Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

unknown DOS or Command popup


  • Please log in to reply
4 replies to this topic

#1 angieInVA

angieInVA

  • Members
  • 184 posts
  • OFFLINE
  •  
  • Local time:04:04 PM

Posted 09 July 2011 - 11:28 PM

when I just booted this computer up.......of course I walked away and let it do it's thing but when I returned I saw a "DOS or command window" closing which usually doesn't happen. the next thing I did was run Malwarebytes quick scan and SuperAntiSpyware and attached the logs.

the only recent changes to this machine was I upgrade yahoo messenger to a version 11, then uninstalled it and went back to version 10. I do have McAfee AntiVirus Plus and Ad-Aware Pro running in the backgroud. the only recent update was to Apple, quicktime,

thank you........patiently waiting.....



Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Database version: 7060

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

7/9/2011 02:21:52 PM
mbam-log-2011-07-09 (14-21-51).txt

Scan type: Quick scan
Objects scanned: 196135
Time elapsed: 1 hour(s), 9 minute(s), 32 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)




SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/09/2011 at 04:15 PM

Application Version : 4.55.1000

Core Rules Database Version : 7009
Trace Rules Database Version: 4821

Scan type : Quick Scan
Total Scan Time : 01:48:23

Memory items scanned : 623
Memory threats detected : 0
Registry items scanned : 1740
Registry threats detected : 0
File items scanned : 83500
File threats detected : 57

Adware.Tracking Cookie
C:\Documents and Settings\Steve\Cookies\steve@mediabrandsww[2].txt
C:\Documents and Settings\Steve\Cookies\steve@ad.yieldmanager[2].txt
C:\Documents and Settings\Steve\Cookies\steve@ru4[1].txt
C:\Documents and Settings\Steve\Cookies\steve@realmedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@mediaplex[2].txt
C:\Documents and Settings\Steve\Cookies\steve@invitemedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adinterax[2].txt
C:\Documents and Settings\Steve\Cookies\steve@doubleclick[1].txt
C:\Documents and Settings\Steve\Cookies\steve@content.yieldmanager[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adxpose[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.bleepingcomputer[1].txt
C:\Documents and Settings\Steve\Cookies\steve@vpmc.122.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.pointroll[1].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[5].txt
C:\Documents and Settings\Steve\Cookies\steve@zedo[1].txt
C:\Documents and Settings\Steve\Cookies\steve@casalemedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@at.atwola[2].txt
C:\Documents and Settings\Steve\Cookies\steve@interclick[3].txt
C:\Documents and Settings\Steve\Cookies\steve@revsci[2].txt
C:\Documents and Settings\Steve\Cookies\steve@2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ar.atwola[1].txt
C:\Documents and Settings\Steve\Cookies\steve@invitemedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@intermundomedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@collective-media[1].txt
C:\Documents and Settings\Steve\Cookies\steve@media6degrees[2].txt
C:\Documents and Settings\Steve\Cookies\steve@r1-ads.ace.advertising[2].txt
C:\Documents and Settings\Steve\Cookies\steve@insightexpressai[1].txt
C:\Documents and Settings\Steve\Cookies\steve@atdmt[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[5].txt
C:\Documents and Settings\Steve\Cookies\steve@a1.interclick[1].txt
C:\Documents and Settings\Steve\Cookies\steve@trafficmp[2].txt
C:\Documents and Settings\Steve\Cookies\steve@kontera[3].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.livenation[2].txt
C:\Documents and Settings\Steve\Cookies\steve@yieldmanager[1].txt
C:\Documents and Settings\Steve\Cookies\steve@apmebf[1].txt
C:\Documents and Settings\Steve\Cookies\steve@questionmarket[1].txt
C:\Documents and Settings\Steve\Cookies\steve@advertising[2].txt
C:\Documents and Settings\Steve\Cookies\steve@fastclick[2].txt
C:\Documents and Settings\Steve\Cookies\steve@apmebf[2].txt
C:\Documents and Settings\Steve\Cookies\steve@atdmt[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adbrite[1].txt
C:\Documents and Settings\Steve\Cookies\steve@pointroll[2].txt
C:\Documents and Settings\Steve\Cookies\steve@tacoda.at.atwola[2].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.monster[1].txt
C:\Documents and Settings\Steve\Cookies\steve@imrworldwide[2].txt
crackle.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
media.heavy.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
media.mtvnservices.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
s0.2mdn.net [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
secure-uk.imrworldwide.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
secure-us.imrworldwide.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
sexier.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
spe.atdmt.com [ C:\Documents and Settings\Steve\Application Data\Macromedia\Flash Player\#SharedObjects\K8MVAA8Q ]
C:\Documents and Settings\Steve\Local Settings\temp\Cookies\steve@atdmt[2].txt
C:\Documents and Settings\Steve\Local Settings\temp\Cookies\steve@ad.yieldmanager[2].txt
C:\Documents and Settings\Steve\Local Settings\temp\Cookies\steve@content.yieldmanager[2].txt
C:\Documents and Settings\Steve\Local Settings\temp\Cookies\steve@content.yieldmanager[3].txt

BC AdBot (Login to Remove)

 


#2 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:08:04 PM

Posted 10 July 2011 - 12:36 AM

Can you perform a complete scan?

#3 angieInVA

angieInVA
  • Topic Starter

  • Members
  • 184 posts
  • OFFLINE
  •  
  • Local time:04:04 PM

Posted 10 July 2011 - 01:39 AM

I'm sure I can, or I will find out. do you want run full for both of them or??


Angie

#4 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:08:04 PM

Posted 10 July 2011 - 01:46 AM

full on both

#5 angieInVA

angieInVA
  • Topic Starter

  • Members
  • 184 posts
  • OFFLINE
  •  
  • Local time:04:04 PM

Posted 10 July 2011 - 08:24 PM

here are the full scans....

Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Database version: 7060

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

7/10/2011 07:57:52 AM
mbam-log-2011-07-10 (07-57-51).txt

Scan type: Full scan (C:\|)
Objects scanned: 391629
Time elapsed: 8 hour(s), 6 minute(s), 1 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)



SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/10/2011 at 03:58 PM

Application Version : 4.55.1000

Core Rules Database Version : 7392
Trace Rules Database Version: 5204

Scan type : Complete Scan
Total Scan Time : 06:43:34

Memory items scanned : 643
Memory threats detected : 0
Registry items scanned : 7542
Registry threats detected : 0
File items scanned : 137748
File threats detected : 98

