Backdoor on my pc (Solved)

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Ichigo
    PCHF Member
    • Dec 2022
    • 61

    #16
    nevermind I found the listed items

    Comment

    • Malnutrition
      PCHF Moderator
      • Jul 2016
      • 7041

      #17
      Question one.

      Preferably Frst should be ran from your desktop, but in order for the fix to work Frst and the fix list need to be in the same location. Best, if you can to place them both on the desktop.

      Question two. [which items]

      You answered your own question, it’s the items listed in the quote box.

      Question three. [what do I do with this]

      Download the Clearlnk utility to your desktop. And then drag the check browser text file onto it. As per animation.

      And as far as removing the malware on your machine, yes we can be certain that it will be gone 100 percent when we are done here and Will check with a couple tools to make sure.

      Comment

      • Ichigo
        PCHF Member
        • Dec 2022
        • 61

        #18
        Okay, thanks alot for your help and is this file AVZ?[ATTACH type=“full”]11057[/ATTACH]

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7041

          #19
          Leave it in the folder or it will not run correctly.

          Run the fix with it as instructed.

          Disable your antivirus prior to running AVZ!
          Run AVZ as admin! (located in the folder …Autologger\AVZ) click File => Customs Scripts.
          Copy the content of the text file I uploaded. (AVZFix.txt)
          Click edit select all copy.
          Paste into AVZ window.
          Make sure the word begin is in the absolute top left of the window as per picture below.
          [IMG alt=“1671501413627.png”]https://pchelpforum.net/attachments/...627-png.11053/

          Hit Run Fix.[/IMG]

          Comment

          • Ichigo
            PCHF Member
            • Dec 2022
            • 61

            #20
            [ATTACH type=“full”]11058[/ATTACH]
            @Malnutrition I don’t have the same interface

            Comment

            • Ichigo
              PCHF Member
              • Dec 2022
              • 61

              #21
              Nevermind I found out, sorry.

              Comment

              • Malnutrition
                PCHF Moderator
                • Jul 2016
                • 7041

                #22
                Hit file in the top left. Then custom scripts paste the fix I uploaded

                Comment

                • Ichigo
                  PCHF Member
                  • Dec 2022
                  • 61

                  #23
                  @Malnutrition here is the log you asked for:

                  Comment

                  • Malnutrition
                    PCHF Moderator
                    • Jul 2016
                    • 7041

                    #24
                    Since I am at work, and unable to properly check the fix log. Please run these tools to clean up any remaining trash from the machine.

                    And when I return home from work, I will have a proper detailed response for you.






                    Adware Cleaner

                    [ul]
                    [li]Download AdwCleaner and save it to your Desktop[/li][li]Right-click on AdwCleaner.exeand select, Run as Administrator[/li][li]Accept the EULA (I accept), then click on Scan Now[/li][li]Let the scan complete[/li][li]Once the scan completes, make sure that every item listed in the different tabs is checked and click on the Clean & Repair button[/li][li]Subsequently you may be asked to Run Basic Repair. This is optional. I would suggest holding off on this for now.[/li][li]Once the cleaning process is complete, AdwCleaner will ask you to restart your computer[/li][li]Close all other open windows and allow it to restart[/li][li]After the restart, Notepad will open with the AdwCleaner cleaning log[/li][li]Please Attach the contents of that log into your next reply to me[/li][/ul]








                    Download Malwarebytes v.4 . Install and run.
                    [ul]
                    [li]Once the MBAM dashboard opens, click on Settings (gear icon).[/li][li]Click on Security tab and make sure that all four Scan options are enabled.[/li][li]Close Settings and click on the Scan button on the dashboard.[/li][li]Once the scan is completed make sure you have it quarantine any detections it finds.[/li][li]If no detections were found click on the Save results drop-down, then the Export to TXT button and save the file as a Text file to your desktop.[/li][li]If there were detections then once the quarantine has completed click on the View report button, then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and attach that log on your next reply.[/li][li]If the computer restarted to quarantine you can access the logs from the Detection History, then the History tab. Highlight the most recent scan and double-click to open it. Then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and include that log on your next reply.[/li][/ul]






                    ZHP cleaner Scan.

                    Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.
                    Once you have started the program, you will need to click the scanner button.
                    The program will close all open browsers!
                    Once the scan is completed, the you will want to click the Repair button.
                    At the end of the process you may be asked to reboot your machine.
                    After you reboot a report will open on your desktop.
                    Attach the report here in your next reply.

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7041

                      #25
                      I am signing off until after work.

                      Comment

                      • Ichigo
                        PCHF Member
                        • Dec 2022
                        • 61

                        #26
                        [ATTACH type=“full”]11060[/ATTACH]
                        I don’t see “Clean & Repair” on AdwCleaner, I only got the “Quarantine” button.

                        Comment

                        • Ichigo
                          PCHF Member
                          • Dec 2022
                          • 61

                          #27
                          Adware Cleaner
                          I didn’t get “Clean & Repair” option, the only option I had was “Quarantine” which I did and then deleted them and it didn’t ask me to restart my computer. However, here are the logs:

                          Comment

                          • Ichigo
                            PCHF Member
                            • Dec 2022
                            • 61

                            #28
                            MalwareBytes log

                            Comment

                            • Ichigo
                              PCHF Member
                              • Dec 2022
                              • 61

                              #29
                              ZHP cleaner Scan.
                              I wasn’t asked for reboot but here are the reports

                              Comment

                              • Malnutrition
                                PCHF Moderator
                                • Jul 2016
                                • 7041

                                #30
                                Ok, now updated Frst and addition.txt logs please .

                                Along with this. And I’ll check them when I get home.

                                Download ZHP Suite to your desktop.
                                Right Click Run as admin.
                                Hit the scanner button.
                                Once it is complete a file name ZHPdiag.txt will be on your desktop.
                                Attach it here.

                                Comment

                                Working...