07-09-2012 06:50 AM
Thank you Quads I won't be able to execute step 2 until i get home this evening. thx
07-09-2012 04:32 PM
thanks Quads step 2 is complete.
07-09-2012 06:33 PM
Step 3.
Please read carefully Read all of this message first
Download Combofix http://www.bleepingcomputer.com/download/anti-viru
Right click the combofix.exe on the desktop and select from the menu "Run as Administrator"
****Note: Do not mouseclick combofix's window while it's running. That may cause it to stall or freeze ****
Note: ComboFix may reset a number of Internet Explorer's settings, including making it the default browser.
Note: Combofix prevents autorun of ALL CDs, floppies and USB devices to assist with malware removal & increase security.
*EXTRA NOTES*
Quads
07-09-2012 07:26 PM
Step 3 is complete! combofix log is attached
07-09-2012 07:32 PM
Quads,
I just did a quick norton scan and the virus is gone!! was this the last step?
Thanks!!
07-10-2012 12:01 AM
No, there are 4 major steps, and I state when a user can go. items are still around. But now at least services.exe has been fixed.
Why do people think they are completely fixed, just because Norton is not alerting anymore.
step 4. (a)
Please read carefully and Slowly
Please scan with ESET next
I'd like us to scan your machine with ESET OnlineScan
button.
to download the ESET Smart Installer. Save it to your desktop.
button.
and DON'T (NO) check Remove found threats (reason for this is we don't want something deleted and then Windows won't load).
If you think a log should have been generated then go to C:\Program Files\ESET\ESET Online Scanner\log.txt to find it.
Quads
07-10-2012 06:41 AM
oops I think I jumped the gun (got a little excited) I will execute step 4 this evening when I get home. Thanks for your patients.
07-10-2012 06:39 PM
The ESET scan is complete. The log which was created is very short I am wondering if I did something wrong (attached log.txt) and I have also attached a copy of the virus it found (ESET.txt).
much thanks, I will await further instruction.
07-10-2012 09:43 PM
Ok before we do step 4 (b)
You can uninstall
ESET Online Scanner
Then can you find this folder
C:\Qoobox\Quarantine\C\WINDOWS\system32 ( It's the Combofix quarantine)
Quads
07-11-2012 03:35 PM
I uninstalled ESET by checking the uninstall box upon closing it, and yes I can locate the folder in question.
