Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Found alot in autorun but not in your database please help


  • Please log in to reply
4 replies to this topic

#1 ajennings

ajennings

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:02:25 PM

Posted 06 May 2009 - 01:51 PM

these were all in my autorun files when I did the autorun I DONT SEE THEM IN UR DATABASE AND MY LETTER key for (see)
wont work either...

please help

+ DW6 File not found: C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe


+ 0 File not found: About:Home

+ n/a Microsoft .NET IE SECURITY REGISTRATION Microsoft Corporation c:\windows\system32\mscories.dll

HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers


+ HyperTerminal Icon Ext HyperTerminal Applet Library Hilgraeve, Inc. c:\windows\system32\hticons.dll

+ TrayAgent Web Site Monitor Microsoft Corporation c:\windows\system32\webcheck.dll

+ TridentImageExtractor Shell Browser UI Library Microsoft Corporation c:\windows\system32\browseui.dll
Task Scheduler

+ GoogleUpdateTaskMachine.job Google Installer Google Inc. c:\program files\google\update\googleupdate.exe

+ MP Scheduled Scan.job Windows Defender Command Line Utility Microsoft Corporation c:\program files\windows defender\mpcmdrun.exe

+ qrqjytqe.job File not found: C:\WINDOWS\system32\opnnmJaA.dll

+ User_Feed_Synchronization-{BA406147-6D9F-40F2-9EBC-A29978A40B98}.job Microsoft Feeds Synchronization Microsoft Corporation
c:\windows\system32\msfeedssync.exe

+ Windows Movie Maker.job Windows Movie Maker Microsoft Corporation c:\program files\movie maker\moviemk.exe

+ catchme File not found

+ Changer File not found: C:\windows\System32\Drivers\Changer.sys
+ lbrtfdc File not found: C:\windows\System32\Drivers\lbrtfdc.sys
+ i2omgmt File not found: C:\windows\System32\Drivers\i2omgmt.sys
+ lbrtfdc File not found: C:\windows\System32\Drivers\lbrtfdc.sys
PCIDump File not found:


PDCOMP File not found: C:\windows\System32\Drivers\PDCOMP.sys
+ PDFRAME File not found: C:\windows\System32\Drivers\PDFRAME.sys
+ PDRELI File not found: C:\windows\System32\Drivers\PDRELI.sys
+ PDRFRAME File not found: C:\windows\System32\Drivers\PDRFRAME.sys
redbook Redbook Audio Filter Driver Microsoft Corporation c:\windows\system32\drivers\redbook.sys

+ nmuwot.dll hahoer.dll File not found: nmuwot.dll
HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls


C:\WINDOWS\system32\rundll32.exe "C:\WINDOWS\system32\opnnmJaA.dll",AddRefActCtx

BC AdBot (Login to Remove)

 


#2 Grinler

Grinler

    Lawrence Abrams


  • Admin
  • 43,567 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:03:25 PM

Posted 06 May 2009 - 03:45 PM

You are infected with vundo. You should follow the steps here:

http://www.bleepingcomputer.com/forums/t/34773/preparation-guide-for-use-before-using-malware-removal-tools-and-requesting-help/

#3 ajennings

ajennings
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:02:25 PM

Posted 08 May 2009 - 06:31 PM

i did what you told me to do and posted. is there anything else I need to do..

#4 Grinler

Grinler

    Lawrence Abrams


  • Admin
  • 43,567 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:03:25 PM

Posted 08 May 2009 - 08:59 PM

Just be patient. It may be a bit before someone gets to your log.

#5 ajennings

ajennings
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:02:25 PM

Posted 08 May 2009 - 10:41 PM

Ok Thank you .




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users