Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Malware[RESOLVED]


  • This topic is locked This topic is locked

#1
edthefed

edthefed

    New Member

  • Member
  • Pip
  • 4 posts
I followed the instructions to check my system before posting. I ran Ad-aware SE, CWShredder, and Spybot S&D. The Panda Software online scan detected Media Tickets in the Windows Registry. Next, I checked for Windows Updates - all current. I rebooted, then ran the Panda Software scan again - it still showed 1 infected file - Media Tickets. Downloaded HJT, and below is the log.

Logfile of HijackThis v1.99.1
Scan saved at 3:25:24 PM, on 3/4/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
C:\Program Files\Dell Photo AIO Printer 942\memcard.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com...de_srchlft.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll
O1 - Hosts: 64.91.255.87 www.dcsresearch.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [MMTray] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [mmtask] C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe"
O4 - HKLM\..\Run: [DellMCM] "C:\Program Files\Dell Photo AIO Printer 942\memcard.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall-bet...all/xscan60.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....467&clcid=0x409
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft.../as5/asinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
  • 0

Advertisements


#2
Dragon

Dragon

    All Around Computer Nut

  • Retired Staff
  • 2,682 posts
hi sorry for the delayed response as we have been very busy here lately.

The good news is that your log is clean.

would you please check in start>control panel>add/remove programs and see if you have an entry for Media Tickets if you do remove that file and then go to my computer>c: local harddrive>program files> then find and delete the folder media tickets

let us know if that took care of your problem.

if you already got this fixed please respond here and let us know
Thanks
  • 0

#3
edthefed

edthefed

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
I checked in both places and no sign of media tickets, so I gues that's good. Could the Panda scan have generated a false response?
  • 0

#4
Dragon

Dragon

    All Around Computer Nut

  • Retired Staff
  • 2,682 posts
it is possible but to be sure could you please do the following.

open Hijack This, then click on the button that says Misc. Tools
next click on the button that says open process manager, in the upper right hand corner you will see a clipboard, press that and post a copy here.

Then in Misc. Tool click on uninstall manager, once again make a copy of the list and post it here.
  • 0

#5
edthefed

edthefed

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
Process list saved on 5:17:02 PM, on 3/17/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)

[pid] [full path to filename] [file version] [company name]
556 C:\WINDOWS\System32\smss.exe 5.1.2600.2180 Microsoft Corporation
632 C:\WINDOWS\system32\winlogon.exe 5.1.2600.2180 Microsoft Corporation
676 C:\WINDOWS\system32\services.exe 5.1.2600.2180 Microsoft Corporation
688 C:\WINDOWS\system32\lsass.exe 5.1.2600.2180 Microsoft Corporation
884 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation
1048 C:\WINDOWS\System32\svchost.exe 5.1.2600.2180 Microsoft Corporation
1340 C:\WINDOWS\system32\spoolsv.exe 5.1.2600.2180 Microsoft Corporation
1692 C:\WINDOWS\Explorer.EXE 6.0.2900.2180 Microsoft Corporation
1772 C:\WINDOWS\system32\hkcmd.exe 3.0.0.3829 Intel Corporation
1780 C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
1792 C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe 3.0.0.0 CyberLink Corp.
1820 C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe 9.0.2.53 Musicmatch, Inc.
1832 C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe 1.0.0.1 Musicmatch Inc.
1860 C:\PROGRA~1\mcafee.com\agent\mcagent.exe 5.0.0.2 McAfee, Inc
1912 C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe 9.0.0.7 Networks Associates Technology, Inc
1920 C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe 6.0.0.14 McAfee Security
1928 C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe 1.0.10.0
1936 C:\Program Files\Dell Photo AIO Printer 942\memcard.exe 1.0.10.0
1956 C:\Program Files\Microsoft AntiSpyware\gcasServ.exe 1.0.0.509 Microsoft Corporation
1960 c:\progra~1\mcafee.com\vso\mcvsescn.exe 9.0.0.8 Networks Associates Technology, Inc
1996 C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe 1.0.10.0
2004 C:\WINDOWS\system32\dla\tfswctrl.exe 1.4.8.0 Sonic Solutions
2012 C:\Program Files\Common Files\Real\Update_OB\realsched.exe 0.1.0.3249 RealNetworks, Inc.
2044 C:\Program Files\Dell Support\DSAgnt.exe 1.1.0.73 Gteko Ltd.
144 C:\WINDOWS\system32\ctfmon.exe 5.1.2600.2180 Microsoft Corporation
188 c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe 9.0.0.10 Networks Associates Technology, Inc
324 C:\Program Files\Digital Line Detect\DLG.exe 1.0.0.1 BVRP Software
424 C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe 6.0.0.14 McAfee Security
492 C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe 1.0.0.509 Microsoft Corporation
820 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE 7.0.9466.0 Microsoft Corporation
916 C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe 6.0.0.14 McAfee Corporation
1012 C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe 2000.80.818.0 Microsoft Corporation
1156 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation
2336 c:\PROGRA~1\mcafee.com\vso\mcshield.exe 6.0.0.100
2312 C:\Program Files\Outlook Express\MSIMN.EXE 6.0.2900.2180 Microsoft Corporation
2128 C:\Program Files\Messenger\msmsgs.exe 4.7.0.3001 Microsoft Corporation
2632 c:\progra~1\mcafee.com\vso\mcvsftsn.exe 9.0.0.0 Networks Associates Technology, Inc
2752 C:\Program Files\Internet Explorer\iexplore.exe 6.0.2900.2180 Microsoft Corporation
840 C:\Program Files\HijackThis.exe 1.99.0.1 Soeperman Enterprises Ltd.

