Need Help with Trojan.Vundo.H and Trojan.BHO [Solved] |
Need Help with Trojan.Vundo.H and Trojan.BHO [Solved] |
Feb 9 2009, 09:08 PM
Post
#1
|
|
|
Member ![]() ![]() Posts: 22 OS: XP |
Hello, I really need help removing Trojan.Vundo.H and Trojan.BHO! Can someone please offer some assistance? Many thanks in advance! Below are my Malwarebytes and Hijack This logs...
Malwarebytes' Anti-Malware 1.30 Database version: 1402 Windows 5.1.2600 Service Pack 3 2/9/2009 9:37:37 PM mbam-log-2009-02-09 (21-37-37).txt Scan type: Quick Scan Objects scanned: 58886 Time elapsed: 17 minute(s), 10 second(s) Memory Processes Infected: 0 Memory Modules Infected: 3 Registry Keys Infected: 5 Registry Values Infected: 5 Registry Data Items Infected: 2 Folders Infected: 0 Files Infected: 7 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: C:\WINDOWS\system32\yizofuyu.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\hiwumeku.dll (Trojan.Vundo.H) -> Delete on reboot. c:\WINDOWS\system32\diwevari.dll (Trojan.BHO) -> Delete on reboot. Registry Keys Infected: HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. Registry Values Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\487e6780 (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpm4b4d541c (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wipinebiju (Trojan.Agent) -> Quarantined and deleted successfully. Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.BHO) -> Data: c:\windows\system32\diwevari.dll -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.BHO) -> Data: system32\diwevari.dll -> Quarantined and deleted successfully. Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\system32\hiwumeku.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\ukemuwih.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mizuyoha.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ahoyuzim.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yizofuyu.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\uyufoziy.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. c:\WINDOWS\system32\diwevari.dll (Trojan.BHO) -> Delete on reboot. Hijack This log: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:05:49 PM, on 2/9/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\AGRSMMSG.exe C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe C:\Program Files\Apoint2K\Apoint.exe C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe C:\Program Files\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe C:\PROGRA~1\SYMANT~1\VPTray.exe C:\Program Files\LiveUpdate Runner\GSB_NAV_LU.exe C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe C:\Program Files\Sunbelt Software\CounterSpy\Consumer\sunserver.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe C:\Program Files\HP\hpcoretech\hpcmpmgr.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Apoint2K\Apntex.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Symantec AntiVirus\DefWatch.exe C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe C:\WINDOWS\system32\RunDLL32.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\CA\eTrustITM\InoRpc.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\CA\eTrustITM\InoTask.exe C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE C:\Program Files\Palm\Hotsync.exe C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe C:\Program Files\SlimServer\SlimTray.exe C:\Program Files\WoFi\wofi.exe C:\Program Files\CA\SharedComponents\PPRealtime\bin\ITMRTSVC.exe C:\Program Files\SlimServer\server\slim.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\Program Files\Symantec AntiVirus\Rtvscan.exe C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe C:\Program Files\CA\eTrustITM\ppcl.exe C:\PROGRA~1\SLIMSE~1\server\Bin\MSWIN3~1\mysqld.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\HPQ\SHARED\HPQWMI.