lashaun84

Members
  • Content Count

    34
  • Joined

  • Last visited

Everything posted by lashaun84

  1. wasn't sure if you got it just resending i completed this in internet explorer but here is the url http://www.pcpitstop.com/betapit/sec.asp?conid=22245145
  2. i completed this in internet explorer but here is the url http://www.pcpitstop.com/betapit/sec.asp?conid=22245145
  3. windows media player and in firefox even when i try to do im on my yahoo account it goes very slow i have to wait for it to catch up with the writing other than that everything has been moving pretty fast
  4. it's running a bit faster but when i try to play video clips it doesn't work right like it's spaced starting and stopping i don't know what that has to do with the way it's running but i want it to go without the starting and stopping
  5. __c0013A16.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0019544.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c00210E4.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0023CC6.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0025964.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c002A68A.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c002F1E4.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0034F69.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0042D21.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c0044C2B.dat;C:\!FixIEDef;Probably Trojan.Packed.338;; __c004AF7B.dat;C:\!FixIEDef;Pr
  6. ;******************************************************************************* ********************************************************************************* ******************* ANALYSIS: 2009-06-04 15:42:57 PROTECTIONS: 0 MALWARE: 52 SUSPECTS: 22 ;******************************************************************************* ********************************************************************************* ******************* PROTECTIONS Description Version Active Updated ;==========================================================
  7. i have tried to do the system scan on more than one occasion it will not complete what should i do. I have left my computer on overnight trying to complete the system scan i have yet to recieve a log stating what is wrong. PLEASE HELP!!!!
  8. ComboFix 09-05-17.08 - Owner 18/05/2009 15:53.6 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.254.124 [GMT -4:00] Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe Command switches used :: c:\documents and settings\Owner\Desktop\CFScript.txt FILE :: C:\10.tmp C:\11.tmp C:\12.tmp C:\13.tmp C:\14.tmp C:\15.tmp C:\16.tmp C:\17.tmp C:\18.tmp C:\19.tmp C:\1A.tmp C:\1B.tmp C:\1C.tmp C:\1D.tmp C:\2B.tmp C:\3.tmp C:\3A.tmp C:\3B.tmp C:\3C.tmp C:\3D.tmp C:\3E.tmp C:\3F.tmp C:\4.tmp C:\40.tmp C:\41.tmp C:\42.tmp C:\43.tmp C:\44.tmp C:\45.tmp C:\46.tmp C:\47.tmp
  9. ComboFix 09-05-16.05 - Owner 16/05/2009 22:18.5 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.254.114 [GMT -4:00] Running from: c:\documents and settings\Owner\desktop\ComboFix.exe Command switches used :: /KillAll . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\documents and settings\Owner\Local Settings\Temporary Internet Files\CPV.stt c:\documents and settings\Owner\Local Settings\Temporary Internet Files\fbk.sts c:\program files\Jcore c:\program files\WWShow c:\recycler\S-1-5-21-436374069-13645891
  10. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 7:32:16 PM, on 16/05/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOW
  11. ========== PROCESSES ========== Process explorer.exe killed successfully. ========== FILES ========== File move failed. C:\WINDOWS\system32\ntos.exe scheduled to be moved on reboot. File/Folder C:\WINDOWS\system32\sdrgfcvbf.dll not found. File/Folder C:\Documents and Settings\Owner\Application Data\nidle not found. File/Folder C:\Documents and Settings\Owner\Application Data\Messenger\Drivers\IgfxSys.dll not found. File/Folder C:\DOCUME~1\Owner\LOCALS~1\Temp\570833324.exe not found. File/Folder C:\WINDOWS\TEMP\j1icns6s.exe not found. File/Folder C:\WINDOWS\TEMP\1604645086.exe not found. File/F
  12. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 3:59:28 PM, on 15/05/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOW
  13. ========== PROCESSES ========== Process explorer.exe killed successfully. Error: Unable to interpret <:registry> in the current context! Error: Unable to interpret <HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}> in the current context! Error: Unable to interpret <HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\nidle> in the current context! Error: Unable to interpret <HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\IgfxSys> in the current context! Erro
  14. GMER 1.0.15.14972 - http://www.gmer.net Rootkit scan 2009-05-13 15:04:34 Windows 5.1.2600 Service Pack 2 ---- Kernel code sections - GMER 1.0.15 ---- ? C:\DOCUME~1\Owner\LOCALS~1\Temp\catchme.sys The system cannot find the file specified. ! ---- User code sections - GMER 1.0.15 ---- ? C:\WINDOWS\System32\svchost.exe[3896] image checksum mismatch; time/da
  15. Checking Files : No Trojan Files Found Removing Temp Files ADS Check : Final Check : catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-05-12 18:45:56 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden services & system hive ... scanning hidden registry entries ... scanning hidden files ... C:\WINDOWS\system32\ntos.exe 191488 bytes executable C:\WINDOWS\system32\wsnpoem C:\WINDOWS\system32\wsnpoem\audio.dll 0 bytes C:\WINDOWS\system32\wsnpoem\video.dll 36086 byte
  16. HJT logs belong in the Malware section. -tt75-
  17. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 6:08:33 PM, on 10/05/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOW
  18. sorry couldn't get back with you yesterday my wireless connection was running slow, so far so good no problems when i restarted.
  19. So far, so good haven't restarted the computer yet so don't know if the effects will take place now or later. We'll be in touch if something changes.
  20. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:21:57 PM, on 23/02/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wscntfy.exe C:\Progr
  21. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 5:24:23 PM, on 22/02/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wscntfy.exe C:\Progr
  22. ComboFix 09-02-15.01 - Owner 2009-02-20 18:28:04.2 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.254.104 [GMT -5:00] Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe Command switches used :: c:\documents and settings\Owner\Desktop\CFScript.txt * Created a new restore point FILE :: C:\-856197470 C:\rnqcp.exe c:\windows\system32\0085.zip c:\windows\system32\0121mixed.bin c:\windows\system32\10b.zip c:\windows\system32\139backup.bin c:\windows\system32\147base.bin c:\windows\system32\297backup.bin c:\windows\system32\apswymby.ini c:\windows\system32\avi
  23. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:35:03 PM, on 19/02/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wscntfy.exe C:\Prog