications |-- All Other Applications |-- Tips and Tricks |-- Graphics Design and Photo Editing |-- Audio and Video |-- Programming Internet & Networking |-- Web Browsing/Email and Other Internet Applications |-- Networking |-- Web Site Development Security |-- AntiVirus, Firewall and Privacy Products and Protection Methods |-- Am I infected? What do I do? |-- Am I hacked? What do I do? |---- Hacked iTunes accounts |-- Breaking Virus & Security News |-- Security Updates |-- Virus, Trojan, Spyware, and Malware Removal Logs |-- Spyware and Malware Removal Guides and Reading Room Gaming |-- Computer Gaming |-- Game Consoles Gadgets |-- iPad and Tablet Devices |-- Cell Phones |-- iPod, Zune & MP3 Players |-- GPS Devices Bleeping Computer Applications and Guides |-- Tutorials |-- Windows Startup Programs Database |-- Mini guides and how-tos - Simple answers to common questions |---- Audio and Video Mini-Guides |---- Email Mini-Guides |---- Images, Image Editing, Image Viewing Mini-Guides |---- Internet Applications Mini-Guides |---- Linux Mini-Guides |---- Networking Mini-Guides |---- Security Mini-Guides |---- Web Browsers Mini-Guides |---- Microsoft Windows Mini-Guides |---- Programming and Web Design Mini-Guides General Topics |-- General Chat |-- Introductions |-- New User Orientation |-- Bleeping Computer Announcements, Comments, & Suggestions |-- News |-- The Speak Easy |-- Home Improvement and Repair |-- Forum Games |-- Photo Albums, Images, and Videos |-- Tests and Scribbles
← Previous TopicVirus, Trojan, Spyware, and Malware Removal LogsNext Topic →Share this topic:
Page 1 of 1
Start New Topic Add Reply
--------------------------------------------------------------------------------


Fast Reply
Emoticons
Other styles Fonts Sizes

Tip: click inside this box to load the editor

1 User(s) are reading this topic
1 members, 0 guests, 0 anonymous users
cjackiejohnDelete PostRemove From View The post may still be visible to moderators in this topic
Reason:
Delete From Topic The post will be removed from this topic completely




Skin and Language
Language: English (USA) Execution Stats
Time Now: Apr 28 2011 10:24 AM
Last Visit: Yesterday, 08:03 PM
0.4763 -- 16 queries GZIP EnabledBack To TopForum HomeDelete My CookiesMark Board As Read

Advertise | About Us | Terms of Use | Privacy Policy | Contact Us | Site Map | Chat | Tutorials | Uninstall List
Discussion Forums | The Computer Glossary | Resources | RSS Feeds | Startups | The File Database | Virus Removal Guides


© 2003-2011 All Rights Reserved Bleeping Computer LLC.

Community Forum Software by IP.Board

BC AdBot (Login to Remove)

 


#2 Animal

Animal

    Bleepin' Animinion


  • Site Admin
  • 35,068 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Where You Least Expect Me To Be
  • Local time:02:11 AM

Posted 28 April 2011 - 10:46 AM

While we understand your frustration at having to wait, please note that BleepingComputer deals with several hundred requests for assistance such as yours on a daily basis. As a result, our backlog is quite large, as are those of other comparable sites that help members with malware issues. Although our MRT staff work on hundreds of requests each day, they are all volunteers who contribute to helping members as time permits. No one is paid by BleepingComputer for their assistance to our members.

New and more devious malware infections are released almost daily. It then takes time for our Team to to investigate, analyze and test removal techniques before we can help members like yourself. Doing that means that we sacrifice speed of response for a quality response that will help remove the malware more effectively.

Further, our malware removal staff is comprised of team members with various levels of skill and expertise to deal with thousands of malware variants, some more complex than others. Although we try to take DDS/HJT logs in order (starting with the oldest), it is often the skill level of the particular helper and sometimes the operating system that dictates which logs get selected first. Some infections are more complicated than others and require a higher skill level to remove. Without that skill level attempted removal could result in disastrous results. In other instances, the helper may not be familiar with the operating system that you are using, since they use another. In either case, you wouldn't want someone to assist you who is not familiar with your issue and attempt to fix it, would you?

Please be patient. It may take a while to get a response but your log will be reviewed and answered as soon as possible.We have mechanisms in place to prevent logs from being overlooked, so do not worry that you have been forgotten.

Average wait times fluctuate depending on a number of factors including the number of cases posted and the number of helpers we have available, and their real life schedules (don't forget that everyone is a volunteer here!) Currently the wait time looks to be about 8-9 days on average. Logs are currently being taken from the 19th of April.

********************************************
You have a properly posted log located here and to avoid confusion and pushing you further down the queue I am closing this topic.

The Internet is so big, so powerful and pointless that for some people it is a complete substitute for life.
Andrew Brown (1938-1994)


A learning experience is one of those things that say, "You know that thing you just did? Don't do that." Douglas Adams (1952-2001)


"Imagination is more important than knowledge. Knowledge is limited. Imagination circles the world." Albert Einstein (1879-1955)


Follow BleepingComputer on: Facebook | Twitter | Google+




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users