Jump to content

Recommended Posts

Well, I tried all the methods suggested, but I encountered a lot of problems. MalwareBytes and AVG won't start, though AVG got its files completely corrupted while MalwareBytes is just unable to start. Can't access any sites to download new ones, and I have to use my repair disc quite often, as one of the viruses seems to be a boot-sector virus. One of them also likes to download porn applications-- I disabled my internet and am using another computer to try and get fixes. These viruses just came out of nowhere, just a day after I scanned my computer for viruses.

A couple problems I have, the main one being that I can't get MalwareBytes to start. I followed the instructions, but...

1. Tdssserv.sys doesn't show up on the non plug and play.

2. RootRepeal comes up with a few dozen hits, with things like

C:\WINDOWS\System32\Drivers\Fastfat.SYS

C:\Windows\System32\DRIVERS\ELmou.sys

C"\WINDOWS\System32\DRIVERS\e1e5132.sys

C:\WINDOWS\System32\DLA\DLApoolM.SYS

atapi.sys

ACPI.sys

PrtMr.sys

pciide.sys

Ntfs.sys

NDIS.sys

Mup.sys

DRVMCB.SYS

And so on. It goes on for quite a large list, and I don't know what to do.

My system is a Windows XP Media Edition, if that helps. In retrospect, it might've been one of the song lyric sites I went on(totally forgot to have Securemaker on), but I dunno. Any help please?

Link to post
Share on other sites

  • Root Admin

Please review the following and see if it helps you to get MBAM running.

Procedures to help resolve issues preventing MBAM from running

  1. MBAM won't run(Fix), SystemSecurity
  2. MB won't run(Fix) - Total-Security (FakeAlert)
  3. MBAM wont run (Fix) - av360 (Fakealert)
  4. MBAM wont install or will not run. - CLB Rootkit driver=TDSS/Seneka/GAOPDX/UAC

If not then download and run this.

Please visit this webpage for instructions for downloading ComboFix to your
DESKTOP
:
how-to-use-combofix

Please ensure you read this guide carefully and install the Recovery Console first.

NOTE!!:

You must save and run
ComboFix.exe
on your DESKTOP and not from any other folder.

Also,
DO NOT
click the mouse or launch any other applications while this is running or it may stall the program

Additional links to download the tool:

Note:

The
Windows Recovery Console
will allow you to boot up into a special recovery (repair) mode. This allows us to more easily help you should your computer have a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time.

Once installed, you should see a blue screen prompt that says:

The Recovery Console was successfully installed.

Please continue as follows:
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Click
    Yes
    to allow ComboFix to continue scanning for malware.

  • When the tool is finished, it will produce a report for you.

  • Please post the
    C:\ComboFix.txt
    along with a
    new HijackThis log
    so we may continue cleaning the system.

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this Topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

The fixes and advice in this thread are for this machine only. Do not apply the instructions from this thread to your own machine. Please start a new thread describing your issue and someone will be along to assist you.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.