Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Help...Black Ice & Symantec Antivirus disabled


  • Please log in to reply

#1
MistaMoeGod

MistaMoeGod

    New Member

  • Member
  • Pip
  • 9 posts
:tazz:

I went thru most threads and could not find a solution to this problem....

hijackthis log is below

Logfile of HijackThis v1.99.1
Scan saved at 12:31:19 PM, on 5/19/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\system32\acstp\icserv.exe
c:\program files\firm applications\media viewer\services\streamviewerservice.exe
C:\WINDOWS\system32\acstp\wake_up.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\SYMANT~2\VPTray.exe
C:\Program Files\RSA Security\Web PassPort\Plug-In\system\sdtray.exe
C:\WINDOWS\System32\carpserv.exe
C:\Program Files\RSA Security\Web PassPort\Plug-In\System\sdlss.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\System32\ZCfgSvc.exe
C:\Program Files\Accenture Connection\9341989\Program\Accenture Connection.exe
C:\WINDOWS\System32\RUNDLL32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\ACNU\ACNUpdater.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\System32\1XConfig.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\Program Files\Network ICE\BlackICE\blackice.exe
C:\Program Files\Yahoo!\Messenger\YPager.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Steve.Mosley\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_5_7_0.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~2\VPTray.exe
O4 - HKLM\..\Run: [SDTray] "C:\Program Files\RSA Security\Web PassPort\Plug-In\system\sdtray.exe"
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\System32\ZCfgSvc.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [Accenture Connection] "C:\Program Files\Accenture Connection\9341989\Program\Accenture Connection.exe"
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [dvd43] C:\Program Files\dvd43\dvd43_tray.exe
O4 - HKLM\..\Run: [t0vus4kq] C:\WINDOWS\System32\t0vus4kq.exe
O4 - HKLM\..\Run: [hks24g8r] C:\WINDOWS\System32\hks24g8r.exe
O4 - HKLM\..\Run: [DVD List] C:\Program Files\BPK\DVD List.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [tsvcin] C:\WINDOWS\system32\n20050308.EXE
O4 - HKCU\..\Run: [aauclient] C:\Program Files\ACNU\ACNUpdater.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Ahead\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [Jjvumfrz] C:\WINDOWS\System32\F?nts\dllhost.exe
O4 - Global Startup: BlackICE Agent.lnk = ?
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: RealSecure® Desktop Protector.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=https://portal.accenture.com
O15 - Trusted Zone: *.accenture.com
O15 - Trusted Zone: *.accenture.com (HKLM)
O16 - DPF: {10F62CD7-6A94-4CA7-859C-E4E9D8BCCA2E} (Siebel Option Pack for IE 7.5.3) - https://crmsiebel.ac...lOptionPack.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://www.amiuptoda...pdatePortal.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft.../as5/asinst.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = Accenture.com
O17 - HKLM\Software\..\Telephony: DomainName = Accenture.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{4BEC6F3B-A7C9-497B-95E2-C11708CA3B17}: Domain = accenture.com
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = Accenture.com
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = accenture.com,dir.svc.accenture.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = accenture.com,dir.svc.accenture.com
O23 - Service: ACNUSvc - - c:\program files\acnu\acnupdatersvc.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: BlackICE - Internet Security Systems, Inc. - C:\Program Files\Network ICE\BlackICE\blackd.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: MC/Empower i.collect Service (iCollectService) - Unknown owner - C:\WINDOWS\system32\acstp\icserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Accenture Media Viewer (MediaViewer) - - c:\program files\firm applications\media viewer\services\streamviewerservice.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: RapApp - Unknown owner - C:\Program Files\Network ICE\BlackICE\RapApp.exe (file missing)
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\System32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\System32\S24EvMon.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: WLTRYSVC - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
  • 0

Advertisements


#2
MistaMoeGod

MistaMoeGod

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Not sure if you need the log from the Panda Active scan..


