Member Panel


Sponsors and Ads

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » Packer.Malware.NSAnti.J

[Fixed] Hijackthis! Logs - Packer.Malware.NSAnti.J posted in the Security & Safety forums; Hi, This virus has infected my comp and those 2 files get created on every partition. -Also because of that not able to un-hide hidden files. -Each partition opens in ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 01-06-2008
gandalf7's Avatar
New Poster
 
Join Date: Jan 2008
Posts: 1
PC Experience: Some Experience
gandalf7 - See this Members User comments on their Profile page
Default Packer.Malware.NSAnti.J

Hi,
This virus has infected my comp and those 2 files get created on every partition.
-Also because of that not able to un-hide hidden files.
-Each partition opens in a new window.
-I don't know if its related but since the infection, Sygate firewall and Yahoo Messenger aren't working, thy just start-up and auto-exit within seconds.

I think i have the same problem as this thread here and am attaching the logs...

http://www.pchelpforum.com/hijackthi...ikes-back.html


BitDefender Online Scanner - Real Time Virus Report


Generated at: Sun, Jan 06, 2008 - 18:52:48



Scan Info


Scanned Files
482380
Infected Files
15





Virus Detected


Generic.Peed.Eml.C7FD27A5
1
Packer.Malware.NSAnti.J
13
Win32.BugBear.B@mm.Damaged
1








This summary of the scan process will be used by the BitDefender Antivirus Lab to create agregate statistics about virus activity around the world.




is that it?? because i still have the hide-unhide problem and each time i try to open a drive, a 'open-with' window opens...please help
Attached Files
File Type: txt hijackthis2.txt (4.4 KB, 1 views)


  #2  
Old 01-06-2008
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,585
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default Re: Packer.Malware.NSAnti.J

hello gandalf7, and welcome to the forums.


please close all other applications, start hjt again, click 'perform system scan only', place a tick next to the following and click 'fix checked'.



O2 - BHO: (no name) - {46279257-2463-2796-3683-279268379362} - D:\WINDOWS\system32\mshost.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Policies\Explorer\Run: [status] present
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - D:\PROGRAMS\YAHOO!\MESSEN~1\YPAGER.EXE (file missing)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - D:\PROGRAMS\YAHOO!\MESSEN~1\YPAGER.EXE (file missing)


next, Download ComboFix from Here to your Desktop.
  • Double click combofix.exe and follow the prompts.
  • When finished, it shall produce a log for you. Post that log and a HiJackthis log in your next reply
Note: Do not mouseclick combofix's window while its running. That may cause it to stall


thanks,

v


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 12:17 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top