Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Weird stuff goins on  (Read 3104 times)

0 Members and 1 Guest are viewing this topic.

jimbo8098

    Topic Starter


    Beginner

    Weird stuff goins on
    « on: January 26, 2010, 12:26:53 PM »
    I got a trojan a couple of days ago and i had to reinstall windows (computer wouldnt startup) so i used my sp2 cd and its reinstalled. BUT today i installed ie 7 and ie7 wont startup. IE 5 worked fine but was giving me an error every 5 minutes telling me that live feeds sync encountered a problem...

    I got a bit scared by this so I had a check for malware and found 3. two or 3 trojans... I have now increased my security from normal to high , just to be sure.

    I moved these malware to the chest in avast! but im still not that sure what to do now...


    I am currently working for clicknetworks IT Support. Please feel free to visit our site at http://www.clicknetworks.co.uk

    harry 48



      Egghead

    • lay back , relax and chill out
    • Thanked: 129
      • Yes
      • Yes
      • Yes
      • Dribbling Pensioner
    • Certifications: List
    • Experience: Familiar
    • OS: Windows 7
    Re: Weird stuff goins on
    « Reply #1 on: January 26, 2010, 12:29:10 PM »
    http://www.computerhope.com/forum/index.php/topic,46313.0.html

    go to above and try to complete and post the 3 logs an expert will look at them

    jimbo8098

      Topic Starter


      Beginner

      Re: Weird stuff goins on
      « Reply #2 on: January 26, 2010, 01:09:09 PM »
      ok


      I am currently working for clicknetworks IT Support. Please feel free to visit our site at http://www.clicknetworks.co.uk

      jimbo8098

        Topic Starter


        Beginner

        Re: Weird stuff goins on
        « Reply #3 on: January 26, 2010, 01:10:18 PM »
        I had a look but i cant reply to that topic...


        I am currently working for clicknetworks IT Support. Please feel free to visit our site at http://www.clicknetworks.co.uk

        BC_Programmer


          Mastermind
        • Typing is no substitute for thinking.
        • Thanked: 1140
          • Yes
          • Yes
          • BC-Programming.com
        • Certifications: List
        • Computer: Specs
        • Experience: Beginner
        • OS: Windows 11
        Re: Weird stuff goins on
        « Reply #4 on: January 26, 2010, 01:11:00 PM »
        I had a look but i cant reply to that topic...

        follow the directions and post them in this thread...
        I was trying to dereference Null Pointers before it was cool.

        jimbo8098

          Topic Starter


          Beginner

          Re: Weird stuff goins on
          « Reply #5 on: January 26, 2010, 01:20:19 PM »
          Heres MBAMs log. Dont look to interesting really but it seems that one infection was found and eradicated:

          =====================================

          Malwarebytes' Anti-Malware 1.43
          Database version: 3496
          Windows 5.1.2600 Service Pack 3
          Internet Explorer 8.0.6001.18702

          05/01/2010 21:38:07
          mbam-log-2010-01-05 (21-38-07).txt

          Scan type: Full Scan (C:\|)
          Objects scanned: 270676
          Time elapsed: 2 hour(s), 56 minute(s), 49 second(s)

          Memory Processes Infected: 0
          Memory Modules Infected: 0
          Registry Keys Infected: 0
          Registry Values Infected: 0
          Registry Data Items Infected: 1
          Folders Infected: 0
          Files Infected: 0

          Memory Processes Infected:
          (No malicious items detected)

          Memory Modules Infected:
          (No malicious items detected)

          Registry Keys Infected:
          (No malicious items detected)

          Registry Values Infected:
          (No malicious items detected)

          Registry Data Items Infected:
          HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

          Folders Infected:
          (No malicious items detected)

          Files Infected:
          (No malicious items detected)


          I am currently working for clicknetworks IT Support. Please feel free to visit our site at http://www.clicknetworks.co.uk

          jimbo8098

            Topic Starter


            Beginner

            Re: Weird stuff goins on
            « Reply #6 on: January 26, 2010, 02:35:07 PM »
            Updated and reran malwarebytes and got 3 infected files... Looks like they were all deleted from the logfile.

            ======================================


            Malwarebytes' Anti-Malware 1.44
            Database version: 3642
            Windows 5.1.2600 Service Pack 2
            Internet Explorer 7.0.5730.13

            26/01/2010 21:34:01
            mbam-log-2010-01-26 (21-34-01).txt

            Scan type: Quick Scan
            Objects scanned: 125644
            Time elapsed: 11 minute(s), 19 second(s)

            Memory Processes Infected: 0
            Memory Modules Infected: 0
            Registry Keys Infected: 2
            Registry Values Infected: 1
            Registry Data Items Infected: 0
            Folders Infected: 0
            Files Infected: 0

            Memory Processes Infected:
            (No malicious items detected)

            Memory Modules Infected:
            (No malicious items detected)

            Registry Keys Infected:
            HKEY_CURRENT_USER\SOFTWARE\D9Q071WKGS (Trojan.FakeAlert) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\YNO00BFRKM (Trojan.FakeAlert) -> Quarantined and deleted successfully.

            Registry Values Infected:
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\yno00bfrkm (Trojan.FakeAlert) -> Quarantined and deleted successfully.

            Registry Data Items Infected:
            (No malicious items detected)

            Folders Infected:
            (No malicious items detected)

            Files Infected:
            (No malicious items detected)


            I am currently working for clicknetworks IT Support. Please feel free to visit our site at http://www.clicknetworks.co.uk