Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Browser acting weird after virus


  • Please log in to reply
2 replies to this topic

#1 Bubba11793

Bubba11793

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:07:55 AM

Posted 14 May 2010 - 07:24 AM

Hi. Longtime reader of this site, first time posting.

So I had a virus last week. I ran Malware antibytes and got rid of it. Ever since then though whenever I click on 'browse' the mouse icon will flicker to a hour glass and nothing will happen. I tried many different sites with a browse button (photobucket, iamageshack, etc). Nothing works. I also can't use "save image as...". Same result.

It gets weird here. It happens all the time in firefox (my main browser) but half the time it will work in google chrome. So it must be a windows issue, right? Paint is also acting weird now. Half the time when I open it I can draw for a few seconds before it crashes. I've ran malware anti bytes again and it found 4 more files and removed them. Should I run another san, or try a different program such as Avast!?

Any help would be appreciated. Thanks. Not sure if this is still the virus or just a problem with Windows

BC AdBot (Login to Remove)

 


#2 Bubba11793

Bubba11793
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:07:55 AM

Posted 14 May 2010 - 07:27 AM

By the way, the original virus I had made programs open very slowly. Programs would crashes and I would get error messages that would say "816.exe is not responding". This occurred with a variety of different three digit numbers. here is a log from the first scan that removed the bulk of it. I ran another scan 4 days later that removed 4 more files.

Malwarebytes' Anti-Malware 1.43
Database version: 3640
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

5/8/2010 7:11:03 PM
mbam-log-2010-05-08 (19-11-03).txt

Scan type: Full Scan (C:\|H:\|I:\|)
Objects scanned: 500034
Time elapsed: 8 hour(s), 7 minute(s), 37 second(s)

Memory Processes Infected: 7
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 12
Registry Data Items Infected: 1
Folders Infected: 1
Files Infected: 190

Memory Processes Infected:
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psysnew3.exe (Worm.Autorun.:thumbsup: -> Unloaded process successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyjo3.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyj3.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\297.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\167.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\642.exe (Backdoor.Bot) -> Unloaded process successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\271.exe (Backdoor.Bot) -> Unloaded process successfully.

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\psysnew3 (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\psysjo3 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\psys3 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tjpp1 (Worm.Autorun.:flowers: -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tjpp2 (Worm.Autorun.:trumpet: -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tjmm71 (Worm.Autorun.:inlove: -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\psysjo32 (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tjii321 (Worm.AutoRun) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\psuu4 (Worm.AutoRun) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\shell (Worm.AutoRun) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\32nfg94-h61-2sf-n1p-5m1erh6l6 (Worm.AutoRun) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\taskman (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mpp2g.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyj3.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mmdg.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mpp1g.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyu44.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psysnew2.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psysnew3.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fresdg.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyjo32.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyjo3.exe,explorer.exe,C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fjidg.exe,Explorer.exen) Good: (Explorer.exe) -> Quarantined and deleted successfully.

Folders Infected:
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455 (Worm.AutoRun) -> Quarantined and deleted successfully.

Files Infected:
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psysnew3.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyjo3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyj3.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\297.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\167.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\642.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\271.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mpp1g.exe (Worm.Autorun.:huh: -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mpp2g.exe (Worm.Autorun.:huh: -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\mmdg.exe (Worm.Autorun.B) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyjo32.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0222987.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0223986.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0222985.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0222988.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0222989.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0222991.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0223989.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9834BB3E-23F6-4072-85B4-FD0EEEC06037}\RP1537\A0223990.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\113.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\376.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\445.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\447.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\448.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\452.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\458.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\459.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\467.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\472.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\475.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\476.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\487.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\496.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\797.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\255.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\601.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\611.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\615.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\619.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\624.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\632.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\636.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\638.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\649.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\654.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\659.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\660.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\662.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\665.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\671.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\679.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\681.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\687.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\694.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\695.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\905.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\913.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\914.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\919.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\927.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\931.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\936.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\942.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\266.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\276.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\282.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\296.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\321.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\330.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\333.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\335.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\336.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\343.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\357.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\365.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\117.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\128.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\144.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\146.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\156.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\168.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\169.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\184.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\191.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\193.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\196.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\704.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\713.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\716.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\720.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\733.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\734.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\735.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\737.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\378.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\389.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\391.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\397.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\399.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\409.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\415.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\416.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\427.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\435.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\437.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\005.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\010.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\018.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\021.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\022.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\031.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\041.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\045.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\046.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\057.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\060.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\061.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\067.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\069.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\071.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\075.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\082.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\086.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\087.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\088.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\089.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\091.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\094.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\097.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\109.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\205.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\212.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\227.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\229.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\231.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\232.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\236.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\803.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\807.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\817.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\819.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\821.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\822.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\830.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\831.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\833.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\860.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\871.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\875.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\878.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\883.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\885.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\886.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\896.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\899.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\515.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\520.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\530.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\542.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\547.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\550.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\558.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\567.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\568.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\570.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\577.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\584.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\595.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\952.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\953.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\960.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\968.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\977.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\986.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\987.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\765.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\774.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\780.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temp\783.exe (Backdoor.Bot) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\5FK1CNAZ\fdc2[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\5FK1CNAZ\ten[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\EQTE8H9M\b7k[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\EQTE8H9M\fdc1[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\EQTE8H9M\zero[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner.JOHNSON.000\Local Settings\Temporary Internet Files\Content.IE5\O56FSDQR\buda[1].data (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\Desktop.ini (Worm.AutoRun) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fjidg.exe (Worm.AutoRun) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\psyu44.exe (Worm.AutoRun) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-3052858524-0972177092-538289194-8285\winIgn.exe (Worm.AutoRun) -> Delete on reboot.
C:\Documents and Settings\Owner.JOHNSON.000\Application Data\avdrn.dat (Malware.Trace) -> Quarantined and deleted successfully.

Edited by Bubba11793, 14 May 2010 - 07:40 AM.


#3 Bubba11793

Bubba11793
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:07:55 AM

Posted 14 May 2010 - 03:54 PM

Restarted my computer earlier and everything was fine. Now it's not working anymore.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users