Member Panel


Sponsors and Ads

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Fixed] Still not 100% Clean

[Fixed] Hijackthis! Logs - [Fixed] Still not 100% Clean posted in the Security & Safety forums; I had a problem with Virtumonde spyware a few days ago which Pancake helped me to remove but i am still getting winantivirus popups every now and then so something ...

JOIN US NOW to remove these Ads

PC Help Forum, the number one FREE computer support website in the search engines
Post New Thread  Reply
  #1  
Old 07-07-2006
B-2-0's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 7
B-2-0 - See this Members User comments on their Profile page
Default [Fixed] Still not 100% Clean

I had a problem with Virtumonde spyware a few days ago which Pancake helped me to remove but i am still getting winantivirus popups every now and then so something is still not right.

Ewido comes up with just a couple of tracking cookies and from what i can see, my HJT log seems fine. Could someone please give me a second opinion?

Thanks,

B
Attached Files
File Type: log hijackthis.log (3.4 KB, 2 views)
File Type: txt Report-Scan-20060707-133426.txt (1.3 KB, 1 views)


  #2  
Old 07-07-2006
chiaz's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Singapore
Posts: 2,502
PC Experience: PC Guru
chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page
Default

Do you get the winantivirus popups even when you are not actively browsing? If no, do the popups appear when you are on specific site(s)?


  #3  
Old 07-07-2006
B-2-0's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 7
B-2-0 - See this Members User comments on their Profile page
Default

Thanks for the reply.

Am i right in saying my HJT log seems clear?

I have had the winantivirus popup when just on my desktop then even though i press X to close the window it opens FireFox and directs me to the web page. They are very few and far between though....i get maybe 1 every couple of hours.

I have just ran CCleaner and totally flushed out so hopefully it was just the remains of the virtumonde **** and i have now gotten rid.

Will post again if i get another popup.


  #4  
Old 07-07-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Let's see if it isn't still hiding on youre pc:

Please download VundoFix.exe from here , and save it to your desktop.
  • Double-click VundoFix.exe to run it.
  • Put a check next to Run VundoFix as a task.
  • You will receive a message saying vundofix will close and re-open in a minute or less. Click OK
  • When VundoFix re-opens, click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will shutdown your computer, click OK.
  • Turn your computer back on.

Please post the contents of C:\vundofix.txt.

For users who's tool will not reopen automaticly , try moving VundoFix.exe to the root directory (usually c:\) and run it as a task from there.


And i would recommend to update youre Java:

Updating Java:
  • Go to Start > Control Panel double-click on the Software icon > add/remove programs.
  • Search in the list for all previous installed versions of Java. (J2SE Runtime Environment.... )
    It should have next icon next to it:
    Select it and click Remove.
  • Then Download and install the newest version from here:
    http://www.java.com/en/download/manual.jsp


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #5  
Old 07-07-2006
B-2-0's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 7
B-2-0 - See this Members User comments on their Profile page
Default

Hi joe5.

I ran vundofix after i posted earlier, just to make sure i got it all the first time....unfortunately i deleted the log. I have an OCD approach to my desktop y'see

Anyway, i'm glad to report i have not had the popup since my last post so it looks like we got the little critter.

Thanks for the info on updating my java too....i was running the last version rather than the latest so i'll get that updated now.

Thanks for the help guys. You do an awesome service to mankind


  #6  
Old 07-07-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Sounds good sofar.

I'll mark this as Fixed for now , but just report back if it turns out there not gone ofcourse.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -


Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 08:36 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top