Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Please Check Smitfraudfix Print Out


  • Please log in to reply
3 replies to this topic

#1 Alexander_925

Alexander_925

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:04:58 PM

Posted 02 October 2006 - 07:36 PM

Hi,

I ran a SmitFraudFix report as a learning exercise only. Could someone take a glance at it please and let me know if you spot any problems?

SmitFraudFix v2.104

Scan done at 8:13:53.64, Sun 10/01/2006
Run from C:\Documents and Settings\DELL\My Documents\Setup Files\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode

C:\


C:\WINDOWS

C:\WINDOWS\d3??.dll FOUND !
C:\WINDOWS\wupdmgr.exe FOUND !

C:\WINDOWS\system


C:\WINDOWS\Web


C:\WINDOWS\system32


C:\Documents and Settings\DELL


C:\Documents and Settings\DELL\Application Data


Start Menu


C:\DOCUME~1\DELL\FAVORI~1


Desktop


C:\Program Files


Corrupted keys


Desktop Components

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="http://www.nctd.com/01/01sunfire.jpg"
"SubscribedURL"="http://www.nctd.com/01/01sunfire.jpg"
"FriendlyName"=""

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\1]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"

Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


pe386-msguard-lzx32


Scanning wininet.dll infection


End

BC AdBot (Login to Remove)

 


#2 quietman7

quietman7

    Bleepin' Janitor


  • Global Moderator
  • 51,119 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:05:58 PM

Posted 03 October 2006 - 11:19 AM

Hello Alexander_925

You ran option #1 and it find some bad files. Go here, scroll down and follow the instructions for using SmitfraudFix under Clean, where you reboot in "Safe Mode" and run option #2.

Its not a good idea to run specialized fix tools just for the experience. These tools are created by experts to be used by experts or those under the guidance of experts. Sometimes if the targeted malware is not present or if the tool is used incorrectly, it could result in other problems.
.
.
Windows Insider MVP 2017-2018
Microsoft MVP Reconnect 2016
Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif

#3 Alexander_925

Alexander_925
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:04:58 PM

Posted 03 October 2006 - 07:07 PM

Got it, thanks

#4 quietman7

quietman7

    Bleepin' Janitor


  • Global Moderator
  • 51,119 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:05:58 PM

Posted 04 October 2006 - 06:39 AM

Your welcome.
.
.
Windows Insider MVP 2017-2018
Microsoft MVP Reconnect 2016
Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users