My Log - Possibly Clean,.. But Need To Make Sure[INACTIVE]


Recommended Posts

Hi,

my northon antivirus removed several trojans like Adware.Winprotect or Howiper (not sure with the name here), but I still suspect that there is certain kind of rootkit still active as the system behaves strangely - long time to log on, some programs won't start (like lavasoft adaware installation binary crashes immediately), had even problems with runnin fixwareout.. nevertheless... I got these logs from both hijackthis and fixwareout. If you find anything suspicious please let me know...

thanks in advance

Michal

ewido identified these two

C:\WINDOWS\SYSTEM32\CSZXQ.EXE 51,249 2006-06-06

C:\WINDOWS\SYSTEM32\DMMOW.EXE 44,088 2004-08-04

as trojans as well and removed them... strange that NAV did not raise any alarm

report.txt

hijackthis.log.txt

Link to post
Share on other sites

Hello Michalko :)

Sorry for the delay. I am currently reviewing your log. In the meantime would you please do a couple things for me.

Please go HERE to run Panda's ActiveScan

  • Once you are on the Panda site click the Scan your PC button
  • A new window will open...click the Check Now button
  • Enter your Country
  • Enter your State/Province
  • Enter your e-mail address and click send
  • Select either Home User or Company
  • Click the big Scan Now button
  • If it wants to install an ActiveX component allow it
  • It will start downloading the files it requires for the scan (Note: It may take a couple of minutes)
  • When download is complete, click on My Computer to start the scan
  • When the scan completes, if anything malicious is detected, click the See Report button, then Save Report and save it to a convenient location. Post the contents of the ActiveScan report

I would also like to see an Uninstall list.

Open HijackThis, click Config, click Misc Tools

Click "Open Uninstall Manager"

Click "Save List" (generates uninstall_list.txt)

Click Save, copy and paste the results in your next post.

Please post the Panda log, the Uninstall List log, and a new HJT log when finished. :)

Link to post
Share on other sites
  • 5 weeks later...
Guest
This topic is now closed to further replies.