Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hijackthis Log


  • Please log in to reply
4 replies to this topic

#1 Glorioso_17

Glorioso_17

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:09:08 AM

Posted 05 November 2005 - 10:49 AM

Hi!!! I think my computer is infected with the worm Android, but my antivirus can't clean it. Please help me!!

Logfile of HijackThis v1.99.1
Scan saved at 16:46:01, on 05/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\MSN Messenger\msnmsgr.exe
C:\Archivos de programa\eMule\emule.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\archivos de programa\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\archivos de programa\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [msnmsgr] "C:\Archivos de programa\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Archivos de programa\eMule\emule.exe -AutoStart
O4 - Global Startup: Troyan Explore Antivirus.LNK = C:\EXTROYAN\EXTROYAN.EXE
O8 - Extra context menu item: &Búsqueda en Google - res://C:\Archivos de programa\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Traducir palabra inglesa - res://C:\Archivos de programa\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Instantánea de caché de la página - res://C:\Archivos de programa\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Páginas similares - res://C:\Archivos de programa\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Páginas vinculadas - res://C:\Archivos de programa\Google\GoogleToolbar1.dll/cmbacklinks.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O12 - Plugin for .pdf: C:\Archivos de programa\Internet Explorer\PLUGINS\nppdf32.dll
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads/kws/kav...can_unicode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1129640049363
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender-es.com/scan/Msie/bitdefender.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0CADEC5E-E1E9-4003-807F-32BC0318A31A}: NameServer = 80.58.61.250,80.58.61.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{0CADEC5E-E1E9-4003-807F-32BC0318A31A}: NameServer = 80.58.61.250,80.58.61.254
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

BC AdBot (Login to Remove)

 


#2 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:08 PM

Posted 05 November 2005 - 02:12 PM

Welcome Glorioso_17 to Bleeping Computer.

Please download Ewido Security Suite
  • Install ewido security suite
  • Launch ewido, there should be a big E icon on your desktop, double-click it.
  • The program will prompt you to update click the OK button
  • The program will now go to the main screen
  • You will need to update ewido to the latest definition files.
  • On the left hand side of the main screen click update
  • Click on Start
  • The update will start and a progress bar will show the updates being installed
  • After the updates are installed, exit Ewido
Reboot your computer into Safe Mode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight Safe Mode, then hit enter.

Open Ewido
  • Click on scanner
  • Click Complete System Scan
  • Let the program scan the machine
While the scan is in progress you will be prompted to clean the first infected file it finds. Choose "remove", then put a check next to "Perform action on all infections" in the left corner of the box so you don't have to sit and watch Ewido the whole time. Click OK.

Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report
  • Save the report to your desktop
  • Exit Ewido
Reboot into normal mode and post the log from Ewido.


Posted Image
Life is what happens while you're making other plans

#3 Glorioso_17

Glorioso_17
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:09:08 AM

Posted 05 November 2005 - 04:53 PM

[---------------------------------------------------------
ewido security suite - Report de exploración
---------------------------------------------------------

+ Creado en: 22:46:31, 05/11/2005
+ Report-Checksum: 79414700

+ Scan result:

