Page 2 of 2 FirstFirst 12
Results 11 to 14 of 14

Thread: Constant Error Interuptions

  1. #11
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Please go to Kaspersky website and perform an online antivirus scan.

    Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.

    1. Read through the requirements and privacy statement and click on Accept button.
    2. It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
    3. When the downloads have finished, click on Settings.
    4. Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
      • Spyware, Adware, Dialers, and other potentially dangerous programs
        Archives
    5. Click on My Computer under Scan.
    6. Once the scan is complete, it will display the results. Click on View Scan Report.
    7. You will see a list of infected items there. Click on Save Report As....
    8. Save this report to a convenient place. Change the Files of type to Text file (.txt) before clicking on the Save button.
    9. Please post this log in your next reply along with a fresh HijackThis log.


    If you need a tutorial, see here
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  2. #12
    Member
    Join Date
    Jul 2008
    Posts
    48

    Default

    --------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER 7 REPORT
    Friday, December 12, 2008
    Operating System: Microsoft Windows XP Home Edition Service Pack 3 (build 2600)
    Kaspersky Online Scanner 7 version: 7.0.25.0
    Program database last update: Friday, December 12, 2008 03:43:02
    Records in database: 1453549
    --------------------------------------------------------------------------------

    Scan settings:
    Scan using the following database: extended
    Scan archives: yes
    Scan mail databases: yes

    Scan area - My Computer:
    C:\
    D:\

    Scan statistics:
    Files scanned: 71831
    Threat name: 15
    Infected objects: 25
    Suspicious objects: 0
    Duration of the scan: 00:45:57


    File name / Threat name / Threats count
    C:\Documents and Settings\Cameron\Desktop\backups\backup-20081204-215836-945.dll Infected: Trojan.Win32.Inject.kyy 1
    C:\Qoobox\Quarantine\C\Documents and Settings\NetworkService\Application Data\gadcom\gadcom.exe.vir Infected: Trojan.Win32.Agent.asmf 1
    C:\Qoobox\Quarantine\C\Documents and Settings\NetworkService\Application Data\gadcom\gadcom.exer3.vir Infected: Trojan.Win32.Agent.asmf 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\bafekuta.dll.vir Infected: Trojan.Win32.Monder.aamw 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\fakahale.dll.vir Infected: Trojan-GameThief.Win32.Magania.amis 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\femififi.dll.vir Infected: Trojan.Win32.Monder.aard 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\g4.exe.vir Infected: Trojan-Clicker.Win32.Agent.btf 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\goluwuwe.dll.vir Infected: Trojan.Win32.Monder.aamw 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\kanelewu.dll.vir Infected: Trojan-Clicker.Win32.Agent.fnq 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\ki3\RI2ES6i.exe.vir Infected: Trojan.Win32.Agent.asjz 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\mst120.dll.vir Infected: Trojan-Downloader.Win32.DlKroha.n 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\nofiyeze.dll.vir Infected: Trojan-Clicker.Win32.Agent.fnq 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\Q5EHRw2b.exe.vir Infected: Trojan-Downloader.Win32.Injecter.bby 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\ratapeju.dll.vir Infected: Trojan.Win32.Monder.aavx 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\rezizoto.dll.vir Infected: Trojan-GameThief.Win32.Magania.amis 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\rqwnw64s.exe.vir Infected: Trojan-Downloader.Win32.Agent.afzg 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\susujewe.dll.vir Infected: Trojan.Win32.Monder.aare 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\ta\HXEdv47.exe.vir Infected: Trojan.Win32.Agent.asjk 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\tevehuge.dll.vir Infected: Trojan-Clicker.Win32.Agent.fnq 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\uv9\peco85IV.exe.vir Infected: Trojan-Downloader.Win32.Agent.afzg 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\vivmxkwyyjuo.dll.vir Infected: Trojan.Win32.Agent.asjk 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\wihomeki.dll.vir Infected: Trojan-Clicker.Win32.Agent.fnq 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\zekiwiwu.dll.vir Infected: Trojan.Win32.Monder.aavx 1
    C:\Qoobox\Quarantine\C\WINDOWS\system32\_vivmxkwyyjuo.dll.vir Infected: Trojan.Win32.Agent.asjk 1
    C:\SDFix\backups\catchme.zip Infected: Rootkit.Win32.Protector.bd 1

    The selected area was scanned.


    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 1:11:55 AM, on 12/12/2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\McAfee\MSK\MskSrver.exe
    C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    C:\WINDOWS\system32\svchost.exe
    c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Dell Support Center\bin\sprtcmd.exe
    C:\Program Files\NETGEAR\WPN111\wpn111.exe
    C:\Program Files\internet explorer\iexplore.exe
    C:\WINDOWS\system32\wuauclt.exe
    c:\PROGRA~1\mcafee\msc\mcuimgr.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
    C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
    c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
    C:\Program Files\McAfee\MPF\MPFSrv.exe
    c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
    C:\Program Files\internet explorer\iexplore.exe
    C:\Documents and Settings\Cameron\Desktop\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&...us&ibd=1080620
    O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
    O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKCU\..\Run: [CurseClient] C:\Program Files\Curse\CurseClient.exe -silent
    O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk = ?
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
    O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
    O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
    O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
    O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
    O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
    O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe

    --
    End of file - 4134 bytes

  3. #13
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Empty these folders:

    C:\Documents and Settings\Cameron\Desktop\backups
    C:\Qoobox\Quarantine
    C:\SDFix\backups

    Empty Recycle Bin.

    Still problems?
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  4. #14
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Since this issue appears to be resolved ... this Topic has been closed. Glad I could help.

    Note: If it has been five days or more since your last post, and the helper assisting you posted a response to that post to which you did not reply, your topic will not be reopened. At that point, if you still require help, please start a new topic and include a fresh HijackThis log and a link to your previous thread.

    If it has been less than five days since your last response and you need the thread re-opened, please send me or your helper a private message (pm). A valid, working link to the closed topic is required.
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •