Hello, I moved this from XP to Am I Infected
I would like to run these next.
Please download the TDSS Rootkit Removing Tool
) and save it to your Desktop. <-Important!!!Be sure to download TDSSKiller.exe (v220.127.116.11) from Kaspersky's website and not TDSSKiller.zip which appears to be an older version 18.104.22.168 of the tool.
- Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
Vista/Windows 7 users right-click and select Run As Administrator.
- If TDSSKiller does not run, try renaming it.
- To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
- Click the Start Scan button.
- Do not use the computer during the scan
- If the scan completes with nothing found, click Close to exit.
- If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
- Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
- A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.22.214.171.124_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
- Copy and paste the contents of that file in your next reply.
>>>> Download this file
and doubleclick on it to run it. Allow the information to be merged with the registry.
RKill....Download and Run RKill
Do not reboot your computer after running rkill as the malware programs will start again. Or if rebooting is required run it again.
- Please download RKill by Grinler from one of the 4 links below and save it to your desktop.
- Before we begin, you should disable your anti-malware softwares you have installed so they do not interfere RKill running as some anti-malware softwares detect RKill as malicious. Please refer to this page if you are not sure how.
- Double-click on Rkill on your desktop to run it. (If you are using Windows Vista, please right-click on it and select Run As Administrator)
- A black screen will appear and then disappear. Please do not worry, that is normal. This means that the tool has been successfully executed.
- If nothing happens or if the tool does not run, please let me know in your next reply
If you continue having problems running rkill.com, you can download iExplore.exe
which are renamed copies of rkill.com, and try them instead.Rerun MBAM (MalwareBytes) like this:
Open MBAM in normal mode and click Update
tab, select Check for Updates
scan and scan (normal mode).
After scan click Remove Selected
, Post new scan log
into normal mode.
Please ask any needed questions,post logs and Let us know how the PC is running now.