HKU\S-1-5-21-1454471165-1767777339-839522115-1003\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Limpio con backup
HKU\S-1-5-21-1454471165-1767777339-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@2o7[2].txt -> Spyware.Cookie.2o7 : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ad1.clickhype[1].txt -> Spyware.Cookie.Clickhype : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ads17.bpath[1].txt -> Spyware.Cookie.Bpath : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@adtech[1].txt -> Spyware.Cookie.Adtech : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@advertising[1].txt -> Spyware.Cookie.Advertising : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@as-eu.falkag[1].txt -> Spyware.Cookie.Falkag : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@as1.falkag[1].txt -> Spyware.Cookie.Falkag : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@atdmt[2].txt -> Spyware.Cookie.Atdmt : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@bfast[2].txt -> Spyware.Cookie.Bfast : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@cnn.122.2o7[2].txt -> Spyware.Cookie.2o7 : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@com[2].txt -> Spyware.Cookie.Com : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ehg-deltatre.hitbox[1].txt -> Spyware.Cookie.Hitbox : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ehg-nokiafin.hitbox[2].txt -> Spyware.Cookie.Hitbox : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@fastclick[2].txt -> Spyware.Cookie.Fastclick : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@hitbox[1].txt -> Spyware.Cookie.Hitbox : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@ilead.itrack[1].txt -> Spyware.Cookie.Itrack : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@paypopup[1].txt -> Spyware.Cookie.Paypopup : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@popunder.paypopup[1].txt -> Spyware.Cookie.Paypopup : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@spylog[1].txt -> Spyware.Cookie.Spylog : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@statcounter[2].txt -> Spyware.Cookie.Statcounter : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@statse.webtrendslive[1].txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Limpio con backup
C:\Documents and Settings\Admin\Cookies\admin@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Limpio con backup
C:\Documents and Settings\DaNiEl\Cookies\daniel@atdmt[2].txt -> Spyware.Cookie.Atdmt : Limpio con backup
C:\Documents and Settings\DaNiEl\Cookies\daniel@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Limpio con backup
C:\Documents and Settings\Er Dani\Cookies\er dani@com[2].txt -> Spyware.Cookie.Com : Limpio con backup
C:\Documents and Settings\Er Dani\Cookies\er dani@e-2dj6wjmiqmdjgbp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Limpio con backup
:mozilla.10:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Limpio con backup
:mozilla.21:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Limpio con backup
:mozilla.28:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Smartadserver : Limpio con backup
:mozilla.33:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.34:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.35:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Limpio con backup
:mozilla.58:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.64:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Hotlog : Limpio con backup
:mozilla.71:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.247realmedia : Limpio con backup
:mozilla.74:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Limpio con backup
:mozilla.75:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Limpio con backup
:mozilla.76:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Limpio con backup
:mozilla.77:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Limpio con backup
:mozilla.93:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.94:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.95:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.108:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Atdmt : Limpio con backup
:mozilla.109:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Fastclick : Limpio con backup
:mozilla.110:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Fastclick : Limpio con backup
:mozilla.111:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Fastclick : Limpio con backup
:mozilla.113:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.115:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.119:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.120:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Limpio con backup
:mozilla.127:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.134:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Weborama : Limpio con backup
:mozilla.142:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.143:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Valueclick : Limpio con backup
:mozilla.146:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Porngraph : Limpio con backup
:mozilla.152:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Adserver : Limpio con backup
:mozilla.153:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Adserver : Limpio con backup
:mozilla.174:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.188:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Sitestat : Limpio con backup
:mozilla.197:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.201:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.202:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.203:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.204:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.205:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.206:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.207:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.208:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Limpio con backup
:mozilla.222:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Sitestat : Limpio con backup
:mozilla.231:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Advertising : Limpio con backup
:mozilla.232:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Advertising : Limpio con backup
:mozilla.233:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Advertising : Limpio con backup
:mozilla.235:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Limpio con backup
:mozilla.240:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Ru4 : Limpio con backup
:mozilla.242:C:\Documents and Settings\Er Dani\Datos de programa\Mozilla\Profiles\default\k2ectcra.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Limpio con backup


::Fin Report

#4 Glorioso_17

Glorioso_17
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:09:08 AM

Posted 05 November 2005 - 08:27 PM

please answer I need clean worm

#5 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:08 PM

Posted 06 November 2005 - 10:47 AM

I will reply, I'm just not working 24/7 :thumbsup:

I don't see the worm around. Let's check somewhere else.

Run the Free use Panda Active Scan.
You need to use Internet Explorer for this scan.
  • Click on Check Now!
  • A new window will appear; fill in the boxes (Country, State, email addy)
  • Click on Scan Now! >
    If you have never used ActiveScan before, you will be prompted to install an ActiveX control (asinst.cab) : click on Install. Panda will install the component, and then install the latest signature files.
  • From "Select a device to scan...", choose "My Computer"
  • Allow the scan to run. It'll take a while.
  • When complete, click on "See Report", and then on "Save report"; save it to a convenient location.
  • I will need you to post that report in your next reply; simply open the text file, then copy/paste the content here.



Posted Image
Life is what happens while you're making other plans




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users