Submit Your Article Forum Rules FAQ About Us
Search the forums:

Tech Support Team


Hello and Welcome to Tech Support Team! Before you can start posting and answering questions, you'll have to register. Registration is fast, simple and absolutely free! Feel free to browse through existing questions by choosing the forum you want to visit below.



Notices

Reply
  #1 (permalink)   Top
Old 15th February 2010, 09:11 PM
Matt77's Avatar
Newcomer
 
Join Date: Feb 2010, 2 posts.
Reputation: Matt77 is on a distinguished road
Could someone please check out my 3 logs?

I have scanned the computer with Mcafee Security Center. I have completed the 7 steps on the malware removal guide. I was hoping if someone could look at the 3 logs I have attached.

Malware and stuff: "My documents" kept opening. Internet explorer opened a few times. Other pop ups kept opening.

If there is any other information you need just let me know.

Thank you very much. This site is amazing!

Matthew
Attached Files
File Type: log hijackthis.log (11.7 KB, 167 views)
File Type: log SUPERAntiSpyware Scan Log - 02-14-2010 - 16-47-37.log (7.5 KB, 154 views)
File Type: txt mbam-log-2010-02-14 (17-06-09).txt (3.3 KB, 104 views)
Reply With Quote
  #2 (permalink)   Top
Old 16th February 2010, 03:29 PM
Albert Lionheart's Avatar
TST Oracle
 
Join Date: Dec 2007, 7,960 posts.
Location: Market Haemorrhoids, Middle England
Reputation: Albert Lionheart is on a distinguished road
I have done the Hijackthis log - my be overopinionated but this is the best and needs no confirmation! Deal with these entries by clearing them
C:\Users\Matthew\AppData\Local\Temp\Vkc.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O4 - HKLM\..\Run: [QuickCare2.2] "C:\Program Files (x86)\Qwest\QuickCare\bin\sprtcmd.exe" /P QuickCare2.2
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [TOY5KNQ8OC] C:\Users\Matthew\AppData\Local\Temp\Vkc.exe

O4 - HKUS\S-1-5-18\..\Run: [DelayShred] c:\PROGRA~2\mcafee\mshr\ShrCL.EXE /P4 /q C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\AN SWER~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\AD S_7_~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\SZWH7TO2\HO ME_1~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\PNQ3V63Y\AD S_5_~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\PH ASE1~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\SZWH7TO2\AD S_10~1.SH! (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DelayShred] c:\PROGRA~2\mcafee\mshr\ShrCL.EXE /P4 /q C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\AN SWER~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\AD S_7_~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\SZWH7TO2\HO ME_1~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\PNQ3V63Y\AD S_5_~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\VLRT30DF\PH ASE1~1.SH! C:\Users\Matthew\AppData\Local\MICROS~1\Windows\TE MPOR~1\Content.IE5\SZWH7TO2\AD S_10~1.SH! (User 'Default user')
__________________
Never take life seriously; nobody gets out alive anyway.
Reply With Quote
  #3 (permalink)   Top
Old 16th February 2010, 09:47 PM
Matt77's Avatar
Newcomer
 
Join Date: Feb 2010, 2 posts.
Reputation: Matt77 is on a distinguished road
HJT log done. Thank you! Two logs to go!

Thank you Albert! I have fixed the entries that you specified.

Matthew
Reply With Quote
  #4 (permalink)   Top
Old 13th March 2010, 12:26 PM
enricklary's Avatar
Newcomer
 
Join Date: Mar 2010, 1 posts.
Reputation: enricklary is on a distinguished road
Thanks for you suggestion dude. It's helped me a lot,,,
Reply With Quote
Reply

Only registered members can participate in forum threads. You must register or log in to contribute.


Thread Tools

Forum Jump


All times are GMT. The time now is 03:33 PM.






Post A Question!
Useful Links
Main Menu
Home
Forum Rules
FAQ
About Us
Welcome Pack
Search the forums
TST Mobile
Contact Us
Send Message

These are the 18 most used thread tags
Tag Cloud
32-bit cat drivers geforce hardware intel gfxui mobile 4 chipset driers modem monitor network no ring response no signal nvidia soft modem software wifi win7 windows 7