Locking thread ...
Poster is being helped on another forum :)
steam
Type: Posts; User: steamwiz; Keyword(s):
Locking thread ...
Poster is being helped on another forum :)
steam
Hi
You're very welcome :)
As this thread is resolved, :) it is now locked.
If the original poster would like it re-opened, please send me a PM with a link to this thread.
cheers
Hi
No need to see another hijackthis log :)
If you have no further problems ...
Before you leave the site ...
Please Have a look here at ways to keep your computer safe :-
Hi
Looking good :)
I believe teatimer may be interfering with the removal of some orphan (empty) registry keys... it would do do harm to leave them, but let's try & remove them ...
1. Run...
Hi
It has been more than 3 weeks since your last post, & this is a completely new infection, which you got by plugging an infected flashdrive into your computer.
Please start a new thread in...
HI
Thanks for posting the KASPERSKY ONLINE SCANNER 7 REPORT
AS that scan was run before you ran Malwarebytes' Anti-Malware or Combofix, & these programs appear to have removed most, if not all...
HI
Please post the Kaspersky Online Scan log ...
& a new hijackthis log :)
steam
Hi
Please run a Kaspersky Online Scan
Please do an online scan with Kaspersky WebScanner
Click on Kaspersky Online Scanner
Click Accept
HI
Once AVG has installed the updates, I fail to see how it cannot know they have been installed, & then download them again when you reboot ... you would need to be running a virtual machine,...
Hi
I don't know what you mean by "AVG? Because it always rolled back after restarting my PC" ... everything referring to AVG, points to the latest version AVG8 & when you install the latest...
Hi
Yes .. what you deleted was part of the flashdrive infection ...
Now that you are not troubled with the shutdown....Run the Flash_Disinfector tool by sUBs, there are still more files to be...
HI
Great .. your logs are now clean :)
Go to Start > Run > copy and paste ComboFix /u into the Open: box & press OK
http://img.photobucket.com/albums/v624/29wood/Clipboard01-1.gif
This...
Hi
RE: KASPERSKY ONLINE SCANNER 7 REPORT
Don't worry it's not doing anything with those files ... it's just drawing our attention to their presence, as this program could have been...
HI
Although your version of java is out-of-date ... you should still be able to run a KASPERSKY scan with IE ...
Go to Add/Remove Programs & uninstall :-
Java(TM) 6 Update 4 -->...
Hi
You're very welcome :)
As this thread is resolved, :) it is now locked.
If the original poster would like it re-opened, please send me a PM with a link to this thread.
cheers
Hi
NO the log is not complete ...
The infection you have came from an infected flashdrive ...
Please run this Flash_Disinfector tool by sUBs ...
...
Hi
Your scans are basically clean :)
Just a few points ...
1. KASPERSKY ONLINE SCANNER 7 REPORT shows this :-
C:\Users\Matt\AppData\Local\Microsoft\Outlook\Outlook2.pst Infected:...
Hi
Please don't put logs in code boxes, it makes them harder to read :)
Don't worry about the error messages, that's the malware putting up a fight against removal ... The bad files are being...
Hi
What you see in hijackthis is often just the "tip of the iceberg" with this malware ... I suggest you do this :-
Download Deckard's System Scanner (formerly Comboscan) to your Desktop.
...
Hi
Download Deckard's System Scanner (formerly Comboscan) to your Desktop.
Note: You must be logged onto an account with administrator privileges.
1. Close all applications and windows.
2....
You're very welcome :)
I'll lock this thread now that it is resolved.
steam
Hi
Yep ... everything looks OK now :)
Just one thing, I notice your java is out-of-date ... there have been 7 updates to java since the version you are using ...
Go to add/remove programs...
Hi
I expected BitDefender to find & delete all those files in the Symantec quarantine folder, but it didn't see any ...
Have another look in the Symantec AntiVirus\Quarantine folder & see if...
Hi
The file you had scanned appears to be clean, but I'd like to have a look at it myself...
Please go here :-
http://www.thespykiller.co.uk/index.php?board=1.0
Start a new topic ...title...
