I would like to seek your help in removing a malware(s) from my system. I have also read the “Logs to assist in cleaning malware” thread and I have attached the 3 logs files (MBAM, OTL and Extras)
Please let me know if additional details would be required.
I can see no sign of sality there at the moment, but we will check that out
The following programme may need to be run several times and no guarantee can be given
Download Sality Killer zip to your desktop and extract SalityKiller.exe
Run the utility SalityKiller.exe on the infected computer
A reboot might require after disinfection.
Download the file Sality_RegKeys.zip
unpack the file Sality_RegKeys.zip
run the file Disable_autorun.reg from the archive Sality_RegKeys.zip
Once the scan is over, from the archive Sality_RegKeys.zip run the file of the registry key:
under Windows 2000 run the registry file SafeBootWin200.reg
under Windows XP run the registry file SafeBootWinXP.reg
under Windows 2003 run the registry file SafeBootWinServer2003.reg
under Windows Vista / 2008 run the registry file SafebootVista.reg
under Windows 7 / 2008 R2 run the registry file SafebootWin7.reg
THEN
Warning This fix is only relevant for this system and no other, using on another computer may cause problems
Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot
Run OTL
[*]Under the Custom Scans/Fixes box at the bottom, paste in the following
:Commands
[CREATERESTOREPOINT]
:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\SymIM.sys -- (SymIMMP)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\SymIM.sys -- (SymIM)
:Commands
[resethosts]
[emptytemp]
[Reboot]
[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
Salitykiller detected some from the D: drive (internal partition) and cleaned it up.
I was not experiencing any major problems when I started this thread. I only encountered virus alerts from avast. After which, i scanned the system and found that there were a number of files which were infected. That’s when I did some research and stumbled upon this forums.
I did a full system scan from Avast earlier and it did not detect any Sality or Kukacka. I guess the problem is solved?