Please Help

View previous topic View next topic Go down

Please Help

Post by caffey1821 on 12th May 2010, 10:16 pm

HI, I believe i have malware on my computer and i would like to get rid of it. Its an older computer and i want to delete all files and start from scratch. Can you help?

Thanks,

caffey1821
Novice
Novice

Posts Posts : 10
Joined Joined : 2010-01-24
OS OS : windows xp
Points Points : 25239
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Please Help

Post by Dr Jay on 13th May 2010, 5:23 pm

Hello, and welcome to GeekPolice.

Please note the following information about the malware forum:
  • Only Tech Officers, Global Moderators, Administrators, and Malware Advisors are allowed to give advice on removing malware from your computer.
  • From this point on, please do not make any more changes to your computer; such as install/uninstall programs, use special fix tools, delete files, edit the registry, etc. - unless advised by the staff I noted above.
  • Please do not ask for help elsewhere (in this site or other sites). Doing so can result in system changes, which may not show up in the logs you post.
  • If you have already asked for help somewhere, please post the link to the topic you were helped.
  • We try our best to reply quickly, but for any reason we do not reply in two days, do one of two things:

    Reply to this topic with the word BUMP, or
    see [You must be registered and logged in to see this link.].

  • Lastly, keep in mind that we are volunteers, so you do not have to pay for malware removal. Persist in this topic until its close, and your computer is declared clean.





Please visit this webpage for a tutorial on downloading and running ComboFix:

[You must be registered and logged in to see this link.]

See the area: Using ComboFix, and when done, post the log back here.


Dr. Jay (DJ)


[You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.]

Dr Jay
Head Administrator
Head Administrator

Posts Posts : 14317
Joined Joined : 2009-09-06
Gender Gender : Male
OS OS : Windows 10 Home & Pro
Arch. Arch. : x64 (64-bit)
Protection Protection : Bitdefender Total Security
Points Points : 303008
# Likes # Likes : 10

View user profile

Back to top Go down

Re: Please Help

Post by caffey1821 on 13th May 2010, 8:46 pm

ComboFix 10-05-13.02 - Caffey 05/13/2010 16:32:01.3.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.293 [GMT -4:00]
Running from: c:\documents and settings\Caffey\Desktop\ComboFix.exe
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {AD166499-45F9-482A-A743-FDD3350758C7}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Application Data\sysReserve.ini
c:\documents and settings\All Users\Application Data\Toolbar4
c:\documents and settings\Caffey\Local Settings\Temporary Internet Files\255UJ7.jpg
c:\documents and settings\Caffey\Local Settings\Temporary Internet Files\AubcR5K5I.jpg
c:\documents and settings\Caffey\Local Settings\Temporary Internet Files\Qg8q07Gf.jpg
c:\documents and settings\Caffey\Local Settings\Temporary Internet Files\uvR6kL.jpg
c:\program files\Bing Toolbar\tbHElper.dll

.
((((((((((((((((((((((((( Files Created from 2010-04-13 to 2010-05-13 )))))))))))))))))))))))))))))))
.

2010-04-29 20:51 . 2010-04-29 20:51 -------- d-----w- c:\windows\system32\wbem\Repository

