Home > Infected By > Infected By Viruswebprotect2008

Infected By Viruswebprotect2008

Heather R. Remove a band from each decade? Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file) O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [IAAnotif] CONTRIBUTE TO OUR LEGAL DEFENSE All unused funds will be donated to the Electronic Frontier Foundation (EFF). weblink

Hijack This in safe mode says> Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:47:30, on 2008-08-17 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: It did... 173 listings for trojan horse Vundo.J C:\WINDOWS\system32\yayaXQgE.dll. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:46:35, on 2008-08-18 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe double check if the wares are removed using Trend Micro HijackThis , u can search on download.com for the file. 3. https://www.bleepingcomputer.com/forums/t/161994/viruswebprotect2008com-hijacked-my-computer/

The message I get is that I can't access Windows Installer or I'm running in safe mode. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowSearch (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9e.exe O4 - S-1-5-18 Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'SYSTEM') O4 - S-1-5-18 Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'SYSTEM') O4 - .DEFAULT Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). I left it on for at least two hours and got nothing. _________________ Admin - GunZ Wikia | Moderator - OwlMS Back to top LocalhostI post too muchReputation: 0Joined: 28 Apr It is ONLY meant to be used under the direct supervision of a malware removal specialist.

Jump to content Build Theme! I suffered multiple viruses and trojans when using McAfee. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowMyComputer (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully. i thought about this it will not be as worse as changing the time to add the word "VIRUS alert", change theme and even cant login as admin...

http://www.webmaster-source.com Matt @Hendry, I agree, it's best to have your own computer if possible. After logging in to windows i get a bluescreen. Please run the chkdsk utility. Follow Us Facebook Twitter Help Community Forum Software by IP.BoardLicensed to: What the Tech Copyright © 2003- Geeks to Go, Inc.

it may be on the HD so run it. Virus cleanup? Hides the "All Programs" menu in the Start Menu, as well as "Run," "Control Panel," and the like. (Though you can still press Windows+R and use it to access "C:\," and It takes just 2 minutes to sign up (and it's free!).

I wonder how he got infected? have a peek at these guys Forgot to say that I always use HiJackThis (Merijn as was/Trend Micro now). Just trying to give the most specific information. Rewards LinkBack LinkBack URL About LinkBacks Home Archives WP Plugins About Subscribe ▾ RSS Feed Twitter Email Updates Today's Lesson: Maintain and Protect Your Blogging Workstation Jul 8, 2008 by Matt

So I started the computer in safe mode and log as the administrator (with password) then I run this programs: SDFix Mbam Malwarebytes ATF Cleaner They found and eliminated more than See screenshots, TS using firefox. When I try to log on to my friend's account (he uses my laptop to play CounterStrike, etc), I can use the Task Manager. check over here Chkdsk cannot run because the volume is in use by another process.

And I cant so please help. Does this computer have 2 drives? C:\WINDOWS\system32\xzprfz.dll (Trojan.Vundo) -> Delete on reboot.

Back to top MadmanI post too muchReputation: 1Joined: 04 May 2006Posts: 3973 Posted: Thu Jun 12, 2008 9:17 pm Post subject: That sounds like a shit load of viruses to me,

C:\WINDOWS\tfnslopk.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispCPL (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. C:\Documents and Settings\DRAGAN\Local Settings\Temp\bindsrv2.exe (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.

I run my antivirus and firewall and adblock plus on firefox. but then heck.. then run: Malwarebytes Anti-Malware 1.17 http://www.majorgeeks.com/Malwarebytes_A... this content After that I'll wait and try backing up the important files and deleting the accounts.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.