07-13-2012 07:26 AM
3 days ago I was scanning my computer with Norton anti-virus and Malwarebytes. Both programs found a few trojans (gen.2 and a few others) and per following the directions I cleaned those out and re-ran both programs to be sure it was cleaned.
On the second run they both found Trojan.patchep!sys and again I had the programs do what they could to clean it. Ran the programs a 3rd time and they both said the computer was clean and did not detect the Trojan.patchep!sys. Since then I have run Norton Anti-Virus and Malwarebytes every night and last night they found the Trojan.patchep!sys again. Please help me get rid of this bug permanently!
I have Windows 7 Professional 64-bit.
Yes I have a flash drive
I have downloaded the 64 bit version from http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ onto the flash drive.
I did not proceed any farther as that could interfere with further instructions.
Please let me know what I can do next. Thank you for your time and help.
07-13-2012 04:13 PM
Shihosa wrote:3 days ago I was scanning my computer with Norton anti-virus and Malwarebytes. Both programs found a few trojans (gen.2 and a few others) and per following the directions I cleaned those out and re-ran both programs to be sure it was cleaned.
On the second run they both found Trojan.patchep!sys and again I had the programs do what they could to clean it. Ran the programs a 3rd time and they both said the computer was clean and did not detect the Trojan.patchep!sys. Since then I have run Norton Anti-Virus and Malwarebytes every night and last night they found the Trojan.patchep!sys again. Please help me get rid of this bug permanently!
I have Windows 7 Professional 64-bit.
Yes I have a flash drive
I have downloaded the 64 bit version from http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ onto the flash drive.
I did not proceed any farther as that could interfere with further instructions.
Please let me know what I can do next. Thank you for your time and help.
Welcome,
Sorry we are meeting under these circumstances. Please do not do anything in the way of self-help fixes. Wait for volunteer, user Quads to respond. He stays very busy so it will be a while. Follow his instructions exactly and you will have a clean machine when he finishes.
Keep us posted
07-13-2012 07:37 PM - edited 07-13-2012 07:40 PM
ANY other user other than the thread starter is not to use any instructions, scripts or proceedures, The work though in cleaning a system is individual and only for that system due to a number of factors.
Please do not run any tools unless instructed to do so.
1. Find
2. Break
3. Destroy
4. Cleanup (including system as a whole)
Please read every post completely before doing anything.
)
Step 1
Read Slowly and all of it.
Please download http://www.bleepingcomputer.com/download/farbar-re
Transfer it on to the Flash Drive
Enter System Recovery Options.
To enter System Recovery Options from the Advanced Boot Options:
On the System Recovery Options menu you will get the following options:
Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt
Quads
07-14-2012 08:19 AM
Hello Quads,
I have done as you've asked and have attached the log you requested.
Thank you for using your time to help me, I appreciate it very much.
07-14-2012 04:32 PM
Download the script attached, needs to be the same file name as well (fixlist.txt), Copy across to flash drive
NOTE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
Now please enter System Recovery Options again. Like previously
Quads
07-14-2012 05:12 PM
Hello Quads,
I have followed your instructions and attached the file you requested.
07-14-2012 08:35 PM - edited 07-14-2012 08:36 PM
You have run it twice, I did not ask you to do so. where is the log for run 1.
Users, there is No point asking for help, when you are going out of your own without instruction, or doing extra which I did NOT tell you to do.
Quads
07-14-2012 09:57 PM
Hello Quads,
That is the only log that is on the flash drive. During the original scan my computer crashed and when it came back up I followed the same instructions. I'm sorry I did not realize that it even made a first copy.
07-14-2012 10:09 PM
Step 3.
Please read carefully Read all of this message first
Download Combofix http://www.bleepingcomputer.com/download/anti-viru
Right click the combofix.exe on the desktop and select from the menu "Run as Administrator"
****Note: Do not mouseclick combofix's window while it's running. That may cause it to stall or freeze ****
Note: ComboFix may reset a number of Internet Explorer's settings, including making it the default browser.
Note: Combofix prevents autorun of ALL CDs, floppies and USB devices to assist with malware removal & increase security.
*EXTRA NOTES*
Quads
07-14-2012 10:30 PM
Hello Quads,
I was doing as you requested when combofix popped up with a warning saying AVG internet security was still active and to shut it off. I removed AVG through the unistall on the control panel before I even downloaded Norton and started all this. It is asking if I wish to still run combo fix, should I continue or is there a different step you wish me to take?
Thank you
