Malware and Virus RemovalProblems removing malware/viruses? Get help from our Malware removal experts.
Mission Statement
WindowsBBS is an online community dedicated to easily accessible technical support for those using Microsoft operating systems and other Windows software.
Our goal is to become the leading resource for computer users that require assistance with their day-to-day computer usage, including full support for networking PC's, virus & malware removal, system upgrades and general support questions.
I have AOL Broadband (through a cable modem) and a Linksys wrt54g router. I have been able to successfully go online until just recently (about 3 days ago).
When I would sign on on AOL dialer, it would take me all the way to step 6 (connecting to aol). On the actual AOL browser I could only go up to step 2 (connecting using tcp/ip). I have a feeling this is the work of malware.
Right now I'm am on the affected computer, and I have gotten online after several hours of restarting my computer and running spybotSD and ad-aware scans, each time finding an MRU counter.
Please help
~pkujulo
Didn't find the information you thought to find? Check out these Similar Threads
here is a highjackthis log:
Logfile of HijackThis v1.99.1
Scan saved at 12:51:00 PM, on 9/17/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
------------------------------
Service load:
0% 100%
File: DualAn.exe
Status:
OK
MD5: 7bb4edcdf7c9526672b03bd55d00abfc
Packers detected:
-
Bit9 reports: File not found
Scanner results
Scan taken on 18 Sep 2007 21:32:02 (GMT)
A-Squared
Found nothing
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
CPsecure
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found nothing
Fortinet
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
Panda Antivirus
Found nothing
Rising Antivirus
Found nothing
Sophos Antivirus
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing
--------------------
I just realized that this is my joystick software :/
Thanks for the info RE: DualAn.exe ... nothing was coming up when researching it.
There are a couple of entries that could be fixed with HijackThis.
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: (no name) - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
Do another scan, place a check next to them then click Fix Checked.
Not much else showing in the log. I'm thinking this may be a problem on AOLs end. Are you still having problems connecting? If so, lets use another tool to take a little deeper look into things.
Note: You must be logged onto an account with administrator privileges to complete the following.
Download Deckard's System Scanner (dss.exe) to your desktop.
Close all applications and windows.
Double-click on dss.exe to run it and follow the prompts.
When the scan is complete, two text files will open; main.txt, which will be maximized and extra.txt, which will be minimized.
I fixed the three items in HJT and I downloaded and ran dss, however when it got to deleting temporoary files, it crashed.
Also, I just connected to the internet normally after restarting my computer after the HJT fixes. I thing that the BHO may have been the problem (I saw another thrad saying that someone got attacked by a BHO trojan.
So as for the help, I think I'm set for now, and thank you for all your help, but I'm going to keep this page in my bookmarks just in case it happens again.
Sometimes those temp files do create a problem for dss. Here's the cure for it (it's a keeper).
Download ATF Cleaner by Atribune and save it to your Desktop.
Double click ATF-Cleaner.exe to run the program.
Check the boxes to the left of:
Windows Temp
Current User Temp
All Users Temp
Temporary Internet Files
Prefetch
Java Cache
Recycle bin
The rest are optional - if you want it to remove everything check "Select All".
Finally, click Empty Selected. When you get the "Done Cleaning" message, click OK.
Reboot so that temp files that were in use can be deleted as well.
Now try dss.exe again. If you want to post the log, I'll be happy to look through it.