Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works

Malware Wipe removal after paid-for installation

  • Please log in to reply



    New Member

  • Member
  • Pip
  • 1 posts
Greetings from an Aussie in sunny southern Spain!!

I am helping a friend who responded to a pop-up ad and (yes!) paid for, downloaded and installed Malware Wipe.

I have followed the steps in this malware forum (many thanks to all who provide help here!!), and I appear to have removed Malware Wipe and a bunch of other spyware (SpywareNo, The Spy Guard, etc.) with AdAware and Spybot, then more with Ewido.

I have attached the Ewido scan report. Unfortunately, in Safe Mode, I could not see the whole Ewido screen on the LCD monitor, and I was unable to select all the suggested options.

I would appreciate the forum's feedback on any further action I should take.


ewido anti-spyware - Scan Report

+ Created at: 1:14:08 PM 6/24/2006

+ Scan result:

C:\WINDOWS\system32\noeyttth.exe -> Adware.Hotbar : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ishost.exe -> Downloader.Zlob.qd : Cleaned with backup (quarantined).
C:\WINDOWS\system32\issearch.exe -> Downloader.Zlob.uf : Cleaned with backup (quarantined).
C:\WINDOWS\system32\ixt0.dll -> Downloader.Zlob.uf : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Desktop\Icons\ErrorSafeScannerInstall.exe -> Not-A-Virus.Downloader.Win32.WinFixer.j : Ignored.
C:\WINDOWS\system32\components\flx6.dll -> Not-A-Virus.Hoax.Win32.Renos.dp : Ignored.
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt -> TrackingCookie.Com : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run\\kernel32.dll -> Trojan.Small : Cleaned with backup (quarantined).

::Report end
  • 0


Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP