Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

svchost.exe, Shell.exe, DWM.EXE, RUNDll32.exe (PROBLEMS! NEED HELP


  • Please log in to reply

#1
erikfurlong

erikfurlong

    New Member

  • Member
  • Pip
  • 2 posts
well heres the problem. i downloaded a wierd file and everything has gone to crap.

First Problem
On Start Up It Says
"Could Not Load Or Run 'C:\Users\Customer\AppData\Local\Temp\dwm.exe' specified in the registry. Make Sure files exist on your computer or remove the refrence to it in the registry"

Second Problem
Removed Recycling Bin - so i try to bring it back it says
" 'C:\Windows\sytem32\rundll32.exe' - Windows cannot access the specified device path, or file. You may not have the appropriate permissions to access the item. "

Third Problem
Antivir Keeps popping up messages that i have A virus or unwated program 'TR/Crypt.XPACK.Gen2[trojan]' detected file in C:\Users\Customer\AppData\Roaming\Microsoft\Shell.exe'
and
A virus or unwated program
TR/Crypt.XPACK.Gen[trojan]' detected file in C:\Users\Customer\AppData\Roaming\Microsoft\svchost.exe'

Then I Ran Malware Bytes
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4907

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18975

10/22/2010 2:39:25 PM
mbam-log-2010-10-22 (14-39-25).txt

Scan type: Quick scan
Objects scanned: 158837
Time elapsed: 14 minute(s), 27 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\KOO9RV9K4Z (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\SMH2B46TDP (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load (Trojan.Agent) -> No action taken.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Windows\Tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job (Trojan.Downloader) -> No action taken.
C:\Users\Customer\AppData\Roaming\addons.dat (Bifrose.Trace) -> No action taken.
C:\Windows\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job (Trojan.Downloader) -> No action taken.
C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.

what should i do
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP