Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 09-03-2014 01
Ran by Owner at 2014-03-09 23:26:01 Run:1
Running from C:\Documents and Settings\Owner\Desktop
Boot Mode:...
Type: Posts; User: wmbeyer; Keyword(s):
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 09-03-2014 01
Ran by Owner at 2014-03-09 23:26:01 Run:1
Running from C:\Documents and Settings\Owner\Desktop
Boot Mode:...
C:\Documents and Settings\Owner\Local Settings\Application Data\Sun\Java\Deployment\cache\6.0\0\7e6fb840-329f0f4f Java/Exploit.Agent.OFE trojan
C:\Documents and Settings\Owner\Local...
I accidentally hit next rather than list tabs. The proram deleted what it found.
RogueKiller V8.8.10 [Feb 28 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback :...
I haven't been able to uninstall SP3 because I cannot find it on my add/remove listing. If there is some way that you can suggest to remove it, I have the CD to restore it. Although I have enough...
I cannot find SP3 to deleat it, I will let you know if I can can find a copy of XP. just one question. If i upgrade to windows 7 or 8, will ths kill thid virus, or will it be better th simply wipe my...
Latest report;
ComboFix 14-03-04.03 - Owner 03/04/2014 17:56:27.119.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1535.1052 [GMT -5:00]
Running from: c:\documents and...
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1009
(c) Malwarebytes Corporation 2011-2012
OS version: 5.1.2600 Windows XP Service Pack 3 x86
Account is...
[COLOR="#0000FF"]I have the service pack CD's and went to microsoft web site which told me that service pack 3 is installed. It used to be install and up to date. What ever happened to this machine,...
This is what my Trojan AV found;
Found trojan file: C:\WINDOWS\Explorer.EXE (Zbot.17604)
Found trojan file: C:\Program Files\Microsoft Office\OFFICE11\MSOHTMED.EXE (Zbot.18284)
Found trojan file:...
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-02-2014 02
Ran by Owner (administrator) on BILLSR on 01-03-2014 00:47:27
Running from C:\Documents and Settings\Owner\Desktop...
My Trojan program tries to delete this infection, however to do so deletes explorer and so on. Please help.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702
Run by Owner at...
My AV software doen't work and can't be removed. I have tried several things but my laptop remains a mess. Can you help?
DDS LOG
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer:...
Sorry I am taking so long to get back to you. Before following all your steps, I decided to run my AV programs one more time. All came up clean except Trojan Hunter. It found the following;
Found...
I went into the program file and found a log. Here it is.
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
esets_scanner_update returned -1 esets_gle=1...
If it gave a rewritten report, I did not see one. All that I saw was a no virus found. And when I clicked on the ok, it gave me an offer to buy it. Nothing else.
DDS
DDS (Ver_2012-10-19.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.9.2
Run by Owner at 21:22:56 on 2012-10-28
Microsoft Windows XP Home Edition ...
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-10-19.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2...
I also downloaded another program called spyhunter and ran it. I can now use my computer without the Fake warning. However running Malware bytes still finds trojans.
I wont run anything else except...
Trojan Hunter, Malewarebytes, and Rougue killer all find kill or quarentene the virus but nothing permanently removes it. I cannot access System Resore even in safe mode command prompt then explorer....
I have run Trojan hunter 3 times, and in all 3 instances, the program says that it has to remove NetBus.229. My e-mail has been attacked and I cannot log into my company's e-mail program. Please...
I am using Zone alarm. My machine is running better now than it has in a long time. Also, I no longer get a message from the university telling me that I have a Bot. Thanks for everything.
I have taken your suggestions and installed, and or changed things. I am having difficulty in deciding yas or no with respect to ougoing traffic. Most are easy to understand, but some just have alpha...
02:44:47.0390 0488 TDSS rootkit removing tool 2.6.5.0 Oct 5 2011 20:52:46
02:44:47.0718 0488 ============================================================
02:44:47.0718 0488 Current date / time:...
It seems to run ok except when I go to some sites for instance. My howe page is Yahoo. When I go to the news stories, it takes longer and longer to load. On some sites my computer practcally freezes....
