This is what I have done thus far, which inabled be to use Firefox once again.
1.Initially when I got the virus i use Malwarbytes which did at least I thought, got rid of the virus (no more annoying pop-ups). But then I noticed I couldn't print. Then next thing I notice was my google searches were being redirected. The next thing was I tried to access the internet through Firefox and all I kept getting was a blank page and IE said there was no connection. And in Chrome I could no longer access my gmail account as well
2. So I did diagnostics and repair on my connection, which came up that nothing was wrong. I checked modem. (no problem there) IE then stated http connection problem.
3. I read a threads with someone who had a simular problem and follewed the directions there which were as followed
please keep in mind I had no one to read the reports to tell me what was going on;
1. Run OTL
Download OTL to your desktop.
Double click on OTL to run it.
When the window appears, underneath Output at the top change it to Minimal Output.
Under the Standard Registry box change it to All.
Under Custom scan's and fixes section paste in the below in bold
Check the boxes beside LOP Check and Purity Check.
Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.
Please download Rootkit Unhooker and save it to your desktop.
Double-click RKUnhookerLE.exe to run it.
Click the Report tab, then click Scan
Check Drivers, Stealth Code, Files, and Code Hooks
Uncheck the rest, then click OK
When prompted to Select Disks for Scan, make sure C:\ is checked and click OK
Wait till the scanner has finished then go File > Save Report
Save the report somewhere you can find it, typically your desktop. Click Close
Copy the entire contents of the report and paste it in your next reply.
Note - You may get this warning it is ok, just ignore it."Rootkit Unhooker has detected a parasite inside itself!
It is recommended to remove parasite, okay?"
2.then I did (WHICH DID NOT WORK AT ALL)
Please download DDS and save it to your desktop.
Double click dds.scr to run the tool.
When done, DDS.txt will open as well as attach.txt.
Save both reports to your desktop.
Please include the contents of the following in your next reply:
Please RIGHT-CLICK HERE and Save As (in IE it's "Save Target As", in FF it's "Save Link As") to download Silent Runners.
Save it to the desktop.
Run Silent Runner's by doubleclicking the "Silent Runners" icon on your desktop.
You will receive a prompt:
Do you want to skip supplementary searches?
If you receive an error just click OK and double-click it to run it again - sometimes it won't run as it's supposed to the first time but will in subsequent runs.
You will see a text file appear on the desktop - it's not done, let it run (it won't appear to be doing anything!)
Once you receive the prompt All Done!, open the text file on the desktop, copy that entire log, and paste it here.
*NOTE* If you receive any warning message about scripts, please choose to allow the script to run.
3. Then I did Which didn't work until the 3rd try after I did the last step
Under the Custom Scans/Fixes box at the bottom, paste in the following
[2010/10/15 06:18:54 | 000,054,016 | ---- | M] () -- C:\WINDOWS\System32\drivers\xhkyij.sys
[2010/10/14 01:10:31 | 000,021,655 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\.wtav
[2004/08/04 07:00:00 | 000,018,688 | ---- | C] () -- C:\WINDOWS\System32\drivers\vbma6610.sys
c:\Documents and Settings\All Users\Start Menu\Programs\AV2010
Then click the Run Fix button at the top
Let the program run unhindered, reboot when it is done
It will produce a log for you on reboot, please post that log in your next reply.
4. This last step enabled me to get to this point now whereas I can use Firefox
I used ComboFix
[b]Again please know that I had no one to read the reports so I was working blind
At this point the problems I still having are;
1. can't rum Malwarebytes or any protection I have on the pc.
2. Access to Firewall error code states "Windows Firewall settings cannot be displayed because associated services is not running Do you want to start ICS service?" click yes and get " Windows cannot start ICS service"
3. Still no spoolers (which I know I have to probably reinstall)
4. Still have redirect virus..
5. and Probably numerous other problems that I don't know about just yet.
I did save some of the reports if needed.
Is there any one who can work a miracle and help me PLEASEEEEEEEEEEE.
Edited by Lady Blue, 29 July 2011 - 12:42 PM.
Moved from XP to Am I Infected.