trojan maware also disables regedit & task manager

View previous topic View next topic Go down

trojan maware also disables regedit & task manager

Post by jazy on 26th July 2009, 6:58 pm

Hey Pls help i am fed up with formatting my c drive
(since the virus stops me from using net also)
I have trojan malware & some other virus (i don't know may be autorun.exe,.inf) they are in other drives(don't want to format them) more over when ever i run any software (saved in those drives) i get "registry & taskmanager disabled"
right now don't have any anti virus installed.
sooooooo pls help

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:11:09 AM, on 7/27/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Speed+\Client\ventc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Speed+\Configurator\ventcfg.exe
C:\Program Files\Speed+\squid\ventcsquid.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcdnsserver.exe
C:\Program Files\Speed+\squid\ventcunlinkd.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\regedit.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\TATA\SAM\sam.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\manu\Desktop\winlogon.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [You must be registered and logged in to see this link.]
O4 - HKLM\..\Run: [Venturi Configurator] C:\Program Files\Speed+\Configurator\ventcfg.exe -nomsgbox
O4 - HKCU\..\Run: [SAMAccessManager] C:\Program Files\TATA\SAM\sam.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{EB17F070-9F6B-43AC-A4A3-2C855705EA00}: NameServer = 202.54.15.30 202.54.1.30
O23 - Service: Venturi Client (VenturiClient) - Venturi Wireless - C:\Program Files\Speed+\Client\ventc.exe

--
End of file - 1996 bytes

jazy
Beginner
Beginner

Posts Posts : 2
Joined Joined : 2009-07-26
OS OS : XP
Points Points : 26924
# Likes # Likes : 0

View user profile

Back to top Go down

Re: trojan maware also disables regedit & task manager

Post by Belahzur on 26th July 2009, 8:47 pm

Please download and run this tool.

Download Malwarebytes' Anti-Malware from [You must be registered and logged in to see this link.]

Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
Click OK to either and let MBAM proceed with the disinfection process.
If asked to restart the computer, please do so immediately.


Post the contents of the MBAM Log.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34918
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : 7 Home Premium x64
Points Points : 245091
# Likes # Likes : 1

View user profile

Back to top Go down

thanx

Post by jazy on 27th July 2009, 7:11 pm

Thank You!
thax a lot sir u helped me & my PC from this severe problem
i was really fed up with the problem & u saved me
i really appreciate ur effort & time u devotated
you really "ROCK" man..........!!!!!!!!!!!!!!
Smile

jazy
Beginner
Beginner

Posts Posts : 2
Joined Joined : 2009-07-26
OS OS : XP
Points Points : 26924
# Likes # Likes : 0

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum