Jump to content

blender

Staff
  • Posts

    1,832
  • Joined

  • Last visited

Everything posted by blender

  1. Thanks. Gimme some time -- till later this afternoon. I have to go to work for a bit & will get back to you. Thanks
  2. Can you verify for me that this file actually exist: C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ASWLNPkg.dll Also -- Locate c:\Qoobox\Quarantine\Registry_Backups, zip it up & upload to the following site: http://www.uploadmalware.com Include link to this thread so I know who's file it is. Thanks
  3. Can you get online at all or is it mainly security sites, av update sites blocked?
  4. Hi, Reboot & try internet again please. If it works -- let me know if your AVG & such will connect to update. Can you get Spybot running to disable TeaTimer? See if you can get that disabled please. Thanks
  5. Hi, Thanks for the log. Please disable SpybotSD TeaTimer, as it may hinder the removal of the infection. You can enable it after you're clean. To disable SpybotSD TeaTimer: 1.) Open Spybot and click on Mode and check Advanced Mode 2.) Check yes to next window. 3.) Click on Tools in bottom left hand corner. 4.) Click on System Startup icon. 5.) Uncheck Teatimer box. (resident) 6.) Click Allow Change box. 7.) Reboot You can follow this link if you need help: http://russelltexas.com/malware/teatimer.htm Download this file, save it to the desktop & run it: http://downloads.subratam.org/ResetTeaTimer.bat It will "reset" teaTimer so it forgets bad stuff that may have been allowed earlier. --------------------------------------------- If you can't download ComboFix from infected computer then download it to the one you are on now & transfer it to infected one. Download Combofix from any of the links below. You must rename it before saving it. Save it to your desktop. Link 1 Link 2 Link 3 -------------------------------------------------------------------- Double click on Combo-Fix.exe & follow the prompts. When finished, it will produce a report for you. Please post the C:\ComboFix.txt so we can continue cleaning the system. Note: Do not mouseclick combofix's window while it's running. That may cause it to stall Let me know how machine is running please. There may be more work to do so don't run away yet. Thanks
  6. Thanks Shane, Other than AVG not updating it work OK? Locate if present the following file & delete it if present: C:\windows\ntbtlog.txt Restart the computer Just before the OS loading screen starts hit F8 as if going to safe mode. From the advanced boot menu choose "enable boot logging" then hit enter. Post the following file: C:\windows\ntbtlog.txt Thanks
  7. Hi and welcome, I see you have both AVG Antispyware 7.5 & AVG 8.0 installed. Having both will likely conflict because 8.0 has both AV & antispyware. I recommend uninstalling AVG Antispyware 7.5. It will no longer be updated/supported after January 2009. HJT is not telling me much. I'd like to have a deeper look at the system. Please download DDS and save it to your desktop. Disable any script blocking protection Double click dds.scr to run the tool. When done, DDS.txt will open. Click Yes at the next prompt for Optional Scan. Save both reports to your desktop. --------------------------------------------------- Please include the contents of the following in your next reply: DDS.txt Attach the following report to your post by clicking the Manage Attachments button under Additonal Options>Attach Files on the composition page. Browse to where you saved the file, and click Upload. Attach.txt If you can't attach the second log you can copy/paste it in your reply. (it might take 2 replies to get both logs in) Please don't use any other tools unless I ask you or they may hinder our fixes. Thanks Also check your PM please in a few minutes.
  8. Hiya guys & gals, Nice to see familliar faces.
  9. Hi Dakeyras & thanks Hi JeanInMontana & thanks!
  10. Hi, Just dropped in to say hello Many of you likely know me from other sec forums ripping out malware.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.