Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.When posting your problem, do not run and post a ComboFix logs. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.
To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.
![]() ![]() |
May 29 2009, 01:25 AM
Post
#1
|
|
|
New Member ![]() Group: Members Posts: 2 Joined: 21-April 09 Member No.: 323,652 |
|
|
|
|
May 30 2009, 07:45 PM
Post
#2
|
|
![]() Computer Masochist ![]() ![]() ![]() ![]() ![]() ![]() Group: Moderator Posts: 22,929 Joined: 27-January 07 From: Cleveland, Ohio Member No.: 108,618 |
Welcome to BC
Update mbam and run a FULL scan Please post the results Then run ATF and SAS ATF Please download ATF Cleaner by Atribune & save it to your desktop.
------------------------------------ SAS,may take a long time to scan Please download and scan with SUPERAntiSpyware Free
Scan with SUPERAntiSpyware as follows:
-------------------- Mark
why won't my laptop work? Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around Do not send me PMs with problems that should be posted in the forums. Keep it in the forums, so everyone benefits Become a BleepingComputer fan: Facebook and Twitter |
|
|
|
Jun 4 2009, 03:03 AM
Post
#3
|
|
|
New Member ![]() Group: Members Posts: 2 Joined: 21-April 09 Member No.: 323,652 |
Here is the Malwarebytes log. I did everything as instructed...but when I opened SuperAntiSpywareFree after the scan...there are no logs. Also, any and all network connection/devices in device manager all show the yellow exclamation mark on them and I have not had any success in reinstalling their drivers. Starting to look like a reinstall of windows.
Malwarebytes' Anti-Malware 1.37 Database version: 2204 Windows 5.1.2600 Service Pack 3 5/31/2009 10:23:33 PM mbam-log-2009-05-31 (22-23-23).txt Scan type: Full Scan (C:\|) Objects scanned: 172954 Time elapsed: 43 minute(s), 36 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 6 Registry Values Infected: 2 Registry Data Items Infected: 1 Folders Infected: 0 Files Infected: 2 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CLASSES_ROOT\CLSID\{abd45510-9b22-41cd-9acd-8182a2da7c63} (Trojan.FakeAlert) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{abd45510-9b22-41cd-9acd-8182a2da7c63} (Trojan.FakeAlert) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\Intel Physical Routine 1.2A (Backdoor.Bot) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\AvScan (Malware.Trace) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\AGprotect (Malware.Trace) -> No action taken. Registry Values Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\reader_s (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\intel physical routine 1.2a (TRojan.Inject) -> No action taken. Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. Folders Infected: (No malicious items detected) Files Infected: c:\documents and settings\Administrator\Local Settings\Temp\nsrbgxod.bak (Trojan.Agent) -> No action taken. c:\documents and settings\JohnM\Local Settings\Temp\nsrbgxod.bak (Trojan.Agent) -> No action taken. |
|
|
|
Jun 4 2009, 07:19 PM
Post
#4
|
|
![]() Computer Masochist ![]() ![]() ![]() ![]() ![]() ![]() Group: Moderator Posts: 22,929 Joined: 27-January 07 From: Cleveland, Ohio Member No.: 108,618 |
QUOTE Starting to look like a reinstall of windows. After a quick glance at the log, I have to agree with you I think it would be prudent -------------------- Mark
why won't my laptop work? Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around Do not send me PMs with problems that should be posted in the forums. Keep it in the forums, so everyone benefits Become a BleepingComputer fan: Facebook and Twitter |
|
|
|
![]() ![]() |
| Lo-Fi Version | Time is now: 7th November 2009 - 10:08 PM |