I have seen other posts about the constant notification from avast when searching the web. I have already downloaded the FRST.TXT file and ran a scan attached are the logs that were generated. Any help would be appreciated.
You will get highly qualified help here.
Don’t forget to post the logs suggested here…
http://forum.avast.com/index.php?topic=53253.msg451454#msg451454
I sincerely wish you the best.
Also attach Malwarebytes and OTL logs http://forum.avast.com/index.php?topic=53253.0
Here are the additional logs
i see you have avast and AdAware installed … http://www.lavasoft.com/mylavasoft/support/supportcenter/faqs/incompatible-softwares
General: Uninstalling a third-party antivirus software http://www.avast.com/en-eu/faq.php?article=AVKB11#artTitle
and you dont need SpyBoot SD or AdAware when you have avast and Malwarebytes …
I uninstalled Ad-Aware and spybot
A little help…Just don’t want my post to get buried.
@Exodia
Let’s give your mashine a nice treatment with ComboFix. Thereafter, please re-run FRST and post me fresh FRST.txt logreprots.
- Please download ComboFix by sUBs from here and save it to your Desktop.
If you are unsure how ComboFix works please read this guide carefully.
Note: ComboFix must be downloaded to your Desktop.
- Temporarily disable your AntiVirus program, usually via a right click on the System Tray icon. They may interfere with Combofix.
If you are unsure how to do this please read this or this Instruction.
Instructions how to disable avast:
[*]Right click on the avast! system tray icon (
http://www.mcshield.net/pg/images/avast5.png
) in the lower right corner of the screen and scroll up to avast! shield controls;
[*]In the menu that appears, choose Disable Permanently. When you are prompted to turn off security, click Yes.
Note: Do not forget to turn back on this option after the cleaning by choosing avast! shield controls > Enable all shield options.
- Run ComboFix. Click on I Agree!
[i][size=7pt]- ComboFix will display DISCLAIMER of warranty on software.
By clicking I Agree ComboFix shall continue.
- ComboFix will check if there is a newer version of ComboFix available.
Click Yes if prompted to download.[/size]
-If Recovery Console is not installed, ComboFix will offer download & installation.
Click Yes to allow ComboFix to install Recovery Console. - ComboFix will scan your computer in stages, total of 50 stages.
Do not mouse-click around while ComboFix is running.
Note:If you see a message like “Illegal operation attempted on a registry key that has been marked for deletion” just restart your computer.
[/i]
- When the tool is finished, it will produce a log report for you. (typical location: C:[b]ComboFix.txt[/b] )
Attach log reports ( ComboFix.txt) back to topic.
====================================
Re-run FRST, hit Scan button and post me fresh FRST.txt logreport.
Thanks for the help attached is the combo log and FRST log as instructed.
@Exodia
FRST has been updated to show the latest patched malware variant.
Please re-run FRST, allow the tool to update itself and post me fresh FRST.txt logreprot.
Here it is.
Hi,
Posted logs appears clean. First, we will uninstall the ComboFix as it is necessary to.
[*] Click Start (or
http://amf.mycity.rs/pg/images/VistaStartButton.png
) then Run.
On Windows7 or Vista you may use Start Search field if Run is not available.
[*] In the line of text type in (Copy) the following:
ComboFix /Uninstall
Note that there is a space between " ComboFix " and " /Uninstall " .
[*] then click OK (or press Enter ). [/list]
Wait for the uninstall process is complete.
====================================
Next…
We shall run zoek to additional clean junk files, some empty keys and clean temp & cache. Just to preform some junk cleaning.
Please download zoek.zip or zoek.rar by smeenk (
http://www.mcshield.net/personal/magna86/Images/Zoek_icon.png
) from here or here and save it to your Desktop.
Unpack the archive…
[list]
[*]Close any open browsers
[*] Temporarily disable your AntiVirus program. (If necessary)
If you are unsure how to do this please read this or this Instruction.
[*]Double click on zoek.exe to run the tool .
Please wait while the tool does not start…
[*]Copy the text present inside the code box below and paste it into the large window in the zoek tool:
EmptyCLSID;
AutoClean;
[*] Click on
http://www.mcshield.net/personal/magna86/Images/Run%20Script%20by%20zoek.png
button.
Please wait until a logreport will open (this can be after reboot)
[*]Save notepad to your Desktop and attach here zoek-results.log
Note: It will also create a log in the C:\ directory named “zoek-results.log”
====================================
Next…
As you are malware free and posted logs are now appear cleans and show no signs of active infection, good workman always cleans up after himself.
• The following will implement some post-cleanup procedures:
=> Please download DelFix by Xplode to your Desktop.
Run the tool and check the following boxes below;
[i]
http://www.mcshield.net/personal/magna86/Images/checkmark.png
Remove disinfection tools
http://www.mcshield.net/personal/magna86/Images/checkmark.png
Create registry backup
http://www.mcshield.net/personal/magna86/Images/checkmark.png
Purge System Restore [/i]
Click Run button and wait a few seconds for the programme completes his work.
At this point all the tools we used here should be gone. Tool will create an report for you (C:[b]DelFix.txt[/b])
The tool will also record healthy state of registry and make a backup using ERUNT program in %windir%\ERUNT\DelFix
Tool deletes old system restore points and create a fresh system restore point after cleaning.
I ran the delfix program before posting my zoek file and it got rid of it. Should I rerun the zoek step again or do you think I am okay at this point.
That’s Ok. I forgot to tell you that I do not need zoek log.
Cheers,