Files Infected By BehavesLike:Win32.ExplorerHijack Files quarantined by Bitdefender: C:\Program Files\Internet Explorer\iedw.exe...
Upgrade To Bitdefender Plus V10 We installed Bitdefender Plus V10 to infected machine and we found a new virus named...
Win32.Almanahe.B still alive We found two more computers like this one and we done the same process to clean rootkit. One of them is still...
I've run the commands and no message has been received. There is no nvmini subkey under Windows Services Registry Entries before and after the...
USB Status I've Plug the USB device in again and now there is no infection issue with USB.
GMER log - VI Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CREATE...
GMER log - V Device \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE...
GMER log - IV IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisDeregisterProtocol]...
GMER log - III .text C:\WINDOWS\system32\winlogon.exe[700] kernel32.dll!LoadLibraryA...
GMER log - II .text C:\WINDOWS\system32\winlogon.exe[700] kernel32.dll!LoadLibraryA...
GMER log - I GMER 1.0.13.12551 - http://www.gmer.net Rootkit scan 2007-08-07 08:06:21 Windows 5.1.2600 Service Pack 2 ---- System - GMER...
As you said this is Client Service for NetWare service and It's in Turkish Language.
Content of ComboFix-quarantined-files.txt 2007-08-04 20:00 46592 --a------ C:\Qoobox\Quarantine\C\WINDOWS\linkinfo.dll.vir...
log I have finished this proceses , logs are below ComboFix 07-08-04.3 - "kemal" 2007-08-06 17:49:44.1 [GMT 3:00] -...
Flash_Disinfector I've run Flash_Disinfector.exe. It's normally ended without any warning. But the GMER.EXE was been infected by Win32.Almanahe.B...
GMER log - V ---- Processes - GMER 1.0.13 ---- Library C:\WINDOWS\system32\linkinfo.dll (*** hidden *** ) @ C:\WINDOWS\Explorer.EXE...
GMER log - IV Device \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE...
GMER log - III Device \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE...
GMER log - II ---- Kernel IAT/EAT - GMER 1.0.13 ---- IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisDeregisterProtocol]...
GMER log - I GMER 1.0.13.12551 - http://www.gmer.net Rootkit scan 2007-08-06 08:26:58 Windows 5.1.2600 Service Pack 2 ---- System - GMER...
Separate names with a comma.