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-13 20:39 . 2010-01-29 23:03 -------- d-----w- c:\program files\Bing Toolbar
2010-05-13 01:07 . 2005-09-28 19:34 33586 ----a-w- c:\documents and settings\Caffey\Application Data\wklnhst.dat
2010-05-03 20:59 . 2005-09-21 18:33 -------- d-----w- c:\documents and settings\Caffey\Application Data\AdobeUM
2010-04-29 20:49 . 2010-02-03 22:07 -------- d-----w- c:\documents and settings\Caffey\Application Data\gtk-2.0
2010-04-09 11:02 . 2010-03-13 00:17 439816 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\setup.exe
2010-03-31 11:02 . 2010-03-31 11:02 20846064 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\rp\RealPlayerSPGold.exe
2010-03-13 08:17 . 2010-03-13 08:17 8405312 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\gtb\GOOGLE_TOOLBAR\GoogleToolbarInstaller.exe
2010-03-13 08:17 . 2010-03-13 08:17 149000 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\chr_helper\LaunchHelper.exe
2010-03-13 08:17 . 2010-03-13 08:17 10309448 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\chr\ChromeInstaller.exe
2010-03-13 08:17 . 2010-03-13 08:17 79368 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\vista.exe
2010-03-13 08:17 . 2010-03-13 08:17 283280 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\carb\CarboniteSetupLiteRealPreinstaller.exe
2010-03-13 08:17 . 2010-03-13 08:17 181768 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\carb\LaunchHelper.exe
2010-03-13 08:17 . 2010-03-13 08:17 64000 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\inst_config\gcapi_dll.dll
2010-03-13 08:17 . 2010-03-13 08:17 52288 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\inst_config\gtapi.dll
2010-03-13 08:17 . 2010-03-13 08:17 50688 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\inst_config\fftbapi.dll
2010-03-13 08:17 . 2010-03-13 08:17 49152 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\inst_config\CarboniteCompatibility.dll
2010-03-13 08:17 . 2010-03-13 08:17 118784 ----a-w- c:\documents and settings\Caffey\Application Data\Real\Update\setup3.10\RUP\inst_config\compat.dll
2010-03-10 08:02 . 2004-08-10 17:51 417792 ----a-w- c:\windows\system32\vbscript.dll
2010-02-26 06:12 . 2004-08-10 17:51 662016 ----a-w- c:\windows\system32\wininet.dll
2010-02-26 06:12 . 2004-08-10 17:51 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-02-24 12:31 . 2005-09-07 12:27 454016 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-16 13:19 . 2004-08-10 17:51 2181376 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-16 12:39 . 2004-08-04 03:59 2058368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2006-03-25 04:14 . 2006-03-25 04:14 7203235 ----a-w- c:\program files\moe - Spine of a Dog.mp3
2006-03-25 04:14 . 2006-03-25 04:14 8573466 ----a-w- c:\program files\moe - Water.mp3
2006-03-25 04:13 . 2006-03-25 04:13 8834692 ----a-w- c:\program files\moe - So Long.mp3
2006-03-25 04:13 . 2006-03-25 04:13 4151466 ----a-w- c:\program files\moe - New York City.mp3
2006-03-25 04:13 . 2006-03-25 04:13 4458668 ----a-w- c:\program files\moe - Captain America.mp3
2006-03-25 04:13 . 2006-03-25 04:13 5277858 ----a-w- c:\program files\moe - Faker.mp3
2006-03-25 04:12 . 2006-03-25 04:12 5173895 ----a-w- c:\program files\moe - Understand.mp3
2006-03-25 04:12 . 2006-03-25 04:12 5351271 ----a-w- c:\program files\moe - Time Again.mp3
2006-03-25 04:12 . 2006-03-25 04:12 5521174 ----a-w- c:\program files\moe - St Augustine.mp3
2006-03-25 04:12 . 2006-03-25 04:12 10312240 ----a-w- c:\program files\moe - Timmy Tucker.mp3
2006-03-25 04:11 . 2006-03-25 04:11 9850180 ----a-w- c:\program files\moe - Mexico.mp3
2006-03-25 04:09 . 2006-03-25 04:09 8039155 ----a-w- c:\program files\Black Crowes The - Twice As Hard.mp3
