Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: My computer is sending out emails! Virus?  (Read 9681 times)

0 Members and 1 Guest are viewing this topic.

Libera

    Topic Starter


    Rookie

    My computer is sending out emails! Virus?
    « on: August 17, 2010, 04:42:38 PM »
    When I checked my inbox today it told me that I had 31 new messages. This is very unusual! I looked and they are all postmaster delivery failures. I also got an email from my sister, saying that apparently emails are being sent from my address, that I did not send!

    Can this be a virus? I use hotmail, so it is internet based. I changed the password, but I'm afraid it might not be enough?

    I hope someone can help me!
    TIA  :D

    2x3i5x



      Expert
    • Thanked: 127
    • Computer: Specs
    • Experience: Familiar
    • OS: Windows 10
    Re: My computer is sending out emails! Virus?
    « Reply #1 on: August 17, 2010, 04:57:29 PM »
    start reading and following the instructions from this post here

    then a malware specialist can help you faster with your issues.

    Libera

      Topic Starter


      Rookie

      Re: My computer is sending out emails! Virus?
      « Reply #2 on: August 18, 2010, 12:24:54 AM »
      Sorry I did not know.
      I went and followed all the steps, up to running HiJackThis, it won't let me run as administrator... Only gives me the option to open it. Any way around this? Anyways, here are the other logs, hope that's a start!

      Malwarebytes' Anti-Malware 1.46
      www.malwarebytes.org

      Database version: 4442

      Windows 6.0.6002 Service Pack 2
      Internet Explorer 8.0.6001.18943

      8/17/2010 11:20:06 PM
      mbam-log-2010-08-17 (23-20-06).txt

      Scan type: Quick scan
      Objects scanned: 162891
      Time elapsed: 9 minute(s), 8 second(s)

      Memory Processes Infected: 0
      Memory Modules Infected: 0
      Registry Keys Infected: 0
      Registry Values Infected: 0
      Registry Data Items Infected: 0
      Folders Infected: 0
      Files Infected: 0

      Memory Processes Infected:
      (No malicious items detected)

      Memory Modules Infected:
      (No malicious items detected)

      Registry Keys Infected:
      (No malicious items detected)

      Registry Values Infected:
      (No malicious items detected)

      Registry Data Items Infected:
      (No malicious items detected)

      Folders Infected:
      (No malicious items detected)

      Files Infected:
      (No malicious items detected)





      SUPERAntiSpyware Scan Log
      http://www.superantispyware.com

      Generated 08/17/2010 at 08:54 PM

      Application Version : 4.41.1000

      Core Rules Database Version : 5372
      Trace Rules Database Version: 3184

      Scan type       : Complete Scan
      Total Scan Time : 02:13:11

      Memory items scanned      : 803
      Memory threats detected   : 0
      Registry items scanned    : 9274
      Registry threats detected : 1
      File items scanned        : 188536
      File threats detected     : 138

      Adware.MyWebSearch/FunWebProducts
         HKU\S-1-5-21-2649331228-3696308728-864307741-1002\SOFTWARE\FunWebProducts

      Adware.Tracking Cookie
         ads1.msn.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         bannerfarm.ace.advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         flvplayer2.hardsextube.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         hottraffic.nl [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         media.scanscout.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         msntest.serving-sys.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         naiadsystems.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         vidii.hardsextube.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         www.naiadsystems.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         www.pornhub.com [ C:\Users\andy.andy-PC\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\DW68WWCK ]
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\and[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][3].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][4].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][5].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected]*censored*[1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
         C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
         .msnportal.112.2o7.net [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .atdmt.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .questionmarket.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .questionmarket.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .atdmt.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         ads.adultadvertising.net [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         rts.pgmediaserve.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         statse.webtrendslive.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .banners.facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .banners.facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .banners.facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .banners.facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .banners.facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .adxpansion.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .facebookofsex.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .pornayo.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .*adult URL* [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .ero-advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .ero-advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .naiadsystems.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .naiadsystems.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .bannerbobber.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .bannerbobber.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .myroitracking.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .clicksor.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .media6degrees.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .media6degrees.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .ero-advertising.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .doubleclick.net [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .sexcouple.info [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .sexcouple.info [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .sexcouple.info [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]
         .statcounter.com [ C:\Users\andy.andy-PC\AppData\Roaming\Mozilla\Firefox\Profiles\it6pvbu3.default\cookies.sqlite ]

