I have a three year old HP Pavillion dv1000, that had an up to date McAfee (AOL free version - kind of strapped for money) and a couple of days old Spybot update, Windows XP.
I had a msg of two trojans on my McAfee Anti-virus the other day. Earlier, I'd received two e-mails from a friend whose e-mails I trust (but???); one was a highlighted link and the other had a link I had to cut and paste to my browser. The one I pasted took me to a website that wouldn't fully load. A few hours later is when I got the trojan msg from McAfee.
Roughly twenty-four hours later, I ran my MCafee, followed by Spybot. Spybot failed to load; so, I deleted it and went to download it again; but, I couldn't find a link that would work. I started suspecting my McAfee was bad; so, I tried to got to the McAfee website; but, it kept timing out and not allowing me to access the website. Additionall, system restore wouldn't execute past the requested restore date and I ran Registry Mechanic.
I ran a search for any files modified in the past week and another for "*.exe" modified in the past week. I found "sysvxd.exe". It showed "0" bytes, opened it with wordpad, had one line of code that appeared innocuous, and tried to delete it (Task manager didn't indicate it being used directly and Window couldn't "delete" it as it was being used. I downloaded the DOS boot disk from this website and deleted it in DOS (please don't give me a hard time on deleting stuff I know nothing about - I was pretty desperate before finding this forum).
Since then, I've been trying your steps on malware removal; but, can't get any anti-virus/malware programs to work properly. When I try to download them, I can't directly go to their website, as I get re-directed or timeout with IE; so, I cut and paste links to sites like CNET to get the download. Either they don't install (Superantispyware and Malwarebytes) or they won't launch after install (Twister Anti-Trojan). I also tried "Add/Remove" programs; but, saw nothing malicious.
I managed to download Avast Antivirus in Safe mode, installed it, selected "Boot Scan", and re-booted. It found two trojans and Quaranteened during boot; but, I couldn't get it to update online (popup said no access to server ). I ran it twice and it found no virus's.
I then tried step 2 to (CC cleaner); which worked fine; but, after downloading SuperAntiSpyware from step 3 couldn't get it to install (did get a log from Window program failed to execute report; but, I couldn't highlight it, to save to my notepad).
During one re-boot, I got two "yellow" shields (updates from Microsoft). One was the service pack 3 update and the other was Microsoft Malware Removal Tool. I started downloading the Malware Removal tool and then canceled it, as I'd never heard of it. After researching and finding out it was legit, I tried the Windows Malware Removal tool and Live Care/Protection Center. I can't get it to download the Malware Removal tool directly now (apparently it comes out as an update directly every 28 days - not sure if I can wait that long to get my laptop back), ran the online virus scan three time (no virus's), and then installed the "Live Care" virus protection (ran it twice and found no virus's).
Last night, I did get AVG to download (removed Live Care anti-virus) and install, couldn't get it to update and ran it without (updating). It found no virus's.
I've removed all anti-virus protections, did a Torrent (tried all the free trials, as I try to pay for all soft ware I use) download on full versions of SuperAntiSpyware, Malwarebytes and AVG on a separate computer (did Norton virus and Spybot scans on the files after downloading and extracting them) and copied them to a CD. I tried to install these in both Safe and Normal modes; but had similar problems (Malwarebytes wan't install, and AVG says Administrator has prevented its install and SuperAntiSpyware won't even install from the disk or from the desktop to load after pasting the files to the desktop).
I have no log files, as I didn't save the only one from Avast (I did get some log files from SuperAntiSpyware; but, couldn't copy them to notepad as mentioned above).
I finally installed AVG (with some problems) in Safe Mode. Attached are the logs for the install and "C:\" drive scan.
I tried Avast again, couldn't get it to update. Downloaded updates on a different computer and uploaded them by cd to the infected computer. Four Trojans found, one on Nod32 file on my desktop that I tried to install. No log.
Finally backdoored and re-named SAS, MBAM, and Hijack This. Attached are those logs.
Will upload log when it finishes.
Any other help or ideas?
[Saving space - attachment deleted by admin]