Member Panel


Sponsors and Ads

Live Tag Cloud

[Fixed] Hijackthis! Logs - [Fixed] Help!! posted in the Security & Safety forums; so im new and a total pc ****** i think iv got a virus on my pc as this little thing keeps poping up saying my computer is infected ! ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 07-09-2006
stevenh's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 56
stevenh - See this Members User comments on their Profile page
Default [Fixed] Help!!

so im new and a total pc ******

i think iv got a virus on my pc as this little thing keeps poping up saying my computer is infected ! so i did the HIJACK THIS thing and these are the results

what the hell is it all ??????
i also have when opening my internet page about blank help help help help help !!!!
Attached Files
File Type: txt hjt.txt (8.2 KB, 6 views)



Last edited by joe5; 07-09-2006 at 04:04 PM.
  #2  
Old 07-09-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Hya Steven , welcome to PCHF.


Download SmitfraudFix (by S!Ri)
Extract the content (a folder named SmitfraudFix) to your Desktop.
Then boot up in safemode (hit f8 when booting up)

Once in Safe Mode, open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.

A text file will appear onscreen, with results from the cleaning process; please attach that report to your next reply.
The report can also be found at the root of the system drive, usually at C:\rapport.txt

And also attach a new HJT log please.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #3  
Old 07-09-2006
stevenh's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 56
stevenh - See this Members User comments on their Profile page
Default

when i try and go in SAFE MODE i hit f8 on start up and it comes up with

1st floopy device
pm smsung CDRW?DVD SM 308B
4M-maxton 6yo8omo

and it says i need to select one of the above boot devices or something ??



sorry i did say im a pc ****** :P


  #4  
Old 07-10-2006
Pancake's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Victoria, Australia
Posts: 2,534
PC Experience: Elite PC Guru
Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page
Default

Try running the fix in normal mode.It should be fine.


__________________
  • An Australian Member of
  • and
My real name is Eddy
  #5  
Old 07-19-2006
stevenh's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 56
stevenh - See this Members User comments on their Profile page
Default

SmitFraudFix v2.74
Scan done at 16:01:25.73, 19/07/2006
Run from C:\Documents and Settings\Steven.TRIGIGATRON\Desktop\SmitfraudFix\S mitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix ran in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process

»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
C:\WINDOWS\system32\dcomcfg.exe Deleted
Problem while deleting C:\WINDOWS\system32\hp???.tmp
Problem while deleting C:\WINDOWS\system32\hp????.tmp
C:\WINDOWS\system32\ld???.tmp Deleted
C:\WINDOWS\system32\ot.ico Deleted
C:\WINDOWS\system32\simpole.tlb Deleted
C:\WINDOWS\system32\stdole3.tlb Deleted
C:\WINDOWS\system32\ts.ico Deleted
C:\WINDOWS\system32\vpxnk.dll Deleted
C:\WINDOWS\system32\1024\ Deleted
C:\Program Files\SpyHeal\ Deleted
C:\Program Files\SpyQuake2.com\ Deleted
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files

»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

»»»»»»»»»»»»»»»»»»»»»»»» Reboot
C:\WINDOWS\system32\hp???.tmp Deleted
»»»»»»»»»»»»»»»»»»»»»»»» End


it froze on me so i restarted the pc ??
but my warnings gone did it work??


  #6  
Old 07-19-2006
stevenh's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 56
stevenh - See this Members User comments on their Profile page
Default

i still have about blank on internet start up ?



Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 10:51 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top