Loading...

Home > Pls Help > Pls Help With Virus Found In Atmpvcn.dll - Hijackthis Log Included

Pls Help With Virus Found In Atmpvcn.dll - Hijackthis Log Included

Read more 1 more replies Relevance 56.99% Question: Malware/Virus Help?? (HijackThis log included) My boyfriend has contracted something horrid in his computer. Heres an HJT Log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:06:46 AM, on 1/28/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Trend Micro\AntiVirus 2007\tavui.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Click OK. We have run Microsoft Anti-Spyware, AdwareSE (with updated definitions), multiple Norton Scans and there is still a bunch of icons on the desktop that don't have an identifiable process associated and http://swiftinv.com/pls-help/pls-help-spyware-hijackthis-log-included.html

Die Datenbank der Online-Analyse wird nicht mehr gepflegt. I have ran the following applications with all apps running the most current updated lists and deffinitions:

Ad-aware SE Personal (free) Full system scan
CW Shredder
Spybot S&D
Norton Antivirus My tech savvy friend said this means I have a virus.I've tried running (and updating) my virus/spyware scans, but they don't pick anything up. Back to top Back to Virus, Trojan, Spyware, and Malware Removal Logs 1 user(s) are reading this topic 0 members, 1 guests, 0 anonymous users Reply to quoted postsClear BleepingComputer.com http://www.bleepingcomputer.com/forums/t/131115/hijackthis-log-please-help-diagnose/

i also tried unplugging my computer during start up to cause a false crash then replugging in and starting up and it goes into the start up option screen but just Make sure all browser and all Windows Explorer windows are closed before fixing:F2 - REG:system.ini: UserInit=Userinit.exeRestart your pc.Post a new Hijackthis log,let me know how your pc is running now. the program ran fine for a day.

Some of the instructions I give may need to be printed or saved for reference during the fix. Please open Notepad Click Start , then RunType notepad .exe in the Run Box.2. Register now to gain access to all of our features, it's FREE and only takes one minute. so far *crosses fingers*

1 more replies
Relevance 57.4%

I seem to have 3 posts on my topic, but no message responses. Once the program has loaded, select "Perform Quick Scan", then click Scan. If I move it to the chest, it causes a new error that also will not let the printer run.

Please help!! Here is the Hijack This log. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged Tools->Open process manager.

If you do not understand something, don't be afraid to ask, or see if I'm on chat. 0 #3 sarahw Posted 08 March 2008 - 04:24 AM sarahw Malware Staff Member http://www.computerforum.com/threads/cant-get-rid-of-with-antivirus-or-adware-programs.134126/ C:\Documents and Settings\Acer\Application Data\rhctw0j0egna C:\Documents and Settings\Acer\Local Settings\Application Data\Microsoft\Windows Media\10.0\WMSDKNSD.XML C:\update.exe C:\WINDOWS\system32\atmpvcn.dll C:\WINDOWS\system32\confms.dll C:\WINDOWS\system32\cssrss.exe C:\WINDOWS\system32\deskper.dll C:\WINDOWS\system32\drivers\cjechbnj.dat C:\WINDOWS\system32\drivers\cvsycbso.dat C:\WINDOWS\system32\fsus.dll C:\WINDOWS\system32\iashlp.dll C:\WINDOWS\system32\iasna.dll C:\WINDOWS\system32\ipxprom.dll C:\WINDOWS\system32\ipxrtmg.dll C:\WINDOWS\system32\jgdw40.dll C:\WINDOWS\system32\jgpl40.dll C:\WINDOWS\system32\kbdb.dll C:\WINDOWS\system32\kdufq.exe C:\WINDOWS\system32\lphcpw0j0egna.exe C:\WINDOWS\system32\msxml71.dll C:\WINDOWS\system32\q9YGfJ.syz C:\WINDOWS\system32\t7waP1Ey.exe.a_a C:\WINDOWS\Sysvxd.exe Read more Answer:Solved: antivirus found a trojan. Please give me some time to look it over and I will get back to you as soon as possible.I want you to show hidden files.

Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... http://swiftinv.com/pls-help/pls-help-ibis-toolbar-spyware-hjt-log-included.html But my computer is still slow.

So, can someone look at my HijackThis log and see whether my computer is clean? If you encounter this problem, using a different browser like Firefox or Chrome seems to get around the problem. scan completed successfully hidden files: 0 ************************************************************************** . ------------------------ Other Running Processes ------------------------ .

Thanks!Logfile of HijackThis v1.99.1Scan saved at 8:24:42 PM, on 11/24/2 Select the following and click Kill process for each one if they are still listed (they shouldn't be - but double check it):

coalooze.exe

Check and fix the following Make sure all browser and all Windows Explorer windows are closed before fixing:O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)O15 - Trusted IP range: 10.240.89.199O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -Exit navigate here Today it will not work.

And my HP All in One printer/scanner has been with me for a while as well. Save the above as CFScript.txt4. i have tried manually deleting the file but the problem still exists...

Also when i run the AVG virus scan, the scan detects that there is a reading error to that same

AVG reported finding a trojan which I think it removed.

  1. Thanks in advanceedit - it looked like the offending file was found in one of my restore points so I went ahead and shut off system restore to clean out all
  2. My name is David Please do both of the following before we start if possible!:1) Please print off these intructions - they will be needed later when internet access is not
  3. I can still stay on for a while before it reboots itself, but I'm not sure what to do now.
  4. there is a warning box that pops up saying that i have a problem with a file hosts - C:\Windows\system32\drivers\etc\hosts...
  5. Not to mention the popups...

Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, Go into HijackThis->Config->Misc. A slow system is not always a sign of infection, though not being able to download an AV is something to look into. Posted January 14, 2008 · Report post Print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps.   You did

They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results". Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dllO2 - BHO: Note: You must be logged onto an account with administrator privileges.Close all applications and windows.Double-click on dss.exe to run it, and follow the prompts.When the scan is complete, two text files his comment is here I downloaded Hijack and here is my file log.

trojan download XS2. Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.   Very Important! Sign In Sign Up Browse Back Browse Forums Calendar Staff Online Users Activity Back Activity All Activity Search HijackThis.de Security Automatische

There are instructions HERE to help you do this.You should have Administrator rights to perform the fixes. HijackThis log included...


I caught the virus while using msn (windows live messager), a friend of mine just sent me a message saying "was it you that took please help remove. If you should have a new issue, please start a new topic.