2006-03-25 04:05 . 2006-03-25 04:05 3267336 ----a-w- c:\program files\Lynyrd Skynyrd - Gimme Three Steps.mp3
2006-03-25 04:05 . 2006-03-25 04:05 4306160 ----a-w- c:\program files\Lynyrd Skynyrd - Simple Man.mp3
2006-03-25 04:02 . 2006-03-25 04:02 3519382 ----a-w- c:\program files\Lynyrd Skynyrd - The Ballad Of Curtis Lowe.mp3
2006-03-25 03:55 . 2006-03-25 03:55 3557345 ----a-w- c:\program files\System Of A Down - Toxicity.m4a
2006-03-25 03:55 . 2006-03-25 03:55 3417591 ----a-w- c:\program files\System Of A Down - Chop Suey.m4a
2006-03-25 03:52 . 2006-03-25 03:52 3852040 ----a-w- c:\program files\Nate Dogg - Music And Me.mp3
2006-03-22 18:38 . 2006-03-22 18:38 2162073 ----a-w- c:\program files\The Who - Happy Jack.m4a
2006-03-22 18:38 . 2006-03-22 18:38 3243907 ----a-w- c:\program files\The Who - My Generation.m4a
2006-03-22 18:37 . 2006-03-22 18:37 2789376 ----a-w- c:\program files\Tom Petty - Life Is A Highway.mp3
2006-03-22 18:36 . 2006-03-22 18:36 7660895 ----a-w- c:\program files\Phish - Prince Caspian.mp3
2006-03-22 18:36 . 2006-03-22 18:36 2343819 ----a-w- c:\program files\Phish - Steep.mp3
2006-03-22 18:36 . 2006-03-22 18:36 1839138 ----a-w- c:\program files\Phish - Swept Away.mp3
2006-03-22 18:36 . 2006-03-22 18:36 7960572 ----a-w- c:\program files\Phish - Billy Breathes.mp3
2006-03-22 18:35 . 2006-03-22 18:35 2970756 ----a-w- c:\program files\Phish - Bliss.mp3
2006-03-22 18:35 . 2006-03-22 18:35 3693622 ----a-w- c:\program files\Phish - Train Song.mp3
2006-03-22 18:35 . 2006-03-22 18:35 9173078 ----a-w- c:\program files\Phish - Theme From The Bottom.mp3
2006-03-22 18:35 . 2006-03-22 18:35 4541864 ----a-w- c:\program files\Phish - Talk.mp3
2006-03-22 18:34 . 2006-03-22 18:34 3486112 ----a-w- c:\program files\Phish - Cars Trucks Buses.mp3
2006-03-22 18:34 . 2006-03-22 18:34 5936804 ----a-w- c:\program files\Phish - Taste.mp3
2006-03-22 18:34 . 2006-03-22 18:34 6964356 ----a-w- c:\program files\Phish - Waste.mp3
2006-03-22 18:34 . 2006-03-22 18:34 5766285 ----a-w- c:\program files\Phish - Character Zero.mp3
2006-03-22 18:34 . 2006-03-22 18:34 5501080 ----a-w- c:\program files\Phish - Free.mp3
2006-03-22 18:31 . 2006-03-22 18:31 3465009 ----a-w- c:\program files\Eric Clapton - Cocaine.mp3
2006-03-21 20:46 . 2006-03-21 20:46 3997656 ----a-w- c:\program files\Led Zeppelin - Out On The Tiles.m4a
2006-03-21 20:45 . 2006-03-21 20:45 3402854 ----a-w- c:\program files\Led Zeppelin - Celebration Day.m4a
2006-03-21 20:45 . 2006-03-21 20:45 3801910 ----a-w- c:\program files\Led Zeppelin - Friends.m4a
2006-03-21 20:44 . 2006-03-21 20:44 2378204 ----a-w- c:\program files\Led Zeppelin - Immigrant Song.m4a
2006-03-21 20:37 . 2006-03-21 20:37 3454770 ----a-w- c:\program files\The Allman Brothers Band - Aint Wastin Time No More.mp3
2006-03-21 20:37 . 2006-03-21 20:37 2080102 ----a-w- c:\program files\The Allman Brothers Band - Whipping Post.mp3
2006-03-21 20:37 . 2006-03-21 20:37 4138133 ----a-w- c:\program files\The Allman Brothers Band - Wasted Words.mp3
2006-03-21 20:37 . 2006-03-21 20:37 4969872 ----a-w- c:\program files\The Allman Brothers Band - Southbound.mp3
2006-03-21 20:37 . 2006-03-21 20:37 3929989 ----a-w- c:\program files\The Allman Brothers Band - Revival.mp3
2006-03-21 20:36 . 2006-03-21 20:36 4549823 ----a-w- c:\program files\The Allman Brothers Band - Ramblin Man.mp3
2006-03-21 20:36 . 2006-03-21 20:36 4768833 ----a-w- c:\program files\The Allman Brothers Band - One Way Out.mp3
2006-03-21 20:36 . 2006-03-21 20:36 2838698 ----a-w- c:\program files\The Allman Brothers Band - Midnight Rider.mp3
2006-03-21 20:36 . 2006-03-21 20:36 3650375 ----a-w- c:\program files\The Allman Brothers Band - Melissa.mp3
