Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Trojan horse hider, win32 lebag win32 heur I'm riddled HELP [Close


  • This topic is locked This topic is locked

#16
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Really struggling to run it, have got it onto,pc via USB stick, but it's struggling to run, and have been able to save it to desktop
  • 0

Advertisements


#17
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Am running combo fix, got blue screen showing message saying scan time may easily be double 10minutes if badly infected
  • 0

#18
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK run this quick OTL fix and immediately follow it with the combofix run.. Do from safe mode if necessary

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

If you have Malwarebytes 1.6 or better installed please disable it for the duration of this run

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :processes
    killallprocesses

    :OTL
    O4 - HKU\.DEFAULT..\Run: [HorAtbfq] H:\Documents and Settings\Andy & Joanna\Local Settings\Application Data\yiangwkb\horatbfq.exe File not found
    O4 - HKU\S-1-5-18..\Run: [HorAtbfq] H:\Documents and Settings\Andy & Joanna\Local Settings\Application Data\yiangwkb\horatbfq.exe File not found

    :Files
    H:\Documents and Settings\Andy & Joanna\Local Settings\Application Data\yiangwkb

  • Then click the Run Fix button at the top
  • Let the program run unhindered,

  • 0

#19
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Should I cancel the combo fix run as not sure if it's actually doing anything
  • 0

#20
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
If it is running through the stages then leave it, otherwise stop the programme - run OTL fix and try again.

I do have another programme we can utilise if Combofix should fail
  • 0

#21
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Ok, I tried to cancel but it won't let me so it's either stuck, or it's righty stopping me
  • 0

#22
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Is it running through numbered stages and are they increasing ?
  • 0

#23
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
It's still running but I can't Ctrl alt del to run task manager to cancel
  • 0

#24
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
No I think it's completely stuck as its just the original message, and nothing since
  • 0

#25
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Reboot the system please

Run the OTL fix and then :

Download AVPTool from Here to your desktop

Run the programme you have just downloaded to your desktop (it will be randomly named )

First we will run a virus scan

Click the cog in the upper right
Posted Image


Select down to and including your main drive, once done select the Automatic scan tab and press Start Scan
Posted Image

Allow AVP to delete all infections found
Once it has finished select report tab (last tab)
Select Detected threats report from the left and press Save button
Save it to your desktop and attach to your next post


Now the Analysis

Rerun AVP and select the Manual Disinfection tab and press Start Gathering System Information

Posted Image

On completion click the link to locate the zip file to upload and attach to your next post

Posted Image
  • 0

Advertisements


#26
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Ok will do, just turned off when I turn back on do I disable avg again beforenhand
  • 0

#27
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
No no real requiremet as AVP will do a full scan and cure before it produces the analysis fiiles
  • 0

#28
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Still here, it got stuck part way through otl, won't reboot now
  • 0

#29
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK this is a pain in the butt

Reboot the computer to safe mode with networking - are you happy how to do that ?

Reboot the computter and then repeatedly press F8 until you get a menu then select safe mode with networking

Download and run AVP from there
  • 0

#30
nobbyburton

nobbyburton

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 173 posts
Managed to boot up, all sort of messages about no disk dr2 not seen that before but eventually now back into pc, will retry otl
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP