lesser-equity

Magazine
Go Back   Computer Juice > Computer Software > Virus, Spyware & Security


Register


Reply
 
Thread Tools
  #11  
Old 26th Jun 2009, 09:10
Moderator Group
 
Please scan your computer with Panda ActiveScan

* Once you are on the Panda site click the Scan your PC now button.
* A new window will open...click the Scan Now button.
* If it wants to install an ActiveX component allow it.
* It will start downloading the files it requires for the scan. (Note: It may take a couple of minutes)
* You may get a warning from Internet Explorer that Panda is ready to install, please allow it.
* The scan will begin. Please be patient as it can take an hour or more to complete.
* When the scan completes, if anything malicious is detected, click the Export to: button (looks like a little Notepad).
* Save the ActiveScan.txt to a convenient location like your desktop.
* Note: You do not need to select any of the Disinfect options. We will remove any threats manually.

* Post the contents of the ActiveScan report in your next reply.
__________________

  #12  
Old 26th Jun 2009, 19:15
Member Group
 
;************************************************* ************************************************** ************************************************** ******************************
ANALYSIS: 2009-06-26 22:14:56
PROTECTIONS: 1
MALWARE: 3
SUSPECTS: 6
;************************************************* ************************************************** ************************************************** ******************************
PROTECTIONS
Description Version Active Updated
;================================================= ================================================== ================================================== ==============================
Kaspersky Internet Security 8.0.0.357 No Yes
;================================================= ================================================== ================================================== ==============================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;================================================= ================================================== ================================================== ==============================
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Mouse\Cookies\mouse@atdmt[1].txt
02885963 Rootkit/Booto.C Virus/Worm No 0 Yes No C:\System Volume Information\_restore{CFFE5923-A40D-4B2A-AA5C-1B6003AF2944}\RP256\A0027191.sys
02885963 Rootkit/Booto.C Virus/Worm No 0 Yes No C:\System Volume Information\_restore{CFFE5923-A40D-4B2A-AA5C-1B6003AF2944}\RP257\A0027478.sys
02885963 Rootkit/Booto.C Virus/Worm No 0 Yes No C:\System Volume Information\_restore{CFFE5923-A40D-4B2A-AA5C-1B6003AF2944}\RP256\A0026890.sys
03899061 Generic Trojan Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{AA816081-41B4-4E8C-AE42-1EC16DB27CEE}\RP1\A0003563.exe
;================================================= ================================================== ================================================== ==============================
SUSPECTS
Sent Location V
;================================================= ================================================== ================================================== ==============================
No C:\Documents and Settings\Mouse\My Documents\T3N V58 Hack Pack.exe V
No C:\Documents and Settings\Mouse\My Documents\T3N V58 Hack Pack.rar[T3N V58 Hack Pack.exe] V
No C:\Nexon\MapleStory\MapleStory.exe V
No C:\Program Files\Pinnacle\TVCenter Pro\Install\DivXPlayer\DivXPlay_ISV.exe V
No G:\Torrents\KASPERSKY INTERNET SECURITY7.0.1.325(WITH LIFETIME KEY)by tici\Setup\kis7.0.1.325en.exe[G:\Torrents\KASPERSKY INTERNET SECURITY7.0.1.325(WITH LIFETIME KEY)by tici\Setup\kis7.0.1.325en.exe][setup.exe]
No G:\Torrents\KASPERSKY INTERNET SECURITY7.0.1.325(WITH LIFETIME KEY)by tici.rar[KASPERSKY INTERNET SECURITY7.0.1.325(WITH LIFETIME KEY)by tici\Setup\kis7.0.1.325en.exe][KASPERSKY INTERNET SECURITY7.0.1.325(WITH LIFETIME KEY)by tici\Setup\kis7.0.1.325en.exe][setup.exe]
;================================================= ================================================== ================================================== ==============================
VULNERABILITIES
Id Severity Description V
;================================================= ================================================== ================================================== ==============================
;================================================= ================================================== ================================================== ==============================
  #13  
Old 26th Jun 2009, 19:26
Moderator Group
 
With exception to the cracked software it looks OK. That stuff usually contains some kind of malware so I suggest removing it and using free alternatives.

  • Click START then RUN
  • Now type Combofix /u in the runbox
  • Make sure there's a space between Combofix and /u
  • Then hit Enter.


  • The above procedure will:
  • Delete the following:
  • ComboFix and its associated files and folders.
  • Reset the clock settings.
  • Hide file extensions, if required.
  • Hide System/Hidden files, if required.
  • Set a new, clean Restore Point.


----------

Use the Secunia Software Inspector to check for out of date software.
Out of date software has security vulnerabilities that malware can exploit.
  • Click Start Now
  • Check the box next to Enable thorough system inspection.
  • Click Start
  • Allow the scan to finish and scroll down to see if any updates are needed.
  • Update anything listed.


----------

Go to Microsoft Windows Update and get all critical updates.

----------

Make sure all of your security programs are up to date and run scans with them regularly.

I suggest using WOT - Web of Trust. WOT is a free Internet security addon for your browser. It will keep you safe from online scams, identity theft, spyware, spam, viruses and unreliable shopping sites. WOT warns you before you interact with a risky website. It's easy and it's free.

SpywareBlaster - Secure your Internet Explorer to make it harder for these ActiveX programs to run on your computer. Also stop certain cookies from being added to your computer when running Mozilla based browsers like Firefox.
* Using SpywareBlaster to protect your computer from Spyware and Malware
* If you don't know what ActiveX controls are, see here

Check out Keeping Yourself safe On The Web for tips and free tools to keep you safe in the future.

Also see Slow Computer? It May Not Be Malware for free cleaning/maintenance tools to help keep your computer running smooth.
__________________

Reply

Register
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright ©2006 - 2009 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2009 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.