personal antivirus

View previous topic View next topic Go down

Re: personal antivirus

Post by bf2multi100 on Mon Jun 29, 2009 12:56 pm

i have a problem with personal antivirus i already ran hijackthis and here is my log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:48:24 AM, on 6/29/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\rserver30\RServer3.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rokario\Bandwidth Monitor\bandmon.exe
C:\WINDOWS\system32\mmc.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\WINDOWS\system32\rserver30\FamItrfc.Exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Prevx\prevx.exe
C:\Program Files\Prevx\prevx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [You must be registered and logged in to see this link.]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: &Helper - {A77D3539-581D-450C-9E44-A84C415A6172} - C:\WINDOWS\system32\msxmlm.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{1AF55E2E-DD5F-4956-92D5-A8A79DEC87EA}: NameServer = 10.0.0.10
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe
O23 - Service: Radmin Server V3 (RServer3) - Famatech International Corp. - C:\WINDOWS\system32\rserver30\RServer3.exe
O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\WINDOWS\system32\r_server.exe (file missing)

--
End of file - 3685 bytes

i put some importend things like radmin and avg into the ignore list.

bf2multi100
Novice
Novice

Posts Posts : 11
Joined Joined : 2009-06-29
Gender Gender : Male
OS OS : Xp Pro SP3
Points Points : 27163
# Likes # Likes : 0

View user profile

Back to top Go down

Re: personal antivirus

Post by Belahzur on Mon Jun 29, 2009 4:13 pm

Hello.
Please don't put items in the ignore list, doing so hides entries from me.

  • Open HijackThis
  • Choose "Do a system scan only"
  • Check the boxes in front of these lines:


    O2 - BHO: &Helper - {A77D3539-581D-450C-9E44-A84C415A6172} - C:\WINDOWS\system32\msxmlm.dll


  • Press "Fix Checked"
  • Close Hijack This.

Please download and run this tool.

Download Malwarebytes' Anti-Malware from [You must be registered and logged in to see this link.]

Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
Click OK to either and let MBAM proceed with the disinfection process.
If asked to restart the computer, please do so immediately.


Post the contents of the MBAM Log.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245049
# Likes # Likes : 1

View user profile

Back to top Go down

Re: personal antivirus

Post by bf2multi100 on Mon Jun 29, 2009 4:31 pm

i already ran malwarebytes and it says it was clean, i ran it when i first found out about the trojan. Now it says the pc is clean.

bf2multi100
Novice
Novice

Posts Posts : 11
Joined Joined : 2009-06-29
Gender Gender : Male
OS OS : Xp Pro SP3
Points Points : 27163
# Likes # Likes : 0

View user profile

Back to top Go down

Re: personal antivirus

Post by Belahzur on Mon Jun 29, 2009 5:45 pm


  • Please download DDS by sUBs to your Desktop (Important!!) from one of these locations:
    [You must be registered and logged in to see this link.]
    [You must be registered and logged in to see this link.]
  • Double click DDS.scr to run.
  • When complete, two logs will open. Save both of the report to your Desktop.
  • Copy and paste DDS.txt back here, I don't need to see attach.txt.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245049
# Likes # Likes : 1

View user profile

Back to top Go down

Re: personal antivirus

Post by bf2multi100 on Mon Jun 29, 2009 5:54 pm

report log 1.


DDS (Ver_09-06-26.01) - NTFSx86
Run by sboynton at 12:52:51.96 on Mon 06/29/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.767.399 [GMT -5:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\rserver30\RServer3.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rokario\Bandwidth Monitor\bandmon.exe
C:\WINDOWS\system32\mmc.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\rserver30\FamItrfc.Exe
C:\temp\6-11-pre-r300_xp-2k_dd_ccc_wdm_38185.exe
C:\temp\dds.scr

============== Pseudo HJT Report ===============

BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [DVDLauncher] "c:\program files\cyberlink\powerdvd\DVDLauncher.exe"
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - [You must be registered and logged in to see this link.]
DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} - [You must be registered and logged in to see this link.]
TCP: {1AF55E2E-DD5F-4956-92D5-A8A79DEC87EA} = 10.0.0.10
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll

============= SERVICES / DRIVERS ===============

R0 pxscan;pxscan;c:\windows\system32\drivers\pxscan.sys [2009-6-29 22024]
R0 pxsec;pxsec;c:\windows\system32\drivers\pxsec.sys [2009-6-29 27656]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-5-27 325896]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-5-27 27784]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-5-27 108552]
R1 mirrorv3;mirrorv3;c:\windows\system32\drivers\rminiv3.sys [2006-11-1 3328]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-5-27 908568]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-5-27 298776]
R2 RServer3;Radmin Server V3;c:\windows\system32\rserver30\rserver3.exe [2007-6-29 1242432]
S0 cerc6;cerc6; [x]
S2 r_server;Remote Administrator Service;"c:\windows\system32\r_server.exe" /service --> c:\windows\system32\r_server.exe [?]
S4 CSIScanner;CSIScanner;c:\program files\prevx\prevx.exe [2009-6-29 4368952]

=============== Created Last 30 ================

2009-06-29 12:52 359,929 a------- c:\temp\dds.scr
2009-06-29 09:26 50,510,847 a------- c:\temp\6-11-pre-r300_xp-2k_dd_ccc_wdm_38185.exe
2009-06-29 08:33 552 a------- c:\windows\system32\d3d8caps.dat
2009-06-29 08:18 --d----- c:\program files\Disney
2009-06-29 07:48 --d----- c:\program files\Trend Micro
2009-06-29 07:41 27,656 a------- c:\windows\system32\drivers\pxsec.sys
2009-06-29 07:41 22,024 a------- c:\windows\system32\drivers\pxscan.sys
2009-06-29 07:41 --d----- c:\program files\Prevx
2009-06-29 07:41 --d----- c:\docume~1\alluse~1\applic~1\PrevxCSI
2009-06-29 07:41 66 a------- c:\windows\wininit.ini
2009-06-29 06:45 --d----- c:\program files\VS Revo Group
2009-06-27 07:03 10,726,896 a------- c:\temp\yahoo_gemshop_tm6-3df.exe
2009-06-25 19:28 664 a------- c:\windows\system32\d3d9caps.dat
2009-06-23 11:01 --d----- c:\windows\ie8updates
2009-06-23 10:38 1,985,024 -c------ c:\windows\system32\dllcache\iertutil.dll
2009-06-23 10:38 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
2009-06-23 10:38 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
2009-06-23 10:38 11,064,832 -c------ c:\windows\system32\dllcache\ieframe.dll
2009-06-23 10:12 455,296 -c------ c:\windows\system32\dllcache\mrxsmb.sys
2009-06-23 10:02 2,145,280 -c------ c:\windows\system32\dllcache\ntkrnlmp.exe
2009-06-23 10:02 2,189,056 -c------ c:\windows\system32\dllcache\ntoskrnl.exe
2009-06-23 10:02 2,023,936 -c------ c:\windows\system32\dllcache\ntkrpamp.exe
2009-06-23 09:56 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2009-06-23 09:56 272,128 -------- c:\windows\system32\drivers\bthport.sys
2009-06-23 09:41 2,560 -------- c:\windows\system32\xpsp4res.dll
2009-06-23 09:08 --d----- c:\windows\system32\PreInstall
2009-06-23 09:08 --d-h--- c:\windows\$hf_mig$
2009-06-22 06:03 --d----- C:\Language
2009-06-22 05:59 99 a------- c:\windows\ka.ini
2009-06-22 05:58 --d----- c:\program files\JumpStart
2009-06-22 05:58 --d----- c:\program files\common files\Knowledge Adventure
2009-06-22 05:58 --d----- c:\docume~1\alluse~1\applic~1\Knowledge Adventure
2009-06-21 20:28 --d----- c:\docume~1\sboynton\applic~1\Malwarebytes
2009-06-21 20:27 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-21 20:27 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-06-21 20:27 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-06-21 20:27 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-06-21 19:44 375,808 a------- c:\windows\system32\msxmlm.dll
2009-06-21 19:44 --d----- c:\program files\common files\Uninstall
2009-06-14 14:03 12,160 ac------ c:\windows\system32\dllcache\mouhid.sys
2009-06-14 14:03 12,160 a------- c:\windows\system32\drivers\mouhid.sys
2009-06-14 14:01 10,368 a------- c:\windows\system32\drivers\hidusb.sys
2009-06-09 11:15 --d----- c:\program files\Hasbro Interactive
2009-06-09 11:14 314,880 a------- c:\windows\IsUninst.exe
2009-06-06 18:03 --d----- c:\docume~1\sboynton\applic~1\Rokario
2009-06-06 18:03 --d----- c:\program files\Rokario
2009-06-05 11:21 --d----- C:\temp
2009-06-01 17:31 --dsh--- c:\documents and settings\sboynton\PrivacIE

==================== Find3M ====================

2009-05-31 07:59 11,952 a------- c:\windows\system32\avgrsstx.dll
2009-05-31 07:59 325,896 a------- c:\windows\system32\drivers\avgldx86.sys
2009-05-31 07:59 108,552 a------- c:\windows\system32\drivers\avgtdix.sys
2009-05-31 07:54 87,263 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-05-27 12:00 16,883,056 a------- C:\IE8-WindowsXP-x86-ENU.exe
2009-05-27 08:45 737,280 a------- c:\windows\iun6002.exe
2009-05-27 07:33 21,640 a------- c:\windows\system32\emptyregdb.dat
2009-05-23 19:58 57 a------- C:\shutdown at night file.BAT
2009-05-22 08:28 939,956 a------- C:\7z465.exe
2009-05-13 00:15 915,456 a------- c:\windows\system32\wininet.dll
2009-05-07 10:32 345,600 a------- c:\windows\system32\localspl.dll
2009-04-17 07:26 1,847,168 a------- c:\windows\system32\win32k.sys
2009-04-15 09:51 585,216 a------- c:\windows\system32\rpcrt4.dll

============= FINISH: 12:53:18.95 ===============


Report log 2.


UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-06-26.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 5/27/2009 7:43:05 AM
System Uptime: 6/29/2009 6:40:55 AM (6 hours ago)

Motherboard: Dell Computer Corporation | | OptiPlex GX400
Processor: Intel(R) Pentium(R) 4 CPU 1700MHz | Microprocessor | 1680/100mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 19 GiB total, 8.509 GiB free.
D: is FIXED (NTFS) - 19 GiB total, 19.08 GiB free.
E: is CDROM (CDFS)
F: is CDROM ()

==== Disabled Device Manager Items =============

==== System Restore Points ===================

No restore point in system.

==== Installed Programs ======================

7-Zip 4.65
ABC's In A Flash
Adobe Flash Player 10 ActiveX
AVG Free 8.5
Bandwidth Monitor
Battlefield 1942
Battlefield 1942: Secret Weapons of WWII
Battlefield 1942: The Road To Rome
Battlefield Vietnam(TM)
Battlefield Vietnam: WW2 Mod
Byteswarm LiveUpdate 2.1.0.3
Dick and Jane In A Flash
Disney's Toontown Online
First Steps In A Flash
HijackThis 2.0.2
Hotfix for Windows XP (KB952287)
Instant Words In A Flash - Level 1
JEOPARDY! Deluxe
JumpStart Languages
Malwarebytes' Anti-Malware
Microsoft Visual C++ 2005 Redistributable
Monopoly Here & Now Edition
My Little Pony
NVIDIA Drivers
PowerDVD 5.7
Prevx 3.0
Radmin Server 3.0
Remote Administrator v2.2
Revo Uninstaller 1.83
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Media Player (KB952069)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Sequencing In A Flash
Spider-Man 2
Update for Windows XP (KB898461)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Visual Flash Sequencing - In A Flash
WebFldrs XP
Wheel of Fortune Deluxe (remove only)
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 8

==== Event Viewer Messages From Past Week ========

6/23/2009 12:15:03 PM, error: Service Control Manager [7034] - The Radmin Server V3 service terminated unexpectedly. It has done this 1 time(s).
6/23/2009 12:14:20 PM, error: Service Control Manager [7000] - The Remote Administrator Service service failed to start due to the following error: The system cannot find the file specified.

