Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Hijackthis install failed - virus detected in the .exe [CLOSED]


  • This topic is locked This topic is locked

#1
biren

biren

    Member

  • Member
  • PipPip
  • 31 posts
i was trying to follow the steps given here in this forum:
/www.geekstogo.com/forum/Must-Read-Before-Posting-Hijackthis-Log-t2852.html
before i posted anything.
when i downloaded hijackThis installer (and then .zip) and tried to run the installation, my antivirus (quickheal) detected the following virus in the hijackThis.exe
"worm.Huhk.a in"
and aborted installation.

any help, suggestion... idea...
thanks for taking the time and care to help.
regards
biren shah
india
PS: i am not uploading the file... not till someone asks me to do it.

PPS:
SuperAntispyware and malwarebytes didnot find anything in my computer... however, online 'activescan' did.
here is the log that it gave me:

;*******************************************************************************
*********************************************************************************
*******************
ANALYSIS: 2008-05-03 12:38:31
PROTECTIONS: 1
MALWARE: 51
SUSPECTS: 0
;*******************************************************************************
*********************************************************************************
*******************
PROTECTIONS
Description Version Active Updated
;===============================================================================
=================================================================================
===================
Total Security 9.50 9.50 Yes Yes
;===============================================================================
=================================================================================
===================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===============================================================================
=================================================================================
===================
00020255 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\64e8e598-3f3e4697[Dummy.class]
00066038 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\64e8e598-3f3e4697[Parser.class]
00090908 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-5c2529c3[Gummy.class]
00090908 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-481321c3[Gummy.class]
00099408 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\64e8e598-3f3e4697[Counter.class]
00099483 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-481321c3[Counter.class]
00099483 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-5c2529c3[Counter.class]
00099484 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-481321c3[VerifierBug.class]
00099484 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\3e021ed8-5c2529c3[VerifierBug.class]
00118082 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\24\64e8e598-3f3e4697[Matrix.class]
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.doubleclick.net/]
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.doubleclick.net/]
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.atdmt.com/]
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.atdmt.com/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.fastclick.net/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.tribalfusion.com/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.tribalfusion.com/]
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.mediaplex.com/]
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.mediaplex.com/]
00167450 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\46\37e9b8ee-2fe6064f[VerifierBug.class]
00167450 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\26\79862b5a-409927c4[VerifierBug.class]
00167451 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\46\37e9b8ee-2fe6064f[Dummy.class]
00167451 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\26\79862b5a-409927c4[Dummy.class]
00167452 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\26\79862b5a-409927c4[BlackBox.class]
00167452 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\46\37e9b8ee-2fe6064f[BlackBox.class]
00167453 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\26\79862b5a-409927c4[Beyond.class]
00167453 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\46\37e9b8ee-2fe6064f[Beyond.class]
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.xiti.com/]
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.xiti.com/]
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.statcounter.com/]
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.statcounter.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[ad.yieldmanager.com/]
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.apmebf.com/]
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.apmebf.com/]
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.burstnet.com/]
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.burstnet.com/]
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.burstnet.com/]
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.burstnet.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.bs.serving-sys.com/]
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.bs.serving-sys.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.advertising.com/]
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[statse.webtrendslive.com/]
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[statse.webtrendslive.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ads.pointroll.com/]
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.overture.com/]
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.overture.com/]
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.realmedia.com/]
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.realmedia.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.questionmarket.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.zedo.com/]
00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adrevolver.com/]
00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adrevolver.com/]
00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adrevolver.com/]
00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adrevolver.com/]
00184934 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\38\635eaa6-70f48c7a[NewURLClassLoader.class]
00184935 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\38\635eaa6-70f48c7a[NewSecurityClassLoader.class]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.adultfriendfinder.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.go.com/]
00236757 Adware/CWS.Searchmeup Adware No 1 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\38\635eaa6-70f48c7a[GetAccess.class]
00236759 Adware/CWS.Searchmeup Adware No 1 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\38\635eaa6-70f48c7a[Installer.class]
00262020 Cookie/Atwola TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.atwola.com/]
00262020 Cookie/Atwola TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.atwola.com/]
00278998 Trj/ClassLoader.E Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\21\3db51295-31f5b24c[NewURLClassLoader.class]
00278999 Trj/ClassLoader.E Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\21\3db51295-31f5b24c[SandBoxEscape.class]
00279000 Trj/ClassLoader.E Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\21\3db51295-31f5b24c[SuperMSClassLoader.class]
00279001 Exploit/ByteVerify HackTools No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\21\3db51295-31f5b24c[Installer.class]
00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ehg-dig.hitbox.com/]
00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ehg-dig.hitbox.com/]
00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Madhvi\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ehg-dig.hitbox.com/]
00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\4pvcdspc.default\cookies.txt[.ehg-dig.hitbox.com/]
00515709 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[VaaaaaaaBaa.class]
00515710 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[Baaaaa.class]
00515711 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[BaaaaBaa.class]
00516819 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[Dex.class]
00516820 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[Dvnny.class]
00516821 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[Dux.class]
00516823 JS/Downloader.NOE Virus/Trojan No 0 Yes No C:\Documents and Settings\USER\Application Data\Sun\Java\Deployment\cache\6.0\50\4f360032-6c5d0dfd[Dix.class]
00527204 Application/PRScheduler HackTools No 0 Yes No C:\System Volume Information\_restore{E0984D40-D767-442E-A613-02307FF31605}\RP349\A0224220.exe
;===============================================================================
=================================================================================
===================
SUSPECTS
Sent Location {
;===============================================================================
=================================================================================
===================
;===============================================================================
=================================================================================
===================
VULNERABILITIES
Id Severity Description {
;===============================================================================
=================================================================================
===================
;===============================================================================
=================================================================================
===================

