Author Topic: serious security problem,HELP!  (Read 18683 times)

0 Members and 1 Guest are viewing this topic.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #30 on: January 29, 2012, 02:20:55 PM »
On and off all day today untill about 10m  - now 13.20

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #31 on: January 29, 2012, 03:41:09 PM »
ok, guys some new s**t just happend to my infected pc
i downloaded the file you said and moved it to my flash drive i also downloaded avast and did the same, when i entered my flash drive and opened i saw the shocking scene of number1 photo
i quickly installed eset ,(no other choice) started a full in dept scan
after a couple of seconed i saw the second photo which caused me a slight heart attack (for real, im in pain right now )
help me out plz!!!!
also i found these new unknown(to me) processes in task manager wuauclt.exe, mwyo.exe which i am unable to termanate , also eset found this:
operating memory>> services.exe(11088)- a variant of win32/rootkit.Agent.NUS trojan-unable to clean
help me out plz!!!
PS: please come to my online funeral tommarow at 8 am in youtube

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #32 on: January 29, 2012, 03:51:33 PM »
forgot these

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #33 on: January 29, 2012, 03:51:43 PM »
OK so you have an infected flash drive.. Which does not help matters

Load OTLPE to a CD and run it from there.  We will get the Windows 7 back in action and then look at the XP

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #34 on: January 29, 2012, 04:33:05 PM »
ok , scann is finished the otl file is attached
do i still need to be in this os? i havent exited yet

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #35 on: January 29, 2012, 04:39:28 PM »
Any fixes will be done from the Reatogo desktop

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #36 on: January 29, 2012, 04:45:43 PM »
OK run OTLPE again and in the custom scans and fixes box type in the following

/md5start
afd.*
/md5stop


Then press the run scan button
Attaching the new log

If this is not the culprit then I will use a different tool to detemine the problem


Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #37 on: January 29, 2012, 04:47:51 PM »
I just noticed that you scanned the XP system and not the 7 one

When you start OTLPE and it asks for the windows folder - select the windows 7 one

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #38 on: January 29, 2012, 05:07:12 PM »
sorry,had a quick meal
the problem is it doesnt ask two of the question you said:
only the last one

"Select the Windows folder of the infected drive if it asks for a location"
"When asked "Do you wish to load the remote registry", select Yes"
it doesnt ask these two
« Last Edit: January 29, 2012, 05:12:07 PM by Alireza_021 »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #39 on: January 29, 2012, 05:14:43 PM »
Could you re-load Reatogo desktop please and using the explorer function select the windows 7 folder first before running OTL

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #40 on: January 29, 2012, 05:17:59 PM »
what do you mean by using explorer function?

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #41 on: January 29, 2012, 05:37:33 PM »
should i just reinstall both of my windowses?
Or will the malewares remain even after reinstall?
« Last Edit: January 29, 2012, 05:41:33 PM by Alireza_021 »

DonZ63

  • Guest
Re: serious security problem,HELP!
« Reply #42 on: January 29, 2012, 05:46:41 PM »
Quote
So did all your banned friends from India say.........so not strange that we are a bit suspicious
Glad to see you guys finally "wised up." ;)

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: serious security problem,HELP!
« Reply #43 on: January 29, 2012, 06:23:54 PM »
On the Reatogo desktop is a My Computer Icon
Click that and it will show your drives
Select the Windows 7 partition and then run OTL

I have asked OT about this type of situation and am awaiting a reply

Alireza_021

  • Guest
Re: serious security problem,HELP!
« Reply #44 on: January 30, 2012, 11:02:12 AM »
i did what you said, but it keeps scanning the c drive(windows xp drive)
my windows 7 is in d drive
gonna reinstall windows
took a lot of your time already
thanks,
but ill need your help for fully removing the maleware and/or any other viruses .
thanks for all the help guys
« Last Edit: January 30, 2012, 12:58:41 PM by Alireza_021 »