Wednesday, December 28, 2011

System Fix Removal Log 12-28

The Kaspersky scan of the C drive gave one trojan virus, located in AppData.  I thought I would be able to save the log, but this did not happen.

The Malwarebytes scan gave 4 threats, but they all seem legitimate, so I did not delete them. Keep this in mind if the computer still has problems. 

See the virus_log directory on the C: drive for a report on this scan.

My computer still does not let the TDSS killer software run.


I finally got TDSS killer to work, though due to a link from the site mentioned in the 'very helpful...' post from yesterday.




Things seem pretty clean, but

http://forum.kaspersky.com/index.php?showtopic=212719http://forum.kaspersky.com/index.php?showtopic=212719 

It found no rootkits, so the kapersky antivirus software I ran must have done the job.

NOTE: I searched for  FBapqcwc1aEov8 at HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, but I could not find it, so hopefully it is completely gone.

I ran SECURIA and it found 5 insecure programs: adobe flash player, adobe reader, java, itunes, and something else. I updated them all, although 2 programs are not indicating this yet.

I installed Microsoft Security Essentials

Here is the microsoft security website, it looks like it has good links to free malware and virus removal programs

http://www.microsoft.com/security/default.aspx

Create an automatic virus scan routine, with 

Rkill (if necessary)
TDSS killer (if necessary)
Microsoft Security Essentials
Malwarebytes
Securia

So I can do this more quickly, and regularly.

Information about system registry

System configuration information is stored centrally in a hierarchical database called the registry. You can use Registry Editor to add and edit registry keys and values, restore the registry from a backup or to default values, and to import or export keys for reference or backup.
You can also print the registry and control which accounts have permission to edit the registry.
For more information about the registry, including registry concepts and securing the registry, go to the Windows Server TechCenter (http://go.microsoft.com/fwlink/?LinkID=53495).

Microsoft releases a malicious software tool every month:

http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=9905

I ran a quick scan with a microsoft malicious software remover; it foundn othing.

TDSS killer still only runs for the last version I downloaded, which seems suspicious

12:34pm My computer, control panels, and other options still do not come up on the start menu. Only noticeable difference right now. Computer seems to be running  better.

6:21 pm

Microsoft Security Essentials found nothing after a full scan of 1.5 million things, so I am going to run the backup process tonight. I probably won't reinstall windows because I don't know what the implications on the Linux side this would have.

TODO:
I still need to get the links to my computer, control panels, etc. back. This link may help
http://www.2-viruses.com/remove-system-fix

No comments:

Post a Comment