juanfly
2014-01-16, 18:08
Hi everybody! I-ve been infected with this nasty little trojan, I-ve triend many things with no results, so I decided to ask for help to the experts!
Things Ive already Done:
1) Run Webroot and attempt fix.
2) Run malwareBytes and attempt fix with it.
That didnt work.
Computer Symptoms:
1) Every minute a windows opens in russian with the name JetSwap safesurf.
2) It takes forever to start the computer.
3) Its speed is dramatically reduced.
DDS does not work with my windows version (Windows server 2003), So ill only post the aswMBR log:
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-16 12:33:40
-----------------------------
12:33:40.202 OS Version: Windows 5.2.3790 Service Pack 2
12:33:40.202 Number of processors: 4 586 0x3A09
12:33:40.202 ComputerName: TSERVER UserName: jjb
12:33:42.467 Initialize success
12:41:14.822 AVAST engine defs: 14011600
12:44:05.466 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
12:44:05.466 Disk 0 Vendor: ST1000DM003-1CH162 CC47 Size: 953869MB BusType: 3
12:44:05.591 Disk 0 MBR read successfully
12:44:05.591 Disk 0 MBR scan
12:44:05.622 Disk 0 Windows XP default MBR code
12:44:05.622 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 938269 MB offset 1230848
12:44:05.622 Disk 0 scanning sectors +1922805760
12:44:05.732 Disk 0 scanning C:\WINDOWS\system32\drivers
12:44:16.685 Service scanning
12:44:30.483 Modules scanning
12:44:39.874 Disk 0 trace - called modules:
12:44:39.890 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
12:44:39.890 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8b225ab8]
12:44:39.890 3 CLASSPNP.SYS[f7290601] -> nt!IofCallDriver -> \Device\00000066[0x8b22d9e8]
12:44:39.890 5 ACPI.sys[f73593c0] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8b22dd98]
12:44:41.280 AVAST engine scan C:\WINDOWS
12:44:54.125 AVAST engine scan C:\WINDOWS\system32
12:51:43.141 AVAST engine scan C:\WINDOWS\system32\drivers
12:52:33.955 AVAST engine scan C:\Documents and Settings\jjb
12:54:07.441 AVAST engine scan C:\Documents and Settings\All Users
12:54:13.738 Scan finished successfully
12:55:27.990 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\jjb\Desktop\MBR.dat"
12:55:27.990 The log file has been saved successfully to "C:\Documents and Settings\jjb\Desktop\aswMBR.txt"
I cant Find the Spybot S&D TeaTimer option, im using version 2.2.
SpyBot S&D show no results in the scan, but as I said, I cant enable the "tea Timer" so I don't know if my Scan is accurate.
Things Ive already Done:
1) Run Webroot and attempt fix.
2) Run malwareBytes and attempt fix with it.
That didnt work.
Computer Symptoms:
1) Every minute a windows opens in russian with the name JetSwap safesurf.
2) It takes forever to start the computer.
3) Its speed is dramatically reduced.
DDS does not work with my windows version (Windows server 2003), So ill only post the aswMBR log:
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-01-16 12:33:40
-----------------------------
12:33:40.202 OS Version: Windows 5.2.3790 Service Pack 2
12:33:40.202 Number of processors: 4 586 0x3A09
12:33:40.202 ComputerName: TSERVER UserName: jjb
12:33:42.467 Initialize success
12:41:14.822 AVAST engine defs: 14011600
12:44:05.466 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
12:44:05.466 Disk 0 Vendor: ST1000DM003-1CH162 CC47 Size: 953869MB BusType: 3
12:44:05.591 Disk 0 MBR read successfully
12:44:05.591 Disk 0 MBR scan
12:44:05.622 Disk 0 Windows XP default MBR code
12:44:05.622 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 938269 MB offset 1230848
12:44:05.622 Disk 0 scanning sectors +1922805760
12:44:05.732 Disk 0 scanning C:\WINDOWS\system32\drivers
12:44:16.685 Service scanning
12:44:30.483 Modules scanning
12:44:39.874 Disk 0 trace - called modules:
12:44:39.890 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
12:44:39.890 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8b225ab8]
12:44:39.890 3 CLASSPNP.SYS[f7290601] -> nt!IofCallDriver -> \Device\00000066[0x8b22d9e8]
12:44:39.890 5 ACPI.sys[f73593c0] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8b22dd98]
12:44:41.280 AVAST engine scan C:\WINDOWS
12:44:54.125 AVAST engine scan C:\WINDOWS\system32
12:51:43.141 AVAST engine scan C:\WINDOWS\system32\drivers
12:52:33.955 AVAST engine scan C:\Documents and Settings\jjb
12:54:07.441 AVAST engine scan C:\Documents and Settings\All Users
12:54:13.738 Scan finished successfully
12:55:27.990 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\jjb\Desktop\MBR.dat"
12:55:27.990 The log file has been saved successfully to "C:\Documents and Settings\jjb\Desktop\aswMBR.txt"
I cant Find the Spybot S&D TeaTimer option, im using version 2.2.
SpyBot S&D show no results in the scan, but as I said, I cant enable the "tea Timer" so I don't know if my Scan is accurate.