Home > Pls Help > Pls Help With Virus Found In Atmpvcn.dll - Hijackthis Log Included

Pls Help With Virus Found In Atmpvcn.dll - Hijackthis Log Included

Any help with this would be greatly appreciated and sorry about the limited info in the first post.

2 more replies

Everytime when i run HijackThis and try to use it.. Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dllO2 - BHO: hijackthis log:Logfile of HijackThis v1.99.1Scan saved at 9:34:38 PM, on 11/1/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Java\jre1.5.0_04\bin\jusched.exeC:\WINDOWS\system32\rundll32.exeC:\Program Files\iTunes\iTunesHelper.exeC:\Program Files\Messenger\msmsgs.exeC:\Program Files\Valve\Steam\Steam.exeC:\WINDOWS\system32\esent97.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\wpd_ci.exeC:\WINDOWS\system32\rundll32.exeC:\Program Files\iPod\bin\iPodService.exeC:\WINDOWS\syste... Read more

Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account?

  • Share this post Link to post Share on other sites keb Member Full Member 3 posts Posted January 14, 2008 · Report post nasdaq,   Thanks for your help.
  • Some of the instructions I give may need to be printed or saved for reference during the fix.
  • Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO14 - IERESET.INF: START_PAGE_URL=http://www.toshibadirect.com/dpdstartO16 - DPF:
  • Interests:Golf, Pool (Snooker), Enjoying retirement.
  • How to install and use the Windows XP Recovery Console http://www.bleepingcomputer.com/tutorials/tutorial117.html   You will be sorry if you do not and have to restore your operating system. */*   Nothing suspicious

Include the address of this thread in your request. http://www.computerforum.com/threads/cant-get-rid-of-with-antivirus-or-adware-programs.134126/ Once the program has loaded, select "Perform Quick Scan", then click Scan. None of my programs detect it except for when i actually try to use the printer. b) if there's any other explanation for the missing files (e.g., a hardware problem?) and c) if my Hijack This file looks alright or has picked up something bad?You know you're

I'm using Windows XP and IE 7.0.   I've seen on other posts that problems like this seem to be called a "wareout" infection and that you were able to help news Please let me know if I need to apply any further fix/patch over this. Please Help

Where would we be without friends? Please re-enable javascript to access full functionality.

They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results". Answer:Possible virus? Make sure all browser and all Windows Explorer windows are closed before fixing:O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)O15 - Trusted IP range: - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -Exit have a peek at these guys I recently clicked on some sort of virus link sent to me in aim and now this virus or trojan is showing up in my computer on my virus scan.


Im running Window XP on my Toshiba Labtop Satellite A105. thanks Tgking Logfile of HijackThis v1.99.1Scan saved at 8:41:09 PM, on 9/17/2006Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\WLTRYSVC.EXEC:\WINDOWS\System32\bcmwltry.exeC:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeC:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeC:\Program Files\Common Files\Symantec I removed it and did a hijackthis scan which has some enteries that look suspicious to me.

without even thinking i downloaded the file and opened it only to realise that it was a virus...

the virus automatically sents out the virus to all my contacts, each with a

When the scan is complete, click OK, then Show Results to view the results. Note: You must be logged onto an account with administrator privileges.Close all applications and windows.Double-click on dss.exe to run it, and follow the prompts.When the scan is complete, two text files Share this post Link to post Share on other sites keb Member Full Member 3 posts Posted January 16, 2008 · Report post Nasdaq,   The flush dns trick seems Please help!

Kopieren Sie dazu einfach den Inhalt Ihres Logfiles in die untenstehende Textbox. Save the above as CFScript.txt4. BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? http://nuvisiongraphx.com/pls-help/pls-help-comp-down-to-a-crawl-hjt-log-included.html and Thank you for your time!

Logfile of HijackThis v1.99.1
Scan saved at 7:17:07 PM, on 9/08/2007
Platform: Unknown Windows (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe

When he delivered the system to me I was to troubleshoot a printer problem. Please read this Prevention page with lots of info and tips how to prevent this in the future. That may cause it to stall 0 #4 buntyn Posted 08 March 2008 - 08:54 AM buntyn Member Topic Starter Member 12 posts Thank you for your help, please find the Create Account How it Works Javascript Disabled Detected You currently have javascript disabled.

Read more Answer:endpoint found and deleted Hacktool.Rootkit please help hijackthis log included Deckard's System Scanner v20071014.68 Run by Eric on 2008-05-02 14:15:47 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore Read more Answer:Possible Virus slow PC..hijackthis log included. I downloaded Hijack and here is my file log. Select the following and click Kill process for each one if they are still listed (they shouldn't be - but double check it):


Check and fix the following