Hi
I see you have a P2P program installed, because of new policy in this forum I am obliged to ask you to read this post :-
http://forums.spybot.info/showpost.php?p=218503&postcount=4
I am...
Hi
You're welcome :)
You don't want to post the log ?
steam
Hi
The reason I asked you to get one of those files checked for me is because they were all shown as running in the Running processes: of the hijackthis log you posted ... so they were definitely...
Hi
Looking at the screen capture you posted, it never got past the temporary internet files, hijackthis shows no sign of it running or having been run... hijackthis is clean apart from a few...
Hi
Please go here and upload any one of these files ...
C:\Windows\Sys2E40.exe
C:\Windows\Sys39C4.exe
C:\Windows\Sys5FF9.exe
http://www.virustotal.com/flash/index_en.html
HI
So where did it find it ?
Symantec quarantine ? You have Norton\Symantec & it is supposed to detect & remove it ...
...
Hi
Sometimes a format & reinstall is the only way to get everything working again the way you need it to, at least you now have a clean install "just like when it came out of the box"
Remember...
HI
If "no sound" is your only problem, then there may be no need for you to format ...
Error ID = 0xC00D11BA ... no audio device (is this the error ?)
This could be just that you need to...
HI
Did you do EVERYTHING I said in my last post ? including :-
Double click the Malwarebytes Anti-Malware icon on your desktop, select the quarantine tab, and delete all.
The following file...
You're welcome.. :)
& be careful what you download ...
Before you leave the site ...
Please Have a look here at ways to keep your computer safe :-
So how did I get infected in the first...
HI
Your hijackthis log is clean :)
Delete this file & you're good to go :-
C:\Program Files\Pcsx2_0.9.4\WanPacket.dll > Infected: Backdoor.Win32.ForBot.aj 1
I suspect this is from another...
Hi
First ...
Disconnect from the internet Close ALL browser windows (including this one) - run hijackthis and tick to fix (check the box next to) the list below.........when all are ticked...
Hi
Thanks .. that explains the conflicting evidence about Panda being disabled... however not the Outdated ... have you got the latest updates or has your subscription run out ?
Your first...
HI
In the main.txt from DSS, it looks as though your Panda Internet Security 2008 is working ... but the extra.txt shows :-
FW: Panda Internet Security 2008 v12.01.00 (Panda Security) Disabled...
Hi
I see you've uninstalled PowerISO 4.0 ... a wise decision :) but it hasn't uninstalled cleanly, we have a few things to clean up which it left behind...
If these 2 files are cracks as the...
Hi
About the other text file from Deckard's System Scanner ...
you'll find extra.txt here :- C:\Deckard\System Scanner\extra.txt ... please post it in your next reply.
Then...
Open...
Hi
Important You MUST run Ccleaner on each of your User Profiles :-
User Profiles ->
MIKE (admin)
GEOFF
test (admin)
Hi
There should be 2 text files produced by Deckard's System Scanner, you've posted the main.txt ...
you'll find extra.txt here :- C:\Deckard\System Scanner\extra.txt ... please post it in your...
Hi
You posted the same Deckard's System Scanner report twice, there should have been 2 different ones :)
You still have a lot of malware to remove .... please do this next :-
Please follow...
Sorry Blade81
Too late :lol:
Hi
Download Deckard's System
Scanner (formerly Comboscan) to your Desktop.
1. Close all applications and windows.
2. Double-click on comboscan.exe to run it, and follow the prompts....
Dupe...
Answered here :-
http://forums.spybot.info/showthread.php?t=29115
Hi
It looks like most of your vundo infection has been removed, however you have other malware, some of which has come from downloading illegal cracks ... these allways come with a little "extra"...
Hi
You're very welcome :)
I'll leave this thread open for a few days, just in case Norton comes up with anything, but I believe you have seen the last of Vundo.
Please Have a look here at...
Hi
You're very welcome :)
As this thread is resolved, :) it is now locked.
If the original poster would like it re-opened, please send me a PM with a link to this thread.
cheers
Hi
Excellent :)
that's what I like to see :-
Number of viruses found: 0
Number of infected objects: 0
Number of suspicious objects: 0