Cypher
Many thanks for your help.
All seems to be running okay.
Regards
L5
Type: Posts; User: L5Brassco; Keyword(s):
Cypher
Many thanks for your help.
All seems to be running okay.
Regards
L5
Hi Cypher
Soave rry I've been away from my computer.
Yes I still need help, although I have had no more events.
I realised I did not run IE as administrator so have run OTS and ESET again.
Here...
Hello Cypher
My computer is operating ok.
No VSCAN7 pages since the first 2 times.
Here are my logs.
Thanks
L5
ll processes killed
Error: Unable to interpret <Services> in the current...
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4252
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18928
29/06/2010 1:35:56 PM
mbam-log-2010-06-29...
Hello
Can you help me please?
I seem to have a VSCAN7 virus.
Twice in the last week my browser (IE) has showen I have a VSCAN7 virus and then taken me to a page showing the virus in various files...
PS The Tony Klein article is a dead link
L5
Shaba
All cleaned up
Thank you
L5
Spybot says all ok
Norton says all ok
Kiitos
You guys rock!
Ran Kaspersky twice.
There was nothing on the report it created.
I hope this is good
Below is the hijack this log.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:40:12 AM, on...
And the Hijackthis log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:25:16 PM, on 25/04/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00...
ComboFix offered a newer version of itself then ran ok
Here is the log
ComboFix 09-04-25.A1 - Carl 25/04/2009 22:51.2 - NTFSx86
Microsoft® Windows Vista™ Home Premium ...
When I woke up this morning the sun was shining.
I started the computer all my pictures and wallpaper were back
Combofix ran in normal mode.
Things are improving...
Here is the log
ComboFix...
Hallelujah
Combofix ran ok in safe mode (I had to download it again)
Here is the log
ComboFix 09-04-24.01 - Carl 24/04/2009 20:21.1 - NTFSx86 MINIMAL
Microsoft® Windows Vista™ Home Premium ...
Here is the Kaspersky Scan result
--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7.0 REPORT
Friday, April 24, 2009
Operating System:...
When I try to open Rooter.exe I get message
Find String (QGREP) Utility has stopped working
Tried opening in safe mode and got same message
Deleted all gmer
Downloaded gmer
Turned off Norton and Windows Defender.
Ran gmer.
Gmer crashed at \Device\HarddiskVolumeShadowCopy22
windows says there is a problem with the program.
or...
Shaba
gmer keeps crashing
Windows tells me it is because of Anti Kapersky virus.
Shaba
Couldn't delete c:\windows\system32\drivers\ovfsth.sys
When I hit the kill button I get error message "Reached the end of the file"
L5
Shaba
I was able to find and delete all the dat and dll files.
I could not find the db file.
The only sys file I could find was windows\system32\drivers\ovfsth.sys
So I left it alone.
Then when...
Hi Shaba
I'm confused...
Ran gmer.exe
Clicked Processes
But there is no Safe button.
There is a restart button on right hand side.
Should I try that?
Shaba
I hope this is what you want
I am a bit worried about my files.
All my photo previews have dissappeared, yet if i double click on the the icons they open ok.
I think it is since I turned...
Hi Shaba
I assume you mean rename the exe file.
Have done this but still won't run...
What am I doing wrong???
L5
Shaba
I can't get Combo Fix to run.
I keep getting message saying ComboFix package has been compromised.
I have turned off Norton, followed instructions about tea timer on Spybot.
turned off...
Norton says the Heuristic virus was in
c:\windows\temp\ovfsthtqcliohssd.tmp
On start up today Windows defender also found a trojan with these details
regkey:...
Hi Shaba
Thank you for the prompt reply
I tried both
Jotti found nothing
VirusTotal 0/40
Norton keeps telling me it has blocked a trojan horse and/or a MH690.A Heuristic Virus.
L5
Here is the log txt
Logfile of random's system information tool 1.06 (written by random/random)
Run by Carl at 2009-04-18 14:23:42
Microsoft® Windows Vista™ Home Premium Service Pack 1
System...
Hi Shaba
I was called away from my computer unexpectedly.
The logs are large so will post them seperatly
Kiitos
L5
info.txt logfile of random's system information tool 1.06 2009-04-18 14:24:35
...
Hi Shaba
I hope this is what you need
L5
--- Search result list ---
Virtumonde: [SBI $BA8653F6] Autorun settings (A00F29D4B6E.exe) (Registry value, nothing done)
...
Hello and Happy Easter
3-4 days ago Spybot found virtumonde on my computer.
I have tried deleting it with Spybot but it says I am not an administrator and
therefore cannot remove it.
Vista on the...