|
More site info...
Malware Removal | Forum profile
|
|
Forum profile page for Malware Removal on http://www.spybot.info.
This report page is the aggregated overview from a single forum: Malware Removal, located on the Message Board at http://www.spybot.info.
This forum profile page summarizes the general forum statistics such as: Users Activity, Forum Activity, and Top Authors, which are reported in either a table or graph below for a given reporting time period.
Additional forum profile information for "Malware Removal" on the Message Board at http://www.spybot.info is also shown in the following ways:
1) Latest Active Threads
2) Hot Threads for Last Week
Warning: These statistics are generated using 'best efforts' and can experience delays and reporting errors at times. Please note that such statistics do not constitute a forum's popularity and/or exact posting volumes at any given reporting period.
|
|
|
|
|
Posting activity on Malware Removal:
|
|
Week
|
Month
|
3 Months
|
|
Threads:
|
440
|
1,445
|
4,470
|
|
Post:
|
1,100
|
3,339
|
11,216
|
|
|
Malware Removal Posting activity graph:
|
Top authors during last week:
user's latest post:
Not able to run any antivirus...
Published (2009-11-29 22:51:00)
Hi again, Open notepad and copy/paste the text in the quotebox below into it: Code: SecCenter:: {00000000-0000-0000-0000-000000000000} {00000000-E9D0-004F-D859-4D0001000000} Save this as CFScript A word of warning: Neither I nor sUBs are responsible for any damage you may have caused your machine. This tool is not a toy and not for everyday use. Close all browser windows and refering to the picture above, drag CFScript into ComboFix.exe Then...
user's latest post:
Unknown Sounds, Slow, and...
Published (2009-11-29 22:00:00)
Download at your desktop DDS from one of the links below: Link 1 Link 2 Double click the tool to run it. A black Screen will open, just read the contents and do nothing. When the tool finish it will open 2 reports. Copy/paste both reports back here and remove DDS from your desktop.
user's latest post:
malware issue - coasterboy -...
Published (2009-11-27 22:19:00)
---------------------------------------------------------------------------------------- Step 1 Custom CFScript Please open Notepad (Start -> Run -> type notepad in the Open field -> OK) and copy and paste the text present inside the code box below: Code: Registry:: [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "i:\\Program...
user's latest post:
Need help - infected PC - Page 4...
Published (2009-11-24 22:08:00)
all working fine will be away from the PC until the weekend but hopefully all problems now resolved. Will make sure that the updates are done a bit more often than the past & hopefully will not get these issues again Thanks Scotsking (Shirley)
user's latest post:
malware infected pc
Published (2009-11-29 15:56:00)
We will continue with Combofix. Before using it disable your antivirus and any anitmalware that might be running. Click Start, then Run and type Notepad and click OK. Copy/paste the text in the code box below into notepad: Code: Driver:: eugjbkhf f3u3aoalmts7oi kdhkkjaegfolum lqaypseitoiznxuu caehwtzy lmfcnrnh mfcvermf vnrildvq xbziilsx File:: c:\windows\system32\drivers\eugjbkhf.sys c:\windows\system32ahoud.exe...
user's latest post:
Probable Virtumonde - Page 3 -...
Published (2009-11-25 21:18:00)
It possibly could be Avast trying to get updates for its database, not sure though. I don't think its anything malicious, but I'll ask my fellow malware fighters to see if any of them have any ideas of what could be going on. I'll be back ASAP.
user's latest post:
Spybot and HJT won't run -...
Published (2009-11-26 12:18:00)
Still shows up as avg running yet can't see where it would be? Should i do a restart on the computer to see if that helps cause it didn't ask me to reboot when i uninstalled avg
user's latest post:
Not able to run any antivirus...
Published (2009-11-29 21:49:00)
no last time it would open cmd but close right away but i just let my computer sit awhile while shut off and now it worked fine for some reason here the logs DDS (Ver_09-11-24.02) - NTFSx86 Run by Illmaculate at 12:43:24.42 on Sun 11/29/2009 Internet Explorer: 8.0.6001.18828 Microsoft® Windows Vista Home Premium 6.0.6000.0.1252.1.1033.18.2942.2173 [GMT -7:00] AV: Trend...
|
|
|
|
Latest active threads on Malware Removal::
Started 1 week, 3 days ago (2009-11-20 18:30:00)
by Blade81
Hi,
Quote:
files can't be downloaded...pictures work, but movies, .exes .rar etc all never arrive in folder try to download them too and can't be found anywhere else.
I've seen this kind of symptoms occur in Vista with AVG installed. Could you uninstall it temporarily?
Download DDS and save it to your desktop from here or here...
Started 2 days, 9 hours ago (2009-11-29 07:48:00)
by Blade81
Please visit this webpage for download links, and instructions for running ComboFix tool:
http://www.bleepingcomputer.com/comb...o-use-combo fix
Please ensure you read this guide carefully first.
Please continue as follows:
Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix, link
Remember to re-enable them ...
Started 1 day, 16 hours ago (2009-11-30 00:30:00)
by shelf life
hi,
Your log is a few days old. If you still need help with possible malware simply reply to my post.
Started 2 days, 3 hours ago (2009-11-29 14:05:00)
by Shaba
Hi Anton_eric
Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
Double click on RSIT.exe to run RSIT .
Click Continue at the disclaimer screen.
Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)
Started 3 weeks, 3 days ago (2009-11-07 11:47:00)
by Shaba
Hi NightDrifter
To access the Uninstall Manager you would do the following:
1. Start HijackThis
2. Click on the Config button
3. Click on the Misc Tools button
4. Click on the Open Uninstall Manager button.
You will now be presented with a screen similar to the one below:
5. Click on the Save list... button and specify where you...
Started 3 days, 20 hours ago (2009-11-27 20:08:00)
by Shaba
Hi Nanich
Click here to download HJTInstall.exe Save HJTInstall.exe to your desktop.
Doubleclick on the HJTInstall.exe icon on your desktop.
By default it will install to C:\Program Files\Trend Micro\HijackThis .
Click on Install .
It will create a HijackThis icon on the desktop.
Once installed, it will launch Hijackthis .
Click on the Do a system scan and ...
Started 3 days, 20 hours ago (2009-11-27 20:08:00)
by Shaba
Hi j-escalader72
Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
Double click on RSIT.exe to run RSIT .
Click Continue at the disclaimer screen.
Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)
|
|
Hot threads for last week on Malware Removal::
Started 5 days, 11 hours ago (2009-11-26 06:02:00)
by TomZT
Hi Blade,
I still cannot connect to the internet with the problem machine. I hope the info I posted above will help you assist me with getting back on-line.
Meanwhile, I've been working through your last set of instructions and done what I can without the internet connection by using my other good machine and bringing the tools and log reports back and forth via CD.
The CFScript...
Started 5 days, 8 hours ago (2009-11-26 08:47:00)
by TassieWarrior
Here is 2 kaspersky logs for critical and my computer scans
------------------------------------------------ --------------------------------
KASPERSKY ONLINE SCANNER 7.0: scan report
Thursday, November 26, 2009
Operating system: Microsoft Windows XP Home Edition Service Pack 3 (build 2600)
Kaspersky Online Scanner version: 7.0.26.13
Last database update: Thursday, ...
Started 1 week, 5 days ago (2009-11-19 16:55:00)
by Blade81
Hi,
Please save this file to your desktop. Double-click on it to run a scan. When it's finished, there will be a log called Win32kDiag.txt on your desktop. Please open it with notepad and post the contents here.
Started 1 week ago (2009-11-23 17:17:00)
by Blade81
Hi,
Please save this file to your desktop. Double-click on it to run a scan. When it's finished, there will be a log called Win32kDiag.txt on your desktop. Please open it with notepad and post the contents here.
Started 1 week ago (2009-11-24 08:19:00)
by Blade81
Hi,
Download DDS and save it to your desktop from here or here or here .
Disable any script blocker, and then double click dds.scr to run the tool. When done, DDS will open two (2) logs: DDS.txt
Attach.txt
Save both reports to your desktop. Post them back to your topic.
Download GMER here by clicking download exe -button and then saving it your ...
Started 3 days, 19 hours ago (2009-11-27 21:36:00)
by peku006
Hi Mark
Please see the forum FAQ which details how to produce a HJT log and copy paste it into a new topic.
"BEFORE you POST"(READ this Procedure BEFORE Requesting Assistance)
peku006
Started 1 week, 3 days ago (2009-11-20 19:13:00)
by Blade81
Hi there,
Download DDS and save it to your desktop from here or here or here .
Disable any script blocker, and then double click dds.scr to run the tool. When done, DDS will open two (2) logs: DDS.txt
Attach.txt
Save both reports to your desktop. Post them back to your topic.
Download GMER here by clicking download exe -button and then saving it your ...
Started 1 week, 4 days ago (2009-11-20 08:42:00)
by Shaba
Hi Whitepanther
Please post spybot report next
Started 1 week, 6 days ago (2009-11-18 14:46:00)
by Dakeyras
Quote:
Please note that all instructions given are customised for this computer only, the tools used may cause damage if used on a computer with different infections.
If you think you have similar problems, please post a log in the HJT forum and wait for help.
Hi Maddmax and welcome to Safer Netowrking.
I'm Dakeyras and I am ...
Started 5 days, 9 hours ago (2009-11-26 07:57:00)
by Blade81
Hi again,
Open notepad and copy/paste the text in the quotebox below into it:
Code:
File::
c:\windows\system32\drivers\ etc\hosts
DDS ::
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
Registry::
[HKLM\~\services\sharedaccess\pa rameters\firewallpolicy\standardprofile\Authorized Applications\List]
"%windir%\\system32\\drivers\\ svchost.exe"=-
Save this as
...
|
|