      Trojan.Agent/Gen-Nullo[Short]
         C:\USERS\SANNA\DOWNLOADS\V11_ADOBE_FLASH.EXE

      Salmon Trout



        Genius

        Thanked: 966
        • Yes
      • Computer: Specs
      • Experience: Experienced
      • OS: Other
      Re: My computer is sending out emails! Virus?
      « Reply #3 on: August 18, 2010, 12:40:11 AM »
      Oh, Andy!

      Libera

        Topic Starter


        Rookie

        Re: My computer is sending out emails! Virus?
        « Reply #4 on: August 18, 2010, 08:21:29 AM »
        ???

        Salmon Trout



          Genius

          Thanked: 966
          • Yes
        • Computer: Specs
        • Experience: Experienced
        • OS: Other
        Re: My computer is sending out emails! Virus?
        « Reply #5 on: August 18, 2010, 09:02:20 AM »
        ???

        Quote
        C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
           C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
           C:\Users\andy.andy-PC\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

        Those cookies...



        Salmon Trout



          Genius

          Thanked: 966
          • Yes
        • Computer: Specs
        • Experience: Experienced
        • OS: Other
        Re: My computer is sending out emails! Virus?
        « Reply #6 on: August 18, 2010, 10:35:52 AM »
        Those cookies...

        Quote
        [email protected][2].txt
        [email protected][1].txt
        [email protected][1].txt
        [email protected][2].txt
        [email protected][2].txt
        [email protected][1].txt
        [email protected][2].txt
        *adult URL*
        *adult URL*
        *adult URL*
        *adult URL*
        *adult URL*
        sexcouple.info
        sexcouple.info
        sexcouple.info
        banners.facebookofsex.com
        banners.facebookofsex.com
        banners.facebookofsex.com
        banners.facebookofsex.com
        banners.facebookofsex.com

        Libera

          Topic Starter


          Rookie

          Re: My computer is sending out emails! Virus?
          « Reply #7 on: August 18, 2010, 01:10:50 PM »
          That's probably how my computer got messed up yes. But pointing that out won't help me fix it, and I am not the one visiting those sites. My dear brother in law has already had his *censored* chewed over it, now I just need help fixing it.... :(

          Libera

            Topic Starter


            Rookie

            Re: My computer is sending out emails! Virus?
            « Reply #8 on: August 18, 2010, 07:37:34 PM »
            I tried running HiJack again, but it will not let me run it as administrator!!
            Trying to re download it now, maybe that will fix it?

            Libera

              Topic Starter


              Rookie

              Re: My computer is sending out emails! Virus?
              « Reply #9 on: August 18, 2010, 07:51:00 PM »
              Here is the log I got, without running it as administrator:



              Logfile of Trend Micro HijackThis v2.0.4
              Scan saved at 7:04:49 PM, on 8/18/2010
              Platform: Windows Vista SP2 (WinNT 6.00.1906)
              MSIE: Internet Explorer v8.00 (8.00.6001.18943)
              Boot mode: Normal

