Pumpkinjack
Members-
Content Count
7 -
Joined
-
Last visited
About Pumpkinjack
-
Rank
Member
-
Logfile of HijackThis v1.99.1 Scan saved at 12:13:41 PM, on 6/27/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\Program Files\Norton AntiVirus\
-
AboutBuster 5.0 reference file 30 Scan started on [6/27/2005] at [9:23:56 AM] ------------------------------------------------ Removed Stream! C:\WINDOWS\A5W.INI:qsqnq Removed Stream! C:\WINDOWS\atid.ini:cxhsq Removed Stream! C:\WINDOWS\avafq.log:hmoxu Removed Stream! C:\WINDOWS\cmsetacl.log:fiqrv Removed Stream! C:\WINDOWS\Coffee Bean.bmp:fpyzu Removed Stream! C:\WINDOWS\Coffee Bean.bmp:vmihq Removed Stream! C:\WINDOWS\COM+.log:cqxdi Removed Stream! C:\WINDOWS\COM+.log:gpfqa Removed Stream! C:\WINDOWS\COM+.log:kyqpg Removed Stream! C:\WINDOWS\comsetup.log:hultu Removed Stream! C:\WINDOWS\coms
-
Incident Status Location Spyware:Spyware/Cydoor No disinfected C:\WINDOWS\system32\cd_clint.dll
-
Virus:Trj/Agent.VN Disinfected C:\WINDOWS\system32\iphy.exe Virus:Trj/Agent.VN Disinfected C:\WINDOWS\system32\ipmx32.exe
-
activescan Incident Status Location Spyware:Spyware/Cydoor No disinfected C:\WINDOWS\system32\cd_clint.dll
-
I did everything you ask but when I looked for the files useing explorer I found none of them. Logfile of HijackThis v1.99.1 Scan saved at 1:43:02 PM, on 6/24/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe C:\Program Files\Common Files\Symantec S
-
I have run ad-aware spybot microsoft antispyware norton antivirus microtrend housecall cwshredder and all but housecall in safe mode not as bad since then but i know its still there Logfile of HijackThis v1.99.1 Scan saved at 9:33:46 AM, on 6/22/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\E