Hi, i have a problem with my computer. I’m using a windows 7 sony vaio SB28GG laptop. recently i’ve had this annoying Windows Command Processor pop up that will keep prompting for permission even when i click No. this occurs every second after i click yes or no. it says program location is C:\windows\sysWOW64\cmd.exe and C:\users<username>\Appdata\Local\Temp\pggumkoakrdygqne.exe
i ran a full scan on avast and also malwarebytes anti malware. they both came up with some infections and i removed them but when i restart my laptop the pop up appears again. any help? @@
[*]Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
[*]Select All Users
[*]Under the Custom Scan box paste this in netsvcs
%SYSTEMDRIVE%*.exe
/md5start
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
C:\Windows\assembly\tmp\U*.* /s
CREATERESTOREPOINT
[*]Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
[*]When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
[*]Attach both logs
upload suspicious file(s) to www.virustotal.com and test with 43 malware scanners
when you have the result, copy the url in the address bar and post it here for us to see
heh thanks for the reply! sorry though, i deleted the malware file yesterday after malwarebytes couldn’t remove the malware. so sorry!! i hope i didnt make it more complicated :-X :-X the problem still persists though. heres the OTL log.
[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
i pasted it and run fix and a blue screen appeared. something around stop error with dumping physical memory at the bottom. something about shut down to prevent something … should i try again?
by the way, since i got this virus, my skype doesn’t function properly. it always say that it has an unexpected error and thus have stopped working. only when i restart … does it have anything to do with the malware? i tried redownloading and reinstalling but meh =/
Download ComboFix from one of the following locations: Link 1 Link 2
VERY IMPORTANT !!! Save ComboFix.exe to your Desktop
IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here
[*]Double click on ComboFix.exe & follow the prompts.
[*]Double click on ComboFix.exe & follow the prompts.
[*]Accept the disclaimer and allow to update if it asks
Refering to the picture above, drag CFScript into ComboFix.exeWhen finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply.