Tech Support Guy banner
  • IMPORTANT: Only authorized members may reply to threads in this forum due to the complexity of the malware removal process. Authorized members include Malware Specialists and Trainees, Administrators, Moderators, and Trusted Advisors. Regular members are not permitted to reply, and any such posts will be deleted without notice or further explanation. Notice
Status
Not open for further replies.
1 - 4 of 4 Posts

·
Registered
Joined
·
2 Posts
Discussion Starter · #1 ·
:confused:Hello...my operating system is XP. My husband purchased Winreanimator for $50 and now we know it was a total scam. Have researched some spyware removal programs...but they seem to scan your computer for free...but want to charge me to actually REMOVE the spyware. Please help! Want this off of my computer...but don't want to get scammed again! I have a little red circle with a white X in it that keeps popping up every 15 seconds or so that tells me my computer is infected....but THIS is the actual infection. Don't know what to do and am desperate for someone to help guide me in getting my computer totally cleaned from this thing. I know from my research that it came through a "Trojan"??? Is there anyone that can walk (using baby-steps) a "non-techie" person through the required steps in order to rid my computer of this aweful thing??? Desperate....anyone out there who knows what to do...please help.
 

·
Banned
Joined
·
2,024 Posts
Hi macadamianut and Welcome to TSG

Click here to download HJTInstall.exe
  • Save HJTInstall.exe to your desktop.
  • Doubleclick on the HJTInstall.exe icon on your desktop.
  • By default it will install to C:\Program Files\Trend Micro\HijackThis .
  • Click on Install.
  • It will create a HijackThis icon on the desktop.
  • Once installed, it will launch Hijackthis.
  • Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
  • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
  • Come back here to this thread and Paste the log in your next reply.
  • DO NOT have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.

Also, I would like you to generate a "Add/Remove Software list" log using the HijackThis application. Here is how you can do this:

To get an Uninstall List from HijackThis:
  • Open HijackThis, click Config, click Misc Tools
  • Click "Open Uninstall Manager"
  • Click "Save List" (generates uninstall_list.txt)
  • Click Save, copy and paste the results in your next post.

In your next reply, please include these log(s):

* HijackThis Uninstall List
* HijackThis log (new)
 

·
Registered
Joined
·
2 Posts
Discussion Starter · #3 ·
Hello Kenny94,

Thank you so much for your timely response!! One of my husband's coworkers came over this evening and did some stuff to my pc.

He installed: Malwarebytes Antimalware; Sypware Blaster; Spybot Search and Destroy; AVG 7.5; Tweaknow Regcleaner; CCleaner; and also ran a lot of updates and onecare safety scan. It seems that the red circle with the X has disappeared and has not resurfaced as of yet. It was stubborn, though, and I watched him try a lot of different things before it (finally) did not come back. He even commented that this virus/malware (whatever the correct tech term is...) is "very aggressive". I HOPE that whatever he did has completely gotten rid of winreanimator/the red circle X security alert, and anything else harmful that was in my computer. What do you think about all this? This coworker of my husband's is coming back to install some more stuff on my pc either tomorrow or sometime soon. He seems very knowledgeable and my husband knows and trusts him. Do you recommend that I still follow your instructions as a precautionary measure?
Thank you, Kenny94.
 

·
Banned
Joined
·
2,024 Posts
Let your husband's coworker work on it. Since he's already working on your machine. But if the alerts come back, post it here. Hijackthis is like a X ray to get a ideal what's wrong. Then we see what tools that is needed to clean up the infections.
 
1 - 4 of 4 Posts
Status
Not open for further replies.
Top