Submit Your Article Forum Rules FAQ About Us
Search the forums:

Tech Support Team


Hello and Welcome to Tech Support Team! Before you can start posting and answering questions, you'll have to register. Registration is fast, simple and absolutely free! Feel free to browse through existing questions by choosing the forum you want to visit below.



Notices

Closed Thread
  #1 (permalink)   Top
Old 4th February 2008, 04:23 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
[SOLVED] Possible infection?

Hi,
I don't know what they are, I've had a few folders I haven't made pop up, and spyware doctor found some advertising cookies and 5 of something called 'known_bad_sites' security threat. I got a little worried, so that's why I'm asking. Here are my HJT logs and DSS logs (I can't get CF to work). Thanks
__________________
Gigabyte GA-MA78LMT-US2H / Athlon II X4 630 3.2GHz / OCZ SpecOPS PC3-12800 2x2GB / GF 9800GT 512MB

Last edited by Spleenharvester; 4th February 2008 at 04:40 PM.
  #2 (permalink)   Top
Old 4th February 2008, 08:57 PM
evilfantasy's Avatar
Security Team
 
Join Date: Dec 2007, 2,555 posts.
Location: Tulsa, OK
Reputation: evilfantasy will become famous soon enoughevilfantasy will become famous soon enough
Uninstall
FunWebProducts
MyWebSearch
And any of the Screensavers that were installed from the web. These are loaded with spyware and should be avoided at all costs.

What about the logs from ESET and AVG Antissssspyware?
__________________
.

ƃolq s’ʎsɐʇuɐɟlıʌǝ
  #3 (permalink)   Top
Old 4th February 2008, 09:15 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
Doing my AVG logs now, I'll upload in a minute (make that a few, it's taking its time). How do I remove screensavers?

EDIT:22 infections detected by AVG so far.

P.S.What is ESET?
__________________
Gigabyte GA-MA78LMT-US2H / Athlon II X4 630 3.2GHz / OCZ SpecOPS PC3-12800 2x2GB / GF 9800GT 512MB

Last edited by Spleenharvester; 4th February 2008 at 09:41 PM.
  #4 (permalink)   Top
Old 4th February 2008, 09:34 PM
evilfantasy's Avatar
Security Team
 
Join Date: Dec 2007, 2,555 posts.
Location: Tulsa, OK
Reputation: evilfantasy will become famous soon enoughevilfantasy will become famous soon enough
Quote:
Originally Posted by Spleenharvester View Post
How do I remove screensavers?
Add/remove programs.

Quote:
Originally Posted by Spleenharvester View Post
P.S What is ESET?
STEP 3: of the removal guide.

There is no need to rush logs as each one becomes ready. The removal guide is designed to be worked in the order it is written. Doing things out of step is counter productive.
__________________
.

ƃolq s’ʎsɐʇuɐɟlıʌǝ
  #5 (permalink)   Top
Old 4th February 2008, 10:19 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
AVG found a load of cookies (and 2 traces) which it deleted.
__________________
Gigabyte GA-MA78LMT-US2H / Athlon II X4 630 3.2GHz / OCZ SpecOPS PC3-12800 2x2GB / GF 9800GT 512MB

Last edited by Spleenharvester; 5th February 2008 at 07:17 AM.
  #6 (permalink)   Top
Old 5th February 2008, 02:00 PM
evilfantasy's Avatar
Security Team
 
Join Date: Dec 2007, 2,555 posts.
Location: Tulsa, OK
Reputation: evilfantasy will become famous soon enoughevilfantasy will become famous soon enough
Quote:
Originally Posted by Spleenharvester View Post
AVG found a load of cookies (and 2 traces) which it deleted.
Can you post the log?

How about the ESET log and then a new Hijackthis log.
__________________
.

