win32:malware-gen unable to run exe files

Attached is the KAV scan results

Hi kkart,

Nothing to worry about in the Kaspersky log.

Please post a new OTL log.

[*]Double click on OTL.exe to run it. Make sure all other windows are closed and to let it run uninterrupted.
[*]When the window appears, underneath Output at the top change it to Minimal Output
[*]Uncheck the boxes beside LOP Check and Purity Check.
[*]Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

Thanks

Find attached the OTL log, thanks!

Hi Kkart,

One little fix and we’ll clean up the tools.

Next, Double click on OTL.exe
[*]Under the Custom Scans/Fixes box at the bottom, paste in the following
[*]Do Not copy the word CODE
[*]please note the fix starts with the :

:OTL
[2009/12/01 08:33:15 | 00,001,744 | -H-- | M] () -- C:\WINDOWS\System32\nihukote


Then click the Run Fix button at the top

Clean up time.

From your desktop, please delete
[]any notepads/logs that we created
[
]RootRepeal.exe

Next

Click the Start button, click Run. Copy and paste the following line into the run box and click OK
Combofix /uninstall

Open OTL then click the Clean Up button. You may get prompted by your firewall that OTL wants to contact the internet - allow this. A cleanup.txt will be downloaded, a message dialog will ask you if you want to proceed with the cleanup process, click Yes. This will do some clean up tasks and delete some of the tools you have downloaded plus itself.

Some Recommendations and prevention tips

Basic security consists of 1 antivirus program, 1 resident antispyware program, 1 on demand antispyware program and a firewall. Just add a firewall and a resident antispyware program.

I suggest either or ask in the General Forum

Windows Defender
OR
Winpatrol

  • If you are behind a router Windows firewall should be fine. Otherwise a 3rd party firewall with outbound monitoring is recommended.

Click FIREWALL for tips, reviews and links to good, free and paid for firewalls. (Note: Zone Alarm is becoming bloatware, imo)

You all ready have Spyware Blaster to help immunize your computer.

-Secure your Internet Explorer

From within Internet Explorer click on the Tools menu and then click on Options.
[*]Click once on the Security tab
[*]Click once on the Internet icon so it becomes highlighted.
[*]Click once on the Custom Level button.
[*]Change the Download signed ActiveX controls to Prompt
[*]Change the Download unsigned ActiveX controls to Disable
[*]Change the Initialize and script ActiveX controls not marked as safe to Disable
[*]Change the Installation of desktop items to Prompt
[*]Change the Launching programs and files in an IFRAME to Prompt
[*]Change the Navigate sub-frames across different domains to Prompt
[*]When all these settings have been made, click on the OK button.
[*]If it prompts you as to whether or not you want to save the settings, press the Yes button.
Next press the Apply button and then the OK to exit the Internet Properties page.

  • Keeping your Windows up-to-date is crucial to your computer’s security. Please go to the Windows Update Site (using Internet Explorer) and download and install all critical updates on a regular basis

  • Ensure that Automatic Update is turned on so you get all the latest patches.
    Click start, control panel, click Security Center.

  • Keep your antivirus program updated, as well as any other security programs you have.

  • You may also want to read this article By Tony Klein
    http://www.freedomlist.com/forum/viewtopic.php?t=22879

Take care

Thank you very much! I am installing Windows Defender now, and yes I am behind a router. I really appreciate all the time you took with this, it seems I am running almost like new now, thank you!!!

@ oldman

Windows Defender and WinPatrol work well together.

@ kkart

I use both.

Hi Kkart,

Thank you very much! I am installing Windows Defender now, and yes I am behind a router. I really appreciate all the time you took with this, it seems I am running almost like new now, thank you!!!
You are very welcome. :)

@YoKenny

Yep, but they do pretty much the same thing.