Author Topic: Win32-Malware-gen --> Unable to remove this malware  (Read 109539 times)

0 Members and 1 Guest are viewing this topic.

neil0503

  • Guest
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #75 on: June 01, 2011, 05:12:46 AM »
btw..heres the address...

C:\Documents and Settings\User02\Local Settings\Temporary Internet Files\Content.IE5\TQU2MQX8\dbol[2]

neil0503

  • Guest
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #76 on: June 01, 2011, 05:51:44 AM »
That looks good

Run OTS and hit the cleanup button.  It will remove all the programmes we have used plus itself.

can you help me with my problem? i know that you can..Thank you very mich! ^^

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #77 on: June 01, 2011, 02:52:32 PM »
Why were you unable to remove it ?
It is only in the Temporary Internet Files folder and you can clear that location from your IE browser settings.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #78 on: June 01, 2011, 08:40:27 PM »
Hi there let me see what you have


Download aswMBR.exe ( 511KB ) to your desktop.
 
Double click the aswMBR.exe to run it
 
Click the "Scan" button to start scan

 
On completion of the scan click save log, save it to your desktop and post in your next reply


THEN

Download OTS to your Desktop and double-click on it to run it
  • Make sure you close all other programs and don't use the PC while the scan runs.
  • Select All Users
  • Under additional scans select the following
Reg - Disabled MS Config Items
Reg - Drivers32
Reg - NetSvcs
Reg - SafeBoot Minimal
Reg - Shell Spawning
Evnt - EventViewer Logs (Last 10 Errors)
File - Lop Check

  • Under the Custom Scan box paste this in
netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
%systemroot%\*. /mp /s
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
CREATERESTOREPOINT

  • Now click the Run Scan button on the toolbar. Make sure not to use the PC while the program is running or it will freeze.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Please attach the log in your next post.

neil0503

  • Guest
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #79 on: June 03, 2011, 05:55:14 PM »
Why were you unable to remove it ?
It is only in the Temporary Internet Files folder and you can clear that location from your IE browser settings.

thanks for the reply! i already remove it..before you reply..btw..i apppreciate your reply..thanks! ^^

neil0503

  • Guest
Re: Win32-Malware-gen --> Unable to remove this malware
« Reply #80 on: June 03, 2011, 05:57:40 PM »
Hi there let me see what you have


Download aswMBR.exe ( 511KB ) to your desktop.
 
Double click the aswMBR.exe to run it
 
Click the "Scan" button to start scan

 
On completion of the scan click save log, save it to your desktop and post in your next reply


THEN

Download OTS to your Desktop and double-click on it to run it
  • Make sure you close all other programs and don't use the PC while the scan runs.
  • Select All Users
  • Under additional scans select the following
Reg - Disabled MS Config Items
Reg - Drivers32
Reg - NetSvcs
Reg - SafeBoot Minimal
Reg - Shell Spawning
Evnt - EventViewer Logs (Last 10 Errors)
File - Lop Check

  • Under the Custom Scan box paste this in
netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
%systemroot%\*. /mp /s
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
CREATERESTOREPOINT

  • Now click the Run Scan button on the toolbar. Make sure not to use the PC while the program is running or it will freeze.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Please attach the log in your next post.

thanks for your reply..but i already remove the malware by following your old post..btw..thanks for the reply though.