We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

I think I'm infected with a virus!

Options
1356

Comments

  • In that case all you need to do is put a space in all the links in the log i.e. something like www. XXXXX.co.uk

    It won't show up as a link then and you can post the log.
    Northern Ireland club member No 382 :j
  • Jas0n wrote: »
    It was a full scan I ran, should I run it again just to make sure?

    The log confirms it was a full scan, but after you've finished the superantispyware scan, maybe it would be a good idea to run it again.
    Northern Ireland club member No 382 :j
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Jas0n wrote: »
    I'm running it now and yeah it's finding stuff, I'm trying to post the combofix log but it's saying

    "Sorry as a new user you are not allowed to post with links. This is done to stop spammers clogging up the site. Please edit your message below to continue."

    upload it to RAPIDSHARE and post the link to it
    :idea:
  • aliEnRIK wrote: »
    upload it to RAPIDSHARE and post the link to it

    They can't post links!:D
    Northern Ireland club member No 382 :j
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    They can't post links!:D

    !!!!!!.......:p
    :idea:
  • Jas0n_2
    Jas0n_2 Posts: 16 Forumite
    aliEnRIK wrote: »
    upload it to and post the link to it

    I managed it :p

    rapidshare . com / files / 248542701 / log.txt.html
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    aliEnRIK wrote: »
    upload it to RAPIDSHARE and post the link to it

    sorry jason

    upload to rapidshare and post the last part of the link (That 'should' work)

    so
    http://rapidshare.com/files/834589374535/combifix.txt
    would become ~
    files/834589374535/combifix.txt
    :idea:
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Jas0n wrote: »
    I managed it :p

    rapidshare . com / files / 248542701 / log.txt.html

    nice one jase

    im goin through it now
    :idea:
  • Jas0n_2
    Jas0n_2 Posts: 16 Forumite
    SUPERAntiSpyware Scan Log
    I've put them together, there's 2 logs here



    Generated 06/25/2009 at 03:57 PM

    Application Version : 4.26.1006

    Core Rules Database Version : 3955
    Trace Rules Database Version: 1897

    Scan type : Quick Scan
    Total Scan Time : 00:02:45

    Memory items scanned : 380
    Memory threats detected : 2
    Registry items scanned : 274
    Registry threats detected : 4
    File items scanned : 2852
    File threats detected : 9

    Trojan.Unclassified/VCMGCD32
    C:\WINDOWS\SYSTEM32\VCMGCD32.DLL
    C:\WINDOWS\SYSTEM32\VCMGCD32.DLL

    Trojan.Agent/Gen
    C:\DOCUME~1\JASON\LOCALS~1\TEMP\WINNVVI.EXE
    C:\DOCUME~1\JASON\LOCALS~1\TEMP\WINNVVI.EXE
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\WINNVVI.EXE

    Rootkit.Agent/Gen-Rustock
    HKLM\System\ControlSet001\Services\amd64si
    C:\WINDOWS\SYSTEM32\DRIVERS\AMD64SI.SYS
    HKLM\System\ControlSet001\Enum\Root\LEGACY_amd64si
    HKLM\System\CurrentControlSet\Services\amd64si
    HKLM\System\CurrentControlSet\Enum\Root\LEGACY_amd64si

    Adware.Tracking Cookie
    C:\Documents and Settings\Jason\Cookies\jason@avgtechnologies.112.2o7[1].txt
    C:\Documents and Settings\Jason\Cookies\jason@mmstat[2].txt
    C:\Documents and Settings\Jason\Cookies\jason@doubleclick[1].txt

    Trojan.MailDrop/Gen
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\ALAFCN.EXE

    Trojan.Gen/PackedAgent
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\W470B8.EXE





    SUPERAntiSpyware Scan Log


    Generated 06/25/2009 at 04:33 PM

    Application Version : 4.26.1006

    Core Rules Database Version : 3955
    Trace Rules Database Version: 1897

    Scan type : Complete Scan
    Total Scan Time : 00:06:38

    Memory items scanned : 349
    Memory threats detected : 2
    Registry items scanned : 3158
    Registry threats detected : 0
    File items scanned : 7277
    File threats detected : 7

    Trojan.Unclassified/VCMGCD32
    C:\WINDOWS\SYSTEM32\VCMGCD32.DLL
    C:\WINDOWS\SYSTEM32\VCMGCD32.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{BD51A955-C178-472E-A872-0712038D27EC}\RP14\A0000529.DLL

    Trojan.Agent/Gen
    C:\DOCUME~1\JASON\LOCALS~1\TEMP\WINPKVKQW.EXE
    C:\DOCUME~1\JASON\LOCALS~1\TEMP\WINPKVKQW.EXE
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\WINPKVKQW.EXE

    Trojan.Gen/PackedAgent
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\W5BCFE.EXE

    Trojan.MailDrop/Gen
    C:\DOCUMENTS AND SETTINGS\JASON\LOCAL SETTINGS\TEMP\WININRYRP.EXE

    Rootkit.Agent/Gen-Rustock
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{BD51A955-C178-472E-A872-0712038D27EC}\RP15\A0000572.SYS
  • And did you delete all that stuff as well? Those scans were fairly quick as well. Do you not have many files on your computer? There seems to be very few items being scanned.
    Northern Ireland club member No 382 :j
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.8K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.8K Work, Benefits & Business
  • 598.7K Mortgages, Homes & Bills
  • 176.8K Life & Family
  • 257.1K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.