 
                 
                InterviewSolution
 Saved Bookmarks
    				| 1. | Solve : Is My Computer Functioning?? | 
| Answer» I have attached SAS/MBAM/HiJack logs. 
 ---------- What is Wpsetup? Is this the WinPatrol setup file? If so DELETE it.here it is winptr deleted [recovering disk space -- attachment deleted by admin]You can delete FindAWF. Use the Kaspersky Online Scanner You must use Internet Explorer. 
 
 
 There is no option to clean/disinfect, however, we need to analyze the information on the report. To obtain the report: Click on: Save Report As... 
 Copy and paste the Kaspersky Online Scanner Report in your next reply.Can't do it....I used your link. It will not let me hit accept....it keeps saying I need Java 1.5 or later...I verified...and already have version 7.Hmm, I just tried it in IE and Firefox and it works. Try this. How do I enable Java in my web browser?Here is the scan....I didn't find the scan settings...only scan options...hopefully this wasn't a problem. [recovering disk space -- attachment deleted by admin] I didn't find the scan settings...only scan options...hopefully this wasn't a problem. Yes they have recently updated the site and a few things are different. I didn't even know until I went there to try it when you couldn't get it to load. Another canned speech I need to do some tweaking on..... The good news is that there are only a few files to take care of and you will be malware free! Download OTMoveIt2 by OldTimer 
 
 C:\Documents and Settings\Trent Berger\.jpi_cache\jar\1.0\jvmsecman.jar-69ee0dc2-3357f2a4.zip C:\Documents and Settings\Trent Berger\DoctorWeb\Quarantine\pkill.exe C:\Program Files\Common Files\aolback\Comps\toolbar\toolbr.exe EmptyTemp [start explorer] 
 
 ---------- Next post add OTMoveIt log Also let me know how things are now. Was I supposed to check off Unregister Dll's and Ocx's and Zip Files After Move? I didn't...here are the results File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\HCCMP.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\ichk2.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\iChkSA.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\IWGen.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\kave.dll scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\kosglue-7.0.25.0.dll scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\lha.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\L_llio.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\mdb.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\minizip.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\MKavIO.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\msoe.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\nfio.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\prKernel.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\prLoader.dll scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\PrUtil.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\rar.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\ScanningProcess.exe scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\sfdb.PPL scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\TempFile.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\thpimpl.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\UniArc.ppl scheduled to be deleted on reboot. File delete failed. C:\DOCUME~1\TRENTB~1\LOCALS~1\Temp\jkos-Trent Berger\binaries\WDiskIO.ppl scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6c4.dat scheduled to be deleted on reboot. Temp folders emptied. IE temp folders emptied. Explorer started successfully OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 07122008_021423 It deleted the temp files like it was supposed to but not the other ones. Open OTMoveIt again and copy then paste just these 3 lines to be moved. C:\Documents and Settings\Trent Berger\.jpi_cache\jar\1.0\jvmsecman.jar-69ee0dc2-3357f2a4.zip C:\Documents and Settings\Trent Berger\DoctorWeb\Quarantine\pkill.exe C:\Program Files\Common Files\aolback\Comps\toolbar\toolbr.exeFile/Folder C:\Documents and Settings\Trent Berger\.jpi_cache\jar\1.0\jvmsecman.jar-69ee0dc2-3357f2a4.zip not found. File/Folder C:\Documents and Settings\Trent Berger\DoctorWeb\Quarantine\pkill.exe not found. File/Folder C:\Program Files\Common Files\aolback\Comps\toolbar\toolbr.exe not found. OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 07122008_025238OK looks good. How is everything now? 1. Double click OTMoveIt2.exe to launch it. Vista users right click and choose Run As Administrator 2. Click on the CleanUp! button. 3. OTMoveIt2 will download a list from the Internet, if your firewall or other defensive programs alerts you, allow it access. 4. Click YES at the next prompt (list downloaded, Do you want to begin cleanup process?) 5. Once complete exit out of OTMoveIt2 ---------- Set a New Restore Point to prevent possible reinfection from an old one Setting a new restore point AFTER cleaning your system will enable your computer to roll-back to a clean working state if needed. 
 Windows XP System Restore Guide or Windows Vista System Restore Guide . ---------- Use the Secunia Software Inspector to check for out of date software. 
 ---------- Important: You Need to Update Windows and Internet Explorer regularly to protect your computer from the malware and other security threats that are on the Internet. Go to Microsoft Windows Update and get all critical updates. If you are running any Microsoft Office version go to the Office Update site and make sure you have at least all the critical updates installed (Free) Microsoft Office Update. ---------- Make sure all of your security programs are up to date and run scans with them regularly. Once or twice a week minimum. Here are some great FREE tools to help you keep from getting infected again. These tools use little or no resources so won't slow down your PC. To prevent unknown applications from being installed on your computer install WinPatrol 2008 Using Winpatrol to protect your computer from malicious software Another thing I would suggest installing SiteAdvisor. SiteAdvisor rates sites on business practices and spam. SpywareBlaster - Secure your Internet Explorer to make it harder for these ActiveX programs to run on your computer. Also stop certain cookies from being added to your computer when running Mozilla based browsers like Firefox. *Using SpywareBlaster to protect your computer from Spyware and Malware *If you don't know what ActiveX controls are, see here Check out Keeping Yourself Safe On The Web for tips and free tools to help keep you safe in the future. Also see Slow Computer? It May Not Be Malware for free cleaning/maintenance tools to help keep your computer running smooth.These are the results from cleaning on moveit2...I wanted you to see them before I go on with the rest of what you said. [recovering disk space -- attachment deleted by admin]Looks good. Everything is scheduled to be deleted on reboot.OK...so on my computer I have -AVast Anti-virrus -CCleaner -SAS -Malwarebytes Anti-Malware -SpywareBlaster -Win Pattrol -Site Advisor Is this all I need? Am I all set with proper programs meaning if I update/scan I should be alright? I don't need Hi-Jack this on the computer? Thanks. | |