Incident Status Location

Adware:Adware/SaveNow No disinfected Windows Registry
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\unstall.exe
Adware:Adware/Apropos No disinfected Windows Registry
Adware:Adware/ISearch No disinfected C:\WINDOWS\isrvs
Spyware:Spyware/Media-motor No disinfected C:\WINDOWS\Downloaded Program Files\m67m.ocx
Adware:Adware/WildTangent No disinfected C:\Program Files\WILDTANGENT
Adware:Adware/WUpd No disinfected Windows Registry
Adware:Adware/Transponder No disinfected C:\WINDOWS\inst
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[bcowselc.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[cortmgr.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[dn8001lme.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[dn8s01l7e.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[e4jm0e11eh.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[en82l1lo1.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[enpsl1771.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[f0j2la1o1d.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[f0l0la3m1d.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[fpjm0311e.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[fpjo0313e.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[gp8ol3l31.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[hr8405lqe.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[i4060edseh060.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[i4240efqeh2e0.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[ir8ml5l11.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[irl8l53u1.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[iY060edseh060.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[j86m0ij1e8o.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[kddcan.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[l02slaf71d2.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[l26o0cj3efo.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[l42s0ef7eh2.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[lv0609dse.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[Lxih30tb.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[m4460ehseh460.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[m4820eloehqc0.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[mvrml9911.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[q0nu0a59ed.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[rlvpsp.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[rpr20.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[rQsdlg.dll]
Adware:Adware/Look2Me No disinfected C:\Documents and Settings\Steve.Mosley\Desktop\l2mfix\backup.zip[rUsdlg.dll]
Virus:Trj/Keylog.BR No disinfected C:\Program Files\AIM\inst_aim.exe[rinst.exe]
Virus:Trj/Keylog.BR Disinfected C:\Program Files\BPK\bpkhk.dll
Virus:Trj/Keylog.BR Disinfected C:\Program Files\BPK\bpkr.exe
Virus:Trj/Keylog.BR Disinfected C:\Program Files\BPK\bpkwb.dll
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Common Files\Uninstall Information\RemoveDisplayUtility.exe
Virus:Trj/Keylog.BR Disinfected C:\Program Files\i_bpk2003.exe
Adware:Adware/AdDestroyer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\0DCB65D4-53C0-4319-B161-4527FE\1BC70EFF-A398-46BD-99DA-1E6A48
Adware:Adware/AdDestroyer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\0DCB65D4-53C0-4319-B161-4527FE\73210B18-DD8F-45EE-87D6-D6B3AC
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1441118E-042B-4C26-A783-DD91EC\90BF0A40-721D-496E-AE7C-F0A8A7
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\1BE391D2-218B-449F-A2A3-58FE37\CB072120-70E3-4EF3-9A3A-63F32F
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2E4D720E-3A5D-45E6-B85C-B77667\6C37ED54-20CD-4EEE-9A82-A945D1
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\436EDC96-945F-4548-9371-3A697B\1FE34C83-26A0-4D84-9ED6-9A1DDD
Adware:Adware/VirtualBouncer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\53922377-648F-4C91-9E59-C2CF05\9918D4EA-B693-46C2-A9D4-59AE4B
Adware:Adware/VirtualBouncer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\6AC45553-EE5B-4452-B7A6-54BCDB\197199C2-38F7-4864-B826-E096AF
Adware:Adware/eZula No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\703DDD85-E534-498F-802E-916331\02D61401-B356-419F-A2DA-4C93CF
Adware:Adware/eZula No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\703DDD85-E534-498F-802E-916331\4710834E-9C55-4FE8-8ADF-9B12AA
Adware:Adware/FIsearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\71DDDDA3-3EE7-4F80-93F5-300A3E\1D78081C-C0EC-4781-BE16-72E16E
Adware:Adware/IESearchBar No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\71DDDDA3-3EE7-4F80-93F5-300A3E\DC454D9C-877F-4B92-B856-77E9F1
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\7F457346-C22D-4B44-8E80-4EA05D\7075A4E9-FE95-4656-B73A-E140CD
Adware:Adware/AdDestroyer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\9294D653-5B58-4631-9EAA-9C2880\124D12EF-27CC-426A-94B1-CF3A44
