biljana.l Guest
|
 |
« on: November 14, 2007, 07:34:56 AM » |
|
I have USB and last time i was using it ,my antivirus program found WIN32:Delf-FCP in the antihost.exe file.Now i can not open my USB with double click ,only with right click and open.can i clean this virus from the file ?how j can do that?j use AVAST 4! HOME EDITION .PLEASE HELP ME,j dont know what to do?
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #1 on: November 14, 2007, 08:47:39 AM » |
|
Download this tool: Flash_Disinfector.exe by sUBs Plug in the flash drive and double click on Flash Disinfector to run. Let us know how it turns out.
|
|
|
|
NNEagle
Thanked: 1 Posts: 95
|
 |
« Reply #2 on: November 14, 2007, 09:09:08 AM » |
|
WOW....This is great. I had the same problem and did as instructed and now everything is back to normal. No more right click. Thank you very much.
|
Eagle
|
|
|
|
|
NNEagle
Thanked: 1 Posts: 95
|
 |
« Reply #4 on: November 14, 2007, 10:01:24 AM » |
|
I did start a new thread, but do not know how to post the HJT log. I was born this way, dumb. Help please
|
Eagle
|
|
|
biljana.l Guest
|
 |
« Reply #5 on: November 14, 2007, 11:23:59 AM » |
|
I did as it was instructed.now everiting is ok with USB .It can be open and work properly .thank you ! I want to ask you something:What to do with other infected files which will be found and send to virus vault?what is the procedure? thank you!
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #6 on: November 14, 2007, 11:30:13 AM » |
|
You can delete the files in the virus vault. You may want to do some extra scans to ensure the computer isn't infected as well. Download HijackThis to your desktop. Double-click on the file you just downloaded. Click on the "Install" button to install. It will by default install to the directory - C:\Program Files\Trend Micro\HijackThis Please do not change the default install location. Upon install, HijackThis should open for you. Next click on the "Do a system scan and save a log file" button. HijackThis will scan and then a log will open in notepad. In the top left of the notepad window click "File" > "Save As" name it hijackthis and then save it to the Desktop. Please save the log as a text (.txt) file. In your post, add the log as an Attachment. * Don't have Hijackthis fix anything yet. Most of what it finds will be harmless or even required. ** Don't use the Analyse This button. It's findings are dangerous if misinterpreted. You may need a few different posts to get the whole log in
|
|
|
|
biljana.l Guest
|
 |
« Reply #7 on: November 14, 2007, 01:09:04 PM » |
|
you are very helpful.thank you. I did all that .Now i have this hijackThis.log file on the desktop and i can not post it because of the extension.??How can i change the extension?
|
|
|
|
|
|
|
biljana.l Guest
|
 |
« Reply #9 on: November 14, 2007, 02:17:41 PM » |
|
ok.here is the HijackThis.txt file.I hope it is all right.
[getting disk space - attachment deleted by admin]
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #10 on: November 14, 2007, 02:38:32 PM » |
|
Go to this page and follow the instructions to download and use RapidBlaster Killer Click here===== When you are done please follow these directions. Please download ATF Cleaner by Atribune. ATF Cleaner.exe This program does not require an installation. The executable actually runs the program. NOTE: ATF Cleaner will remove all files from the items that are checked so if you have some cookies you'd like to save. Please move them to a different directory first. * Double-click ATF-Cleaner.exe to run the program. * Under Main choose: Select All* Click the Empty Selected button. If you use Firefox browser * Click Firefox at the top and choose: Select All* Click the Empty Selected button. NOTE: If you would like to keep your saved passwords, please click No at the prompt. If you use Opera browser * Click Opera at the top and choose: Select All* Click the Empty Selected button. NOTE: If you would like to keep your saved passwords, please click No at the prompt. Click Exit on the Main ATF Cleaner menu to close the program. ===== Use the ESET Nod32 Online ScannerClick YES, I accept the Terms of Use. Then Start. The scan report is saved by default in C:\Program Files\EsetOnlineScanner\log.txt Add the EsetOnlineScanner\log.txt in your post. This scan will take a while so no need to sit and wait on it. ===== Next post add:EsetOnlineScanner\log.txt New HijackThis log
|
|
|
|
biljana.l Guest
|
 |
« Reply #11 on: November 15, 2007, 03:37:55 PM » |
|
J am so happy because i can do some extra scans to ensure that my computer is well but j am not shure that j have enough knowledge to do that even if you help me(for example j could not download RapidBlaster Killer?......Sorry ,I will do this later.....My computer is acting quite well,j think? J am very gratefull that you halped me.You are a genius(sorry for bad english)
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #12 on: November 15, 2007, 03:55:13 PM » |
|
Download Rapid Blaster Killer Click here But don't use it yet. Next: On your Desktop right click an empty area and select "New" > "Folder" A new folder will appear on your desktop. Drag and drop the new rbkiller into the folder. Now open the folder and double click the rbkiller to start it, select scan and it will run. When it is done, proceed to delete the file(s) and cleanup. If a new folder is created then copy and paste what is says into your next post.
|
|
|
|
biljana.l Guest
|
 |
« Reply #13 on: November 15, 2007, 04:30:24 PM » |
|
after i run rbciller.exe and klik scan,window appears and there is a mesage: No Rapid Blaster processes detected
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #14 on: November 15, 2007, 05:14:15 PM » |
|
* Please download Combofix by sUBs. Place it on your Desktop. combofix.exe* Double click combofix.exe & follow the prompts. From the keyboard select 1 and press enter at the prompt. * When finished, it shall produce a log for you. Attach that log in your next reply.Note:Do not mouseclick combofix's window whilst it's running. That may cause it to stall Please attach the Combofix log in the next post.
|
|
|
|
biljana.l Guest
|
 |
« Reply #15 on: November 17, 2007, 04:48:27 AM » |
|
hello again! J did what was instructed ,here is the result,i atached it to a post. something else,my USB does not working properly on other computers and if i do not use flash disinfector first,on my computer.J am confused. Sorry,i am boring.
[saving disk space - old attachment deleted by admin]
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #16 on: November 17, 2007, 03:42:53 PM » |
|
Flash Disinfector creates a autorun.inf on the C: drive. That is what it uses to open the flash drive automatically. Go to Start > Run and copy and paste next command in the field: ComboFix /u Make sure there's a space between Combofix and / Then hit Enter. This will uninstall Combofix, delete its related folders and files, reset your clock settings, hide file extensions, hide the system/hidden files and resets System Restore again.
|
|
|
|
biljana.l Guest
|
 |
« Reply #17 on: November 19, 2007, 09:26:53 AM » |
|
hello,evilfantasy! I apriciate your help,thank you. Is there something else to do with my computer? P.S.J want to learn more about LANnetworks. Where i can find information?
|
|
|
|
|
evilfantasy Malware Removal Specialist Moderator
Thanked: 462 Posts: 11,769
Experience: Beginner OS: Windows 7

Calm like a bomb
|
 |
« Reply #18 on: November 19, 2007, 03:30:06 PM » |
|
Not sure on the LAN you can google it and I am sure find plenty of results. To learn more about how to protect yourself while on the internet read this article by Tony Klien: So how did I get infected in the first place? It mentions many free programs so it is worth a look. Glad we could help, safe surfing..... .gif)
|
|
|
|