Edited by biren, 03 May 2008 - 02:07 AM.

  • 0

Advertisements


#2
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Welcome to GTG.

Uploading what file? HijackThis? Do you have McAfee by any chance? I forgot which one, but I think it's that one that detects HijackThis as a threat...which is a false positive. You may disable McAfee first and then run HijackThis to get the log for us. Before you do that though, do all the following first:

Please print the below instructions or copy them to Notepad. Make sure to work through the fixes in the order mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes.

Go to http://www.java.com/.../5000020300.xml and see how to clear your Java cache or follow the instructions below:

Go into the Control Panel and double-click the Java icon (looks like a coffee cup).

- Under Temporary Internet Files, click the Delete Files button.
- There are three options in the window to clear the cache - Leave ALL 3 Checked
- Downloaded Applets
- Downloaded Applications
- Other Files
- Click OK on Delete Temporary Files window (Note: This deletes ALL the Downloaded Java Applications and Applets from the CACHE.)
- Click OK to leave the Java Control Panel.


Download ATF Cleaner at http://www.atribune..../click.php?id=1
Double-click ATF-Cleaner.exe to run the program. Under Main choose Select All
Click the Empty Selected button.

If you use the Firefox browser click Firefox at the top and choose Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.

If you use the Opera browser click 'Opera' at the top and choose 'Select All'
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.

Click Exit on the Main menu to close the program.


Run a scan in HijackThis. Check each of the following if they still exist and hit 'Fix Checked' after you checked the last one:

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://neword.com/adw.html?s
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = http://neword.com/adw.html?s
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE


1. Download combofix at http://www.techsuppo...Bs/ComboFix.exe or http://download.blee...Bs/ComboFix.exe
2. Double-click combofix.exe & follow the prompts.
3. When finished, it will produce a log for you. Post that log in your next reply.

Note:
Do not click on combofix's window while it's running. That may cause it to stall.
  • 0

#3
biren

biren

    Member

  • Topic Starter
  • Member
  • PipPip
  • 31 posts
thanks greyknight.
  • 0

#4
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Please post the combofix log here when ready.
  • 0

#5
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP