The installation of the Recovery Console in the computer will be our only defense against this threat. The name sounds pretty much like a ringer, but since I have no clue I'll leave that to you, the helper, to tell me for sure.Ok, I think those are the Bitte bedenken Sie, dass viele Funktionen nicht funktionieren werden, solange sie Javascript nicht aktivieren. C:\WINDOWS\system32\MPK\Help\English\log_size.htm (Refog.Keylogger) -> Quarantined and deleted successfully. this contact form

Wird eine Abweichung festgestellt, so wird diese in einem Protokoll (Logfile) angezeigt. HKEY_CLASSES_ROOT\Typelib\{58696980-c6b3-4ad2-ab53-718f1c3c57ca} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\{NSINAME} (Trojan.Agent) -> Quarantined and deleted successfully. A complete system scan with Kaspersky did not show presence of viruses.

Back to top #5 hmarie07 hmarie07 New Member Members 3 posts Posted 03 October 2007 - 02:47 PM HiJackThis Log Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 3:40:26 PM, But you say the old java is still there. The pop-up seems to have stopped for now at least. Edited by Marco-63, 04 August 2005 - 04:20 AM.

Hi Marco-63. That's what the forums are here for.

C:\WINDOWS\system32\MPK\Help\English\screenshot.htm (Refog.Keylogger) -> Quarantined and deleted successfully. C:\WINDOWS\system32\MPK\MPK64.exe (Refog.Keylogger) -> Quarantined and deleted successfully. Back to top #8 OldTimer OldTimer Malware Expert Members 11,092 posts OFFLINE Gender:Male Location:North Carolina Local time:07:19 AM Posted 05 August 2005 - 08:46 AM Hi Marco-63. https://forums.techguy.org/threads/solved-instant-access-access-control-problem-please-help-hjt-log.366591/ Back to top #6 OldTimer OldTimer Malware Expert Members 11,092 posts OFFLINE Gender:Male Location:North Carolina Local time:07:19 AM Posted 04 August 2005 - 08:30 AM Hi Marco-63.

Isn't enough the bloody civil war we're going through? In SpywareBlaster - Always enable all protection after updates In SpyBot - After an update run immunize Print this and boot to safe mode (Start tapping F8 at the first black http://www.xtra.co.n...1916458,00.html RIGHT Click on Start then click on Explore. C:\WINDOWS\system32\MPK\Help\English\delivery.htm (Refog.Keylogger) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\MPK\Mpk.dll (Refog.Keylogger) -> Quarantined and deleted successfully. More Bonuses Unfortunately I have not understood how it got started but ... Run another WinPFind log and let's see what it shows now. If happens frequently.If that is the case then you can try a manual uninstall as outlined here: How to uninstall Symantec productsCheers.OT I do not respond to PM's requesting help.

O4 - Global Startup: PCSuiteperNokia6600 TS.lnk = ? HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.ShopperReports) -> Quarantined and deleted successfully. That's what the forums are here for.

  1. Now that your issues have been resolved I will close this topic.
  2. When finished, a new folder appears.
  To use Google Groups Discussions, please enable JavaScript in your browser settings, and then refresh this page.
  4. It just wastes space and make the topic more difficult to view.

I've been waiting for about an hour and it still hasn't completed the system restore thing. scanning hidden files ... ************************************************************************** . Just paste your complete logfile into the textbox at the bottom of that page, click "Analyze" and you will get the result.

C:\Documents and Settings\HP_Administrator\Application Data\Zinaps2008\settings.ini (Rogue.Zinaps) -> Quarantined and deleted successfully. I do not see any problems in this log. Follow You seem to have CSS turned off.

C:\WINDOWS\system32\MPK\Help\Spanish\computer.htm (Refog.Keylogger) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\MPK\Images\german.gif (Refog.Keylogger) -> Quarantined and deleted successfully. Recovery Console - Recent trends appear to indicate that future infections will include attacks to the boot sector of the computer. tephradem, May 29, 2005 #3 MFDnNC Joined: Sep 7, 2004 Messages: 49,014 Copy them to note pad and save the file to look at in safe mode MFDnNC, May 29, Windows Security Alert Warning!

Thread Status: Not open for further replies. C:\WINDOWS\system32\MPK\Help\English\password.htm (Refog.Keylogger) -> Quarantined and deleted successfully. Go to Tools, Folder Options and click on the View tab.

Registry Data Items Infected: (No malicious items detected) Folders Infected: C:\Documents and Settings\All Users\Application Data\MPK (Refog.Keylogger) -> Quarantined and deleted successfully. I've learned a lot. ERUNT (Emergency Recovery Utility NT) allows you to keep a complete backup of your registry and restore it when needed. C:\Documents and Settings\All Users\Application Data\MPK\M0000 (Refog.Keylogger) -> Quarantined and deleted successfully.

Turn it off, reboot then turn it back on: http://service1.syma...src=sec_doc_nam No need to post again unless you wish to. Many many thanks to OldTimer and to this wonderful Forum. I frequently get disconnected from online games and I am trying to see if anything I have running on my computer would interfere with it. C:\Documents and Settings\All Users\Application Data\MPK\CPDM\cpfm.bin (Refog.Keylogger) -> Quarantined and deleted successfully.

Open it and double-click on smitfraudfix.cmd Then follow the instructions provided. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Join over 733,556 other people just like you! for a few hours, I later downloaded other files(video files, downloaded Thursday(5/26) or Friday(5/27)) and it came back.

Solved: instant access/access control problem - please help (HJT log) Discussion in 'Virus & Other Malware Removal' started by tephradem, May 29, 2005. Register now! exe" /RANDOM O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [DU Meter] D:\Programmi\DU Meter\DUMeter.exe O4 - HKLM\..\Run: [CallControl 4.5] C:\PROGRAMMI\FAXTALK COMMUNICATOR\FTCtrl32.exe /autoload You can try the sfc /scannow but I doubt that it will resolve any problems.

Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe O9 - Extra 'Tools' menuitem: Yahoo! Using the site is easy and fun.