There was an unknown code
MBRCheck, version 1.2.3
(c) 2010, AD
Command-line:
Windows Version: Windows XP Home Edition
Windows Information: Service Pack 3 (build 2600)
Logical Drives...
Hi Jeff, I know that this is a tough one. I can usually deal with the run of the mill crap, but this one I am worried that I will eventually have to re-install my OS. I really appreciate everything...
3 things.
1st, May I delete the MBR.dat shortcut from my desktop. What is it?
2nd, May I delete Hijack this
3rd, My internet slows down quickly. When it does, I am using 99% of my CPU capacity...
After the cleaner, I was able to get the latest version of JRE installed. Whats next?
Jeff, I cannot delte the following:
Java 2c runtime Environment, SE v1.4.2_06
Java Auto Updater
Java(TM) 6 Update 20
therefor I cannot use the connections that you suggest
success in downloading and installing service pack 3 along with essentials. deleted essentials since I could not turn it off. updates successfuls as well.
Success with removing old java rte,...
When my computer restarted my watchdog program popped up with a request to allow a new start up program. Since it is a dims file I have left is as is, neither approving or rejecting permission.
...
Prior to down loading service pack 3, I tried to update my comp. at that time, I was told that I only needed Microsoft offc validationn add-in
and windows malicious software removal tool - Sept 2011...
Well I stopped after trying to install service pack 3. I was able to perform the deletion from the run command. However, after downloading service pack 3 i was directed to install 99 security and...
Malware Bytes and Eset found different viruses
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 7837
Windows 5.1.2600 Service Pack 2
Internet Explorer...
All processes killed
========== SERVICES/DRIVERS ==========
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!...
OTL Extras logfile created on: 9/28/2011 8:26:07 PM - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 2 (Version =...
OTL logfile created on: 9/28/2011 8:26:07 PM - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 2 (Version =...
ComboFix 11-09-27.01 - Owner 09/27/2011 16:16:17.25.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1535.1175 [GMT -4:00]
Running from: c:\documents and...
No need to delay. i just won't have the ability to answer as fast as i get e-mail. Anyway, on the desk top I now have an icon with a small windows media player arrow on it called MBR.dat that was not...
Hello Jeff, I had to work today, so I am a little late getting back to you. I have done as you asked. Thanks
ComboFix 11-09-26.01 - Owner 09/26/2011 1:28.23.1 - x86
Microsoft Windows XP Home...
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.11
Run by Owner at 1:08:26 on 2011-09-25
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1535.1134 [GMT -4:00]
.
....
Hello Jeff, I cannot find any button to subscribe to, so I assume that I have already done that . My son continued to try to "fix" it after I posted to you. He renamed the combofix program and ran...
Well, It doesn't delete software, but it removes icons, and shuts down the computer when I try to run Malware Bytes or Spyware Doctor.
My son has contracted a virus while surfing porn. Apparently...
Thanks for the tips. I have 5 people that use that computer. Giving them all their own accounts is something that is simple and will help. The main fear that I have is the virus that gets in when I...
I am interested in Viper AV with anti spy and firewall, along with their counter spy program. The best that I can find out is that it has a fairly small footprint on your system memory and still...
I deleted all of the Norton AV files. I also went in and deleted all of the symantec files that I could find and ran a Regestry cleaner for anything that I missed. Here is the last tdskiller log....
ok last time that I will post before your response. I guess i needed to read the prior post because it was the updated version1.46. Anyway, the last scan came up emty as well.
BTW I went to a different mirror site "cnet" it had a version 1.46. I deleted the original Malwarebytes and reinstalled using the newer version. That one updated and is cuurently running. I will post...
Sorry to take so long. I got off work late. Here is the log of the scan. It failed to update, but I ran it as is. I had to connect to the internet to try the update. The scan found 3 more problems,...
here is the log file. it looks clean. I'll look for your post in about 19 -20 hours when I get off work tomorrow. Thanks for your help.
22:47:29:703 7640 TDSS rootkit removing tool 2.2.8.1 Mar...