Possible worm!!

Status
Not open for further replies.
okay tyvm, is my computer still infected?, cause my friends still says i send links, which i can't find where its coming from:sad:
 
i got these softwares can you please tell me which to keep?

PC tools Firewall
ThreatFire
Spyware Blaster
SpyBot SD
Norton Security Scan
Comodo BOC
Spyware Doctor (uninstalled, should install again or no?)


Codec programs that are samething or unneeded?
3ivx
Codec Installer
DivX
GOM player
Haali Media Splitter
Xvid
 
i got these softwares can you please tell me which to keep?

PC tools Firewall
Spyware Blaster
SpyBot SD
Spyware Doctor (uninstalled, should install again or no?)

Not sure on these
Codec programs that are samething or unneeded?
3ivx
Codec Installer
DivX
GOM player
Haali Media Splitter
Xvid
 
Run this online scan from ESET

You will need to use Internet explorer for this scan!
  • First, accept the Terms of Use
  • Click: Start
  • When asked, allow the ActiveX control to install
  • Click: Start
  • Make sure the options:
    Remove found threats, and Scan unwanted applications
    are both checked!
  • Click: Scan

When the scan finishes, use Notepad to open the ESET report.
It will be located here C:\Program Files\EsetOnlineScanner\log.txt
 
Apparently there are no threats at all (had a external drive connected to computer, it scan that also)
-----------------------------------------------------------

# version=4
# OnlineScanner.ocx=1.0.0.635
# OnlineScannerDLLA.dll=1, 0, 0, 79
# OnlineScannerDLLW.dll=1, 0, 0, 78
# OnlineScannerUninstaller.exe=1, 0, 0, 49
# vers_standard_module=2967 (20080321)
# vers_arch_module=1.064 (20080214)
# vers_adv_heur_module=1.064 (20070717)
# EOSSerial=e5a7f1fc280f2f4c8bbdeaaa595bda12
# end=finished
# remove_checked=true
# unwanted_checked=true
# utc_time=2008-03-22 04:53:23
# local_time=2008-03-22 12:53:23 (-0500, Eastern Daylight Time)
# country="United States"
# osver=5.1.2600 NT Service Pack 2
# scanned=410042
# found=0
# scan_time=10117
 
Looks ok but let's run panda again. Click HERE to run Panda's ActiveScan

* You need to use IE to run this scan
* Once you are on the Panda site click the Scan your PC button
* A new window will open...click the Check Now button
* Enter your Country
* Enter your State/Province
* Enter your e-mail address and click send
* Select either Home User or Company
* Click the big Scan Now button
* If it wants to install an ActiveX component allow it
* It will start downloading the files it requires for the scan (Note: It may take a couple of minutes)
* When download is complete, click on My Computer to start the scan
* When the scan completes, if anything malicious is detected, click the See Report button, then Save Report and save it to a convenient location. Post the contents of the ActiveScan report
 
There's spyware detected:

------------------------------------------------------------

Incident Status Location

Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\User\Cookies\user@toplist[1].txt
 
Yes you can try this removal tool.

Download MsnVirRem.exe to your desktop
http://downloads.malwareremoval.com/MsnVirRem.exe

First close any other programs you have running as the tool requires a reboot to complete the removal process.

Double click MsnVirRem.exe to run the tool and then click the button labelled Search and Destroy to scan for infected files.

When scanning is complete you will be prompted to reboot/restart the machine only if infected. Click OK if this is the case and then click the REBOOT button.

After the reboot, you will receive "file not found" error messages (usually 4). Please acknowledge these error messages and continue.

A Message should then popup from MsnVirRem. If not, double click the program again and it will finish.



* The tool creates a log file of it's removal process which can be located in your root directory (usually C:\msnvirrem.log).
Post the log here when done.
 
Status
Not open for further replies.
Back
Top