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll O2 - BHO: {051e9286-50bf-88fb-7cc4-11c047e56ba2} - {2ab65e74-0c11-4cc7-bf88-fb056829e150} - C:\WINDOWS\system32\bkwoui.dll O2 - BHO: (no name) - {4B0D0D0F-C0FE-48E4-938D-5E7A809E20A4} - C:\WINDOWS\system32\nnnLedBs.dll (file missing) O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: (no name) - {6FE62B86-B62C-4C06-8BEB-5BA86510B9C2} - C:\WINDOWS\system32\jkKeDsPI.dll (file missing) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll O2 - BHO: (no name) - {f020802e-bf6a-49dd-9648-7748a44a46b7} - C:\WINDOWS\system32\mohohimu.dll (file missing) O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\YTSingleInstance.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start O4 - HKLM\..\Run: [hpWirelessAssistant] "%ProgramFiles%\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe" O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe O4 - HKLM\..\Run: [AV-Update-9] "C:\Program Files\Symantec AntiVirus\vpdn_lu.exe" /s O4 - HKLM\..\Run: [LiveUpdate Runner] "C:\Program Files\LiveUpdate Runner\GSB_NAV_LU.exe" O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [SunServer] C:\Program Files\Sunbelt Software\CounterSpy\Consumer\sunserver.exe O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [wipinebiju] Rundll32.exe "C:\WINDOWS\system32\kefuguhi.dll",s O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [OfotoNow USB Detection] C:\WINDOWS\system32\RunDLL32.exe C:\PROGRA~1\Ofoto\OfotoNow\OFUSBS.DLL,WatchForConnection OfotoNow O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1 O4 - HKUS\S-1-5-19\..\Run: [wipinebiju] Rundll32.exe "C:\WINDOWS\system32\kefuguhi.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [wipinebiju] Rundll32.exe "C:\WINDOWS\system32\kefuguhi.dll",s (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user') O4 - Startup: Shortcut to wofi.exe.lnk = C:\Program Files\WoFi\wofi.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\Palm\Hotsync.exe O4 - Global Startup: LUMIX Simple Viewer.lnk = ? O4 - Global Startup: SlimServer Tray Tool.lnk = C:\Program Files\SlimServer\SlimTray.exe O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=presario&pf=laptop O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/200612...ex/qtplugin.cab O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll O16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E} (LinkedIn ContactFinderControl) - http://www.linkedin.com/cab/LinkedInContactFinderControl.cab O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1134596730281 O16 - DPF: {6F750202-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/..._2/axofupld.cab O20 - AppInit_DLLs: mzyikg.dll c:\windows\system32\pivojobe.dll C:\WINDOWS\system32\jisagade.dll bkwoui.dll O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iTechnology iGateway 4.2 (iGateway) - CA, Inc. - C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe O23 - Service: eTrust ITM RPC Service (InoRPC) - CA - C:\Program Files\CA\eTrustITM\InoRpc.exe O23 - Service: eTrust ITM Job Service (InoTask) - CA - C:\Program Files\CA\eTrustITM\InoTask.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: CA Pest Patrol Realtime Protection Service (ITMRTSVC) - CA, Inc. - C:\Program Files\CA\SharedComponents\PPRealtime\bin\ITMRTSVC.exe O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe O23 - Service: SlimServer (slimsvc) - Unknown owner - C:\Program Files\SlimServer\server\slim.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe -- End of file - 12458 bytes |
|
|
fedup_with_vundo Need Help with Trojan.Vundo.H and Trojan.BHO [Solved] Feb 9 2009, 09:08 PM
fenzodahl512 Hello, my name is fenzodahl512 and welcome to Geek... Feb 10 2009, 12:17 AM
fedup_with_vundo fenzodahl512: thanks so much for your help. i am ... Feb 10 2009, 11:13 PM
fenzodahl512 QUOTE i am unable to run the GMER application. eve... Feb 10 2009, 11:27 PM
fedup_with_vundo OK, here is my Combo-Fix log:
ComboFix 09-02-10.0... Feb 11 2009, 12:36 AM
fenzodahl512 1. Please open Notepad Click Start, then RunType n... Feb 11 2009, 01:25 AM
fedup_with_vundo Here is the latest Combo-Fix log after following y... Feb 11 2009, 09:04 PM
fedup_with_vundo and here is my latest HijackThis log...
Logfile o... Feb 11 2009, 09:06 PM
fenzodahl512 Looks a lot better.. Lets do this....
Please dow... Feb 11 2009, 10:08 PM
fedup_with_vundo Are we getting close? Here is the ESET log...
# ... Feb 12 2009, 09:59 PM
fenzodahl512 Looks good to me.. Lets do some cleanup...