              Running processes:
              C:\Windows\system32\Dwm.exe
              C:\Windows\system32\taskeng.exe
              C:\Windows\Explorer.EXE
              C:\Windows\sttray.exe
              C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
              C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe
              C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
              C:\Windows\System32\igfxpers.exe
              C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe
              C:\Program Files\McAfee.com\Agent\mcagent.exe
              C:\Windows\System32\igfxtray.exe
              C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
              C:\Windows\System32\hkcmd.exe
              C:\Program Files\CyberLink\PCM4Everio\EverioService.exe
              C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
              C:\Program Files\Common Files\Java\Java Update\jusched.exe
              C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              C:\Windows\ehome\ehtray.exe
              C:\Program Files\Windows Media Player\wmpnscfg.exe
              C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
              C:\Windows\ehome\ehmsas.exe
              C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe
              C:\Windows\System32\mobsync.exe
              C:\Windows\system32\wbem\unsecapp.exe
              C:\Program Files\Mozilla Firefox\firefox.exe
              C:\Program Files\Mozilla Firefox\plugin-container.exe
              C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://login.live.com/login.srf?id=2&svc=mail&cbid=24325&msppjph=1&tw=900&fs=1&lc=1033&_lang=EN
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=GT5428
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=GT5428
              R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
              R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O1 - Hosts: ::1 localhost
              O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
              O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
              O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll
              O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
              O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\google\BAE.dll
              O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
              O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
              O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
              O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
              O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
              O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
              O4 - HKLM\..\Run: [CCUTRAYICON] C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
              O4 - HKLM\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup
              O4 - HKLM\..\Run: [McAfeeUpdate] "C:\Program Files\McAfee\MSC\McUpdUtl.exe" /RunKey
              O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
              O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\4.0"
              O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
              O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
              O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
              O4 - HKLM\..\Run: [mcagent_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
              O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
              O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
              O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
              O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
              O4 - HKLM\..\Run: [EverioService] "C:\Program Files\CyberLink\PCM4Everio\EverioService.exe"
              O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
              O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
              O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
              O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
              O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
              O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
              O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
              O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
              O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
              O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
              O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
              O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
              O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe (file missing)
              O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
              O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
              O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
              O15 - Trusted Zone: http://mvooren.hyves.net
              O15 - Trusted Zone: *.hyves.nl
              O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
              O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
              O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
              O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
              O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
              O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
              O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
              O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
              O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
              O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
              O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
              O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
              O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
              O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
              O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
              O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
              O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
              O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
              O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

              --
              End of file - 11142 bytes

              SuperDave

              • Malware Removal Specialist


              • Genius
              • Thanked: 996
              • Certifications: List
              • Experience: Expert
              • OS: Windows 8
              Re: My computer is sending out emails! Virus?
              « Reply #10 on: August 23, 2010, 04:17:01 PM »
              Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer. I am working under the guidance of one of the specialist of this forum so it may take a bit longer to process your logs.

              1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
              2. The fixes are specific to your problem and should only be used for this issue on this machine.
              3. If you don't know or understand something, please don't hesitate to ask.
              4. Please DO NOT run any other tools or scans while I am helping you.
              5. It is important that you reply to this thread. Do not start a new topic.
              6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
              7. Absence of symptoms does not mean that everything is clear.

              Open HijackThis and select Do a system scan only

              Place a check mark next to the following entries: (if there)

              O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe (file missing)
              O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
              O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)

              Internet Explorer's security is based upon a set of zones. Each zone has different security in terms of what scripts and applications can be run from a site that is in that zone. There is a security zone called the Trusted Zone. This zone has the lowest security and allows scripts and applications from sites in this zone to run without your knowledge. It is therefore a popular setting for malware sites to use so that future infections can be easily done on your computer without your knowledge as these sites will be in the Trusted Zone. Therefore, I recommend that nothing be allowed in the trusted zone. If you agree, please do the following.Please place a check mark next to this/these line/lines.

              O15 - Trusted Zone: http://mvooren.hyves.net
              O15 - Trusted Zone: *.hyves.nl


              Important: Close all open windows except for HijackThis and then click Fix checked.

              Once completed, exit HijackThis.
              ***************************************
              Download Security Check by screen317 from one of the following links and save it to your desktop.

              Link 1
              Link 2

              * Unzip SecurityCheck.zip and a folder named Security Check should appear.
              * Open the Security Check folder and double-click Security Check.bat
              * Follow the on-screen instructions inside of the black box.
              * A Notepad document should open automatically called checkup.txt
              * Post the contents of that document in your next reply.

              Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

              ********************************************
              Download ComboFix by sUBs from one of the below links. 

              Important! You MUST save ComboFix to your desktop

              link # 1
              Link # 2

              Temporarily disable your Anti-virus and any Antispyware real time protection before performing a scan. Click this link to see a list of security programs that should be disabled and how to disable them.

              Double click on ComboFix.exe & follow the prompts.

              Vista users Right-Click on ComboFix.exe and select Run as administrator (you will receive a UAC prompt, please allow it)

              Do not mouse-click ComboFix's window while it is running. That may cause it to stall.

              When the scan completes it will open a text window.
               
              Post the contents of that log in your next reply.

              Remember to re-enable your Anti-virus and Antispyware protection when ComboFix is complete.

              Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

              Libera

                Topic Starter


                Rookie

                Re: My computer is sending out emails! Virus?
                « Reply #11 on: September 02, 2010, 04:26:20 PM »
                Thank you for your reply, I am sorry for not getting back here sooner. I went on vacation... But now I'm ready to fix my computer!

                I followed all your instructions on fixing the lines in HiJackThis and running Security Check, but it will not let me download Combofix!! When I try, I get a McAfee pop-up telling me that it blocked and removed a Trojan... (something "Artemis") So I couldn't run that one. Am I doing it wrong?? I tried saving it to the desktop.

                Here is the SC file:
                 Results of screen317's Security Check version 0.99.5 
                 Windows Vista Service Pack 2 (UAC is enabled)
                 Internet Explorer 8 
                ``````````````````````````````
                Antivirus/Firewall Check:

                 Windows Firewall Enabled! 
                 McAfee SecurityCenter     
                 WMI entry may not exist for antivirus; attempting automatic update.
                ```````````````````````````````
                Anti-malware/Other Utilities Check:

                 Malwarebytes' Anti-Malware   
                 CCleaner     
                 Java(TM) 6 Update 21 
                 Adobe Flash Player 10.0.32.18 
                Adobe Reader 9.1
                Out of date Adobe Reader installed!
                 Mozilla Firefox (3.6.8)
                ````````````````````````````````
                Process Check: 
                objlist.exe by Laurent

                 McAfee VIRUSS~1 mcshield.exe 
                 McAfee VIRUSS~1 mcsysmon.exe 
                 mcafee VIRUSS~1 mcvsshld.exe 
                 mcafee VIRUSS~1 mcvsmap.exe 
                ````````````````````````````````
                DNS Vulnerability Check:

                 GREAT! (Not vulnerable to DNS cache poisoning)

                ``````````End of Log````````````

                2x3i5x



                  Expert
                • Thanked: 127
                • Computer: Specs
                • Experience: Familiar
                • OS: Windows 10
                Re: My computer is sending out emails! Virus?
                « Reply #12 on: September 02, 2010, 04:35:57 PM »
                you should get the latest version of adobe reader with all the latest updates. dave will help you with your other issues, good luck.

                SuperDave

                • Malware Removal Specialist


                • Genius
                • Thanked: 996
                • Certifications: List
                • Experience: Expert
                • OS: Windows 8
                Re: My computer is sending out emails! Virus?
                « Reply #13 on: September 02, 2010, 06:44:22 PM »
                Please download the newest version of Adobe Acrobat Reader from Adobe.com

                Before installing: it is important to remove older versions of Acrobat Reader since it does not do so automatically and old versions still leave you vulnerable.
                Go to the Control Panel and enter Add or Remove Programs.
                Search in the list for all previous installed versions of Adobe Acrobat Reader. Uninstall/Remove each of them.

                Once old versions are gone, please install the newest version.
                **********************************
                Please download ComboFix on another computer and transfer it to your computer using this method. If your AV blocks ComboFix from running, please disable it. ( make sure you physically disconnect your computer from the internet while your AV is disabled.)

                If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
                Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

                Libera

                  Topic Starter


                  Rookie

                  Re: My computer is sending out emails! Virus?
                  « Reply #14 on: September 02, 2010, 08:58:55 PM »
                  I downloaded the new Acrobat Reader. My internet connection is fine, it somehow just won't let me download the Combfix tool. But I will try to use a different computer and get it that way!