07-09-2012 05:18 PM
Norton will still be detecting the dormant likes of winlogon.exe.vir etc files inside.
Just make sure you have the correct folder.
Disable Norton for say 30mins
Go to that C:\Qoobox\Quarantine\C\WINDOWS\system32 folder
Right click the system32 folder and select delete (make sure you don't the the Windows working system32 folder haha)
It will be moved to the recycle bin.
Then emply the recycle bin.
Now turn back on Norton and the folder for Combofix is not there to detect anymore. GONE.
07-09-2012 05:25 PM
Is there a way to protect from these types of infections?
I truly, truly appreciate your help and your patience on how long this one took!
If there is anything else I need to do, please let me know!
07-09-2012 08:17 PM
Disable Norton for say 30 minutes
Start OTL, under Copy and paste the custom script attached which you open in for instance Notepad,(include the : at the start of :OTL and all the way to the end / bottom) and run the script. (Red Run Fix Button)
The output log, should be placed in the C:\ _OTL folder after.