__RiP_ChAiN_

Members
  • Content Count

    20
  • Joined

  • Last visited

About __RiP_ChAiN_

  • Rank
    Malware Expert
  • Birthday 09/19/1986

Contact Methods

Profile Information

  • Gender
    Male
  • Location
    U.S.A

Previous Fields

  • Operating System
    Windows Vista x64 Ultimate/Windows XP Professional
  1. Hello floridagirl, Open HijackThis, click Config, click Misc Tools Click "Open Uninstall Manager" Click "Save List" (generates uninstall_list.txt) Click Save, copy and paste the results in your next post. Download ComboFix from Here or Here to your Desktop. Double click combofix.exe and follow the prompts. When finished, it shall produce a log for you. Post that log and a HiJackthis log in your next reply Note: Do not mouseclick combofix's window while its running. That may cause it to stall
  2. ___Rip__Chain__ is Da Man, and he is very knowledgeable, and a very professional individual who has helped me understand many facets of my training - Thanks ;)

    **Brian**

  3. Hello REMIX_23, Please re-open HiJackThis and scan. Check the boxes next to all the entries listed below. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.html O9 - Extra button: Morpheus Toolbar - {119DBEDA-9c41-4F97-94B4-B6BCD01133CF} - (no file) O9 - Extra 'Tools' menuitem: Morpheus Toolbar - {119DBEDA-9c41-4F97-94B4-B6BCD01133CF} - (no file) Now close all windows other than HiJackThis, then click Fix Checked. Close HijackThis. Your Java is out of date. Older versions have vulnerabilities that malware can use to infe
  4. Hello kdr108, Not really. * Click here to download HJTsetup.exe Save HJTsetup.exe to your desktop. Doubleclick on the HJTsetup.exe icon on your desktop. By default it will install to C:\Program Files\Hijack This. Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue. Put a check by Create a desktop icon then click Next again. Continue to follow the rest of the prompts from there. At the final dialogue box click Finish and it will launch Hijack This. Click on the Do a system scan and save a logfile button. It will scan and the log should open i
  5. Hello dlr21, Open HijackThis, click Config, click Misc Tools Click "Open Uninstall Manager" Click "Save List" (generates uninstall_list.txt) Click Save, copy and paste the results in your next post. Step 2 Please download SmitfraudFix Double-click SmitfraudFix.exe Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that report into your next reply. Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to
  6. Hello Rockbuddy, Your topic description is kind of vague, are you experiencing malware problems or just having slowdown issues?
  7. Hello mandy, Please go HERE to run Panda's ActiveScan Once you are on the Panda site click the Scan your PC button A new window will open...click the Check Now button Enter your Country Enter your State/Province Enter your e-mail address and click send Select either Home User or Company Click the big Scan Now button If it wants to install an ActiveX component allow it It will start downloading the files it requires for the scan (Note: It may take a couple of minutes) When download is complete, click on My Computer to start the scan When the scan completes, if anything malicious is detected, cl
  8. Hello chase, Run OTMoveIt Click the green "CleanUp!" button. If you get a warning from your firewall or other security programs regarding OTMoveIt attempting to contact the Internet, you should allow it to do so. In the left pane, it will display a list of tools and other related files that you may have downloaded or used during our cleanup process, plus backup folders that were created with the bad files present. These are not needed anymore, so OTMoveIt will proceed to delete them. Do NOT edit anything in that window! Don't worry if it displays some tools you didn't download or use. Click "Y
  9. Hello Robin, Please download Deckard's System Scanner (DSS) and save it to your Desktop. Close all other windows before proceeding. Double-click on dss.exe and follow the prompts. When it has finished, dss will open two Notepads main.txt and extra.txt -- please copy (CTRL+A and then CTRL+C) and paste (CTRL+V) the contents of main.txt and extra.txt in your next reply.
  10. Hello chase, Your logs are looking good, how is your computer running?
  11. Hello chase, Please download ATF Cleaner by Atribune. This program is for XP and Windows 2000 only Please download OTMoveIt by Oldtimer and save it to your desktop. Run ATF Cleaner: Double-click ATF-Cleaner.exe to run the program. Under Main choose: Select All Click the Empty Selected button. If you use Firefox browser Click Firefox at the top and choose: Select All Click the Empty Selected button. NOTE: If you would like to keep your saved passwords, please click No at the prompt. If you use Opera browser Click Opera at the top and choose: Select All Click the Empty Selected button. NOTE: If
  12. Hello chase, Please re-open HiJackThis and scan. Check the boxes next to all the entries listed below. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Documents and Settings\All Users.WINDOWS\Application Data\Intuit\Quicken\Inet\Common\blank.htm Now close all windows other than HiJackThis, then click Fix Checked. Close HijackThis. Please go HERE to run Panda's ActiveScan Once you are on the Panda site click the Scan your PC button A