<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://en.community.dell.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Malware Removal</title><link>http://en.community.dell.com/forums/3521.aspx</link><description>Virus &amp; Spyware Sub-Board</description><dc:language /><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Please Read This Before Posting On The Malware Removal Forum</title><link>http://en.community.dell.com/forums/thread/19405761.aspx</link><pubDate>Fri, 09 Jan 2009 16:19:32 GMT</pubDate><guid isPermaLink="false">e3197daa-ef0d-4a70-8402-29215ff9a0f2:19405761</guid><dc:creator>Bugbatter</dc:creator><slash:comments>0</slash:comments><comments>http://en.community.dell.com/forums/thread/19405761.aspx</comments><wfw:commentRss>http://en.community.dell.com/forums/commentrss.aspx?SectionID=3521&amp;PostID=19405761</wfw:commentRss><description>&lt;p class="MsoNormal"&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;In order for us to help you, please describe your malware problem by including as much &lt;strong&gt;detail&lt;/strong&gt; as possible. Please include virus/trojan/worm names and locations if available. The more information you can give us the better we can help, and the sooner you will be helped. &lt;br /&gt;The diagnostic scans that we ask you to run examine certain key areas of the Registry and Hard Drive and list their contents. These areas are used by both legitimate programmers and malware writers. Most of the items listed in the logs are legitimate.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-size:medium;"&gt;&lt;strong&gt;&lt;span style="text-decoration:underline;"&gt;&lt;span style="font-family:Arial;"&gt;Please Use A Descriptive Title For Your Thread&lt;/span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family:Arial;"&gt;Good Titles&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-family:Arial;"&gt;:&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&amp;quot;Redirected Searches&amp;quot;, &amp;quot;Advertising Pop-Ups&amp;quot;, &amp;quot;Fake Anti-Virus Pop-Ups&amp;quot;, &amp;quot;No Internet Connection&amp;quot;, &amp;quot;Virus in [filename]&amp;quot;, &amp;ldquo;Many Adware Windows Opening&amp;rdquo;, &amp;quot;Unable to Update Security Software&amp;rdquo;, &lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family:Arial;"&gt;Titles That Do Not Help Us&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-family:Arial;"&gt;:&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&amp;quot;Help Me!&amp;quot;, &amp;quot;My Log&amp;quot;, &amp;quot;HijackThis Log&amp;quot;, &amp;ldquo;Do You See Anything Wrong?&amp;rdquo;, &amp;ldquo;Clueless&amp;rdquo;, &amp;ldquo;Here&amp;rsquo;s the Log&amp;rdquo;, &amp;ldquo;Malware&amp;rdquo; and other general titles.&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-size:medium;font-family:Arial;"&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="font-size:medium;"&gt;&lt;strong&gt;&lt;span style="text-decoration:underline;"&gt;&lt;span style="font-family:Arial;"&gt;Required Logs for Your First Post&lt;/span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="color:#0000ff;font-family:Arial;"&gt;&lt;strong&gt;* NOTE: W&lt;/strong&gt;&lt;strong&gt;ord-wrap should be turned OFF &lt;/strong&gt;&lt;span style="color:#000000;"&gt;so&lt;strong&gt; &lt;/strong&gt;that your logs format correctly when posted on the forum.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Please download &lt;strong&gt;HJT&lt;/strong&gt;(HiJackThis)&lt;strong&gt; Installer&lt;/strong&gt; from &lt;a href="http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe" target="_blank"&gt;Here&lt;/a&gt; to your desktop. Click the &lt;strong&gt;Download&lt;/strong&gt; button. &lt;/p&gt;
&lt;p&gt;When the Trend Micro HJT(HiJackThis) install box appears, double click on the &lt;strong&gt;HJTInstall.exe&lt;/strong&gt;. Click on Install.&lt;/p&gt;
&lt;p&gt;It will be installed by default here: C:\Program Files\Trend Micro\HijackThis A shortcut to the application will also be placed on your Desktop.&lt;/p&gt;
&lt;p&gt;The program will open automatically after installation. &lt;/p&gt;
&lt;p&gt;You can double-click the icon that was placed on the Desktop to run subsequent HijackThis scans or you can use the icon inside the folder. The folder HijackThis is where you will find the HJT(HiJackThis) logs that you save. When you use the application to remove anything, you will also find the backup copies made by HJT inside this folder.&lt;/p&gt;
&lt;p&gt;Close all open windows except HijackThis. Click on &amp;quot;&lt;strong&gt;Do a system scan and save logfile&lt;/strong&gt;&amp;quot; When the log pops up in Notepad copy and paste that file as a NEW THREAD on the Malware Removal Forum. &lt;/p&gt;
&lt;p&gt;Before closing HJT(HiJackThis), please click on the &lt;strong&gt;Analyze This&lt;/strong&gt; button. &amp;quot;Analyze This&amp;quot; is for Trendmicro use, and does not mean &amp;quot;Analyze My Log&amp;quot;. You must post on the forum in order to receive an analysis of your log. Close the web page that appears and then close the program HJT(HiJackThis). &lt;strong&gt;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span style="text-decoration:underline;"&gt;Posting Your Log&lt;/span&gt;&lt;/strong&gt;: &lt;/p&gt;
