Posted: Mon Sep 27, 2010 3:12 am Post subject: Please HELP!!!!!
I just got this virus that makes random popups on my pc, and redirects all google pages, and rediects links. The virus doesnt show in virus scan. HELP! _________________
and then post what it says after scanning copy and past from the log file.
Video of the malware on my pc: (may not be processed yet)
DOES THIS ON EVERY WEBSITE WHEN USING GOOGLE! Link
Code:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:31:28 PM, on 9/27/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Joined: 17 Dec 2007 Posts: 679 Location: :noitacoL
Posted: Mon Sep 27, 2010 3:23 pm Post subject:
Well hopefully some other more observant people can go through this after me, only suspicous thin i see at first glance is C:\WINDOWS\Fqimua.exe
there is no trace of it on google or yahoo. Or i could be mistaken but thats just at first glance. _________________
Well hopefully some other more observant people can go through this after me, only suspicous thin i see at first glance is C:\WINDOWS\Fqimua.exe
there is no trace of it on google or yahoo. Or i could be mistaken but thats just at first glance.
It's not it, I ran the file.
Would Reinstalling IE might work, if it is injected in my browser? _________________
Well hopefully some other more observant people can go through this after me, only suspicous thin i see at first glance is C:\WINDOWS\Fqimua.exe
there is no trace of it on google or yahoo. Or i could be mistaken but thats just at first glance.
It's not it, I ran the file.
Would Reinstalling IE might work, if it is injected in my browser?
I doubt it. I wouldn't count on it just going away after you uninstall the program it's effecting. My mom's computer got something like that, but our solution was giving it to my grandpa, who's an electrical engineer (he claims it took him 2 hours to fix).
Name DriveLetterAccess
Publisher (Not verified) Sonic Solutions
Status Disabled
File date Thursday, September 08, 2005, 6:20 AM
Version 1.0.0.1
Name Shockwave Flash Object
Publisher Adobe Systems Incorporated
Status Enabled
File date Wednesday, August 25, 2010, 3:31 PM
Version 10.1.82.76
Name AcroIEHlprObj Class
Publisher Adobe Systems, Incorporated
Status Enabled
File date Tuesday, December 14, 2004, 1:56 AM
Version 7.0.0.1333
Load time 0.01 s
Name HyperCam Toolbar
Publisher Control name is not available
Status Disabled
File date Tuesday, February 16, 2010, 4:52 PM
Version 4.2.0.7
Load time (0.44 s)
Name SMTTB2009 Class
Publisher Control name is not available
Status Disabled
File date Tuesday, February 16, 2010, 4:52 PM
Version 4.2.0.7
Load time (0.97 s)
Name Google Toolbar
Publisher Google Inc
Status Disabled
File date Friday, September 17, 2010, 2:04 PM
Version 6.6.916.106
Load time (0.02 s)
Name Google Toolbar Helper
Publisher Google Inc
Status Disabled
File date Friday, September 17, 2010, 2:04 PM
Version 6.6.916.106
Load time (0.00 s)
Name Google Toolbar Notifier BHO
Publisher Google Inc
Status Disabled
File date Friday, September 17, 2010, 2:43 PM
Version 5.6.5627.1104
Load time (0.10 s)
Name Google Side Bar
Publisher Google Inc
Status Disabled
File date Friday, September 17, 2010, 2:04 PM
Version 6.6.916.106
Name Absolute Poker
Publisher Microsoft Corporation
Status Enabled
File date Sunday, April 13, 2008, 8:12 PM
Version 6.00.2900.5512
Name Real.com
Publisher Microsoft Corporation
Status Enabled
File date Sunday, April 13, 2008, 8:12 PM
Version 6.0.2900.5512
Name PokerStars
Publisher Not Available
Status Enabled
Name {B205A35E-1FC4-4CE3-818B-899DBBB3388C}
Publisher Not Available
Status Enabled
Name Real.com
Publisher Not Available
Status Enabled
Name Diagnose Connection Problems...
Publisher Not Available
Status Enabled
Name Windows Messenger
Publisher Not Available
Status Enabled
Name Discuss
Publisher Not Available
Status Enabled
Version 6.0.2900.5512
Name Sothink SWF Catcher
Publisher SourceTec Software Co., Ltd.
Status Enabled
File date Thursday, December 17, 2009, 3:23 PM
Version 3. 3. 0. 0
Name SSVHelper Class
Publisher Sun Microsystems, Inc.
Status Enabled
File date Tuesday, September 14, 2010, 7:41 PM
Version 6.0.210.7
Load time 0.01 s
Name Java(tm) Plug-In 2 SSV Helper
Publisher Sun Microsystems, Inc.
Status Enabled
File date Tuesday, September 14, 2010, 7:41 PM
Version 6.0.210.7
Load time 2.13 s
Name JQSIEStartDetectorImpl Class
Publisher Sun Microsystems, Inc.
Status Enabled
File date Tuesday, September 14, 2010, 7:41 PM
Version 6.0.210.7
Load time 0.02 s _________________
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum You cannot attach files in this forum You cannot download files in this forum