Search:

Type: Posts; User: bcbarry; Keyword(s):

Search: Search took 0.01 seconds.

  1. Thread: slirsredirect

    by bcbarry
    Replies
    2
    Views
    1,427

    slirsredirect

    Cannot browse internet unless in safemode

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 5:21:54 PM, on 2/4/2010
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00...
  2. Thread: Virtumonde

    by bcbarry
    Replies
    9
    Views
    2,461

    Hello, Thank you very much for all your help. ...

    Hello,

    Thank you very much for all your help. The files noted were not present. I will up date Java as suggested.

    Take care and have a great Holiday Season.

    best regards,

    Barry
  3. Thread: Virtumonde

    by bcbarry
    Replies
    9
    Views
    2,461

    ComboFix 08-12-07.04 - Jaime.Quezada 2008-12-08...

    ComboFix 08-12-07.04 - Jaime.Quezada 2008-12-08 16:23:00.1 - NTFSx86
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2710 [GMT -8:00]
    Running from: c:\documents and...
  4. Thread: Virtumonde

    by bcbarry
    Replies
    9
    Views
    2,461

    Sorry about previous post. Hope that this is...

    Sorry about previous post.

    Hope that this is better.

    Malwarebytes' Anti-Malware 1.31
    Database version: 1463
    Windows 5.1.2600 Service Pack 3

    12/8/2008 3:25:13 PM
    mbam-log-2008-12-08...
  5. Thread: Virtumonde

    by bcbarry
    Replies
    9
    Views
    2,461

    Hello,Actually ran it last week and ran another...

    Hello,Actually ran it last week and ran another today.Here is the latest log.Thanks for your help.Malwarebytes' Anti-Malware 1.31Database version: 1463Windows 5.1.2600 Service Pack 312/8/2008 3:25:13...
  6. Thread: Virtumonde

    by bcbarry
    Replies
    9
    Views
    2,461

    Virtumonde

    Hello,


    Seem to have another computer infected with Virtumonde

    You've been great help in the past.

    thanks in advance

    Barry
  7. Replies
    13
    Views
    7,606

    virtumonde

    Good morning,

    Thanks for all your help. I know I am being paranoid, but I ran the eset online scan one more time and it appears that it came up with 10 infected files...

    log is attached, let...
  8. Replies
    13
    Views
    7,606

    virtumonde again

    # version=4
    # OnlineScanner.ocx=1.0.0.56
    # OnlineScannerDLLA.dll=1, 0, 0, 51
    # OnlineScannerDLLW.dll=1, 0, 0, 51
    # OnlineScannerUninstaller.exe=1, 0, 0, 49
    # vers_standard_module=2599 (20071017)...
  9. Replies
    13
    Views
    7,606

    virtumonde again

    ComboFix 07-10-16.1 - Jasmine 2007-10-17 13:32:57.3 - NTFSx86
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.167 [GMT -7:00]
    Running from: C:\Documents and...
  10. Replies
    13
    Views
    7,606

    virtumonde again

    Okay, did everything but up-load the file.

    thanks,

    Barry

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:19:23 PM, on 10/17/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE:...
  11. Replies
    13
    Views
    7,606

    vertumonde again

    I am sorry, but I cannot find ws2cpiec.sys on this computer. I ran Kapersky again overnight, did that mess things up?

    thanks,

    Barry
  12. Replies
    13
    Views
    7,606

    virtumonde again

    ComboFix 07-10-16.1 - Jasmine 2007-10-16 14:30:52.1 - NTFSx86
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.111 [GMT -7:00]
    Running from: C:\Documents and...
  13. Replies
    13
    Views
    7,606

    virtumonde - again!

    Virtumonde again, but on a different pc. Thanks in advance... you guys are great!

    -------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER REPORT...
  14. Replies
    25
    Views
    8,487

    Virtumonde

    Everything seems to be just fine! Thank you so much for your help. If you are ever in California I'll buy you a drink!

    Barry
  15. Replies
    25
    Views
    8,487

    Virtumonde

    hello,

    things are running much better and faster, however, Kapersky still shows infected files...

    http://rapidshare.com/files/58223392/kapersky_report_2.25.txt.html

    let me know

    thanks,...
  16. Replies
    25
    Views
    8,487

    Virtumonde

    Good morning...here's the link

    thanks,

    Barry

    http://rapidshare.com/files/58183269/text_logs_2.24.txt.html
  17. Replies
    25
    Views
    8,487

    Virtumonde

    Kapersky found infected files...log report is big! What is the easiest way to send them...they excede the limit?

    thanks,

    Barry
  18. Replies
    25
    Views
    8,487

    Virtumonde

    Here you go!

    ComboFix 07-09-21.2 - "Juan.Quezada" 2007-09-24 10:37:36.5 - NTFSx86
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.151 [GMT -7:00]
    Command switches used :: ...
  19. Replies
    25
    Views
    8,487

    Virtumonde

    I am an idiot...missed the first line.

    Trying again.
  20. Replies
    25
    Views
    8,487

    Virtumonde

    I thought I did...I'll try again

    thanks,

    Barry
  21. Replies
    25
    Views
    8,487

    Virtumonde

    Hi,
    did not re-boot..here are the logs
    thanks,
    Barry

    ComboFix 07-09-21.2 - "Juan.Quezada" 2007-09-24 10:12:40.4 - NTFSx86
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.108 [GMT...
  22. Replies
    25
    Views
    8,487

    Virtumonde

    Hey, sorry for the delay. I was away for the weekend.

    I hope that this is complete.

    regards,

    Barry

    ComboFix 07-09-21.2 - "Juan.Quezada" 2007-09-24 8:47:39.3 - NTFSx86
    Microsoft...
  23. Replies
    25
    Views
    8,487

    Virtumonde

    sorry... here's the combofix log and I submitted the file per your request

    thanks again


    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]
    "SpybotDeletingA4551"=command...
  24. Replies
    25
    Views
    8,487

    Virtumonde

    Vundofix came up with no files to fix????

    Still getting hijacked though

    thanks,

    Barry


    VundoFix V6.5.8
  25. Replies
    25
    Views
    8,487

    Virtumonde

    here is a new log

    thanks,

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 09:50, on 2007-09-21
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00...
  26. Replies
    25
    Views
    8,487

    virtumonde infection

    Have done the following:

    Ran Kaspersky
    Ran SPy-bot (In Safe Mode) Could not completely remove Virtumonde (seems to be in c:\windows\system32\advnt5.dll)
    Ran HiJack this.

    I tried earlier...
Results 1 to 26 of 27