&lt;p&gt;1. &lt;span style="font-size:12pt;font-family:&amp;#39;Calibri&amp;#39;,&amp;#39;sans-serif&amp;#39;;mso-fareast-font-family:&amp;#39;Times New Roman&amp;#39;;mso-bidi-font-family:&amp;#39;Times New Roman&amp;#39;;mso-ansi-language:EN-US;mso-fareast-language:EN-US;mso-bidi-language:AR-SA;"&gt;Just click the &lt;strong&gt;&lt;span style="font-family:&amp;#39;Calibri&amp;#39;,&amp;#39;sans-serif&amp;#39;;"&gt;Post a Message &lt;/span&gt;&lt;/strong&gt;(upper right) here in the Malware Removal forum to start your own thread requesting assistance. &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;2. In the &lt;strong&gt;Compose &lt;/strong&gt;window that opens, simply Right-Click and select Paste. &lt;/p&gt;
&lt;p&gt;3. Please add text to describe your symptoms.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;span style="color:#ff0000;"&gt;&lt;strong&gt;You will be asked to run additional diagnostic tools when a helper replies to your post.&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span style="color:#000000;"&gt;&lt;span style="text-decoration:underline;"&gt;Additional Tips&lt;/span&gt;:&lt;/span&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;*&amp;nbsp;&lt;strong&gt; Please DO NOT post another program&amp;rsquo;s log&lt;/strong&gt;, unless we specifically ask for it, but do let us know what other scans you have run. Additional logs can be helpful, but can also complicate the initial diagnosis. &lt;span style="color:#ff0000;"&gt;Please note that Combofix should NEVER be run unless requested.&lt;/span&gt; While it is a powerful tool useful for removing a number of infections, there can be mishaps. There are safeguards built into Combofix, but only someone trained in its use will be able to interpret the logs correctly and help you recover.&lt;br /&gt;&amp;nbsp; &lt;br /&gt;* &lt;strong&gt;Please include the header of any log&lt;/strong&gt; that you post. (It contains important information for the Analysts.)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;* &lt;strong&gt;Please do not include suspicious links&lt;/strong&gt;. You may, however describe the type or name of sites that you are having a problem with. By using links, you would be putting other members at risk if they click on them by accident. If you need to give information about sites that you are redirected to, please disable the links by using hxxp:// instead of http://&lt;br /&gt;&lt;br /&gt;* &lt;strong&gt;Please do not post a reply to your own thread until someone else has done so&lt;/strong&gt;.&amp;nbsp; The analysts look for unanswered topics. If they see 1 or more replies they may assume that you are already being helped.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-size:medium;color:#0000ff;"&gt;&lt;strong&gt;&lt;span style="text-decoration:underline;"&gt;&lt;span style="font-family:Arial;"&gt;Helping On This Forum&lt;/span&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;These members have graduated from well-known Malware Removal Schools and have proven their expertise and involvement in other reputable security forums. &lt;span&gt;&amp;nbsp;&lt;/span&gt;Please understand these users are not employees of Dell and are not compensated in any form. They are volunteers that give their time to help community users like you. The Dell team appreciates their expertise and assistance.&lt;/p&gt;
&lt;p&gt;Bamajim&lt;br /&gt;Bugbatter&lt;br /&gt;grsamf&lt;br /&gt;markamus&lt;br /&gt;PCBruiser&lt;br /&gt;quietman7&lt;br /&gt;sjb07&lt;br /&gt;sjpritch25&lt;br /&gt;SpotCheckBilly&lt;br /&gt;Zbestwun2001&lt;br /&gt;1972vet&lt;br /&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;strong&gt;It is understood by the trained analysts that once a helper replies to a log, he continues working with you until the issue is resolved.&lt;/strong&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;br /&gt;&lt;em&gt;&lt;span style="color:#ff0000;"&gt;Because of the very nature of malware removal procedures, we request that anyone wishing to assist on the Malware Removal Forum use the following &lt;/span&gt;&lt;/em&gt;&lt;strong&gt;&lt;em&gt;&lt;span style="color:#ff0000;font-family:Verdana;"&gt;training resource&lt;/span&gt;&lt;/em&gt;&lt;/strong&gt;&lt;em&gt;&lt;span style="color:#ff0000;"&gt; to become qualified to give advice on diagnostic logs posted on that forum.&lt;/span&gt;&lt;/em&gt;&lt;/p&gt;
&lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&lt;strong&gt;&amp;nbsp;&lt;a title="Unified Network of Instructors and Trained Eliminators" href="http://www.uniteagainstmalware.com/schools.php" target="_blank"&gt;UNITE&lt;/a&gt;&lt;/strong&gt;&lt;a title="Unified Network of Instructors and Trained Eliminators" href="http://www.uniteagainstmalware.com/schools.php" target="_blank"&gt;: Unified Network of Instructors and Trained Eliminators&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>