WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6528
# api_version=3.0.2
# EOSSerial=a7929b7edde5e04b900d7e1a0ea630a1
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2011-07-23 03:17:17
# local_time=2011-07-22 11:17:17 (-0500, Eastern Daylight Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 0 0 0 0
# compatibility_mode=8192 67108863 100 0 30927054 30927054 0 0
# scanned=185629
# found=8
# cleaned=8
# scan_time=7580
C:\Qoobox\Quarantine\C\Documents and Settings\LainieM\Application Data\Mozilla\Firefox\Profiles\eiuq6l41.default\extensions\{3f2a422d-27e6-493e-8bd9-5d5a2c283871}\chrome.manifest.vir Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP644\A0099329.manifest Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP644\A0099378.manifest Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP645\A0099427.manifest Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP645\A0099437.manifest Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP647\A0101580.manifest Win32/TrojanDownloader.Tracur.F trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP649\A0101745.exe a variant of Win32/Kryptik.QHP trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP649\A0101746.exe a variant of Win32/Kryptik.QHP trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C


It asked me if I wanted to delete the ESET scan files from my computer or delete quarantined files. What should I select?
Also while the ESET scan was in progress Symantec popped up with two viruses detected. Atrace32.exe.vir and kbdnepr32.exe.vir were quarantined but not deleted. It gives me the choice to clean, delete permanently or undo quarantine. Should I do anything?


Thanks.

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
Hello.

Please run OTL.exe.

  • Copy the commands with file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):


    :commands
    [clearallrestorepoints]
    [emptytemp]
    [reboot]



  • Return to OTL, right click in the "Custom Scans/Fixes" window (under the light green bar) and choose Paste.

  • Click the red Run Fix button.
  • A fix log in Notepad will appear. Copy the contents of the fix log to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTL.exe
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Multiple virus/malware warnings popping up and I don't know how to respond. - Page 1 DXwU4
Multiple virus/malware warnings popping up and I don't know how to respond. - Page 1 VvYDg

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
Here's the first log that popped up after a problem while executing OTL:
Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA09F.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA0AF.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA115.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA125.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA162.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFA172.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temporary Internet Files\Content.IE5\34U3M9K6\t27634-multiple-virus-malware-warnings-popping-up-and-i-don-t-know-how-to-respond[1].htm not found!

Registry entries deleted on Reboot...



And here's the log after OTL ran completely:

All processes killed
========== COMMANDS ==========
Restore points cleared and new OTL Restore Point set!

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LainieM
->Temp folder emptied: 100693 bytes
->Temporary Internet Files folder emptied: 1567402 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 1096 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes
->Java cache emptied: 668 bytes
->Flash cache emptied: 1145 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 33251 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 32902 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 2.00 mb


OTL by OldTimer - Version 3.2.26.1 log created on 07262011_233658

Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DF25B.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DF675.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFF648.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFF779.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFF940.tmp not found!
File\Folder C:\Documents and Settings\LainieM\Local Settings\Temp\~DFF96B.tmp not found!
C:\Documents and Settings\LainieM\Local Settings\Temporary Internet Files\Content.IE5\67ZUHECG\t27634-multiple-virus-malware-warnings-popping-up-and-i-don-t-know-how-to-respond[1].htm moved successfully.

Registry entries deleted on Reboot...

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
Hi,

How is your computer running now?

............................................................................................

I'm livin' life in the fast lane.

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
I just ran my usual Symantec virus scan and the only thing that came up was a tracking cookie that always appears and gets deleted. So I guess I'm good. Thanks for your help.

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
You're welcome, we're glad to help.

Your computer is now clean. Now, time to remove the tools used, and update your computer to prevent vulnerability.

Updating System Restore

Now to get you off to a good start we will clean your restore points so that all the bad stuff is gone for good. Then if you need to restore at some stage you will be clean. There are several ways to reset your restore points, but this is my method:




  • Select Start > All Programs > Accessories > System tools > System Restore.
  • On the dialogue box that appears select Create a Restore Point
  • Click NEXT
  • Enter a name e.g. Clean
  • Click CREATE.





You now have a clean restore point.

To get rid of the bad ones:




  • Select Start > All Programs > Accessories > System tools > Disk Cleanup.
  • In the Drop down box that appears select your main drive e.g. C
  • Click OK
  • The System will do a calculation of temporary/old files, and then display a dialogue box.
  • Select the More Options Tab.
  • At the bottom will be a System Restore box with a CLEANUP button click this
  • Accept the Warning and select OK again, the program will close and you are done.





========

Removing the tools

Now, to remove all of the tools we used and the files and folders they created, please do the following:

Download OTC.exe by OldTimer:




  • Save it to your Desktop.
  • Double click OTC.exe.
  • Click the CleanUp! button.
  • If you are prompted to Reboot during the cleanup, select Yes.
  • The tool will delete itself once it finishes.
    Note: If any tool, file or folder (belonging to the program we have used) hasn't been deleted, please delete it manually.





============

Update Programs

Please download the newest version of Adobe Acrobat Reader from Adobe.com

Please download the newest version of Java from Java.com.

===============

Staying Protected

If you don't have a anti-virus I recommend to download one of these free anti-virus programs:
1. Avast!
2. Avira
3. Microsoft Security Essentials

If you have Windows XP, then I recommend downloading one of these free firewalls if you do not already have one:
1. Comodo Firewall
2. Tallemu Online Armor

I recommend using MalwareBytes Anti-Malware for a anti-malware program.

If you don't have a anti-spyware I recommend to download this free program to help keep you spyware free:
1. SpywareBlaster

Please don't download more than one anti-virus, firewall, or anti-spyware because they will conflict with each other making your computer slow, data loss, and false results so please just don't do it.

================

Here are some prevention tips:

1. Torrents are a conduit of malware; this is why we highly recommend not using them as chances are extremely high that you will be infected from them.

2. Cracks/warez/keygens are another conduit of malware and are illegal so don't use them.

3. Disable auto-run to prevent auto-run worms from infecting your machine through USB drives.XP or Vista/7

4. Always make sure you have the latest Windows update.

5. Use a Site Advisor so you don't go to sites that will infect you. Web-of-Trust or Mcafee Siteadvisor

6. Also there are many holes and flaws in Internet Explorer I recommend using Firefox or Google Chrome to keep you more safe.

7. Always keep your Java and Adobe Reader updated and all older versions removed to keep clear from exploits.

8. Don't fall for Scareware. What is Scareware? A rogue anti-virus on your system that will scare you into buying their fake software due to false detections.

9. Be sure to always have a firewall and anti-virus installed at all times.

............................................................................................

I'm livin' life in the fast lane.

descriptionMultiple virus/malware warnings popping up and I don't know how to respond. - Page 1 EmptyRe: Multiple virus/malware warnings popping up and I don't know how to respond.

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum