rhutami

Members
  • Content count

    40
  • Joined

  • Last visited

About rhutami

  • Rank
    New Member

Contact Methods

  • ICQ
    0
  1. Hi Borislav, I am soooooooooooooo grateful with all help from you!!!! You r so great! Thank you so much!!! Best, Rachel
  2. Hi Borislav, I check with Mbam, here the result: Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Database version: 4152 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 5/28/2010 3:24:02 PM mbam-log-2010-05-28 (15-24-02).txt Scan type: Quick scan Objects scanned: 158929 Time elapsed: 6 minute(s), 45 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected)
  3. Hi Borislav! I (finally) did and finished the complete scan with Dr. Web, it came out CLEAN!!!! Yippieeeeeeee!!!! What is next step I need to do? Is Dr. Web CureIt is safe if I run at my other computers? Thankyou Rachel
  4. Hi Borislav, unfortunately I have to go to office today, so I cannot finished the full scanning today, as soon I get home I will do it again... this Dr. Web is really good... Talk to you later! Rachel
  5. Hi Borislav, I guess you went to sleep already... I just run the complete scan now. I finished 2nd quick scan, came out clean... I hope the complete scan result will be clean also... Is this drweb-cureit.exe is safe for my other computer? I wonder if actually I should check my main computer and my laptop too.... so far i check with Malwarebytes the result is clean, also antivirus... but is it really clean? Thanks! Have a good nite sleep and see you tomorrow
  6. Oh I forgot to added: to cure trojan.hashish.1 (at master boot) my computer has to reboot immediately (it kinda scary, black screen after i click OK) 2 trojan.siggen1.30114 (which C:\System Volume Information\_restore{d5fffa500b1b}\svchost.exe & smss.exe cure in process., now I do the quick scan again... hopefully I can follow the next step as your instruction. Thanks!
  7. the quick scan required reboot. it found 3 trojan : trojan.hashish.1 (at master boot, and 2 trojan.siggen1.30114. What next step i have to do? since that quick scan required reboot... do i need to redo that step?
  8. It's still scanning (express)... I dont see complete scan radio button option yet. I guess it will appear when the short scanning done?
  9. I am doing it now... How long will you be online?
  10. Hi ! Finally it is done. No infected files... what is that mean? Thank you for your help log.txt
  11. I am so grateful for your dedication to help me
  12. this scanning star at 1.30 PM now almost 3.00 PM only 75% done... I hope it will done soon...
  13. I am doing it now (I use different computer for replying)
  14. I did exactly as your instructions, now my computer just reboot (after mbam operation) here the log: Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Database version: 4145 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 5/26/2010 12:49:36 PM mbam-log-2010-05-26 (12-49-36).txt Scan type: Quick scan Objects scanned: 158091 Time elapsed: 6 minute(s), 51 second(s) Memory Processes Infected: 2 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 2 Memory Processes Infected: C:\System Volume Information\_restore{d5fffa500b1b}\svchost.exe (Trojan.Unruy) -> Failed to unload process. C:\System Volume Information\_restore{d5fffa500b1b}\smss.exe (Trojan.Unruy) -> Failed to unload process. Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: C:\System Volume Information\_restore{d5fffa500b1b}\svchost.exe (Trojan.Unruy) -> Delete on reboot. C:\System Volume Information\_restore{d5fffa500b1b}\smss.exe (Trojan.Unruy) -> Delete on reboot.
  15. After rebooted (after Malwarebytes), i open Malwarebytes and go directely to FileAssassins, go to C:\System Volume Information\_restore{d5fffa500b1b}\ and scan with AVIRA 2 files (svchost.exe & smss.exe). AVIRA said the type are TR/vilsel.aejm Trojan. Manually quarantined with AVIRA. How to prevent that file back to system at next reboot? Thank you.