Jump to content

three more rootkit unhooker logs


Gmanson
 Share

Recommended Posts

Ok since I have done something like this before I will need to backup what data the person needs from this machine including pictures and whatever else before I proceed with this step just to be sure.

Can we skip this for now and return to it later so I can try to backup what data that is requested from the person...?

In another case can we proceed with the #1.txt log then follow with other two. I have cleaned these up before and everything has been ran including spybot S@D, mbam, sas and dr web cure it and combofix on all three of them and cleaned up with hijackthis as well. I just need some insight if anything needs to be done with those three since I dont know about how to read from the logs so I just post them :).

Link to post
Share on other sites

You don't understand. There should be new thread for each single machine, this thread is for one computer, if you want to have another, you need new thread. Those were my instructions, but as something we can't understand I'll ask a colleague to take your case.

Well no one knows why here my posts were merged with this topic and I dont think they should have been and I dont think you understand since you did not read my post of where the only way i can run anything is off of my flash drive and i cannot even drag the file on top of combofix and the internet for it does not even work.

Link to post
Share on other sites

Gmanson,

I will see if I can help.

First thing, Please do not attach the scan results. Use copy/paste and post them..

Pick out only 1 pc that we're going to work with.

If you have run combofix on this pc, please post the scan results.

OK I will get the results from them when I can but it probably wont be until Thursday until that is possible.

Link to post
Share on other sites

Who's computers are these?

Don't you think it would be much easier for the owners of those computers to post their topic and work live with someone?

If they are using the computers while we're trying to clean them, this isn't going to work. We're both wasting our time.

You need to have the computers in your possession.

Link to post
Share on other sites

Who's computers are these?

Don't you think it would be much easier for the owners of those computers to post their topic and work live with someone?

If they are using the computers while we're trying to clean them, this isn't going to work. We're both wasting our time.

You need to have the computers in your possession.

The people I work with on these machines have their own company and jobs and appoint me to work on them since I have never been trained to use the tools this forum and other forums know how to use. I would really like to learn those tools and programs but I have not had a school successfully take me in so I can learn and that is why I always ask here and another forum for help. For the three logs attached in one post near beginning of topic I can do a remote connection and do the instructions that way.

Link to post
Share on other sites

The Anti-Malware schools train helpers to help in the Anti-Malware forums and not for someone to take the free training so they can perform their personal job better.

Anti-Malware forums are here to give free help for home users with their personal computers do not support business computers.

Here's some reasons why Anti-Malware forums do not help with company owned equipment.

Most commercial / business / work / "staff" type computers have user restrictions set by company policies. That's why employees / students do not have administrator rights for their company owned computer.

My real work is at a high school as a technician. If I were to remove some of the restrictions the school district has set in place, I'd probubly lose my job.

Most of the helpers who help on the forums would have no idea why a restriction is showing in a scan log like combofix. I'm sure they'd think the infection caused it and would remove it. Futher more, they would have no legal right to do anything to that computer.

What if I help you with this and we end up losing critical company data?

They going to come after me and/or MalwareBytes? They can, you know.

How do I know you really have the legal right to work on these computers?

BTW, MBAM free is for personal home users.

Link to post
Share on other sites

  • Root Admin

Hello Gmanson,

In order to obtain Corporate assistance so that you don't have to work on the forum you would need to obtain proper Corporate Licensing and then we'd be able to assist you from our Tech Support department. You're more than welcome though to seek free assistance from here or one of the many other forums however without proper licensing you cannot use our product on any business computer and would have to use only the available free tools. There are some helpers that will assist on a business machine but many will not and we do not control that as most are all volunteers.

If you'd like to discuss proper licensing please fill out the form here and speak with Sales about the licensing.

Please make sure to add both malwarebytes.org and salesforce.com to your Safe Sender list in email as well.

Thank you

Link to post
Share on other sites

Well I applied to learn and not to apply it to my work since alot of the things a do takes alot of patience and understanding.

I run my own computer repair company and some of what I have learned from forums like this by reading everything now and again everyonce in a while has taught me alot just by reading.

I have advised these ppl to make regular backups for logs 1 to 3 and they usually do once a month regardless, but for the other ones the system is to far gone and the only way to fix it is by cd as far as I know or recovery console somehow with a burned disc. I could make but with no way to back up the data I think its just a casualty of war and just shouldn't be tampered with since internet on it has not worked since i picked it up and has been in the same state for 6 months.

I know what steps to take to prevent lost data and it has worked ever since I am 23 now and I have been learning since I was 8 and will not stop until I cease to exist since this line of work for me is not only a dream but a passion.

They dont even know what forum I am using to ask for help and they are just waiting for a review is all just to see if there is any malware or rootkits in the logs is all i really need to know and what to do about it.

Furthermore I know MBAM is for home users as well and its done an excellent job in my eyes over the years Ive used it on this pc I am using now but since I have the highest free software I can put on here it has not picked up one single shred of malware yet so either im that good or im very safe :lol:.

Link to post
Share on other sites

Hello Gmanson,

In order to obtain Corporate assistance so that you don't have to work on the forum you would need to obtain proper Corporate Licensing and then we'd be able to assist you from our Tech Support department. You're more than welcome though to seek free assistance from here or one of the many other forums however without proper licensing you cannot use our product on any business computer and would have to use only the available free tools. There are some helpers that will assist on a business machine but many will not and we do not control that as most are all volunteers.

If you'd like to discuss proper licensing please fill out the form here and speak with Sales about the licensing.

Please make sure to add both malwarebytes.org and salesforce.com to your Safe Sender list in email as well.

Thank you

Are you saying I cant use the free product to clean up malware?

Link to post
Share on other sites

  • 2 months later...
Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.