2006-03-21 20:36 . 2006-03-21 20:36 2052517 ----a-w- c:\program files\The Allman Brothers Band - Little Martha.mp3
2006-03-21 20:36 . 2006-03-21 20:36 7191325 ----a-w- c:\program files\The Allman Brothers Band - Jessica.mp3
2006-03-21 20:32 . 2006-03-21 20:32 6498177 ----a-w- c:\program files\Dave Matthews Band - What You Are Live.m4a
2006-03-21 20:32 . 2006-03-21 20:32 4844299 ----a-w- c:\program files\Dave Matthews Band - Grey Street Live.m4a
2006-03-21 20:32 . 2006-03-21 20:32 3798690 ----a-w- c:\program files\Dave Matthews Band - Where Are You Going Live.m4a
2006-03-21 20:31 . 2006-03-21 20:31 5306308 ----a-w- c:\program files\Dave Matthews Band - What Would You Say Live.m4a
2006-03-21 20:31 . 2006-03-21 20:31 10577866 ----a-w- c:\program files\Dave Matthews Band - Cortez The Killer Live.m4a
2006-03-21 20:31 . 2006-03-21 20:31 5244450 ----a-w- c:\program files\Dave Matthews Band - Help Myself Live.m4a
2006-03-21 20:30 . 2006-03-21 20:30 5458940 ----a-w- c:\program files\Dave Matthews Band - Rhyme And Reason Live.m4a
2006-03-21 20:30 . 2006-03-21 20:30 5697846 ----a-w- c:\program files\Dave Matthews Band - Ants Marching Live.m4a
2006-03-21 20:30 . 2006-03-21 20:30 9410959 ----a-w- c:\program files\Dave Matthews Band - Warehouse Live.m4a
2006-03-21 20:30 . 2006-03-21 20:30 9528071 ----a-w- c:\program files\Dave Matthews Band - Dancing Nancies Live.m4a
2006-03-21 20:29 . 2006-03-21 20:29 3805095 ----a-w- c:\program files\Dave Matthews Band - When The World Ends Live.m4a
2006-03-21 20:26 . 2006-03-21 20:26 4425271 ----a-w- c:\program files\Dave Matthews Band - Granny Live.m4a
2006-03-21 20:26 . 2006-03-21 20:26 6509308 ----a-w- c:\program files\Dave Matthews Band - Too Much Live.m4a
2006-03-21 20:26 . 2006-03-21 20:26 4130749 ----a-w- c:\program files\Dave Matthews Band - So Much To Say Live.m4a
2006-03-21 20:25 . 2006-03-21 20:25 3261634 ----a-w- c:\program files\Dropkick Murphys - Dirty Water.m4a
2006-03-21 20:19 . 2006-02-03 03:47 8618527 ----a-w- c:\program files\Coldplay - Yellow.mp3
2006-03-21 20:19 . 2006-03-21 20:19 7271455 ----a-w- c:\program files\Coldplay - Sparks.mp3
2006-03-21 20:18 . 2006-03-21 20:18 10205214 ----a-w- c:\program files\Coldplay - Spies.mp3
2006-03-21 20:18 . 2006-03-21 20:18 9594655 ----a-w- c:\program files\Coldplay - Shiver.mp3
2006-03-21 20:16 . 2006-03-21 20:16 4383780 ----a-w- c:\program files\Coldplay - Dont Panic.mp3
2006-03-21 20:15 . 2006-03-21 20:15 4639098 ----a-w- c:\program files\Billy Joel - Youre Only Human Second Wind.mp3
2006-03-21 20:15 . 2006-03-21 20:15 2926709 ----a-w- c:\program files\Billy Joel - Shes Got A Way live.mp3
2006-03-21 20:09 . 2006-03-21 20:09 6576513 ----a-w- c:\program files\Phish - First Tube.m4a
2006-03-21 20:09 . 2006-03-21 20:09 3331648 ----a-w- c:\program files\Phish - Sand.m4a
2006-03-21 20:09 . 2006-03-21 20:09 2872215 ----a-w- c:\program files\Phish - The Inlaw Josie Wales.m4a
2006-03-21 20:09 . 2006-03-21 20:09 2123041 ----a-w- c:\program files\Phish - Sleep.m4a
2006-03-21 20:09 . 2006-03-21 20:09 4338852 ----a-w- c:\program files\Phish - Piper.m4a
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DW6"="c:\program files\The Weather Channel FW\Desktop\DesktopWeather.exe" [2009-02-11 801904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-15 1404928]
"dla"="c:\windows\system32\dla\tfswctrl.exe" [2004-12-06 127035]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-07-27 221184]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-07-27 81920]
"DMXLauncher"="c:\program files\Dell\Media Experience\DMXLauncher.exe" [2005-01-27 86016]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-11-12 141600]
"Easy Dock"="c:\documents and settings\Caffey\My Documents\RCA easyRip\EZDock.exe" [2009-05-08 573440]

