Free PC Performance Scan

Member Panel


Sponsors and Ads

Noticeboard

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Fixed] Automatically restart

[Fixed] Hijackthis! Logs - [Fixed] Automatically restart posted in the Security & Safety forums; i hope so, and alway hope to be able to get the excellent solutionsfrom all of you...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #8  
Old 04-15-2006
_l_ _l_ is offline
Bronze Member
 
Join Date: Mar 2006
Posts: 23
_l_ - See this Members User comments on their Profile page
Default

i hope so, and alway hope to be able to get the excellent solutionsfrom all of you


  #9  
Old 04-15-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,036
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

You indeed have a hole bunch of malware on there im afraid.

But did you also do a malware scan with Ewido? If yes , please post the scan log from it , this is only a startup list.
If not , then please follow the instructions for it in the "Prework" link.

Then do a Panda active scan here:

http://www.pandasoftware.com/products/activescan

When done , save the log from it. After that please post the Panda log , the Ewido scan log , and a new hjt log.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #10  
Old 04-15-2006
_l_ _l_ is offline
Bronze Member
 
Join Date: Mar 2006
Posts: 23
_l_ - See this Members User comments on their Profile page
Default

ohh, thanks u so much joe, my computer now is ok,
first i can down ewido because my computer restart
then i scan with panda, i delete to me 26 virus , so much. maybe my antivirus is old
Thanks u alot to everyone , thanks u for help me joe . x


  #11  
Old 04-15-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,036
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Good to hear youre pc is running ok again.

But it is very likely that not everything is gone yet , so it would be a good idea to post the Panda log , and a new hjt log anyway to cleanup any leftovers.

And the subscribtion run out on youre AV and you cant update it anymore? If that is the case then have a look in our download section for some free AV's , you wont have to pay to keep updating those.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #12  
Old 04-16-2006
_l_ _l_ is offline
Bronze Member
 
Join Date: Mar 2006
Posts: 23
_l_ - See this Members User comments on their Profile page
Default u're right

8) , i think there's some problem so i decide down ewido to scan, it find so many infections. Can u view log for me ???
Attached Files
File Type: txt Scan report_20060416.txt.txt (14.8 KB, 1 views)
File Type: log hijackthis.log (6.5 KB, 2 views)


  #13  
Old 04-16-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,036
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Yup , thats what i expected. Ewido removed a hole bunch of infections.

But there is still some left after the Panda and Ewido scan , boot in safemode (hit f8 when booting up) and fix these with Hijackthis:

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O1 - Hosts: 401 Unauthorized
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\System, DisableRegedit=1
And do you know what these entry's are from? It looks like it might be part of an Vietnamese antivirus app or something like that , but as you might have guessed my Vietnamese is not very good , lol.
(DONT FIX THEM YET!)

O4 - HKLM\..\Run: [BkavFw] C:\Program Files\Bkav2005\Bkav2005.exe TASKBAR
O4 - HKCU\..\Run: [D32 Initiation] C:\Program Files\D32\D32Ini.exe
O4 - HKCU\..\Run: [D32 Auto Protect] C:\Program Files\D32\VDetect.exe s

If you dont know what they are from then please upload them to this site one by one:

http://virusscan.jotti.org/

And report back the result please.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #14  
Old 04-17-2006
_l_ _l_ is offline
Bronze Member
 
Join Date: Mar 2006
Posts: 23
_l_ - See this Members User comments on their Profile page
Default

Thanks so much joe5 ,X .
these r some antivirus programs in my country.
In short, my computer gets trouble this time is from a hole bunch of
malware. and ewido removed it out my PC.
ps: 1. can u show me how to get AVG antivirus free ? i 'm going to down it here but it's only triad ?



Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On

All times are GMT +1. The time now is 09:56 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top