Home > I Think > I Think I Have A Qoologic-t

I Think I Have A Qoologic-t

Like a dope, I opened it, and in seconds it'd duplicated the IM I received and re-sent it to everyone on my contact list in addition to the Trojan'd file. Want children Marital Status Single Do you do drugs? Community Passion Match Success Stories Help Help Center Forums PlentyOfFish Blog Safety Company Advertising Press Careers Terms of Service Privacy Policy Get the POF Mobile app Countries POF Brasil POF France Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy

Log

Allow this Entire Script to Run, its harmless! Post a new Panda ActiveScan log in your next reply. Advertisement hansmax Thread Starter Joined: Nov 26, 2002 Messages: 690 Does anyone know anything about or know where I can find out something about the Qoologic-T (at least this is what Neither adaware no spybot have helped with the current issue(spybot has found some spysheriff remnants). http://www.bleepingcomputer.com/forums/t/42826/i-think-i-have-a-qoologic-t/

Again thank you David Jason Back to top #4 -David- -David- Members 10,603 posts OFFLINE Gender:Male Location:London Local time:04:57 AM Posted 31 January 2006 - 01:00 PM --> If you Help! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Lexar JD31 (LxrJD31s) EDIT: Just realized that at the time this log was created, I hadn't removed ScanSpyware.

Microsoft Corporation 8/4/2004 12:56:58 AM 68608 C:\WINDOWS\SYSTEM32\access.cpl Microsoft Corporation 8/4/2004 12:56:58 AM 549888 C:\WINDOWS\SYSTEM32\appwiz.cpl Microsoft Corporation 8/4/2004 12:56:58 AM 110592 C:\WINDOWS\SYSTEM32\bthprops.cpl Microsoft Corporation 8/4/2004 12:56:58 AM 135168 C:\WINDOWS\SYSTEM32\desk.cpl Microsoft Corporation 8/4/2004 Several functions may not work. Thread Status: Not open for further replies. Click Select All found at the bottom of the list.

Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... Pentium 4 chip 2.4GHz Windows XP Apr 3, 2006 12:18 PM Helpful (0) Reply options Link to this post by b noir, b noir Apr 3, 2006 1:31 PM NOTE : If you would like to keep your saved passwords, please click No at the prompt. Try MSN now, and see if things are back to normal. 0 OptionsEdit Javer Oct 2007 edited Oct 2007 Everything appears to be in working order.

BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. Show Ignored Content As Seen On Welcome to Tech Support Guy! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Lexar JD31 (LxrJD31s) dvk01, Sep 13, 2005 #4 hansmax Thread Starter Joined: Nov 26, 2002 Messages: 690 Here's WinPFind: (And thanks, dvk01) WARNING: not all files found by this scanner are bad.

Click here to Register a free account now! Activescan2.txt 5K 0 chiaz Oct 2007 edited Oct 2007 Well the Panda ActiveScan appears clean. A Short-Media community © 2003–2017. Well it's a program that is simply able to show others what's going on inside your computer, in terms of infection etc..If you have Qoologic it can be a real bugger

You will do that later in safe mode. * Click here for info on how to boot to safe mode if you don't already know how. If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. No, create an account now. If you use Opera browser, do this also: Click Opera at the top and choose Select All from the list.

PTech 8/3/2004 10:41:38 PM 1309184 C:\WINDOWS\SYSTEM32\drivers\mtlstrm.sys Items found in C:\WINDOWS\SYSTEM32\drivers\etc\hosts Checking the Windows folder and sub-folders for system and hidden files within the last 60 days... 9/13/2005 3:46:42 PM S 2048 Scan completed on 9/13/2005 3:54:06 PM And here's Track qoo: REGEDIT4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SmcService"="C:\\PROGRA~1\\Sygate\\SPF\\smc.exe -startgui" "avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe" "gcasServ"="\"C:\\Program Files\\Microsoft AntiSpyware\\gcasServ.exe\"" "Cobian Backup 6"="\"C:\\Program Files\\Cobian Backup 6\\CobBU.exe\"" "Lexmark X83 Button Monitor"="C:\\PROGRA~1\\LEXMAR~1\\ACMonitor_X83.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" repaired and reinstall itunes several times. If you use Firefox browser, do this also: Click Firefox at the top and choose Select All from the list.

Go to where you saved the log and click on "Edit > Select All" then click on "Edit > Copy" then Paste the log back here in a reply. Although I don't think I need it at this time I have looked at the website and see it is a free trial version. All rights reserved.

Apr 2, 2006 6:26 PM Helpful (0) Reply options Link to this post by Katrina S., Katrina S.

Advertisement Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Home Forums Forums Quick Links Search Forums Recent Posts Members Members Quick Links Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. good to see you again.1) do you know if Norton have caught up with the Qoologic adware yet?(sigh) i don't know. What do I do? 0 user(s) are reading this topic 0 members, 0 guests, 0 anonymous users Reply to quoted postsClear BleepingComputer.com → Security → Am I infected?

At the end of the test phase, the extensions of the plus version are deactivated and the freeware version can be used unlimited times.... BLEEPINGCOMPUTER NEEDS YOUR HELP! If anyone thinks that can help, I'll be patiently waiting in norther MI. Say hello!

hansmax, Sep 12, 2005 #1 Sponsor dvk01 Derek Moderator Malware Specialist Joined: Dec 14, 2002 Messages: 50,441 Every AV company has a different name for it go to here and good question ...okay, the Ewido download page says this:This setup contains the free as well as the plus-version of the ewido security suite. if i try to straight up delete the files my computer crashes or freezes up....how can I get these pests off of my HD? Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

I don't believe it will but should I do a normal boot (not selective startup) for the hijack this log? Once the Scan is Complete Go to the WinPFind folder Locate WinPFind.txt Place those results in the next post! preferences »»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»» [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform] SV1 = [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] [HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers] HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\avast {472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\Alwil Software\Avast4\ashShell.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Offline Files {750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast!

Someone here will be happy to help you analyze the results. i have tried all the suggestions and read all the forum solutions but none have worked for me. I feel I have an obligation to fix it since I'm the one that messed it up.