c:\documents and settings\Caffey\Start Menu\Programs\Startup\
RCA Detective.lnk - c:\documents and settings\Caffey\My Documents\RCA Detective\RCADetective.exe [2010-1-31 942592]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2005-9-7 24576]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [1999-2-18 65588]
NETGEAR WG111v2 Smart Wizard.lnk - c:\program files\NETGEAR\WG111v2\WG111v2.exe [2006-5-17 2297856]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [4/3/2009 2:53 PM 108289]
S3 RTLWUSB;NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter NT Driver;c:\windows\system32\drivers\wg111v2.sys [3/27/2006 6:53 PM 167808]
S3 samhid;samhid;c:\windows\system32\drivers\Samhid.sys [4/24/2007 7:44 PM 7548]
.
Contents of the 'Scheduled Tasks' folder

2010-05-08 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 16:34]

2010-05-13 c:\windows\Tasks\Symantec NetDetect.job
- c:\program files\Symantec\LiveUpdate\NDETECT.EXE [2005-09-07 17:24]
.
.
------- Supplementary Scan -------
.
uStart Page = [You must be registered and logged in to see this link.]
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xport to Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Caffey\Application Data\Mozilla\Firefox\Profiles\523reakp.default\
FF - prefs.js: browser.search.selectedEngine - Bing
FF - prefs.js: browser.startup.homepage - [You must be registered and logged in to see this link.]
FF - prefs.js: keyword.URL - [You must be registered and logged in to see this link.]
FF - plugin: c:\progra~1\MOZILL~1\plugins\nppl3260.dll
FF - plugin: c:\progra~1\MOZILL~1\plugins\nprjplug.dll
FF - plugin: c:\progra~1\MOZILL~1\plugins\nprpjplug.dll

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - ORPHANS REMOVED - - - -

AddRemove-HijackThis - c:\documents and settings\Caffey\Desktop\HijackThis.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [You must be registered and logged in to see this link.]
Rootkit scan 2010-05-13 16:41
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(632)
c:\windows\system32\RtlGina2.dll
.
Completion time: 2010-05-13 16:45:29
ComboFix-quarantined-files.txt 2010-05-13 20:45
ComboFix2.txt 2010-01-28 22:47

Pre-Run: 8,803,655,680 bytes free
Post-Run: 9,023,827,968 bytes free

- - End Of File - - 31CC1AA4D6B180A4603949BBEFE73D83

caffey1821
Novice
Novice

Posts Posts : 10
Joined Joined : 2010-01-24
OS OS : windows xp
Points Points : 25239
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Please Help

Post by Dr Jay on 14th May 2010, 4:47 am

Please download Malwarebytes Anti-Malware from [You must be registered and logged in to see this link.].
Alternate link: [You must be registered and logged in to see this link.].
(Note: if you already have the program installed, just follow the directions. No need to re-download or re-install!)

Double Click mbam-setup.exe to install the application.

(Note: if you already have the program installed, open Malwarebytes from the Start Menu or Desktop shortcut, click the Update tab, and click Check for Updates, before doing the scan as instructed below!)

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Full Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. If you are prompted to restart, please allow it to restart your computer. Failure to do this, will cause the infection to still be active on the computer.
  • Please save the log to a location you will remember.
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • The log can also be found at C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt
  • Copy and paste the entire report in your next reply.


Dr. Jay (DJ)


[You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.] ~ [You must be registered and logged in to see this link.]

Dr Jay
Head Administrator
Head Administrator

Posts Posts : 14317
Joined Joined : 2009-09-06
Gender Gender : Male
OS OS : Windows 10 Home & Pro
Arch. Arch. : x64 (64-bit)
Protection Protection : Bitdefender Total Security
Points Points : 303008
# Likes # Likes : 10

View user profile

Back to top Go down

View previous topic View next topic Back to top


 
Permissions in this forum:
You cannot reply to topics in this forum