I think I am infected.

Status
Not open for further replies.

KaNe

Onyx user!
Reputation
0
Usually if I am infected, it's gone in minutes, because I know a lot about removing virus's and such. But this one, I couldn't remove because I wasn't on my computer for a few days. So it is now very hard to find, and I can't find it. I think I'm part of someones botnet right now, because I have about 2M packets coming in and out per minute.

HJT Log:
http://pastebin.com/9diZD3Sx

MBAM Log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4168

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

3/17/2011 4:32:37 PM
mbam-log-2011-03-17 (16-32-37).txt

Scan type: Quick scan
Objects scanned: 130875
Time elapsed: 4 minute(s), 58 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
 

Ping

Onyx user!
Reputation
0
Edit:

Nevermind didn't see the bottom part


Maybe try spybot Search and destroy?

Or SuperAntiSpyware.

I use them both and they keep my comp kleen.
 
Reputation
0
Hm give a white hat that log, maybe he could fix it if you really are infected.
 

Pheonix

Onyx user!
Reputation
0
And your saying that u like it even after it's not preventing the infection :p try some other anti malware
 

Reality

User is banned.
Reputation
0
Here I'll look at it. I haven't looked at a log since December but I still know it [I think]

Do you recognize this line?

O4 - HKCU\..\Run: [LKGGOPABUH] C:\Users\La Casa de Kane\AppData\Local\Temp\Jzr.exe

You should also remove all of the toolbars you don't need on your computer.
 

KaNe

Onyx user!
Reputation
0
Reality said:
Here I'll look at it. I haven't looked at a log since December but I still know it [I think]

Do you recognize this line?

O4 - HKCU\..\Run: [LKGGOPABUH] C:\Users\La Casa de Kane\AppData\Local\Temp\Jzr.exe

You should also remove all of the toolbars you don't need on your computer.



Most are from random programs, AND YES, THATS THE INFECTION. I remember my AV was detecting that, and it kept changing files and names, etc. But I have one problem, something is wrong with my HDD and it says it is full to the max, so I can't download anything on my primary HDD.
 

Dykerosoft

Active Member
Reputation
0
KaNe said:
Most are from random programs, AND YES, THATS THE INFECTION. I remember my AV was detecting that, and it kept changing files and names, etc. But I have one problem, something is wrong with my HDD and it says it is full to the max, so I can't download anything on my primary HDD.

Do you have a USB drive that you can use? Watch out for USB spread if you do.
 

Reality

User is banned.
Reputation
0
Might want to defrag your HD, I don't know much about Windows anymore..
 

KaNe

Onyx user!
Reputation
0
Dykerosoft said:
Do you have a USB drive that you can use? Watch out for USB spread if you do.

Nope. Thank god. I usually don't use USB drives. I usuall just email myself whatever it is, but I haven't done that in a while, so I know my other computers are not infected.

Reality said:
Might want to defrag your HD, I don't know much about Windows anymore..

What does that mean?
 
Status
Not open for further replies.
Top