ABBYY FineReader 5.0 Sprint Plus
Ad-Aware SE Personal
Adobe Acrobat - Reader 6.0.2 Update
Adobe Reader 6.0.1
Business Contact Manager for Outlook 2003
Conexant D850 56K V.9x DFVc Modem
Dell Driver Reset Tool
Dell Media Experience
Dell Media Experience Update
Dell Photo AIO Printer 942
Dell Support 5.0.0 (630)
Digital Line Detect
HijackThis 1.99.1
Intel® Graphics Media Accelerator Driver
Intel® PRO Network Adapters and Drivers
Intel® PROSet for Wired Connections
Internet Explorer Default Page
Jasc Paint Shop Photo Album
Jasc Paint Shop Pro 8 Dell Edition
Java 2 Runtime Environment, SE v1.4.2_03
Java 2 Runtime Environment, SE v1.4.2_06
Learn2 Player (Uninstall Only)
McAfee Personal Firewall Plus
McAfee SecurityCenter
McAfee VirusScan
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft AntiSpyware
Microsoft Office Small Business Edition 2003
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Photo Story 2 LE
Modem Helper
Musicmatch® Jukebox
My Way Search Assistant
NetWaiting
Photo Click
PowerDVD 5.3
Qualxserve Service Agreement
Quicken 2005
QuickTime
RealPlayer
Sonic DLA
Sonic MyDVD
Sonic RecordNow!
Sonic Update Manager
Spybot - Search & Destroy 1.3
TurboTax Basic 2004
Viewpoint Media Player
WexTech AnswerWorks
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 10
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB891781
  • 0

#6
Dragon

Dragon

    All Around Computer Nut

  • Retired Staff
  • 2,682 posts
well it looks like you may be correct on that being a false positive. there is nothing there that is indicating media tickets being on your computer.

there is one thing you need to do though.

start Hijack This then click on the Misc. tools button, next click on the uninstall manager and remove this entry.

Viewpoint Media Player

then boot to safe mode and locate and remove this file:

C:\program files\Viewpoint

to boot into safe mode tap F8 while your machine restarts, this will give you a menu that allows you to choose safe mode.

Then reboot and post a fresh hijack this log for me please.
  • 0

#7
edthefed

edthefed

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
Process list saved on 1:05:32 PM, on 3/18/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)