Adware:Adware/AdDestroyer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\9294D653-5B58-4631-9EAA-9C2880\D0604C8E-7EB3-45AD-9C4D-453DD5
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\999A4890-C112-4DB4-8B7D-F863A1\855314DA-221A-4C0D-85CE-196423
Adware:Adware/eZula No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\9BE27F59-1B83-4D66-8D22-D9041A\CBAF840E-EC9B-47F2-8AC3-5CFC89
Adware:Adware/MyWebSearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\A0F89087-168F-4433-9630-0E51EA\BF948874-6270-44FB-A9F0-AD7EC4
Adware:Adware/VirtualBouncer No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\ABC6A562-1195-4FAE-915B-8C30BB\0FB7805C-26D9-49D5-8B33-BFDA4C
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\B03C6DB2-91C2-4465-9A55-7981FD\7A951F5B-814C-45EE-80B3-A99152
Adware:Adware/FIsearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\B612B8A2-3FDB-4810-B787-C245A2\7C7DCF2B-D7FF-453A-850F-8AB526
Spyware:Spyware/Virtumonde No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\B61E91F5-DE78-4B43-9926-325E9C\B09BA432-B9FD-4FA4-9605-F5B627
Adware:Adware/FIsearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BBE4B672-8C4A-4740-8E2C-F55A07\B08E149E-2587-4CD2-A41A-B1BECE
Adware:Adware/IESearchBar No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BBE4B672-8C4A-4740-8E2C-F55A07\D2A31376-D304-4ED1-8941-76AE10
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BC85C8C7-6FB4-49C7-9F97-CE4A82\0A3FD637-C971-4BCE-9613-512E95
Adware:Adware/MyWebSearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\C0109A04-E99E-4108-A9BD-E6E7BE\1FB95C0C-0C5C-4C4A-B767-FCDAAC
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\C99F6EBC-7B02-41EE-A0A2-795F38\FB21B1E6-49E9-4814-B288-78B565
Adware:Adware/Transponder No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\E5C55DB9-AD04-4436-9B3B-18E626\20FCE21E-77E4-45BC-A19C-59CAD5
Adware:Adware/MyWebSearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\E67E6BE4-B653-4ED7-AE10-9B3975\F42A7B0A-DD54-4A28-B4D9-75C7BD
Adware:Adware/MyWebSearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F2C2F284-4F9D-4CEA-B65E-EAAB62\B1C8193E-DA6C-4448-A7E0-00B120
Adware:Adware/MyWebSearch No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F2C2F284-4F9D-4CEA-B65E-EAAB62\F732F170-D954-41AD-B334-52083F
Adware:Adware/DelFinMedia No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F3A7EFA7-E550-4F9A-BAA9-90D7AF\29A77CFA-937D-4158-AB0F-D302AB
Adware:Adware/ISearch No disinfected C:\WINDOWS\delprot.ini
Adware:Adware/ISearch No disinfected C:\WINDOWS\deskbar.ini
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\Downloaded Program Files\installer_MARKETING14.exe
Spyware:Spyware/Media-motor No disinfected C:\WINDOWS\Downloaded Program Files\m67m.ocx
Adware:Adware/Look2Me No disinfected C:\WINDOWS\iconu.exe
Adware:Adware/Transponder No disinfected C:\WINDOWS\kubpvhg.exe
Adware:Adware/DelFinMedia No disinfected C:\WINDOWS\mm15201518.Stub.exe
Spyware:Spyware/Virtumonde No disinfected C:\WINDOWS\system32\akcore.dll
Spyware:Spyware/Virtumonde No disinfected C:\WINDOWS\system32\akupd.dll
Virus:Trj/Qhost.Y Disinfected C:\WINDOWS\system32\drivers\etc\hosts
Adware:Adware/AzeSearch No disinfected C:\WINDOWS\system32\iasadm.dll
Adware:Adware/DelFinMedia No disinfected C:\WINDOWS\system32\nsvsvc\nsvs.dll
Spyware:Spyware/Media-motor No disinfected C:\WINDOWS\unstall.exe
Virus:Trj/Downloader.AUP Disinfected C:\WINDOWS\VT17.exe
  • 0

#3
austin_o

austin_o

    Retired Staff

  • Retired Staff
  • 2,089 posts
Work your way through the malware removal guide at the top of this forum where it says "Do you suspect a malware (Spyware, Virus, Trojan) infection? Please start here. " This enables folks to solve most problems on their own. If you still have a problem after that, post a hijack this log in the malware forum at
http://www.geekstogo....o_Here-f37.htm :tazz:
  • 0

#4
MistaMoeGod

MistaMoeGod

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Sorry, the requested page is not available.

Please check the URL for proper spelling and capitalization. If you're having trouble locating a destination on our site, try our site search or click here to browse our free computer help forum. Also, you may find what you're looking for on our site if you try searching below.

:tazz:
  • 0

#5
MistaMoeGod

MistaMoeGod

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
I went through all of the necessary steps and I am still having this problem..please help
  • 0

#6
austin_o

austin_o

    Retired Staff

  • Retired Staff
  • 2,089 posts
If you worked through the malware guide and still have trouble, post a hijack this log in the malware forum:

http://www.geekstogo...o_Here-f37.html

This is the wrong forum. The experts over in malware will assist as soon as they can. Be aware they are busy! :tazz:
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP