Jump to content

dmb8886

Honorary Members
  • Posts

    35
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Hi Elise, any solution to the number of files? Avira didn't find any issues with my computer. My issue though was more that it seems to me that over 1 million objects on my computer is insane. Is there anything I can do about this? There's no way at least half or 75% of those files are useful to me I'd think.
  2. Hi Elise, sorry to drag this on since we're basically done. But I don't know why, I don't think I have so much stuff on this computer. But downloaded Avira and ran it yesterday. It takes SOOO long to scan, I forget how long, but it basically makes my computer unusable during it and even got a windows virtual memory warning while doing so. It said it scanned over 1,000,000 objects during the scan. I feel like some virus or something I got must have created a ton of files, is that possible? There's no reason I should have so many files on my computer, do you have any advice there? When the scan finished I clicked on the report button and the report was too big to export to a .txt document so I couldn't even do it. Which then makes it a big hassle to have to run the virus scan every so often. Any ideas?
  3. Thanks again! Sorry, one last question, is there ever a need to run a full MBAM scan?
  4. oops, forgot the screengrab attachments relating to number 5 above, here they are
  5. Hi Elise, thanks for everything. I have a handful of last questions for you. 1) Should I re-anable De-Fogger? 2) Should I un-install ERUNT? 3) While my computer runs MUCH quicker and better, or even at all lol. I feel its still bogged down somewhat. When I do CTRL+ALT+DELETE there are so many processes running at once, I feel there are some unnecessary things going on. I uploaded a 2 screen grab images showing all of the running processes. Do these look normal, can some be rid of? A while back I got rid of a bunch of startup but there are still so many processes. 4) This started happening a long time ago, but some of the files in my folder window, show up blue instead of the normal black font. Do you know why this is? Wasn't sure if it was part of a virus or something. I can take a screengrab if need be. 5) Just want to confirm that I'm totally safe to start using everything on my computer the normal way. I want to use Outlook again for my mail, want to start paying with my credit card on websites, want to connect to a really important shared file server. The file server especially it would be really bad if something bad got on there as I run a home business off of it. 6) I've used Spybot S&D, I feel this bogs my system down adn always asks about file/registry change and I never know what answer I should give. Should I get rid of this program, or do you think I need it in addition to what you've mentioned? 7) I've had McAfee, but I got this virus while using it (though probably from visiting some sites I shouldn't have clicked on). I'm willing to get rid of it for MBAM, from your post you seem to think that could be a good idea. Just want to confirm? 8) I think what you guys do here on this forum is incredible. Its charity work, and its really special that you take your time to do this. I would like to make a small donation in your name or at least just your honor. Is there a charity of choice you prefer? I can't say enough about what you and others do on this site to help people.
  6. Wow, it was a 7 hour scan approximately. I didn't chose the option to delete quarantined files after I clicked "Finish", was I supposed to? Here are the results: C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DNSFlushcws1.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DNSFlushcws11.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DNSFlushcws6.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudC3.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentieu.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined C:\Documents and Settings\Steve H\DoctorWeb\Quarantine\msxm192z.dll a variant of Win32/PSW.WOW.NNZ trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\CXY38XUN\load[1].php Win32/TrojanDropper.Agent.NII trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\CXY38XUN\undefined[1].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\OLAN8LU7\svc[1].php Win32/TrojanClicker.Delf.NID trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\OLAN8LU7\svc[2].php Win32/Adware.Coolezweb.AW application cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[1].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[2].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[3].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[4].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[5].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[6].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[8].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\Y3GV2JYT\undefined[9].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Documents and Settings\Steve H\Local Settings\Temporary Internet Files\Content.IE5\YDMLK1CB\undefined[1].htm HTML/Exploit.DialogArg trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\hcel.exe.vir Win32/Oficla.G trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\niawndos.exe.vir Win32/Oficla.G trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\umoikchf.exe.vir Win32/TrojanDownloader.Small.OOC trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\msa.exe.vir Win32/TrojanDownloader.FakeAlert.AGL trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\msb.exe.vir Win32/TrojanDownloader.FakeAlert.AGL trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\sv2.exe.vir a variant of Win32/Adware.Coolezweb.AZ application cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\Fonts\cooecp.tlb.vir Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\Fonts\logcde.dll.vir Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\Fonts\windef.dll.vir Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\Fonts\windef.Log.vir Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\Fonts\winpaged.ocx.vir Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\6to4v32.dll.vir Win32/Agent.PMG trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\braviax.exe.vir a variant of Win32/Kryptik.ACE trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\netlogon.dll.vir a variant of Win32/Kryptik.YQ trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\pac.txt.vir probably a variant of Win32/TrojanDownloader.Agent.JXCMRQU trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\wiawow32.sys.vir a variant of Win32/TrojanClicker.VB.NJO trojan cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\wiwow64.exe.vir Win32/Adware.Coolezweb application cleaned by deleting - quarantined C:\Qoobox\Quarantine\C\WINDOWS\system32\wbem\proquota.exe.vir a variant of Win32/Kryptik.XS trojan cleaned by deleting - quarantined C:\_OTL\MovedFiles\04162011_122113\C_WINDOWS\system32\msflpr.exe Win32/TrojanClicker.VB.NIM trojan cleaned by deleting - quarantined C:\_OTL\MovedFiles\04162011_122113\E_\autorun.inf Win32/PSW.OnLineGames.NMY trojan cleaned by deleting - quarantined
  7. Hi Elise, just noticed that all the images for your ESET Online Scanner instructions aren't showing up.
  8. Seem to be running even better. There are a handful of files in the quarantine tab of MBAM, should I click on "delete all" for those files? I will run another quick scan. Thanks, you've been great!
  9. Also, when I restarted nothing happened relating to the program when I started up again. Should MBAM have opened again or done anything else since it mentioned to restart to complete the process? Thanks!
  10. Just posted the results right before your post in case you missed it.
  11. Finished scanning with MBAM and I'm about to reboot to finished the removal process. Here are the results first: Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Database version: 6375 Windows 5.1.2600 Service Pack 2 Internet Explorer 8.0.6001.18702 4/16/2011 3:46:41 PM mbam-log-2011-04-16 (15-46-41).txt Scan type: Quick scan Objects scanned: 220561 Time elapsed: 1 hour(s), 14 minute(s), 46 second(s) Memory Processes Infected: 1 Memory Modules Infected: 1 Registry Keys Infected: 21 Registry Values Infected: 11 Registry Data Items Infected: 2 Folders Infected: 0 Files Infected: 124 Memory Processes Infected: c:\WINDOWS\system32\sofatnet.exe (Backdoor.Bot) -> 2232 -> Unloaded process successfully. Memory Modules Infected: c:\WINDOWS\system32\evdoserver.dll (Trojan.Agent) -> Delete on reboot. Registry Keys Infected: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sofatnet (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (Adware.Minibug) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{3C2D2A1E-031F-4397-9614-87C932A848E0} (Adware.Minibug) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{04A38F6B-006F-4247-BA4C-02A139D5531C} (Adware.Minibug) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\MiniBugTransporter.MiniBugTransporterX.1 (Adware.Minibug) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\MiniBugTransporter.MiniBugTransporterX (Adware.Minibug) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{E24211B3-A78A-C6A9-D317-70979ACE5058} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{500BCA15-57A7-4EAF-8143-8C619470B13D} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{500BCA15-57A7-4EAF-8143-8C619470B13D} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\idid (Trojan.Sasfix) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\WR (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Monopod (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\NordBull (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDORSYS (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NetLogin (Trojan.Downloader) -> Quarantined and deleted successfully. Registry Values Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\UpdateNew (Malware.Trace) -> Value: UpdateNew -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\uid (Malware.Trace) -> Value: uid -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\i (Malware.Trace) -> Value: i -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\mEv (Malware.Trace) -> Value: mEv -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\BuildW (Malware.Trace) -> Value: BuildW -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\mso (Malware.Trace) -> Value: mso -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Update (Malware.Trace) -> Value: Update -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\Ulrn (Malware.Trace) -> Value: Ulrn -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\FirstInstallFlag (Malware.Trace) -> Value: FirstInstallFlag -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\guid (Malware.Trace) -> Value: guid -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\udso (Malware.Trace) -> Value: udso -> Quarantined and deleted successfully. Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Folders Infected: (No malicious items detected) Files Infected: c:\WINDOWS\system32\evdoserver.dll (Trojan.Agent) -> Delete on reboot. c:\WINDOWS\system32\sofatnet.exe (Backdoor.Bot) -> Quarantined and deleted successfully. c:\criqmsck.exe (Trojan.Dropper) -> Quarantined and deleted successfully. c:\phheq.exe (Trojan.Dropper) -> Quarantined and deleted successfully. c:\windows\system32\msksifd.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msrwjdx.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msuogtk.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mspsocb.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msqtmikc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msqzroj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msrdkop.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msrivy.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msrua.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msiuxuhp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjcwhs.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjeyir.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjivgq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjjjcmx.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjqj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjvk.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjyokxn.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msjyyvrf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mskexsp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mskguo.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mskqfl.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mskqi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msdcuoh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msdwgfgu.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msdxapzp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mseekj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mseglnn.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mserxs.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msespf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msgsuvn.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msgxmm.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msgymf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mshhfoag.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mshphxxr.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mshqc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mshqzfil.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mshsfxv.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mschgh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msclkdc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mscyc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msczcb.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msvxwzm.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msvyuv.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msvzdtoe.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mswpwjxi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mswvhvvu.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msxemf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msxljh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstatkow.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstbl.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstchb.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstghfx.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstocs.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstutzw.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mstzcxzj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msuji.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msukzvia.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msumpq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msums.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msunwa.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\dvdpaly.exe (Backdoor.Bot) -> Quarantined and deleted successfully. c:\windows\system32\msopavbm.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msorc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msosplim.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msovuz.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msozdh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mspgtm.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msphkg.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mspiwxeq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mspmdcwf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mspnzat.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msfdv.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msfjl.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msftep.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msftukjl.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msfyic.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msfylz.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msfzfcf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msghoxuc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msghpcdr.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msgoq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msryqxe.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msryxox.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msrzwcp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssbzgk.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msscgztb.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssdia.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssgyfdg.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssto.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssunq.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mssweys.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msyfb.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msyjjwf.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msyqtwlh.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msyyrivj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mszeptw.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mszfp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msznrkr.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mszqoi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msztnghe.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mskyz.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mslklna.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mslrxe.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msluaj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mslxi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\mslzyxik.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msmkyqnz.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msncnl.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msnexgp.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msngknfi.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msnid.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msnkj.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msnnvu.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msnos.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msibfrc.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msibhhk.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\windows\system32\msintw.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\vkywt.exe (Trojan.Downloader) -> Quarantined and deleted successfully. c:\WINDOWS\Tasks\{7b02ef0b-a410-4938-8480-9ba26420a627}.job (Trojan.Downloader) -> Quarantined and deleted successfully. c:\WINDOWS\Tasks\{bb65b0fb-5712-401b-b616-e69ac55e2757}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
  12. Sorry to post so many updates along the way, but while that was running, my McAfee which I thought was disabled detected and removed a ton of trojans there were so many I couldn't keep up but some most of them that I saw were under the name "Generic Dropper!km" in the location "windows\system32" folder with different tons of instances of the file names, one example is "mskguo.exe". I also saw another trojan I caught out of my eye that it found called "Aretemis_______" didn't see the rest of the name after the word Artemis. Will post MBAM results when its finished.
  13. Hi Elise, before I read your message I went to install the java updates and it gave me an error saying it couldn't install because the computer was currently installing another program (even though I wasn't). So I went to do a restart, and it was automatically showing a lot of end process including a few that said "sprtcmd.exe". Also at the same time an error window popped up saying "Wscript.ext - DLL initialization failed" with the description "The application failed to initialize because the windows station is shutting down". I am running MBAM right now though it appears to be going pretty damn slow, I will post the results when finished. Thanks!
  14. Hi Elise, to update the computer is running better than it had last I remember it a long long time ago in normal mode. Its really slow and bogged down feeling though. I tried using IE and it was working and connected to the web and went to some sites. But after a few minutes of using it the window just quit/disappeared. Let me know what you think I should do next. I'm also installing the java update at the moment. Thanks!
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.