==== End Of File ===========================

bf2multi100
Novice
Novice

Posts Posts : 11
Joined Joined : 2009-06-29
Gender Gender : Male
OS OS : Xp Pro SP3
Points Points : 27163
# Likes # Likes : 0

View user profile

Back to top Go down

Re: personal antivirus

Post by Belahzur on Mon Jun 29, 2009 6:12 pm

1. Please download The Avenger by Swandog46 to your Desktop
Link: [You must be registered and logged in to see this link.] or [You must be registered and logged in to see this link.].

  • Click on Avenger.zip to open the file
  • Extract avenger.exe to your desktop
2. Copy all the text contained in the code box below to your Clipboard by highlighting it and pressing (Ctrl+CCrying


Files to delete:
c:\windows\system32\msxmlm.dll

Folders to delete:
c:\program files\common files\Uninstall

Note: the above code was created specifically for this user. If you are not this user, do NOT follow these directions as they could damage the workings of your system.


3. Now, start The Avenger program by clicking on its icon on your desktop.

  • Under "Input script here:", paste in the script from the quote box above.
  • Leave the ticked box "Scan for rootkit" ticked.
  • Then tick "Disable any rootkits found"
  • Now click on the Execute to begin execution of the script.
  • Answer "Yes" twice when prompted.

    The Avenger will automatically do the following:

  • It will Restart your computer.
  • On reboot, it will briefly open a black command window on your desktop, this is normal.
  • After the restart, it creates a log file that should open with the results of Avengerís actions. This log file will be located at C:\avenger.txt
  • The Avenger will also have backed up all the files, etc., that you asked it to delete, and will have zipped them and moved the zip archives to C:\avenger\backup.zip.
4. Please copy/paste the content of c:\avenger.txt into your reply.c:\program files\common files\Uninstall


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245049
# Likes # Likes : 1

View user profile

Back to top Go down

Re: personal antivirus

Post by bf2multi100 on Mon Jun 29, 2009 6:29 pm

ok i did it here is the log.

Logfile of The Avenger Version 2.0, (c) by Swandog46
[You must be registered and logged in to see this link.]

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

File "c:\windows\system32\msxmlm.dll" deleted successfully.
Folder "c:\program files\common files\Uninstall" deleted successfully.

Completed script processing.

*******************

Finished! Terminate.

bf2multi100
Novice
Novice

Posts Posts : 11
Joined Joined : 2009-06-29
Gender Gender : Male
OS OS : Xp Pro SP3
Points Points : 27163
# Likes # Likes : 0

View user profile

Back to top Go down

Re: personal antivirus

Post by Belahzur on Mon Jun 29, 2009 6:35 pm

Hello.
This should be fine now, how is the machine running?


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245049
# Likes # Likes : 1

View user profile

Back to top Go down

Re: personal antivirus

Post by bf2multi100 on Tue Jun 30, 2009 2:31 pm

it's going to websites it could never go to before, before i did this there was a window that popped up from the about:blank page saying your computer is unprotected, and it had 2 options either continue unprotected or get software. now that page doesnt show anymore. Thank You! Thank You! Thank You! Thank You! Thank You! Thank You! Thank You! Hooray! Hooray! Hooray! Hooray! My Buddy :Clapping: :Clapping: :Clapping: :Clapping: :Clapping: :victory: :victory: Right On! Right On! Right On! Right On! LOL Banner LOL Banner LOL Banner LOL Banner LOL Banner LOL Banner LOL Banner LOL Banner

bf2multi100
Novice
Novice

Posts Posts : 11
Joined Joined : 2009-06-29
Gender Gender : Male
OS OS : Xp Pro SP3
Points Points : 27163
# Likes # Likes : 0

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum