I'm pretty sure that I got some sort of virus from a message on facebook, i have followed all the steps that you guys outline, except that my browsers (firefox and internet explorer) will not let me access any website that will let me download anti-virus programs. I have tried both before running the malware and hijack programs and it won't let me do this. here are my logs:
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 8:48:27 PM, on 14/11/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal
Memory Processes Infected: C:\WINDOWS\freddy73.exe (Trojan.Buzus) -> Unloaded process successfully. C:\WINDOWS\pp12.exe (Trojan.Buzus) -> Unloaded process successfully.
Memory Modules Infected: (No malicious items detected)
Registry Keys Infected: HKEY_CLASSES_ROOT\rxresult.rxresultfilter (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\rxresult.rxresultfilter.1 (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{014da6c9-189f-421a-88cd-07cfe51cff10} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{2ab289ae-4b90-4281-b2ae-1f4bb034b647} (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{549b5ca7-4a86-11d7-a4df-000874180bb3} (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> Quarantined and deleted successfully.
Registry Values Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Trojan.Buzus) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pp (Trojan.Buzus) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysldtray (Trojan.Buzus) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysmstray (Worm.KoobFace) -> Quarantined and deleted successfully.
Registry Data Items Infected: (No malicious items detected)
Folders Infected: C:\Program Files\RXToolBar (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight (Adware.RXToolbar) -> Quarantined and deleted successfully.
Files Infected: C:\WINDOWS\freddy73.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\WINDOWS\pp12.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\WINDOWS\ld15.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{7F7BE6F8-0D6A-488B-ABDC-75393719A72D}\RP1353\A0075253.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{7F7BE6F8-0D6A-488B-ABDC-75393719A72D}\RP1353\A0075254.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{7F7BE6F8-0D6A-488B-ABDC-75393719A72D}\RP1353\A0075260.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\WINDOWS\zwer_1258244733.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\rx.xml (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\rxtoolbar.cfg (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\rxwebsearches.xsl (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig (Adware.RXToolbar) -> Quarantined and deleted successfully. C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat (Adware.RXToolbar) -> Quarantined and deleted successfully.
DDS (Ver_09-10-26.01) - NTFSx86 Run by Owner at 20:41:25.21 on 14/11/2009 Internet Explorer: 8.0.6001.18702 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.447.72 [GMT -7:00]
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-10-26.01)
Microsoft Windows XP Home Edition Boot Device: \Device\HarddiskVolume2 Install Date: 29/04/2006 6:22:08 PM System Uptime: 14/11/2009 8:33:03 PM (0 hours ago)
Motherboard: ASUSTek Computer INC. | | Kelut Processor: AMD Athlon(tm) XP 3000+ | Socket A | 2099/200mhz
==== Disk Partitions =========================
A: is Removable C: is FIXED (NTFS) - 107 GiB total, 44.225 GiB free. D: is FIXED (FAT32) - 4 GiB total, 0.531 GiB free. E: is CDROM () F: is Removable G: is Removable H: is Removable I: is Removable K: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP1266: 14/09/2009 11:27:25 PM - System Checkpoint RP1267: 16/09/2009 12:15:49 AM - System Checkpoint RP1268: 16/08/2009 3:47:36 PM - System Checkpoint RP1269: 17/08/2009 4:15:48 PM - System Checkpoint RP1270: 18/08/2009 5:27:39 PM - System Checkpoint RP1271: 19/08/2009 6:15:48 PM - System Checkpoint RP1272: 20/08/2009 6:17:49 PM - System Checkpoint RP1273: 21/08/2009 3:00:22 AM - Software Distribution Service 3.0 RP1274: 22/08/2009 3:11:27 AM - System Checkpoint RP1275: 23/08/2009 10:39:54 AM - System Checkpoint RP1276: 24/08/2009 2:58:18 PM - System Checkpoint RP1277: 25/08/2009 3:02:59 PM - System Checkpoint RP1278: 26/08/2009 3:20:02 PM - System Checkpoint RP1279: 27/08/2009 12:52:04 AM - Software Distribution Service 3.0 RP1280: 28/08/2009 1:49:51 PM - System Checkpoint RP1281: 29/08/2009 2:28:29 PM - System Checkpoint RP1282: 30/08/2009 3:28:22 PM - System Checkpoint RP1283: 31/08/2009 3:34:28 PM - System Checkpoint RP1284: 01/09/2009 3:00:19 AM - Software Distribution Service 3.0 RP1285: 02/09/2009 3:34:27 AM - System Checkpoint RP1286: 03/09/2009 4:34:29 AM - System Checkpoint RP1287: 04/09/2009 5:34:28 AM - System Checkpoint RP1288: 13/09/2009 6:06:16 PM - System Checkpoint RP1289: 14/09/2009 3:00:25 AM - Software Distribution Service 3.0 RP1290: 15/09/2009 12:37:02 PM - System Checkpoint RP1291: 16/09/2009 1:25:41 PM - System Checkpoint RP1292: 17/09/2009 3:44:39 PM - System Checkpoint RP1293: 18/09/2009 3:58:49 PM - System Checkpoint RP1294: 19/09/2009 4:12:17 PM - System Checkpoint RP1295: 20/09/2009 4:20:29 PM - System Checkpoint RP1296: 22/09/2009 5:14:08 PM - System Checkpoint RP1297: 23/09/2009 6:03:52 PM - System Checkpoint RP1298: 24/09/2009 6:13:37 PM - System Checkpoint RP1299: 25/09/2009 6:44:16 PM - System Checkpoint RP1300: 26/09/2009 6:56:50 PM - System Checkpoint RP1301: 28/09/2009 10:45:48 AM - System Checkpoint RP1302: 29/09/2009 11:43:58 AM - System Checkpoint RP1303: 30/09/2009 12:36:18 PM - System Checkpoint RP1304: 01/10/2009 1:02:19 PM - System Checkpoint RP1305: 02/10/2009 3:27:43 PM - System Checkpoint RP1306: 03/10/2009 3:43:18 PM - System Checkpoint RP1307: 04/10/2009 4:43:13 PM - System Checkpoint RP1308: 05/10/2009 5:27:43 PM - System Checkpoint RP1309: 06/10/2009 5:30:16 PM - System Checkpoint RP1310: 06/10/2009 7:59:26 PM - Removed 2007 Microsoft Office system RP1311: 06/10/2009 8:30:00 PM - Installed Microsoft Office 2000 Premium RP1312: 06/10/2009 8:35:23 PM - Installed Microsoft Office 2000 Disc 2 RP1313: 06/10/2009 8:54:50 PM - Removed Microsoft Office 2000 Disc 2 RP1314: 06/10/2009 8:56:32 PM - Removed Microsoft Office 2000 Premium RP1315: 06/10/2009 9:02:15 PM - Installed Microsoft Office 2000 Premium RP1316: 06/10/2009 9:04:38 PM - Software Distribution Service 3.0 RP1317: 06/10/2009 9:29:41 PM - Removed Microsoft Office 2000 Premium RP1318: 07/10/2009 9:54:25 AM - Installed Microsoft Office Home and Student 2007 Trial RP1319: 07/10/2009 10:02:56 AM - Printer Driver Send To Microsoft OneNote Driver Installed RP1320: 08/10/2009 3:02:50 AM - Software Distribution Service 3.0 RP1321: 09/10/2009 1:00:55 PM - System Checkpoint RP1322: 10/10/2009 2:07:04 PM - System Checkpoint RP1323: 12/10/2009 1:11:51 PM - Removed Microsoft Office Home and Student 2007 Trial RP1324: 12/10/2009 1:24:03 PM - Installed Microsoft Office Home and Student 2007 RP1325: 12/10/2009 1:29:22 PM - Printer Driver Send To Microsoft OneNote Driver Installed RP1326: 13/10/2009 12:48:09 AM - Software Distribution Service 3.0 RP1327: 14/10/2009 1:20:20 AM - Software Distribution Service 3.0 RP1328: 15/10/2009 12:26:06 PM - System Checkpoint RP1329: 16/10/2009 5:49:35 PM - System Checkpoint RP1330: 18/10/2009 5:53:02 PM - System Checkpoint RP1331: 19/10/2009 6:31:11 PM - System Checkpoint RP1332: 20/10/2009 7:26:13 PM - System Checkpoint RP1333: 20/10/2009 11:16:49 PM - Software Distribution Service 3.0 RP1334: 21/10/2009 9:36:20 PM - Software Distribution Service 3.0 RP1335: 22/10/2009 9:41:22 PM - System Checkpoint RP1336: 23/10/2009 12:52:43 AM - Software Distribution Service 3.0 RP1337: 24/10/2009 1:39:03 PM - System Checkpoint RP1338: 25/10/2009 2:25:13 PM - System Checkpoint RP1339: 26/10/2009 8:06:08 PM - System Checkpoint RP1340: 27/10/2009 10:56:50 PM - System Checkpoint RP1341: 30/10/2009 8:39:23 PM - System Checkpoint RP1342: 31/10/2009 9:45:41 PM - System Checkpoint RP1343: 01/11/2009 10:17:28 PM - System Checkpoint RP1344: 03/11/2009 1:06:42 AM - System Checkpoint RP1345: 04/11/2009 1:20:38 AM - System Checkpoint RP1346: 04/11/2009 4:00:35 AM - Software Distribution Service 3.0 RP1347: 05/11/2009 9:33:33 PM - System Checkpoint RP1348: 06/11/2009 9:49:08 PM - System Checkpoint RP1349: 08/11/2009 10:07:05 AM - System Checkpoint RP1350: 09/11/2009 11:05:40 AM - System Checkpoint RP1351: 10/11/2009 1:42:04 PM - System Checkpoint RP1352: 11/11/2009 2:11:24 PM - System Checkpoint RP1353: 11/11/2009 9:23:56 PM - Software Distribution Service 3.0 RP1354: 14/11/2009 5:51:15 PM - System Checkpoint
==== Installed Programs ======================
.NET Framework Machine Code Access Security Policy Acrobat.com Adobe AIR Adobe Flash Player 10 ActiveX Adobe Reader 9.2 Adobe Shockwave Player 11 Adobe SVG Viewer 3.0 Agere Systems PCI Soft Modem AiO_Scan AiO_Scan_CDA AIOMinimal AiOSoftware AiOSoftwareNPI Apple Application Support Apple Mobile Device Support Apple Software Update ArcSoft PhotoImpression 5 Bonjour BufferChm C6100 c6100_Help Caesar 3 CameraDrivers CCleaner Copy CP_CalendarTemplates1 cp_OnlineProjectsConfig CP_Package_Basic1 CP_Panorama1Config cp_PosterPrintConfig CreativeProjects CueTour CustomerResearchQFolder Destinations DeviceManagementQFolder DivX Content Uploader DivX Web Player DocProc DocProcQFolder DocumentViewer DocumentViewerQFolder Enhanced Multimedia Keyboard Solution eSupportQFolder Fax Fax_CDA FullDPAppQFolder Google Earth Google Toolbar for Internet Explorer Google Update Helper Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Hotfix for Windows Internet Explorer 7 (KB947864) Hotfix for Windows XP (KB952287) Hotfix for Windows XP (KB954550-v5) Hotfix for Windows XP (KB961118) Hotfix for Windows XP (KB970653-v3) HP Customer Participation Program 7.0 HP Deskjet Preloaded Printer Drivers HP Document Viewer 7.0 HP Imaging Device Functions 7.0 HP Instant Support HP Photo & Imaging 3.5 - HP Devices HP Photosmart Premier Software 6.5 HP Photosmart, Officejet and Deskjet 7.0.A HP PSC & OfficeJet 3.0 HP Software Update HP Solution Center 7.0 hpg2436 hpg3970 hpg4600 hpg5530 hpg8200 hpmdtab HPPhotoSmartExpress HPProductAssistant HpSdpAppCoreApp HPSystemDiagnostics InstantShare InstantShareDevices InstantShareDevicesMFC InterVideo WinDVD Creator 2 InterVideo WinDVD Player iTunes J2SE Runtime Environment 5.0 Update 11 J2SE Runtime Environment 5.0 Update 3 Java 2 Runtime Environment, SE v1.4.2_03 Java(TM) 6 Update 13 Java(TM) 6 Update 7 Java(TM) SE Runtime Environment 6 Update 1 Logitech® Camera Driver Malwarebytes' Anti-Malware MarketResearch MasterCook 5: The Best of MasterCook Memories Disc Creator 2.0 Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Security Update (KB953297) Microsoft .NET Framework 2.0 Service Pack 2 Microsoft .NET Framework 3.0 Service Pack 2 Microsoft .NET Framework 3.5 SP1 Microsoft Internationalized Domain Names Mitigation APIs Microsoft National Language Support Downlevel APIs Microsoft Office 2007 Service Pack 2 (SP2) Microsoft Office Excel MUI (English) 2007 Microsoft Office Home and Student 2007 Microsoft Office OneNote MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Word MUI (English) 2007 Microsoft Plus! Digital Media Edition Microsoft Silverlight Microsoft Software Update for Web Folders (English) 12 Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable MobileMe Control Panel Mozilla Firefox (3.5.5) MSN Toolbar MSXML 4.0 SP2 (KB927978) MSXML 4.0 SP2 (KB936181) MSXML 4.0 SP2 (KB954430) Multimedia Card Reader Music Visualizer Library 1.4.00 MYOB Accounting Plus V11 Need2Find Bar NewCopy_CDA NVIDIA GART Driver OCR Software by I.R.I.S 7.0 OpenMG Limited Patch 3.2-03-02-21-08 OpenMG Limited Patch 3.2-03-04-14-02 OpenMG Limited Patch 3.2-03-04-17-02 OpenMG Secure Module 3.2 OpenOffice.org 3.1 PanoStandAlone PC-Doctor for Windows PhotoGallery Photosmart 140,240,7200,7600,7700,7900 Series PrintScreen ProductContextNPI PS2 PSShortcutsP QFolder QuickProjects QuickTax 2006 QuickTax 2007 QuickTax 2008 QuickTime RandMap Readme RealPlayer Scan ScannerCopy Security Update for 2007 Microsoft Office System (KB969559) Security Update for 2007 Microsoft Office System (KB973704) Security Update for Microsoft Office Excel 2007 (KB973593) Security Update for Microsoft Office PowerPoint 2007 (KB957789) Security Update for Microsoft Office system 2007 (972581) Security Update for Microsoft Office system 2007 (KB969613) Security Update for Microsoft Office system 2007 (KB974234) Security Update for Microsoft Office Visio Viewer 2007 (KB973709) Security Update for Microsoft Office Word 2007 (KB969604) Security Update for Step By Step Interactive Training (KB898458) Security Update for Step By Step Interactive Training (KB923723) Security Update for Windows Internet Explorer 7 (KB928090) Security Update for Windows Internet Explorer 7 (KB929969) Security Update for Windows Internet Explorer 7 (KB931768) Security Update for Windows Internet Explorer 7 (KB933566) Security Update for Windows Internet Explorer 7 (KB937143) Security Update for Windows Internet Explorer 7 (KB938127) Security Update for Windows Internet Explorer 7 (KB939653) Security Update for Windows Internet Explorer 7 (KB942615) Security Update for Windows Internet Explorer 7 (KB944533) Security Update for Windows Internet Explorer 7 (KB950759) Security Update for Windows Internet Explorer 7 (KB953838) Security Update for Windows Internet Explorer 7 (KB956390) Security Update for Windows Internet Explorer 7 (KB958215) Security Update for Windows Internet Explorer 7 (KB960714) Security Update for Windows Internet Explorer 7 (KB961260) Security Update for Windows Internet Explorer 7 (KB963027) Security Update for Windows Internet Explorer 7 (KB969897) Security Update for Windows Internet Explorer 7 (KB972260) Security Update for Windows Internet Explorer 8 (KB971961) Security Update for Windows Internet Explorer 8 (KB972260) Security Update for Windows Internet Explorer 8 (KB974455) Security Update for Windows Media Player (KB911564) Security Update for Windows Media Player (KB952069) Security Update for Windows Media Player (KB954155) Security Update for Windows Media Player (KB968816) Security Update for Windows Media Player (KB973540) Security Update for Windows Media Player 10 (KB917734) Security Update for Windows Media Player 10 (KB936782) Security Update for Windows Media Player 6.4 (KB925398) Security Update for Windows Media Player 9 (KB917734) Security Update for Windows XP (KB923561) Security Update for Windows XP (KB923689) Security Update for Windows XP (KB938464) Security Update for Windows XP (KB941569) Security Update for Windows XP (KB946648) Security Update for Windows XP (KB950760) Security Update for Windows XP (KB950762) Security Update for Windows XP (KB950974) Security Update for Windows XP (KB951066) Security Update for Windows XP (KB951376-v2) Security Update for Windows XP (KB951376) Security Update for Windows XP (KB951698) Security Update for Windows XP (KB951748) Security Update for Windows XP (KB952004) Security Update for Windows XP (KB952954) Security Update for Windows XP (KB953839) Security Update for Windows XP (KB954211) Security Update for Windows XP (KB954459) Security Update for Windows XP (KB954600) Security Update for Windows XP (KB955069) Security Update for Windows XP (KB956391) Security Update for Windows XP (KB956572) Security Update for Windows XP (KB956744) Security Update for Windows XP (KB956802) Security Update for Windows XP (KB956803) Security Update for Windows XP (KB956841) Security Update for Windows XP (KB956844) Security Update for Windows XP (KB957095) Security Update for Windows XP (KB957097) Security Update for Windows XP (KB958644) Security Update for Windows XP (KB958687) Security Update for Windows XP (KB958690) Security Update for Windows XP (KB958869) Security Update for Windows XP (KB959426) Security Update for Windows XP (KB960225) Security Update for Windows XP (KB960715) Security Update for Windows XP (KB960803) Security Update for Windows XP (KB960859) Security Update for Windows XP (KB961371) Security Update for Windows XP (KB961373) Security Update for Windows XP (KB961501) Security Update for Windows XP (KB968537) Security Update for Windows XP (KB969059) Security Update for Windows XP (KB969898) Security Update for Windows XP (KB969947) Security Update for Windows XP (KB970238) Security Update for Windows XP (KB971486) Security Update for Windows XP (KB971557) Security Update for Windows XP (KB971633) Security Update for Windows XP (KB971657) Security Update for Windows XP (KB971961) Security Update for Windows XP (KB973346) Security Update for Windows XP (KB973354) Security Update for Windows XP (KB973507) Security Update for Windows XP (KB973525) Security Update for Windows XP (KB973869) Security Update for Windows XP (KB974112) Security Update for Windows XP (KB974571) Security Update for Windows XP (KB975025) Security Update for Windows XP (KB975467) Sierra Utilities