Member Panel


Sponsors and Ads

Noticeboard

[Fixed] Hijackthis! Logs - [Resolved] virus posted in the Security & Safety forums; Hi could someone please look at this log file. each time I try conect to Google I am directed to another site. I have done scans but still have a ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 03-01-2007
Bronze Member
 
Join Date: Aug 2006
Location: Christchurch
Posts: 64
PC Experience: Some Experience
mahlea - See this Members User comments on their Profile page
Send a message via Skype™ to mahlea
Default [Resolved] virus

Hi could someone please look at this log file. each time I try conect to Google I am directed to another site. I have done scans but still have a problem
Attached Files
File Type: log hijackthis.log (8.8 KB, 5 views)


  #2  
Old 03-01-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,627
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

hello mahlea, and welcome to the forums.....if you could click on the prework link in my signature, that will have you go through some preliminary steps that will clean out some of the nasties in there, and should leave you with two logs, one from AVG and one from HJT. If you could then attach the two logs, we can get started.

Thanks,

v


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall
  #3  
Old 03-02-2007
Bronze Member
 
Join Date: Aug 2006
Location: Christchurch
Posts: 64
PC Experience: Some Experience
mahlea - See this Members User comments on their Profile page
Send a message via Skype™ to mahlea
Default

Hi Valis, I have just done a scan with AVG as you requested and the report says "no problems to report".The Hijack log is already attached. Since yesterday, I have been having major trouble to connect to my ISP as well and getting lots of Zone Alarm alerts also. Got one now. says "New Program Picasa is trying to access the internet. Identification; Not available in Zone Alarm. Application; Picasa Update. exe Destination IP 127.0.0.1: Port 4339
Trust you can help. Mahlea


  #4  
Old 03-03-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,627
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

picasa is a google application that you should be able to remove via start > control panel > add/remove programs > picasa OR google picasa.....did you recently install Comodo AntiSpam? That's causing some blocking on your LSP's but I don't want to remove it if you want it there. That's what's hosing your internet connection......we may just end up yanking it anyhow, we'll see what your response is.....

Thanks,

v


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall
  #5  
Old 03-03-2007
Bronze Member
 
Join Date: Aug 2006
Location: Christchurch
Posts: 64
PC Experience: Some Experience
mahlea - See this Members User comments on their Profile page
Send a message via Skype™ to mahlea
Default

I have been using Comodo for 6 months or more. No trouble with it so far. Would remove it if necessary. I do use Picasa and don't want to lose it if it can be helped.


  #6  
Old 03-03-2007
Bronze Member
 
Join Date: Aug 2006
Location: Christchurch
Posts: 64
PC Experience: Some Experience
mahlea - See this Members User comments on their Profile page
Send a message via Skype™ to mahlea
Default

I have done a second AVG scan Still no problems to report.


  #7  
Old 03-03-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,627
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

I would just allow the picasa to update itself. If it's an app you use, and it's trying to update itself, let it do what it wants.....can't hurt you, let's put it that way.

What problems are you getting from your ISP?


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On

All times are GMT +1. The time now is 04:23 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top