Pumpkinjack

Members
  • Content Count

    7
  • Joined

  • Last visited

Everything posted by Pumpkinjack

  1. Logfile of HijackThis v1.99.1 Scan saved at 12:13:41 PM, on 6/27/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\Program Files\Norton AntiVirus\
  2. AboutBuster 5.0 reference file 30 Scan started on [6/27/2005] at [9:23:56 AM] ------------------------------------------------ Removed Stream! C:\WINDOWS\A5W.INI:qsqnq Removed Stream! C:\WINDOWS\atid.ini:cxhsq Removed Stream! C:\WINDOWS\avafq.log:hmoxu Removed Stream! C:\WINDOWS\cmsetacl.log:fiqrv Removed Stream! C:\WINDOWS\Coffee Bean.bmp:fpyzu Removed Stream! C:\WINDOWS\Coffee Bean.bmp:vmihq Removed Stream! C:\WINDOWS\COM+.log:cqxdi Removed Stream! C:\WINDOWS\COM+.log:gpfqa Removed Stream! C:\WINDOWS\COM+.log:kyqpg Removed Stream! C:\WINDOWS\comsetup.log:hultu Removed Stream! C:\WINDOWS\coms
  3. Incident Status Location Spyware:Spyware/Cydoor No disinfected C:\WINDOWS\system32\cd_clint.dll
  4. Virus:Trj/Agent.VN Disinfected C:\WINDOWS\system32\iphy.exe Virus:Trj/Agent.VN Disinfected C:\WINDOWS\system32\ipmx32.exe
  5. activescan Incident Status Location Spyware:Spyware/Cydoor No disinfected C:\WINDOWS\system32\cd_clint.dll
  6. I did everything you ask but when I looked for the files useing explorer I found none of them. Logfile of HijackThis v1.99.1 Scan saved at 1:43:02 PM, on 6/24/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe C:\Program Files\Common Files\Symantec S
  7. I have run ad-aware spybot microsoft antispyware norton antivirus microtrend housecall cwshredder and all but housecall in safe mode not as bad since then but i know its still there Logfile of HijackThis v1.99.1 Scan saved at 9:33:46 AM, on 6/22/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\E