SkinsHP1 SkinsHP2 SlideShow SolutionCenter Sonic_PrimoSDK SonicStage SpamSubtract Status Toolbox Toolkit View(HP) TrayApp Unload Update for 2007 Microsoft Office System (KB967642) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Update for Windows Internet Explorer 8 (KB973874) Update for Windows Internet Explorer 8 (KB976749) Update for Windows XP (KB951072-v2) Update for Windows XP (KB951978) Update for Windows XP (KB955839) Update for Windows XP (KB967715) Update for Windows XP (KB968389) Update for Windows XP (KB973815) Updates from HP VIA Rhine-Family Fast Ethernet Adapter VIA/S3G Display Driver VideoLAN VLC media player 0.8.6e WebFldrs XP WebReg Windows Genuine Advantage Notifications (KB905474) Windows Internet Explorer 7 Windows Internet Explorer 8 Windows Media Format Runtime Windows Media Player 10 Windows XP Service Pack 3
==== Event Viewer Messages From Past Week ========
14/11/2009 5:24:25 PM, error: Service Control Manager [7022] - The fioo32 service hung on starting.
==== End Of File ===========================
if you have any insight s to what might be wrong with my computer and what I can do to fix it, I would be very gratefull!! thanks!
Double-click on the combofix icon found on your desktop.
Please note, that once you start combofix you should not click anywhere on the combofix window as it can cause the program to stall. In fact, when combofix is running, do not touch your computer at all and just take a break as it may take a while for it to complete.
When finished, it will produce a logfile located at C:\combofix.txt.
Post the contents of that log in your next reply
The logs will be reasonably large so you may have to divide them into sections and make several posts to post them.
NB.If you are using any P2P (file sharing) programs, please remove them before we clean your computer.. We do not clean logs that have P2P applications installed as this can cause reinfection during your cleaning.
I know that I should have a virus protection program at all times.....well I didn't... moving on and up... I had tried to d/l several from sites you guys recommended, ad I was unable to access any of them, except for the Rising Anti-virus program, which I have dowloaded and installed, I have also re-run malware and combo-fix.... here are the logs:
Malwarebytes' Anti-Malware 1.41 Database version: 2775 Windows 5.1.2600 Service Pack 3
c:\documents and settings\All Users\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2006-2-19 288472] HP Photosmart Premier Fast Start.lnk - c:\program files\HP\Digital Imaging\bin\hpqthb08.exe [2006-2-10 73728]
Here's my new Hijackthis log....... things have been running great, I am thinking that all is well....... THANK YOU for all your help!!!
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:36:07 PM, on 18/11/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal
Now your computer problems are solved, it is time for the clean-up procedure
You should Create a New Restore Point to prevent possible reinfection from an old one. The easiest and safest way to do this is:
Go to Start > All Programs > Accessories > System Tools > System Restore Select Create a restore point, and Ok it. Next, go to Start > Run and type in cleanmgr Select the More options tab Choose the option to clean up system restore and OK it.
This will remove all restore points except the new one you just created.
Click START then RUN
Now type/copy:Combofix /Uninstallin the runbox and click OK. Note the space between the X and the U, it needs to be there. The above procedure will: Delete the following: ComboFix and its associated files and folders. VundoFix backups, if present. The C:\Deckard folder, if present. The C:_OtMoveIt folder, if present. Reset the clock settings. Hide file extensions, if required. Hide System/Hidden files, if required.
To find out what programs need to be updated, please download and run the:
Currently it is Friday, March 12, 2010 6:38 AM (GMT +1) There are a total of 76.122 posts in 17.591 threads. In the last 3 days there were 10 new threads and 69 reply posts. View Active Threads
Who's Online
This forum has 31123 registered members. Please welcome our newest member, Mr. Ciza. 37 Guest(s), 0 Registered Member(s) are currently online. Details