kohu

Members
  • Content Count

    50
  • Joined

  • Last visited

Everything posted by kohu

  1. I've just decided to reinstall windows, thanks for your help though.
  2. wait, nevermind, I ran it again without my firewall on, and heres the log. internet still doesn't work. I can't seem to get an IP adress, and it still doesn't work when i setup a static one. I'm trying to connect using a wireless router, no wired connection at all. However my other computer, (the one I'm using now) can connect to the router just fine. ComboFix 08-02.01.6 - Pete's 2008-02-01 13:56:42.4 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1013 [GMT -8:00] Running from: C:\Documents and Settings\Pete's\Desktop\ComboFix.exe . (((((((((((((((((((((((((((((((((((((
  3. didn't work, still can't connect. And thats all thats in the log.
  4. ugh, I didn't run combofix, so I did justr now, after it restated and finished, I couldn't connect to the internet, and I have no backups in my system restore. heres the log i got though. ComboFix 08-02.01.6 - Pete's 2008-02-01 12:14:25.3 - NTFSx86 NETWORK Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1203 [GMT -8:00] Running from: C:\Documents and Settings\Pete's\Desktop\ComboFix.exe . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\check_LSA7.txt C:\Documents and Settings\All Users\Application Data\Microsoft\N
  5. VundoFix V6.5.6 Checking Java version... Java version is 1.4.2.3 Old versions of java are exploitable and should be removed. Scan started at 3:38:25 PM 7/25/2007 Listing files found while scanning.... No infected files were found. VundoFix V6.5.9 Checking Java version... Java version is 1.4.2.3 Old versions of java are exploitable and should be removed. Scan started at 5:27:42 PM 10/3/2007 Listing files found while scanning.... C:\windows\system32\acyveqdm.ini C:\windows\system32\aggvaorn.dll C:\windows\system32\aglsjgsq.dll C:\windows\system32\ahadrepr.dll C:\windows\system32\akvxhcfv.dll C:\
  6. heres the Log Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:10:44 PM, on 1/31/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Comm
  7. W00t! nice to know I'm clean! Thank you again for all your help!
  8. Every things running fine, And I haven't noticed any bad things so far! Thanks a lot for the help so far! And sorry its taking a while. I'm loving the firewall and Avast!
  9. Strange, I had no reports to save. Well, all it found and removed where tracking cookies and nothing else. 28 of them.
  10. And heres the extra.txt Deckard's System Scanner v20070905.67 Extra logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft Windows XP Home Edition (build 2600) SP 2.0 Architecture: X86; Language: English CPU 0: AMD Athlon XP 3200+ Percentage of Memory in Use: 73% Physical Memory (total/avail): 511.48 MiB / 136.72 MiB Pagefile Memory (total/avail): 1151.71 MiB / 718.46 MiB Virtual Memory (total/avail): 2047.88 MiB / 1955
  11. Okay, heres the main.txt Deckard's System Scanner v20070905.67 Run by Pete's on 2007-10-13 11:25:41 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Restore Point. -- Last 5 Restore Point(s) -- 145: 2007-10-13 18:25:59 UTC - RP250 - Deckard's System Scanner Restore Point 144: 2007-10-13 16:37:44 UTC - RP249 - System Checkpoint 143: 2007-10-12 02:21:52 UTC - RP248 - System Checkpoint 142: 2007-10-11 00:35:59
  12. Okay! Here it is Scanning Report Friday, October 12, 2007 18:53:43 - 21:07:24 Computer name: SHADOW Scanning type: Scan system for viruses, rootkits, spyware Target: C:\ D:\ -------------------------------------------------------------------------------- Result: 68 malware found Malware.ADRA (virus) C:\HP\BIN\TRIALHTML\OFFICE 2003 EDITION 60 DAY TRIAL.EXE (Submitted) Tracking Cookie (spyware) System (Disinfected) System System System System System System System System System System System System System System System System System System System System System System
  13. Oh no! Panda active scan keeps getting stuck on the checking memory part, The status bar doesn't move at all! I know its not normal because I remeber doing one 7 months ago. Help?
  14. Thank god! Okay, I installed the dell thing correctly. heres my HJT log and I attached the combofix log. Logfile of HijackThis v1.99.1 Scan saved at 6:09:21 PM, on 10/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16544) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\as
  15. I figured it out Heres the Dr.web log. KillWind.exe;C:\hp\bin;Tool.ProcessKill;Incurable.Deleted RealBar.dll;C:\Program Files\Real\Toolbar;Adware.MegaSearch.origin;Incurable.Deleted And heres the HJT Log Logfile of HijackThis v1.99.1 Scan saved at 3:19:46 PM, on 10/9/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchos
  16. Sorry it took a while, Dr.Web took 13 hours to scan >.> Heres the Superantispyware log. I'll post teh HJT log and Dr.Web log next. Also, I just saw your edit with the deldomains and I think I installed it. Nothing else popsup when I click open after right click install correct? And I don't need to run Dr. Web again Do I? It took forever the firsttime... SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 10/08/2007 at 08:03 PM Application Version : 3.9.1008 Core Rules Database Version : 3321 Trace Rules Database Version: 1322 Scan type : Complete Scan Total Scan Ti
  17. heres the HJT log Logfile of HijackThis v1.99.1 Scan saved at 3:08:17 PM, on 10/7/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Dev
  18. Okay, I didn't find Limewire in the add/remove programs. My brother installed it a while back so I unistalled it. Is there any other way to unistall it? Also, after running combofix with the script like you told me, I couldn't connect to the internet after it was done, So I was stuck with having to do a system restore. attached the combofixlog. I'll post the HJT log after that. Oh and these were saved before I did the systm restore. log.txt
  19. And hjeres the HJT log Logfile of HijackThis v1.99.1 Scan saved at 11:35:58 AM, on 10/7/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobi
  20. Okay, I attached the Combofix log because It was too big to copy+paste. log.txt
  21. K, did the BFU thing and heres the log from F-Secure Scanning Report Saturday, October 06, 2007 11:02:54 - 13:30:52 Computer name: SHADOW Scanning type: Scan system for viruses, rootkits, spyware Target: C:\ D:\ -------------------------------------------------------------------------------- Result: 68 malware found Malware.ADRA (virus) C:\HP\BIN\TRIALHTML\OFFICE 2003 EDITION 60 DAY TRIAL.EXE (Submitted) Tracking Cookie (spyware) System (Disinfected) System System System System System System System System System System System System System System System System System Sy
  22. Oh! And when I got home today there was a shortcut on my desktop for "15 free ringtones!" and "get yopur free iPhone here!" two more appeared just now. I think It might be because of thinkadz or something.
  23. Okay! Deleted Norton, installed Avast! and got Comodo running. I need to know if twinqmds.exe is safe or not because I can't find anything about it on google. Anyways, heres my HJT log. I'll post the Avast! log next Logfile of HijackThis v1.99.1 Scan saved at 7:20:01 PM, on 10/5/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Syst
  24. Ooh...Thats not good at all. yep We have the 2004 norton stuff, I think it came with the computer and it hasn't been renewed in a few years. I'm not sure if the norton firewall is active or not, but if it isn't then no. No other firewalls. Norton antivirus is used also. Edit: oops, forgot the HJT log, here it is Logfile of HijackThis v1.99.1 Scan saved at 8:09:44 PM, on 10/4/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\s