Author Topic: DEVASTATION!  (Read 12833 times)

0 Members and 1 Guest are viewing this topic.

tanzanos

  • Guest
DEVASTATION!
« on: June 17, 2011, 10:17:15 AM »
I had microsoft security essentials and it did not protect me from something that has infected my system. I uninstalled the security essentials and installed AVAST. I did a boot scan and it found a few things which were fixed. I also run malwarebytes and superantispyware. The problem persists:
I cannot get Security Center to start (something keeps disabling it) and also on both my Browsers iE and Firefox I keep getting redirected to various sites.

Here is a log from Highjackthis; PLEASE SOMEONE HELP!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37507
  • Not a avast user
Re: DEVASTATION!
« Reply #1 on: June 17, 2011, 01:00:50 PM »
Follow this guide from our expert malware remover Essexboy
http://forum.avast.com/index.php?topic=53253.0
( post the logs here in this topic and not in the guide )


To avoid using multiple post with copy and paste you have to attach the log`s
Lower left corner: Additional Options > Attach ( Malwarebytes log / OTS log ) save OTS log as ANSI

Essexboy will look at the logs when he arrive here later today...

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #2 on: June 17, 2011, 03:38:40 PM »
Malware and superantispyware did not find anything. Avast found at bootscan the following: Trojan.Agent/Gen-Fraudpack.
I redid a boot scan and nothing else was found. Now I have this problem that even though I start security center in services it is after about 1 minute it becomes disabled and both my browsers redirect me to a site SECURE.BIDVERTISER.COM

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37507
  • Not a avast user
Re: DEVASTATION!
« Reply #3 on: June 17, 2011, 04:14:57 PM »
was Malwarebytes updated when you scanned?

follow the guide i linked to and post the OTS log
« Last Edit: June 17, 2011, 04:19:02 PM by Pondus »

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #4 on: June 17, 2011, 04:21:26 PM »
All the pertinent anti malware progs were updated. I have a log of Spybot that has some entries; can I post it here? Also Java stopped working!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37507
  • Not a avast user
Re: DEVASTATION!
« Reply #5 on: June 17, 2011, 04:29:27 PM »
you may, but what Essexboy need is the OTS log


Quote
Modern malware will hide all, or most of itself from detection in a HijackThis log. HijackThis (HJT) is very popular, and if malware can hide from it, it has a better chance of survival. But mostly HJT fails to detect malware because, with the exception of some bug fixes and minor updates, it has not been updated in a long time.

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #6 on: June 17, 2011, 04:36:24 PM »
Sorry for my ignorance but what is OTS?

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37507
  • Not a avast user
Re: DEVASTATION!
« Reply #7 on: June 17, 2011, 04:41:34 PM »
Diagnostic program like HijackThis only 100 times better

click the link in my first reply



her you can read about the older version OTL
http://www.geekstogo.com/otl-by-oldtimer-a-modern-replacement-for-hijackthis/
« Last Edit: June 17, 2011, 04:43:47 PM by Pondus »

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 88900
  • No support PMs thanks
Re: DEVASTATION!
« Reply #8 on: June 17, 2011, 04:46:48 PM »
you may, but what Essexboy need is the OTS log

Quote
Modern malware will hide all, or most of itself from detection in a HijackThis log. HijackThis (HJT) is very popular, and if malware can hide from it, it has a better chance of survival. But mostly HJT fails to detect malware because, with the exception of some bug fixes and minor updates, it has not been updated in a long time.

Not to mention HJT hasn't had an update in well over a year and any supposed security/analysis tool that isn't update is pretty much worthless.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.2.6105 (build 24.2.8918.824) UI 1.0.799/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #9 on: June 17, 2011, 05:20:54 PM »
I download OTL from sourceforge but the rar file does not contain an exe nor an install application?

Offline Shiw Liang

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1432
Re: DEVASTATION!
« Reply #10 on: June 17, 2011, 05:30:49 PM »
Don't you have a software to extract it?
For example: 7-zip

You can download it here:
http://www.filehippo.com/download_7zip_32/

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37507
  • Not a avast user
Re: DEVASTATION!
« Reply #11 on: June 17, 2011, 05:50:28 PM »
If you use the link to the guide i posted  http://forum.avast.com/index.php?topic=53253.0   then scroll down to you see the blue OTS and click it
« Last Edit: June 17, 2011, 06:00:48 PM by Pondus »

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #12 on: June 17, 2011, 06:03:16 PM »
OK I have OTL running now; Will post the log when finished.
Thank you all very much for your help. I hope it works. By the way I had Zip installed but after the infection it disappeared?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: DEVASTATION!
« Reply #13 on: June 17, 2011, 06:21:56 PM »
When you post the OTS log could you give me a brief synopsis of your problems
« Last Edit: June 17, 2011, 06:27:42 PM by essexboy »

tanzanos

  • Guest
Re: DEVASTATION!
« Reply #14 on: June 17, 2011, 06:30:43 PM »
Since the infection: Security center keeps turning off even though I start it in services. Web Browsers keep rerouting me to SECURE.BIDVERTISER.COM

Hope someone can help me  ??? Thanks Guys!