Pleas... Feb 12 2009, 11:03 PM
fedup_with_vundo Before I ran OTCleanit, this weird pop-up appeared... Feb 13 2009, 12:22 PM
fenzodahl512 That's malware.. Could be new infection.. Plea... Feb 13 2009, 01:08 PM
fedup_with_vundo what's weird now is that the wireless connecti... Feb 16 2009, 07:37 AM
fedup_with_vundo And the RSIT info.txt:
info.txt logfile of random... Feb 16 2009, 07:38 AM
fenzodahl512 Not good.. I'm afraid the worst.. Lets do this... Feb 16 2009, 09:12 AM
fedup_with_vundo Here is the Web Cureit log:
winlognn.exe;c:... Feb 16 2009, 03:05 PM
fedup_with_vundo and hijackthis log:
Logfile of Trend Micro Hijack... Feb 16 2009, 03:17 PM
fenzodahl512 Did you download anything recently?.. The computer... Feb 16 2009, 09:51 PM
fedup_with_vundo Really odd. I haven't downloaded anything sin... Feb 17 2009, 08:41 AM
fenzodahl512 Ok... waiting for the logs Feb 17 2009, 09:13 AM
fedup_with_vundo Alrighty, here is the ComboFix log:
ComboFix 09-0... Feb 17 2009, 07:38 PM
fenzodahl512 Please download CleanUp! by stevengould.org an... Feb 17 2009, 11:02 PM
fedup_with_vundo OK, here is my OT Move It log:
========== PROCESS... Feb 18 2009, 07:35 PM
fenzodahl512 Repeat the OTMoveIt3 step but this time with below... Feb 19 2009, 01:04 AM
fedup_with_vundo Here is the OT Move It log:
========== PROCESSES ... Feb 19 2009, 06:34 AM
fedup_with_vundo And the Combo Fix log:
ComboFix 09-02-15.01 - Ron... Feb 19 2009, 08:42 AM
fenzodahl512 Please download The Avenger by Swandog46 and unzip... Feb 19 2009, 09:15 AM
fedup_with_vundo Here is the avenger log:
Logfile of The Avenger V... Feb 19 2009, 07:13 PM
fedup_with_vundo And the OT Move It log:
========== PROCESSES ====... Feb 19 2009, 07:23 PM
fedup_with_vundo And finally the Combofix log:
ComboFix 09-02-15.0... Feb 19 2009, 07:37 PM
fenzodahl512 Hello.. First of all, I need to ask..
Is this a ... Feb 19 2009, 11:00 PM
fedup_with_vundo I mistakenly clicked "Delete Incurable" ... Feb 20 2009, 09:00 AM
fenzodahl512 Download avz4.zip from HEREUnzip it to your deskto... Feb 20 2009, 12:45 PM
fedup_with_vundo OK, attached is the virusinfo.syscheck.htm file... Feb 20 2009, 10:42 PM
fenzodahl512 Hello..
1. How many antivirus that present in th... Feb 20 2009, 11:13 PM
fedup_with_vundo OK, not sure I understand your first point, but I ... Feb 20 2009, 11:31 PM
fenzodahl512 Lets do some cleanup...
Please download OTCleanI... Feb 21 2009, 08:09 AM
fenzodahl512 Since this issue appears to be resolved ... this T... Feb 26 2009, 05:18 PM![]() ![]() |
Similar Topics
| Topic Title | Replies / Views | Topic Information | |||||
|---|---|---|---|---|---|---|---|
![]() |
11 / 771 | 22nd December 2008 - 02:14 PM Bob IX started - last by fenzodahl512 |
|||||
![]() |
62 / 3,286 | 31st January 2009 - 05:00 PM pp111 started - last by JSntgRvr |
|||||
![]() |
11 / 859 | 14th March 2009 - 03:50 AM wishmeluck28d started - last by heir |
|||||
![]() |
30 / 1,292 | 11th July 2009 - 05:15 AM gmanfan started - last by Essexboy |
|||||
![]() |
19 / 468 | 15th January 2010 - 08:36 AM barrage started - last by Rorschach112 |
|||||
|
Time is now: 11th March 2010 - 06:45 PM |
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising