Please,can anyone help me???My pc has been infected in some way!i will try t explane:Every time i open a web site another connection starts open a website that i didn’t request!!!This happens expecially when i login in my private pages(mailbox etc…).If someone could give me some advice it will be appreciate…
-= Please, download Malawarebytes Antimalware & have a scan.
URL: http://download.cnet.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html?tag=mncol
-= You may also download Trend Micro Hijack This, have scan & post the log file so we may a have deeper overview of the problem…
URL: http://download.cnet.com/Trend-Micro-HijackThis/3000-8022_4-10227353.html?tag=mncol;pop
Welcome to the forums, akira 75.
The proper way to use MBAM, SAS, or any other such program is …
Download it > update it > run it > post the results log here
After running MBAM, download and run HJT (does not need updating) and post the log here.
[b]update it[/b]
-= That’s what I always forget to tell… Thanks CharleyO…
No problem … glad to help.
Hopefully, akira 75 will come back soon with the needed info.
malware bytes seems to be working,but it’s taking a long time(28 infected elements found…so far).thank you both guys,i will update soon!
:(at the endof the MALWARE BYTES scan the problem doesn’t seem to be solved.Then i let HIJACK THIS do the job,but it doesn’t remove automatically the results of the scan.
at this point i should to know wich file/progam delete by clicking “fix checked” ???
Please post the log results from MBAM , and also your Hijackthis log, which will be in program files/trend micro/hijackthis/HJT log
Yes, before you do anything, post those logs !
here is mbam log file…
and this should be hijack this log…
-= Here is the result of your Hijack This log… Though it may differ from other’s findings…
-= O4 - HKCU..\Run: [WeatherDPA] “C:\Program Files\Zango\bin\10.3.75.0\Weather.exe” -auto
possible threat…
-= O3 - Toolbar: (no name) - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - (no file)
this is already deactivated & can be fixed…
-= O3 - Toolbar: (no name) - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - (no file)
already deactivated adware…
-= O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
seems to be part of %ProgramFiles%\Windows Live\Messenger but I cant completely assure it…
You downloaded Zango! :o
Zango installs lots of malware!
Adware.180Solutions
Adware.Zango
Adware.Shopper
Adware.Navipromo
Are you running Mcafee AV too ? I see some entries
This entry O4 - HKCU..\Run: [oaiau] “c:\users\fausto\appdata\local\oaiau.exe” oaiau
Can you send oaiau.exe to VT and post the results
Done…thank u very much.After this i hope to know s’thing more 'bout malware stuff(just a little bit ;))and i hope it will be right now!it was (?)very bothering having all those connection unwanted.I will get in touch if something should turn bad ,anyway…thanx!!! ;D
It was already on the system…and i had no idea of what it was about… :-\
Should i remove macafee and keep only avast!?..then…i’m sending the file you told me about(but i 'not sure i’m sending it correcly,because i copyied and paste it to send it) …i will see!thanx
Did you buy mcafee, if you uninstall you will lose the firewall. Having two resident AV’s is a bad idea.
If you uninstall there is a removal tool from mcafee,( i will have a root around ) Also you will need to enable windows firewall
macafee was already in the system that i’ve buyed…probably there is a guided process to uninstall…it should be easy i suppose… ::)…or not?and…about the file we talked before,i get info from hijack info service that is almost sure to be the cause of the problem.Infact i didn’t remove the file and few min.ago a not request webpage opened. >:(…i think i should delete it…Many thanx 4 your answers to al f you,anyway
Can you copy/paste the results for the file you sent to virustotal