ƃolq s’ʎsɐʇuɐɟlıʌǝ
  #7 (permalink)   Top
Old 5th February 2008, 02:45 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
Where will I find the log? If it's the report thing I set it to save one but it didn't. I'll upload a some logs in a minute. ESET online found 1 cookie which was deleted.
__________________
Gigabyte GA-MA78LMT-US2H / Athlon II X4 630 3.2GHz / OCZ SpecOPS PC3-12800 2x2GB / GF 9800GT 512MB

Last edited by Howard; 12th February 2008 at 05:59 PM.
  #8 (permalink)   Top
Old 5th February 2008, 03:59 PM
evilfantasy's Avatar
Security Team
 
Join Date: Dec 2007, 2,555 posts.
Location: Tulsa, OK
Reputation: evilfantasy will become famous soon enoughevilfantasy will become famous soon enough
A log is created in C:\Program Files\EsetOnlineScanner\log.txt


Open Hijackthis and select Do a system scan only then place a check mark next toClose all browser windows except Hijackthis and click Fix checked.

----------

Download and install CleanUp!.exe

Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:
  • Click Options...
  • Make sure the arrow is set to Standard CleanUp!
  • Uncheck the following: (if checked)
    • Delete Newsgroup cache
    • Delete Newsgroup Subscriptions
  • Click OK
Click the CleanUp! button to start the program. Reboot/logoff when prompted.

Note: CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp! If you have a 64 bit Operating System do NOT run Cleanup and let me know as we will use another utility

----------

How is the computer now?
__________________
.

ƃolq s’ʎsɐʇuɐɟlıʌǝ

Last edited by evilfantasy; 5th February 2008 at 04:04 PM.
  #9 (permalink)   Top
Old 5th February 2008, 05:29 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
O3 disappeared and 09 has been deleted, doing the cleanup.exe thing now...
The computer is a lot better but still is slow (could just be me though)
I am doing another scan because the log has been overwritten by the looks of it, it's a DSS log.

Last edited by Spleenharvester; 5th February 2008 at 05:39 PM.
  #10 (permalink)   Top
Old 6th February 2008, 02:36 AM
evilfantasy's Avatar
Security Team
 
Join Date: Dec 2007, 2,555 posts.
Location: Tulsa, OK
Reputation: evilfantasy will become famous soon enoughevilfantasy will become famous soon enough
Is everything malware related seem cleared up?

Let's clear out the programs we've been using to clean up your computer, they are not suitable for
general malware removal and could cause damage if launched accidentally.

Download OTMoveIt2 by OldTimer OTMoveIt2.exe and place it on your desktop.

1. Double click OTMoveIt2.exe to launch it.
2. Click on the CleanUp! button.
3. OTMoveIt2 will download a list from the Internet, if your firewall or other defensive programs alerts you, allow it access.
4. Click YES at the next prompt (list downloaded, Do you want to begin cleanup process?)
  • When finished exit out of OTMoveIt2
__________________
.

ƃolq s’ʎsɐʇuɐɟlıʌǝ
  #11 (permalink)   Top
Old 6th February 2008, 02:40 PM
Spleenharvester's Avatar
TST Expert
 
Join Date: Dec 2007, 687 posts.
Reputation: Spleenharvester is on a distinguished road
It now seems to be working fine.

Thanks very much for all the help
__________________
Gigabyte GA-MA78LMT-US2H / Athlon II X4 630 3.2GHz / OCZ SpecOPS PC3-12800 2x2GB / GF 9800GT 512MB
  #12 (permalink)   Top
Old 6th February 2008, 02:54 PM
Howard's Avatar
TST Master
 
Join Date: Dec 2007, 3,366 posts.
Reputation: Howard has a spectacular aura aboutHoward has a spectacular aura about
If you have no further questions could you please mark this topic Solved by going to the top of this thread and click Thread tools, then select Mark this thread as solved As seen in the image below:


If you need this thread re-opened please contact a moderator or PM me.

Regards Howard

This thread is for the use of Spleenharvester only. Please don`t post your own virus/spyware problems in this thread. Instead, open a new thread in our malware Removal forum.
Closed Thread

Only registered members can participate in forum threads. You must register or log in to contribute.


Thread Tools

Forum Jump


All times are GMT. The time now is 11:43 PM.






Post A Question!
Useful Links
Main Menu
Home
Forum Rules
FAQ
About Us
Welcome Pack
Search the forums
TST Mobile
Contact Us
Send Message

These are the 8 most used thread tags
Tag Cloud
geforce modem monitor no ring response no signal nvidia soft modem win7