Can't get rid of Trojan Poweliks.Gen.2

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7041

    #16
    Looks like the last fix removed the malware for good!

    One final check for malware, then I will feel confident to send you on your way with a clean machine.

    Zoek Scan

    Disable your antivirus prior to this scan.
    Download Zoek
    Save the file to your desktop.
    Right click Zoek.exe and run as administrator. (Xp Users double click)
    Copy the items in red below, and paste them into Zoek.

    createsrpoint;
    emptyfolderscheck;delete
    emptyclsid;
    emptyalltemp;
    ipconfig /flushdns;b
    ResetHosts;
    autoclean;


    Now hit the run script button.
    The log will appear after a reboot, also you can find it on the C: drive.
    Post the log in your next reply.

    Security Check Scan.

    [ul]
    [li][/li]
    • [li]Download Security Check to your desktop.[/li][/ul]
      [ul]
      [li]Right click it run as administrator.[/li][/ul]
      [ul]
      [li]When the program completes, the tool will automatically open a log file.[/li][/ul]
      [ul]
      [li]Please post that log here in your next post.[/li][/ul]

    Comment

    • clarkgriswold
      PCHF Member
      • Feb 2017
      • 39

      #17
      Unfortunately, I could not run either application.

      I have attached my screen shot errors below.

      Comment

      • Malnutrition
        PCHF Moderator
        • Jul 2016
        • 7041

        #18
        Originally posted by clarkgriswold
        Unfortunately, I could not run either application.
        No problem sometimes these programs do not work on some machines…

        Instead, lets do a final check with Eset Online Scanner.

        ESET Online Scanner

        Important note:
        This scan may take an extended amount of time, make certain your machine does not go to sleep.

        [ul]
        [li]Click here to download the installer for ESET Online Scanner and save it to your Desktop.[/li][li]Disable all your antivirus and antimalware software [/li]
        [li]Right click on esetsmartinstaller_enu.exe and select Run as Administrator.[/li][li]Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.[/li][li]Select Enable detection of potentially unwanted applications.[/li][li]Click Advanced Settings, then place a checkmark in the following:[/li]
        • [li]Remove found threats[/li][li]Scan archives[/li][li]Scan for potentially unsafe applications[/li][li]Enable Anti-Stealth technology[/li][/ul]
          [li]Click Start to begin scanning.[/li][li]ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.[/li][li]When the scan is done, click List threats (only available if ESET Online Scanner found something).[/li][li]Click Export, then save the file to your desktop.[/li][li]Click Back, then Finish to exit ESET Online Scanner.[/li]

        Comment

        • clarkgriswold
          PCHF Member
          • Feb 2017
          • 39

          #19
          ESET picked up a few items, file attached…

          Comment

          • Malnutrition
            PCHF Moderator
            • Jul 2016
            • 7041

            #20
            Ok, things are running smooth now?
            No more issues?
            Do you consider this matter solved?

            Here are couple of free antivirus that are really good. In order of my personal preference…

            SecureAplus
            – Free for a year.
            Panda Cloud Free.
            Sophos Home – Good but a little heavy on resources.
            360 Total Security

            Add these to the above for solid protection…

            [VooDooShield.](‘http://voodoo Shield.’) – Slightly annoying while it learns your machine, but after that a solid piece of software to have on your machine.
            Ublock origin.
            Anti Ad block Killer.
            Ad Blocking DNS – Set this on your router to block most ads on all your devices.

            Comment

            • clarkgriswold
              PCHF Member
              • Feb 2017
              • 39

              #21
              I guess it’s solved if in your opinion the machine is clean…I defer to your judgement.

              At this point, should I remove/uninstall all the tools that I have downloaded?

              Just to clarify, the programs you have listed in the previous post are preferred to the typical pay for, Antivirus/Firewall and Security suites?

              I can’t thank you enough for your help and taking the time to rectify this issue.

              Is there any way that I can donate to the forum? - Scratch that, I see it above.

              Comment

              • Malnutrition
                PCHF Moderator
                • Jul 2016
                • 7041

                #22
                Glad to have helped!! Please tell a friend … or two about us. https://forum.windowsinstructed.com/...cons/smile.png

                Optimize your internet connection.

                Click here for instructions.


                suggest the following in place of adblock.
                Alternate DNS Server. Ad Blocking DNS.
                Ublock Origin.
                Anti Ad Block Killer.

                Also, keep your browsing private with these tools:

                Self Destructing Cookies.
                Self Destructing Cookies Chrome.

                Some items to keep you safe on the internet.

                VooDoo Shield. control of what is running on your machine
                Qualys BrowserCheck To update plugins.
                Web Of Trust To Avoid Shady Websites.
                Unchecky To Avoid Bundled Software.
                Privazer To Clean up your mahcine.

                Now Lets Clean up the tools we used and remove old restore points.

                Download DelFix by “Xplode” to your Desktop.
                Right Click the tool and Run as Admin ( Xp Users Double Click)
                Put a check mark next the items below:

                Remove disinfection tools
                Create registry backup
                Purge System Restore

                Now click on “Run” button.
                allow the program to complete its work.
                all the tools we used will be removed.
                Tool will create and open a log report (DelFix.txt)
                Note: The report can be located at the following location C:\DelFix.txt
                Originally posted by clarkgriswold
                Just to clarify, the programs you have listed in the previous post are preferred to the typical pay for, Antivirus/Firewall and Security suites?
                Yes, these programs will suit the average user just fine. I would not spend money on an antivirus unless I were running a business, or I work from home with my machine.

                Comment

                • clarkgriswold
                  PCHF Member
                  • Feb 2017
                  • 39

                  #23
                  Hmm the link to download Delfix does not seem to be working.

                  Comment

                  • Malnutrition
                    PCHF Moderator
                    • Jul 2016
                    • 7041

                    #24
                    Link fixed.
                    No need to post that log, it just cleans up the tools we used and sets a new restore point.

                    Comment

                    • clarkgriswold
                      PCHF Member
                      • Feb 2017
                      • 39

                      #25
                      I ran it and it cleaned up some of the tools but 6 remain.

                      Should I run it again or delete manually?

                      Comment

                      • Malnutrition
                        PCHF Moderator
                        • Jul 2016
                        • 7041

                        #26
                        Originally posted by clarkgriswold
                        Should I run it again or delete manually?
                        Yes, Remove anything you wish manually… Or keep for future use your choice.

                        Comment

                        Working...