Not sure whats wrong,please take a look!!

Reply

Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #11
Apr 26th, 2007
My fault... del this one: C:\Program Files\Ipwindows\ipwins.exe
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #12
Apr 26th, 2007
Kristy, did you set the AVG action to Quarantine as i wrote in my earlier post on running AVG A-S? It found heaps but did nothing about them..!!?? If it was not, then please set it correctly and re-run AVG AS.
Pls run this because there are virus traces in those logs:
Panda Online Scan:-
http://www.pandasoftware.com/products/activescan?
-select a link to the scan... free online virus scan...., enter a valid? email and follow through, choosing My Computer for a full system scan.
Post the log it produces here.
This next should get a couple of files that ComboFix pointed out:
===Download SDFix from here: http://downloads.andymanchesta.com/R...ools/SDFix.exe
and save it to your desktop. Dclick SDFix.exe and choose Run to extract it to %systemdrive%, which commonly will be C:\
=Restart your computer in Safe Mode:- press F8 several times while POST is running and before IDE detection completes.
- On the Windows Advanced Options Menu, select Safe Mode and press Enter.
- When the Boot Menu appears again, select Microsoft Windows XP and press Enter.
- Log in by using the Administrator account and password. NOTE: The password is blank by default unless you set a password.
=Open the extracted SDFix folder, C:\SDFix and double click RunThis.bat to start the script. Type Y to begin the cleanup.
You will be prompted to press any key to Reboot - the pc will then restart.
The tool will run again and complete the removal process then display Finished; press any key to end the script and load your desktop icons.
Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt.
Restart the pc in normal mode.
Post the contents of the file Report.txt here, along with the log of a fresh hijackthis scan run in normal mode.
If the formatting still will not work please at least put the logs into separate posts.
Last edited by gerbil; Apr 26th, 2007 at 2:19 am.
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #13
Apr 26th, 2007
Kristy, run this one before you do the actions in my previous post #12....

Please download VundoFix.exe to your desktop from http://www.atribune.org/ccount/click.php?id=4
Double-click VundoFix.exe to start it, click the Scan for Vundo button.
When the scan completes click the Remove Vundo button.
You will receive a prompt asking if you want to remove the files - click YES
Your desktop will then go blank as the process of removing Vundo starts.
When completed it will prompt that it will restart your computer - click OK.
Note: It is possible that VundoFix encountered a file it could not remove.
In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the
Scan for Vundo button." when VundoFix appears at reboot.
Post the contents of C:\vundofix.txt plus a new HijackThis log.
Last edited by gerbil; Apr 26th, 2007 at 3:01 am.
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #14
Apr 26th, 2007
I'm sorry that this work is coming thru in bits and pieces, but it's not easy, and I'm just looking at things in snatches.... please as a matter of urgency choose just one resident AV product and uninstall any other[s]. Since you have the CA suite, dump the others. I can see CA, mcafee and Norton products in that mix... Online scanners do not matter i this regard.
You must use only ONE firewall, also. They should auto-detect each other and switch them off, but....
Ignore the missing system files atm - they are only backups for a system recovery, and then are just for 16-bit apps.
Last edited by gerbil; Apr 26th, 2007 at 4:21 am.
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: Nov 2006
Posts: 29
Reputation: krisparmley is an unknown quantity at this point 
Solved Threads: 0
krisparmley krisparmley is offline Offline
Light Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #15
Apr 26th, 2007
HiThe Vundofix didnt find any files and i cannot run this panda scan, when i open the page i am unable to click on the scan button,nothing happens??!!
Reply With Quote Quick reply to this message  
Join Date: Nov 2006
Posts: 29
Reputation: krisparmley is an unknown quantity at this point 
Solved Threads: 0
krisparmley krisparmley is offline Offline
Light Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #16
Apr 26th, 2007
and as for this SDFIX, i ran it but not sure it did anything, it finally came up with "the system cannot fin dthe path specified" and i didnt get any report at the end of it...
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #17
Apr 26th, 2007
Kristy, just wait a mo while I check something, meanwhile please locate these and uninstall them; if they are not available in add/remove pgms then do a search and delete all their files/folders:
Funwebproducts or similar name
Messengerskinner
VirtualVillagers - the cracks are infected.
Gilbert Goodmate - infected
Family Feud - infected

Panda scan only runs in Internet Explorer.... when you hit the Scan my PC button a new window should open immediately to request a frew pers details....
Last edited by gerbil; Apr 26th, 2007 at 8:46 am.
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: Nov 2006
Posts: 29
Reputation: krisparmley is an unknown quantity at this point 
Solved Threads: 0
krisparmley krisparmley is offline Offline
Light Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #18
Apr 26th, 2007
i have removed as much as possible, the search function of windows doesnt work so i couldnt search for them too see if anything is leftand internet explorer isnt working properly, no new windows open in it!!
Last edited by krisparmley; Apr 26th, 2007 at 8:56 am.
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #19
Apr 26th, 2007
Pls try vundofix, sdfix and panda again. I think vundofix may need to run a few times... the reason I say this is that i can SEE the vundo files in your ComboFix log...
Last edited by gerbil; Apr 26th, 2007 at 9:14 am.
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Join Date: May 2005
Posts: 3,204
Reputation: gerbil will become famous soon enough gerbil will become famous soon enough 
Solved Threads: 188
gerbil gerbil is offline Offline
Nearly a Senior Poster

Re: Not sure whats wrong,please take a look!!

 
0
  #20
Apr 26th, 2007
And I have found a smitfraud file...
===Download SmitfraudFix (by S!Ri) from http://siri.urz.free.fr/Fix/SmitfraudFix.zip
Extract the content (a folder named SmitfraudFix) to your Desktop.
- Open the SmitfraudFix folder and double-click smitfraudfix.cmd, select option #1 - Search [type 1 and Enter]; a text file will appear which lists infected files (if present). It will also create a log named rapport.txt in the root of your drive, eg: Local Disk C:.. Please paste the report in your next reply. DO NOT RUN OPTION 2 YET!!!
Deep, deep in the woods, but walking about.
Reply With Quote Quick reply to this message  
Reply

This thread is more than three months old.
Perhaps start a new thread instead?
Message:



Similar Threads
Other Threads in the Viruses, Spyware and other Nasties Forum
Thread Tools Search this Thread



About Us | Contact Us | Advertise | DaniWeb | Acceptable Use Policy | RSS Feed

©2003 - 2009 DaniWeb® LLC