Addition.txt 38.43KB 337 downloads FRST add.txt 564.73KB 380 downloadsSo after a lot of headache I finally got my computer scanned and it looks like its a mess. I've been dealing with a high jacked Browser for a week now I couldn't do anything. As soon as windows loaded my browser would pop open and start going all over the place. I couldn't even refresh my computer or change certain settings. It's just been nuts, I've never experience anything like it. Anyway I hope to be able to get this resolved with a lot of help I'm sure.
#1
Posted 04 February 2018 - 08:57 PM
#2
Posted 05 February 2018 - 08:20 AM
Looking over your logs, back as soon as I've had time to check them through.
#3
Posted 05 February 2018 - 08:43 AM
Hi vannster69
I'm Gary R,
Before we start: Please be aware that removing Malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.
Because of this, I advise you to backup any personal files and folders before you start.
Please observe these rules while we work:
- Do not edit your logs in any way whatsoever.
- Perform all actions in the order given.
- If you don't know, stop and ask! Don't keep going on.
- Please reply to this thread. Do not start a new topic.
- Stick with it till you're given the all clear.
- Remember, absence of symptoms does not mean the infection is all gone.
- Don't attempt to install any new software (other than those I ask you to) until we've got your computer clean.
- Don't attempt to clean your computer with any tools other than the ones I ask you to use during the cleanup process. If your defensive programmes warn you about any of those tools, be assured that they are not infected, and are safe to use.
If you can do these things, everything should go smoothly.
It may be helpful to you to print out or take a copy of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.
OK, there's a whole mass of stuff showing in your logs, but the "key" indicator of your infection is the entry below ...
HKLM\SYSTEM\CurrentControlSet\Services\vpceksg <==== ATTENTION (Rootkit!)
.... which indicates that you have an infection we're calling SmartService.
There are numerous versions of this infection (which appears to be still under active development by its creator), and which exact one you have may affect how successfully we can remove it.
So ...... there are two options open to you ......
- You can reset your computer to "factory" conditions, in which case you will lose your personal files and folders, and any programs and apps that you have installed.
- We can attempt to clean the infection off your machine.
The first option is probably quicker, and is pretty much guaranteed to work.
The second option preserves your files and programs, but is a fairly "involved" process, will probably take some time to complete, and is not guaranteed to return your machine to exactly how it was before you got infected.
Please let me know which of the above options you wish to take
If it is the option to clean your machine, please answer the following questions ....
- Do you have access to another "clean" computer that we can use to download the tools we'll need ? (Your infection will "modify" any tools that are downloaded on the infected machine.
- Do you have access to a USB flash drive that we can use ? (to transfer things to and from the infected machine)
#4
Posted 07 February 2018 - 12:10 AM
Do you still need help ?
It is nearly 2 days since I posted in reply to your request for help, and I haven't heard anything from you.
If you no longer need help, please let me know.
If I don't hear from you within another 24 hours, I will presume that that is the case, and close this topic.
#5
Posted 07 February 2018 - 09:23 AM
Thank You and let me hear back from you.
Vann
#6
Posted 07 February 2018 - 09:33 AM
What process did you use to "clean your whole disk drive" ?
How are you overwriting your hard drive ?
#7
Posted 17 February 2018 - 04:35 AM
Due to lack of feedback, this topic has been closed.
If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
Similar Topics
Also tagged with one or more of these keywords: MALWARE, VIRUS
|
Security →
Virus, Spyware, Malware Removal →
Having Powersheel.exe Issues ... Need fixlist.txtStarted by raj0171 , 19 Mar 2024 Virus, HELP, Malwarebytes |
|
|
|
|
Security →
Virus, Spyware, Malware Removal →
HP desktop - google.com is in Norwegian [Solved]Started by wayneman50 , 23 Jul 2023 internet, google, virus and 1 more... |
|
|
|
|
Security →
Virus, Spyware, Malware Removal →
Possible Malware infection - help request [Solved]Started by Maffu , 07 May 2023 malware, advapi and 1 more... |
|
|
|
|
Security →
Virus, Spyware, Malware Removal →
Help getting started checking laptop for malware [Solved]Started by triedeverything , 12 Apr 2023 help, malware, spyware |
|
|
|
Security →
Virus, Spyware, Malware Removal →
Virus InfectionStarted by ForrestGump , 05 Oct 2022 Virus |
|
|
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users