We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

I have a serious infection

Options
145791014

Comments

  • samdd
    samdd Posts: 1,344 Forumite
    GunJack wrote: »
    good news, but just before you finish......

    go to Computer, right-click on your hdd and do a disk cleanup (or run CCleaner if you have it, both cleaner and registry cleaner parts), and as a final belt'n'braces I'd run combofix to ensure the last of the carp is blitzed :)

    The CCleaner is a brill bit of software.. Did both scans before reboot to clear out the crap fromf the registry. I also like to clear the cache once a week to keep FF running fast by using the 'ipconfig /flshdns' command to flush the dns resolver cache via the Admin dos shell.


    Ill do a combofix run a little later when ive cought up on my emails... :rotfl: Thanks for your help
  • samdd
    samdd Posts: 1,344 Forumite
    waddler_8 wrote: »
    I'm not convinced you are clean. The TDSS rootkit was removed but I've not seen anything yet to say that zero access has. The detections by mbam look like fresh malware.

    Thats what i thought and wondered where it had come from.. what do you recommend ? The system is running sweet though..
  • GunJack
    GunJack Posts: 11,836 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    waddler_8 wrote: »
    I'm not convinced you are clean. The TDSS rootkit was removed but I've not seen anything yet to say that zero access has. The detections by mbam look like fresh malware.

    this is exactly why I suggested running combofix, should clear out most stuff else. Actually, OP, you'd downloaded hitman pro haven't you ?? Hold down left Ctrl key and start hitman whilst holding it down..quick scan time and has supposedly been updated to get the ZA rootkit.

    Do both to be high% sure :)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • samdd
    samdd Posts: 1,344 Forumite
    GunJack wrote: »
    ...and then go to windows update, it looks like you're at least a service pack behind ;)

    I did check earlier but the only update i needed was IE related. Im not sure but there is only sp1
  • samdd
    samdd Posts: 1,344 Forumite
    GunJack wrote: »
    this is exactly why I suggested running combofix, should clear out most stuff else. Actually, OP, you'd downloaded hitman pro haven't you ?? Hold down left Ctrl key and start hitman whilst holding it down..quick scan time and has supposedly been updated to get the ZA rootkit.

    Do both to be high% sure :)

    ok ill do it now
  • samdd
    samdd Posts: 1,344 Forumite
    ok so, i've run Hitman pro 3 times.. its gets to 99% and then stops working before crashing. Going to try Combofix now....
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    If it runs, post the log it produces.
  • samdd
    samdd Posts: 1,344 Forumite
    Combofix seems to be deleting an awful lot of files.. User\***\ spkpod\incoming\ filth and games website that iv'e never been anywhere near.. Ill post the log when finished...
  • GunJack
    GunJack Posts: 11,836 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    sure sign you weren't as clear as you thought ;)

    Be interesting to see the log when it's done :)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • samdd
    samdd Posts: 1,344 Forumite
    before Combofix would run it removed a vurus, not sure what it said as it was to fast for me, but i did see the word Rootkit before it closed down to remove the infection. Its been deleting files for about 7 mins now and still going..

    How come i have so many filth websites in my system? If plod were to see what im seeing bing deleted then id be locked up... lol
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.8K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.