[pid] [full path to filename] [file version] [company name]
556 C:\WINDOWS\System32\smss.exe 5.1.2600.2180 Microsoft Corporation
632 C:\WINDOWS\system32\winlogon.exe 5.1.2600.2180 Microsoft Corporation
676 C:\WINDOWS\system32\services.exe 5.1.2600.2180 Microsoft Corporation
688 C:\WINDOWS\system32\lsass.exe 5.1.2600.2180 Microsoft Corporation
880 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation
1044 C:\WINDOWS\System32\svchost.exe 5.1.2600.2180 Microsoft Corporation
1324 C:\WINDOWS\system32\spoolsv.exe 5.1.2600.2180 Microsoft Corporation
1692 C:\WINDOWS\Explorer.EXE 6.0.2900.2180 Microsoft Corporation
1772 C:\WINDOWS\system32\hkcmd.exe 3.0.0.3829 Intel Corporation
1780 C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
1788 C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe 3.0.0.0 CyberLink Corp.
1796 C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe 1.1.33.1 Sonic Solutions
1804 C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe 9.0.2.53 Musicmatch, Inc.
1824 C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe 1.0.0.1 Musicmatch Inc.
1848 C:\PROGRA~1\mcafee.com\agent\mcagent.exe 5.0.0.2 McAfee, Inc
1888 C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe 9.0.0.7 Networks Associates Technology, Inc
1912 C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe 6.0.0.14 McAfee Security
1928 C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe 1.0.10.0
1960 c:\progra~1\mcafee.com\vso\mcvsescn.exe 9.0.0.8 Networks Associates Technology, Inc
1984 C:\Program Files\Microsoft AntiSpyware\gcasServ.exe 1.0.0.509 Microsoft Corporation
1992 C:\WINDOWS\system32\dla\tfswctrl.exe 1.4.8.0 Sonic Solutions
2000 C:\Program Files\Common Files\Real\Update_OB\realsched.exe 0.1.0.3249 RealNetworks, Inc.
2008 C:\Program Files\Dell Support\DSAgnt.exe 1.1.0.73 Gteko Ltd.
2016 C:\WINDOWS\system32\ctfmon.exe 5.1.2600.2180 Microsoft Corporation
2040 C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe 1.0.10.0
160 C:\Program Files\Digital Line Detect\DLG.exe 1.0.0.1 BVRP Software
364 C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe 6.0.0.14 McAfee Security
412 C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe 1.0.0.509 Microsoft Corporation
484 c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe 9.0.0.10 Networks Associates Technology, Inc
544 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE 7.0.9466.0 Microsoft Corporation
1064 C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe 6.0.0.14 McAfee Corporation
1096 C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe 2000.80.818.0 Microsoft Corporation
1280 C:\WINDOWS\system32\svchost.exe 5.1.2600.2180 Microsoft Corporation
2832 c:\PROGRA~1\mcafee.com\vso\mcshield.exe 6.0.0.100
3412 C:\Program Files\HijackThis.exe 1.99.0.1 Soeperman Enterprises Ltd.
3432 C:\WINDOWS\system32\wuauclt.exe 5.4.3790.2182 Microsoft Corporation


ABBYY FineReader 5.0 Sprint Plus
Ad-Aware SE Personal
Adobe Acrobat - Reader 6.0.2 Update
Adobe Reader 6.0.1
Business Contact Manager for Outlook 2003
Conexant D850 56K V.9x DFVc Modem
Dell Driver Reset Tool
Dell Media Experience
Dell Media Experience Update
Dell Photo AIO Printer 942
Dell Support 5.0.0 (630)
Digital Line Detect
HijackThis 1.99.1
Intel® Graphics Media Accelerator Driver
Intel® PRO Network Adapters and Drivers
Intel® PROSet for Wired Connections
Internet Explorer Default Page
Jasc Paint Shop Photo Album
Jasc Paint Shop Pro 8 Dell Edition
Java 2 Runtime Environment, SE v1.4.2_03
Java 2 Runtime Environment, SE v1.4.2_06
Learn2 Player (Uninstall Only)
McAfee Personal Firewall Plus
McAfee SecurityCenter
McAfee VirusScan
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft AntiSpyware
Microsoft Office Small Business Edition 2003
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Photo Story 2 LE
Modem Helper
Musicmatch® Jukebox
My Way Search Assistant
NetWaiting
Photo Click
PowerDVD 5.3
Qualxserve Service Agreement
Quicken 2005
QuickTime
RealPlayer
Sonic DLA
Sonic MyDVD
Sonic RecordNow!
Sonic Update Manager
Spybot - Search & Destroy 1.3
TurboTax Basic 2004
WexTech AnswerWorks
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 10
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB891781
  • 0

#8
Dragon

Dragon

    All Around Computer Nut

  • Retired Staff
  • 2,682 posts
From the looks of it your assumption of the Panda scan is correct.

Congratulations! Your system is CLEAN :tazz:

How do you prevent spyware from being installed again? We strongly recommend installing SpywareBlaster (it's free for personal use) Click Here.

Prevent the installation of ActiveX-based spyware, adware, browser hijackers, dialers, and other potentially unwanted pests.
Block spyware/tracking cookies in Internet Explorer and Mozilla/Firefox.
Restrict the actions of potentially dangerous sites in Internet Explorer.
Consumes no system resources.

Download, run, check for updates, download updates, select all, protect against checked. All done. Check for updates every couple of weeks. If you have any errors running the program like a missing file see the link at the bottom of the javacool page.

It's also very important to keep your system up to date to avoid unnecessary security risks. Click Here to make sure that you have the latest patches for Windows.

These next two steps are optional, but will provide the greatest protection.
1. Use ANY browser besides Internet Explorer, almost every exploit is crafted to take advantage of an IE weakness. We usually recommend FireFox Posted Image.
2. Install Sun's Java. It's much more secure than Microsoft's Java Virtual Machine .

It's okay to delete the Hijack This folder if everything is working okay.

After doing all these, your system will be thoroughly protected from future threats. ;)

Edited by Efwis, 18 March 2005 - 01:11 PM.

  • 0

#9
Guest_thatman_*

Guest_thatman_*
  • Guest
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :tazz:

If your the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP