Search Results

Showing results 1 to 15 of 15
Search took 0.00 seconds.
Search: Posts Made By: Malwarehunter94 ; Forum: Viruses, Spyware and other Nasties and child forums
Forum: Viruses, Spyware and other Nasties Mar 13th, 2008
Replies: 56
Views: 10,044
Posted By Malwarehunter94
Have hijackthis fix these entries and then try to download it again:

F2 - REG:system.ini: Shell=

O16 - DPF: {32305793-C19A-48E7-AD2F-D87FF7B264A4} (TenebrilSpywareScanner Control) -...
Forum: Viruses, Spyware and other Nasties Mar 13th, 2008
Replies: 56
Views: 10,044
Posted By Malwarehunter94
Sorry I didnt get to you sooner, Ardamax is a keylogger that records your keystrokes and sends them to its owner, I would suggest to not enter any personel info{credit card #s Ect,} while you still...
Forum: Viruses, Spyware and other Nasties Mar 11th, 2008
Replies: 56
Views: 10,044
Posted By Malwarehunter94
Have Hijackhis fix these entries:

O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

O2 - BHO: (no name) - {140BD8E3-C167-11D4-B4A3-080000180323} - (no file)
Forum: Viruses, Spyware and other Nasties Feb 29th, 2008
Replies: 18
Views: 4,803
Posted By Malwarehunter94
LOTS of nasties, have Hijackthis fix these entries:

Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe

C:\Program Files\Viewpoint\Common\ViewpointService.exe

O2 - BHO: (no name) -...
Forum: Viruses, Spyware and other Nasties Feb 21st, 2008
Replies: 13
Views: 3,053
Posted By Malwarehunter94
Forum: Viruses, Spyware and other Nasties Feb 20th, 2008
Replies: 13
Views: 3,053
Posted By Malwarehunter94
Next to each entry there should be a little blank box, just click on the box to check the entries and then click "Fix Selected" .
Forum: Viruses, Spyware and other Nasties Feb 18th, 2008
Replies: 13
Views: 3,053
Posted By Malwarehunter94
Check these entries:

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

HKLM\..\RunServices: [uoxhotgmr] C:\WINDOWS\system32\uoxhotgmr.exe
Forum: Viruses, Spyware and other Nasties Feb 17th, 2008
Replies: 13
Views: 3,053
Posted By Malwarehunter94
This seems nasty:

C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
Forum: Viruses, Spyware and other Nasties Feb 17th, 2008
Replies: 13
Views: 3,053
Posted By Malwarehunter94
Unfortunately the trojan has not even been named yet and no one knows how to get rid of it.

This site has some info about the trojan:
...
Forum: Viruses, Spyware and other Nasties Feb 1st, 2008
Replies: 7
Views: 1,920
Posted By Malwarehunter94
Please let me know if you scanned with both programs, if you haven't do so quickly, I looked at the rest of your log and found some new stuff, so please check the following:

BHO: Video -...
Forum: Viruses, Spyware and other Nasties Jan 31st, 2008
Replies: 7
Views: 1,920
Posted By Malwarehunter94
And CCleaner from this link,

http://www.ccleaner.com/

After you download it, run the cleaner and registry scan and clean anything it finds, then post a new hijackthis log.
Forum: Viruses, Spyware and other Nasties Jan 31st, 2008
Replies: 7
Views: 1,920
Posted By Malwarehunter94
One more thing before I go, please download Spybot S&D from this link,

http://www.safer-networking.org/en/index.html
Forum: Viruses, Spyware and other Nasties Jan 31st, 2008
Replies: 7
Views: 1,920
Posted By Malwarehunter94
Check the following:

BHO: RunBus Class - {4865F155-CE00-4E93-A414-147844D7C81A} -

URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

BHO: (no name) -...
Forum: Viruses, Spyware and other Nasties Jan 25th, 2008
Replies: 23
Views: 4,282
Posted By Malwarehunter94
sorry for giving you some wrong info.
Forum: Viruses, Spyware and other Nasties Jan 24th, 2008
Replies: 23
Views: 4,282
Posted By Malwarehunter94
Delete C:\WINDOWS\NirCmd.exe,
msconfig.exe seems to be the Winur worm so you can delete that,
delete MFC71.dll
and get rid of all those temp files.
ssqrq.dll is the Vundo trojan, check out this...
Showing results 1 to 15 of 15

 


About Us | Contact Us | Advertise | DaniWeb | Acceptable Use Policy | RSS Feed

©2003 - 2009 DaniWeb® LLC