Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Possible trojans


  • This topic is locked This topic is locked
9 replies to this topic

#1 Bronze

Bronze

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 12 January 2009 - 07:12 AM

Hello

About a week ago I scanned in safe mode with avast and it said it found trojans under screensaver names (ex. Underwater.scr) plus a couple other files so I highlighted all and chose delete, but avast asked if I wanted to schedule a boot time scan. That scan seemed to not find anything, so I start the scan again in safe mode, finds the same files, deleted them, avast asks to schedule a boot time scan again... I skip it, restart back into safe mode, same files, delete again, I think at this point I went to sleep and forgot about it. A couple days ago I scan in regular mode and it doesn't find anything, scan in safe mode, nothing.

I've been losing internet connection a lot lately, disconnecting from the access point and using the Repair option helps sometimes. Firefox has also crashed some 7 or 8 times this past week, when usually it never crashes. A couple times I haven't been able to restart/shut down by using Start not the Task Manager, so I'm forced to hold the button on the tower. One time a box popped up with "Please wait, shutting down..." and next second my computer is off when usually it goes through the "Logging off" screen and takes some 2-3 minutes to shut off. Also, I bent down to insert an SD card into the back of the tower, suddenly hear the CD drive making a sound, look up at my monitor and my computer was restarting, out of nowhere. I don't know if maybe I hit a cord or something...

Finally, the icon for replays for the game "Worms Armageddon" went from being the hazmat symbol to a smaller hazmat symbol on a white page.

Thanks.



DDS (Ver_09-01-07.01) - FAT32x86
Run by default at 3:26:30.62 on Mon 01/12/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_03
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.255.37 [GMT -8:00]

AV: avast! antivirus 4.8.1296 [VPS 090111-1] *On-access scanning enabled* (Updated)
FW: ZoneAlarm Firewall *enabled*
FW: COMODO Firewall Pro *enabled*

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
SVCHOST.EXE
C:\WINDOWS\System32\svchost.exe -k netsvcs
SVCHOST.EXE
SVCHOST.EXE
C:\WINDOWS\SYSTEM32\ZONELABS\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NetLimiter 2 Pro\nlsvc.exe
C:\WINDOWS\System32\SnoopFreeSvc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SnoopFreeUI.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\default\Application Data\Google\Update\GoogleUpdate.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/
uDefault_Page_URL = hxxp://desktop.presario.net/scripts/redirectors/presario/deskredir.dll?c=3c00&s=consumer&LC=0409
uDefault_Search_URL = about:blank
mSearch Bar = hxxp://search.presario.net/scripts/redirectors/presario/srchredir.dll?c=3c00&s=searchbar&LC=0409
uSearchAssistant = about:blank
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {BA52B914-B692-46c4-B683-905236F6F655} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [Google Update] "c:\documents and settings\default\application data\google\update\GoogleUpdate.exe" /c
mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
mRun: [SnoopFreeUI] SnoopFreeUI.exe
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe"
mRun: [CloneCDTray] "c:\program files\slysoft\clonecd\CloneCDTray.exe" /s
mRun: [VirtualCloneDrive] "c:\program files\elaborate bytes\virtualclonedrive\VCDDaemon.exe" /s
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
IE: &AIM Search - c:\program files\aim toolbar\AIMBar.dll/aimsearch.htm
IE: &AOL Toolbar search - c:\program files\aol toolbar\toolbar.dll/SEARCH.HTML
IE: &eBay Search - c:\program files\ebay\ebay toolbar2\eBayTb.dll/RCSearch.html
IE: >>> FREE PORN GALLERIES <<< - java script:{document.location='http://sexmaxx.com/freegalleries.htm';}
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
Trusted Zone: microsoft.com\windowsupdate
Trusted Zone: microsoft.com\www.update
Trusted Zone: popcap.com\www
Trusted Zone: typingtest.com\www
Trusted Zone: windowsupdate.com
TCP: {77AC81B0-3B6A-41D4-A477-7B10D2FD121E} = 66.75.160.64,66.75.160.63
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\docume~1\default\applic~1\skype\shared\SKYPE4~1.DLL
Notify: WRNotifier - WRLogonNTF.dll
AppInit_DLLs:
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

============= SERVICES / DRIVERS ===============


============== File Associations ===============

regfile=regedit.exe "%1" %*

=============== Created Last 30 ================

2008-12-16 22:18 <DIR> --d----- c:\docume~1\default\applic~1\Locktime
2008-12-16 22:02 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Locktime
2008-12-16 22:02 <DIR> --d----- c:\program files\NetLimiter 2 Pro
2008-12-14 17:17 73,728 a------- c:\windows\system32\javacpl.cpl

==================== Find3M ====================

2009-01-11 19:01 32 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-01-11 19:01 32 a--sh--- c:\windows\system32\drivers\fidbox.dat
2008-12-16 22:18 76,400 a------- c:\docume~1\default\applic~1\GDIPFONTCACHEV1.DAT
2008-12-12 22:40 3,593,216 -------- c:\windows\system32\dllcache\mshtml.dll
2008-12-03 19:52 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-03 19:52 15,504 a------- c:\windows\system32\drivers\mbam.sys
2008-11-10 05:43 410,984 a------- c:\windows\system32\deploytk.dll
2008-11-09 03:28 56 a---h--- c:\docume~1\alluse~1\applic~1\ezsidmv.dat
2008-10-24 03:21 455,296 -------- c:\windows\system32\dllcache\mrxsmb.sys
2008-10-23 04:36 286,720 a------- c:\windows\system32\gdi32.dll
2008-10-23 04:36 286,720 -------- c:\windows\system32\dllcache\gdi32.dll
2008-10-16 14:13 1,809,944 a------- c:\windows\system32\dllcache\wuaueng.dll
2008-10-16 14:13 202,776 a------- c:\windows\system32\dllcache\wuweb.dll
2008-10-16 14:12 323,608 a------- c:\windows\system32\dllcache\wucltui.dll
2008-10-16 14:12 561,688 a------- c:\windows\system32\dllcache\wuapi.dll
2008-10-16 14:09 92,696 a------- c:\windows\system32\dllcache\cdm.dll
2008-10-16 14:09 51,224 a------- c:\windows\system32\dllcache\wuauclt.exe
2008-10-16 14:08 34,328 a------- c:\windows\system32\dllcache\wups.dll
2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll
2008-10-16 05:11 70,656 -------- c:\windows\system32\dllcache\ie4uinit.exe
2008-10-16 05:11 13,824 -------- c:\windows\system32\dllcache\ieudinit.exe
2008-10-15 09:34 337,408 -------- c:\windows\system32\dllcache\netapi32.dll
2008-10-14 23:06 633,632 -------- c:\windows\system32\dllcache\iexplore.exe
2008-10-14 23:04 161,792 -------- c:\windows\system32\dllcache\ieakui.dll
2006-02-17 11:49 356,352 a------- c:\documents and settings\default\cwshredder.dll
2005-08-14 04:01 40 a------- c:\documents and settings\default\language.dat
2005-07-25 07:21 334 a------- c:\program files\common files\cmisrv.txt
2005-07-25 07:21 313 a------- c:\program files\cmisrv.txt
2000-06-20 16:37 271 ---sh--- c:\program files\desktop.ini
2000-06-20 16:37 23,357 ----h--- c:\program files\folder.htt
2007-11-03 23:17 80 ---shr-- c:\windows\system32\8451473878.dll
2008-08-24 02:36 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008082420080825\index.dat
2002-09-01 17:51 8 ---sh--- c:\windows\drm\pdrm.dat

============= FINISH: 3:32:30.24 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 PropagandaPanda

PropagandaPanda


  • Malware Response Team
  • 10,433 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:53 PM

Posted 26 January 2009 - 03:21 PM

Hello. I am PropagandaPanda (Panda or PP for short), and I will be helping you with your log.

I apologize for the delay in response. We get overwhelmed with logs at times, but we are trying our best to keep up. If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following so I can have a look at the current condition of your machine.

You may want to keep the link to this topic in your favourites. Alternatively, you can click the Posted Image button at the top bar of this topic and Track this Topic, where you can choose email notifications. The topics you are tracking are shown here.

Download and Run DDS
If you already have a copy of DDS, there is no need to download a new one.

Download DDS by sUBs from any of the links below:
DDS.com, DDS.scr, DDS.pif

Double click its icon to run it. If you are using Windows Vista, right click it and select "Run as Administrator".
When the scan is finished, two logs will open.
Post DDS.txt directly into your reply. Attach Attach.txt.

F-Secure Online Scan
Please run F-Secure Online Scanner.
This scan is for Internet Explorer only.
  • It is suggested that you disable security programs and close any other windows during the scan. While your security is disabled, please refrain from surfing on other sites. Refer to this page if you are unsure how.
  • Go to F-Secure Online Scanner
  • Follow the instructions here for installation.
  • Accept the License Agreement.
  • Once the ActiveX installs, click Full System Scan
  • Once the download completes, the scan will begin automatically. The scan will take some time to finish, so please be patient.
  • When the scan completes, click the Automatic cleaning (recommended) button.
  • Click the Show Report button and copy the entire report in your next reply.
  • Be sure to re-enable any security programs.

Please tell me what changes have been made to the computer since your topic was started. Also give me an update on any symptoms.

With Regards,
The Panda

#3 Bronze

Bronze
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 27 January 2009 - 01:25 PM

Hey, no problem for the delay :thumbsup:

I added 256MB of RAM to my computer (removed 128MB). Last night my internet was back to normal for a couple hours, then suddenly starts losing connection. Today when I re-enabled Spybot Teatimer after the F-secure scan it asked if to allow something about search bar customization, the home page, and after a restart into a non-admin account, if I wanted to make it the default account instead of admin. I think that's it...


DDS (Ver_09-01-07.01) - FAT32x86
Run by default at 10:11:06.69 on Tue 01/27/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_03
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.383.75 [GMT -8:00]

AV: avast! antivirus 4.8.1296 [VPS 090127-0] *On-access scanning enabled* (Updated)
FW: ZoneAlarm Firewall *enabled*
FW: COMODO Firewall Pro *enabled*

============== Running Processes ===============

SVCHOST.EXE
SVCHOST.EXE
SVCHOST.EXE
SVCHOST.EXE
SVCHOST.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SnoopFreeUI.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Documents and Settings\default\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
SVCHOST.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\Documents and Settings\default\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/
uDefault_Page_URL = hxxp://desktop.presario.net/scripts/redirectors/presario/deskredir.dll?c=3c00&s=consumer&LC=0409
uDefault_Search_URL = about:blank
mSearch Bar = hxxp://search.presario.net/scripts/redirectors/presario/srchredir.dll?c=3c00&s=searchbar&LC=0409
uSearchAssistant = about:blank
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {BA52B914-B692-46c4-B683-905236F6F655} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [Google Update] "c:\documents and settings\default\application data\google\update\GoogleUpdate.exe" /c
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
mRun: [SnoopFreeUI] SnoopFreeUI.exe
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe"
mRun: [CloneCDTray] "c:\program files\slysoft\clonecd\CloneCDTray.exe" /s
mRun: [VirtualCloneDrive] "c:\program files\elaborate bytes\virtualclonedrive\VCDDaemon.exe" /s
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
IE: &AIM Search - c:\program files\aim toolbar\AIMBar.dll/aimsearch.htm
IE: &AOL Toolbar search - c:\program files\aol toolbar\toolbar.dll/SEARCH.HTML
IE: &eBay Search - c:\program files\ebay\ebay toolbar2\eBayTb.dll/RCSearch.html
IE: >>> FREE PORN GALLERIES <<< - java script:{document.location='http://sexmaxx.com/freegalleries.htm';}
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
Trusted Zone: microsoft.com\windowsupdate
Trusted Zone: microsoft.com\www.update
Trusted Zone: popcap.com\www
Trusted Zone: typingtest.com\www
Trusted Zone: windowsupdate.com
TCP: {77AC81B0-3B6A-41D4-A477-7B10D2FD121E} = 66.75.160.64,66.75.160.63
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\docume~1\default\applic~1\skype\shared\SKYPE4~1.DLL
Notify: WRNotifier - WRLogonNTF.dll
AppInit_DLLs:
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

============= SERVICES / DRIVERS ===============

R0 SnoopFree;SnoopFree Driver;c:\windows\system32\drivers\SnopFree.sys [2008-1-25 9472]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-6-11 111184]
R1 KLIF;KLIF;c:\windows\system32\drivers\klif.sys [2008-7-23 127768]
R1 nltdi;nltdi;c:\windows\system32\drivers\nltdi.sys [2007-4-23 82200]
R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2008-1-8 394952]
R4 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-6-11 20560]
S4 a2free;a-squared Free Service;c:\program files\a-squared free\a2service.exe [2008-6-5 419448]

============== File Associations ===============

regfile=regedit.exe "%1" %*

=============== Created Last 30 ================

2009-01-27 02:47 <DIR> --d----- C:\fsaua.data
2009-01-24 15:31 <DIR> --dsh--- C:\FOUND.005
2009-01-23 18:25 56 a---h--- c:\windows\system32\ezsidmv.dat

==================== Find3M ====================

2009-01-27 09:58 32 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-01-27 09:58 32 a--sh--- c:\windows\system32\drivers\fidbox.dat
2008-12-16 22:18 76,400 a------- c:\docume~1\default\applic~1\GDIPFONTCACHEV1.DAT
2008-12-12 22:40 3,593,216 -------- c:\windows\system32\dllcache\mshtml.dll
2008-12-11 02:57 333,952 a------- c:\windows\system32\drivers\srv.sys
2008-12-11 02:57 333,952 -------- c:\windows\system32\dllcache\srv.sys
2008-12-03 19:52 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-03 19:52 15,504 a------- c:\windows\system32\drivers\mbam.sys
2008-11-10 05:43 410,984 a------- c:\windows\system32\deploytk.dll
2006-02-17 11:49 356,352 a------- c:\documents and settings\default\cwshredder.dll
2005-08-14 04:01 40 a------- c:\documents and settings\default\language.dat
2005-07-25 07:21 334 a------- c:\program files\common files\cmisrv.txt
2005-07-25 07:21 313 a------- c:\program files\cmisrv.txt
2000-06-20 16:37 271 ---sh--- c:\program files\desktop.ini
2000-06-20 16:37 23,357 ----h--- c:\program files\folder.htt
2007-11-03 23:17 80 ---shr-- c:\windows\system32\8451473878.dll
2008-08-24 02:36 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008082420080825\index.dat
2002-09-01 17:51 8 ---sh--- c:\windows\drm\pdrm.dat

============= FINISH: 10:13:39.36 ===============










Scanning Report
Tuesday, January 27, 2009 02:57:16 - 09:46:41

Computer name: COMPUTER
Scanning type: Scan system for malware, rootkits
Target: C:\ D:\
Result: 3 malware found
TrackingCookie.2o7 (spyware)

* System

TrackingCookie.Questionmarket (spyware)

* System

TrackingCookie.Webtrends (spyware)

* System

Statistics
Scanned:

* Files: 23633
* System: 4024
* Not scanned: 8

Actions:

* Disinfected: 0
* Renamed: 0
* Deleted: 0
* None: 3
* Submitted: 0

Files not scanned:

* C:\HIBERFIL.SYS
* C:\PAGEFILE.SYS
* C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
* C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* C:\WINDOWS\SYSTEM32\DRIVERS\SNOPFREE.SYS

Options
Scanning engines:

* F-Secure USS: 3.0.0
* F-Secure Hydra: 2.8.8110, 2009-01-27
* F-Secure AVP: 7.0.171, 2009-01-26
* F-Secure Pegasus: 1.20.0, 1969-11-31
* F-Secure Blacklight: 0.0.0

Scanning options:

* Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX ANI AVB BAT CMD JOB LSP MAP MHT MIF PHP POT SWF WMF NWS TAR
* Use Advanced heuristics

Copyright 1998-2007 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.

Attached Files



#4 PropagandaPanda

PropagandaPanda


  • Malware Response Team
  • 10,433 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:53 PM

Posted 27 January 2009 - 04:59 PM

Hello.

There does not appear to be an infection. Are there any signs at the moment?

With Regards,
The Panda

#5 Bronze

Bronze
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 27 January 2009 - 05:08 PM

Just the screwy internet. I forgot to mention my screen went black and froze when removing a SD card, if that matters.

#6 PropagandaPanda

PropagandaPanda


  • Malware Response Team
  • 10,433 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:53 PM

Posted 27 January 2009 - 05:16 PM

Hello.

Doesn't sound like an infection is causing that. Usually your connection will be done completely, or you are blocked from accessing antivirus sites and help forums.

With Regards,
The Panda

#7 Bronze

Bronze
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 27 January 2009 - 05:23 PM

Oops... :thumbsup: I guess I should call my internet provider? Maybe reinstalling my network card might help?

#8 PropagandaPanda

PropagandaPanda


  • Malware Response Team
  • 10,433 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:53 PM

Posted 27 January 2009 - 05:40 PM

Hello.

Perhaps try starting a topic in the Windows XP Forum. I'm sure someone can offer help.

With Regards,
The Panda

#9 Bronze

Bronze
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 27 January 2009 - 05:45 PM

Thanks for the help :thumbsup: Good to know my computer is clean.

#10 PropagandaPanda

PropagandaPanda


  • Malware Response Team
  • 10,433 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:53 PM

Posted 29 January 2009 - 04:12 PM

Welcome.

This topic is now closed.
If you are the topic starter and need this topic reopened, send me a message.

Everyone else, please begin a new topic.

With Regards,
The Panda




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users