Jump to content

Jennym

Members
  • Content Count

    217
  • Joined

  • Last visited

About Jennym

  • Rank
    Member

Contact Methods

  • Website URL
    http://
  • ICQ
    0

Profile Information

  • Gender
    Female

Previous Fields

  • Teams:
    Nothing Selected
  1. Thank you Juliet, that's a lot of reading. I have looked at it all quite quickly and bookmarked it all in my favourites. I will have a go at getting on top of it when I'm on holiday next week. As for following instructions...well, I have read some of the other posts on the forum and I did ask myself why some of them bother to ask the experts if they aren't prepared to do as they say. Once again...thanks a million, you are a star!
  2. Hi again Juliet. You didn't ask me to but I've done another HJT log after updating Java. I'm hoping you don't need to tell me I've done it wrong. It's getting rather late for me here, I'm usually in bed a couple of hours ago! Thanks for the info on Recycler (that's more or less what I thought) and Thumbs (boy do I feel thick...I've hidden everything back up again!). I have resolved the rundll error messages as well I had totally forgotten that I have CCleaner on my machine and I usually use it quite regularly, particularly after installing and uninstalling things like Java. L
  3. Logfile of HijackThis v1.99.1 Scan saved at 19:59:56, on 21/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe C:\Program Fil
  4. Hi Juliet I know you do this in your spare time, so I hope it doesn't take you as long to analyze the Kaspersky report as it has taken me to get it to you. It took nearly two hours to complete and it took me nearly an hour to get it broken down into small enough chunks to post. Even I can see that there are still problems on my machine though. Window updates are now working (as far as I am aware) and I'm not being redirected to other websites to download anti spyware stuff either. In fact I personally would say we are back to normal. However, when I went to disable Spywarebla
  5. Logfile of HijackThis v1.99.1 Scan saved at 19:34:41, on 20/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\system32\svchost.exe Z:\Program Files\Lavasoft\aawservice.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE
  6. C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e9ca53b37dff0ca05c4dfa4cc5b307b5_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ea225bc4bc3debde846809ed866ac45c_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ea57c24b4571eb3c9e9e08d68e642466_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Dat
  7. C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c07c15d7f6587e728eab2a5b53dcafd7_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c0ce9fa495896e249ef5ec74f1154b81_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c0dcada740afb12b01833c5621607b24_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Dat
  8. C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\61f67ea5b4d1a33ae88c8ed776669fba_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\622578dcfae6c36a2dc685456beefbe1_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\625f1c2c7800da85166f0d49052333bc_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Dat
  9. C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0c5662b7f3849aa7c17cf138257aa408_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0ccc06337199060c9e25dd91babdabb1_bc3fff19-49d2-469c-a699-d33e62ef917c Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0cf8494e440270680801207674a350bb
  10. ------------------------------------------------------------------------------- KASPERSKY ONLINE SCANNER REPORT Tuesday, May 20, 2008 7:31:16 PM Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.98.0 Kaspersky Anti-Virus database last update: 20/05/2008 Kaspersky Anti-Virus database records: 788187 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: extended Scan Archives: true Scan Mail Bases: true S
  11. Ok, as requested SD fix report (the same one again but I'm doing exactly as you requested) SDFix: Version 1.183 Run by jenny on 19/05/2008 at 17:48 Microsoft Windows XP [Version 5.1.2600] Running From: C:\SDFix Checking Services : Restoring Windows Registry Values Restoring Windows Default Hosts File Rebooting Checking Files : Trojan Files Found: C:\WINDOWS\system32\ctfmona.exe - Deleted Removing Temp Files ADS Check : Final Check : catchme 0.3.1359.2 W2K/XP/Vista - rootkit/stealth ma
  12. and New HJT Log Logfile of HijackThis v1.99.1 Scan saved at 18:08:34, on 19/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\system32\svchost.exe Z:\Program Files\Lavasoft\aawservice.exe C:\WINDOWS\system32\spoolsv.exe C:\
  13. Thanks Juliet Here is SDFix Report SDFix: Version 1.183 Run by jenny on 19/05/2008 at 17:48 Microsoft Windows XP [Version 5.1.2600] Running From: C:\SDFix Checking Services : Restoring Windows Registry Values Restoring Windows Default Hosts File Rebooting Checking Files : Trojan Files Found: C:\WINDOWS\system32\ctfmona.exe - Deleted Removing Temp Files ADS Check : Final Check : catchme 0.3.1359.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit
  14. Please help if you can, Windows update cannot be enabled I get error 1058 and when I follow the instructions enable it I just get the same error message all over again. Windows defender can't download updates either, I get error message 0x80070422. My task Manager keeps on being disabled as well. Spybot has found virtumonde and zlob sownloader...but thy both keep on coming back. Help please, I'm a bit of a novice here. Logfile of HijackThis v1.99.1 Scan saved at 19:06:36, on 18/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Runni
  15. As an addendum to my previous post...I have done all they say to do on this video http://www.youtube.com/watch?v=uCeXNzI_i9g and it still hasn't resolved the problem...although this video plays perfectly I have also tested my download speed and it's over 1MB, not the fastest, but surely should be enough.
×
×
  • Create New...