Adware.Tracking Cookie
C:\Documents and Settings\Steve\Cookies\steve@ad.yieldmanager[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ru4[1].txt
C:\Documents and Settings\Steve\Cookies\steve@content.yieldmanager[3].txt
C:\Documents and Settings\Steve\Cookies\steve@invitemedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adinterax[1].txt
C:\Documents and Settings\Steve\Cookies\steve@doubleclick[1].txt
C:\Documents and Settings\Steve\Cookies\steve@content.yieldmanager[2].txt
C:\Documents and Settings\Steve\Cookies\steve@content.yieldmanager[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adxpose[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.pointroll[1].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[5].txt
C:\Documents and Settings\Steve\Cookies\steve@casalemedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@invitemedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@intermundomedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@media6degrees[2].txt
C:\Documents and Settings\Steve\Cookies\steve@atdmt[1].txt
C:\Documents and Settings\Steve\Cookies\steve@imrworldwide[2].txt
C:\Documents and Settings\Steve\Cookies\steve@yieldmanager[1].txt
C:\Documents and Settings\Steve\Cookies\steve@apmebf[1].txt
C:\Documents and Settings\Steve\Cookies\steve@fastclick[2].txt
C:\Documents and Settings\Steve\Cookies\steve@atdmt[2].txt
C:\Documents and Settings\Steve\Cookies\steve@pointroll[2].txt
C:\Documents and Settings\Steve\Cookies\steve@t.pointroll[3].txt
C:\Documents and Settings\Steve\Cookies\steve@entrepreneur[1].txt
C:\Documents and Settings\Steve\Cookies\steve@t.pointroll[2].txt
C:\Documents and Settings\Steve\Cookies\steve@sales.liveperson[3].txt
C:\Documents and Settings\Steve\Cookies\steve@sales.liveperson[1].txt
C:\Documents and Settings\Steve\Cookies\steve@rotator.adjuggler[2].txt
C:\Documents and Settings\Steve\Cookies\steve@o1.qnsr[1].txt
C:\Documents and Settings\Steve\Cookies\steve@kontera[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.livenation[1].txt
C:\Documents and Settings\Steve\Cookies\steve@qnsr[1].txt
C:\Documents and Settings\Steve\Cookies\steve@segment-pixel.invitemedia[1].txt
C:\Documents and Settings\Steve\Cookies\steve@bissell.122.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@citi.bridgetrack[4].txt
C:\Documents and Settings\Steve\Cookies\steve@citi.bridgetrack[2].txt
C:\Documents and Settings\Steve\Cookies\steve@citi.bridgetrack[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.adtechus[1].txt
C:\Documents and Settings\Steve\Cookies\steve@mediafire[2].txt
C:\Documents and Settings\Steve\Cookies\steve@viewablemedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.adtechus[2].txt
C:\Documents and Settings\Steve\Cookies\steve@network.realmedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@stat.dealtime[2].txt
C:\Documents and Settings\Steve\Cookies\steve@mediaforge[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.flowingdata[2].txt
C:\Documents and Settings\Steve\Cookies\steve@www.clickmanage[2].txt
C:\Documents and Settings\Steve\Cookies\steve@tasteofcountry[1].txt
C:\Documents and Settings\Steve\Cookies\steve@scrippsgac.112.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@optimize.indieclick[2].txt
C:\Documents and Settings\Steve\Cookies\steve@112.2o7[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adinterax[2].txt
C:\Documents and Settings\Steve\Cookies\steve@ad.yieldmanager[2].txt
C:\Documents and Settings\Steve\Cookies\steve@112.2o7[3].txt
C:\Documents and Settings\Steve\Cookies\steve@caloriecount.about[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adlegend[2].txt
C:\Documents and Settings\Steve\Cookies\steve@yahoogroups.112.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@media.adfrontiers[1].txt
C:\Documents and Settings\Steve\Cookies\steve@e1.cdn.qnsr[2].txt
C:\Documents and Settings\Steve\Cookies\steve@crackle[2].txt
C:\Documents and Settings\Steve\Cookies\steve@www.qsstats[1].txt
C:\Documents and Settings\Steve\Cookies\steve@indieclick[1].txt
C:\Documents and Settings\Steve\Cookies\steve@www.qsstats[2].txt
C:\Documents and Settings\Steve\Cookies\steve@tripod[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adserving.versaneeds[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.trafficjunky[1].txt
C:\Documents and Settings\Steve\Cookies\steve@tracfone.122.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.pubmatic[2].txt
C:\Documents and Settings\Steve\Cookies\steve@bannerads.turlockjournal[3].txt
C:\Documents and Settings\Steve\Cookies\steve@bannerads.turlockjournal[1].txt
C:\Documents and Settings\Steve\Cookies\steve@uso.122.2o7[1].txt
C:\Documents and Settings\Steve\Cookies\steve@technoratimedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@www.bdsmtasks[2].txt
C:\Documents and Settings\Steve\Cookies\steve@intermundomedia[2].txt
C:\Documents and Settings\Steve\Cookies\steve@fls.doubleclick[1].txt
C:\Documents and Settings\Steve\Cookies\steve@jmp.clickbooth[1].txt
C:\Documents and Settings\Steve\Cookies\steve@mm.chitika[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[1].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[6].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[3].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[7].txt
C:\Documents and Settings\Steve\Cookies\steve@clickbooth[1].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[4].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[3].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[1].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[2].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[4].txt
C:\Documents and Settings\Steve\Cookies\steve@adserver.newbay-media[8].txt
C:\Documents and Settings\Steve\Cookies\steve@interclick[2].txt
C:\Documents and Settings\Steve\Cookies\steve@bizrate[1].txt
C:\Documents and Settings\Steve\Cookies\steve@trafficmp[1].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.dothads[2].txt
C:\Documents and Settings\Steve\Cookies\steve@stats.complex[2].txt
C:\Documents and Settings\Steve\Cookies\steve@liveperson[7].txt
C:\Documents and Settings\Steve\Cookies\steve@ads.fling[2].txt
C:\Documents and Settings\Steve\Cookies\steve@bravenet[1].txt
C:\Documents and Settings\Steve\Cookies\steve@mediabrandsww[1].txt




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users