Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Need help with logs


  • This topic is locked This topic is locked
4 replies to this topic

#1 denutza

denutza

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:07:41 PM

Posted 20 November 2011 - 01:28 PM

I recently had System Fix malware, Java/CVE-2010-0094.GE viruses,Java/Agent.KR.2 virus and possibly more which ive been eliminating last 3 days.

When I recently ran Rkill again it eliminated grpconv.exe (i think that was the name), and syswow64/rundll.exe as im running Windows 7 64 bit.

Now EVERY time I run RKill, it eliminates the syswow64/rundll.exe.

Can someone look over specific logs to double check if anything suspicious is still running or not?

BC AdBot (Login to Remove)

 


#2 Orange Blossom

Orange Blossom

    OBleepin Investigator


  • Moderator
  • 36,958 posts
  • ONLINE
  •  
  • Gender:Not Telling
  • Location:Bloomington, IN
  • Local time:11:41 PM

Posted 20 November 2011 - 01:38 PM

RKill does not remove malware. It stops malware and sometimes other processes from running so you can run malware removal tools. For more information, please read this topic: http://www.bleepingcomputer.com/forums/topic308364.html

Please follow the instructions in ==>This Guide<== starting at step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then post them in a reply to this topic by using the Add Reply button.

If you can produce at least some of the logs, then please create the post and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the reply and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

Please note that I am not a member of the Malware Removal Team and will not be assisting you in removing the infection. I'm simply helping you to post the information they need in order to assist you.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

Orange Blossom :cherry:

Edited by Orange Blossom, 20 November 2011 - 01:39 PM.

Help us help you. If HelpBot replies, you MUST follow step 1 in its reply so we know you need help.

Orange Blossom

An ounce of prevention is worth a pound of cure

SpywareBlaster, WinPatrol Plus, ESET Smart Security, Malwarebytes' Anti-Malware, NoScript Firefox ext., Norton noscript

#3 denutza

denutza
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:07:41 PM

Posted 20 November 2011 - 02:09 PM

Running Windows 7 64 bit, so only attaching DDS attach.txt file:

Attached Files



#4 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:11:41 PM

Posted 25 November 2011 - 10:29 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps.
===

You may still have this tool. What I need to see is the content of the DDS.txt.

Please download and run this DDS Scanning Tool. Nothing will be deleted. It will just give me some additional information about your system.

Posted Image
Download DDS and save it to your desktop from here or here.
Disable any script blocker, and then double click dds.scr to run the tool.
  • When done, DDS will open two (2) logs:
    • DDS.txt
    • Attach.txt
  • Save both reports to your desktop.

Please just paste the contents of the DDS.txt log in your next post. DO NOT attach the log.

===

#5 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:11:41 PM

Posted 30 November 2011 - 08:57 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users