4 days and counting... Pop-up-free surfing!!
You are a Godsend, my dear Lonny. I will be forever grateful :)
L2mfix log (look how short!): L2MFIX find log 1.01 These are the registry keys present...
MWAV log (just the lines with "action taken" in them): Thu Jan 20 12:00:58 2005 => File C:\WINNT\SSK_B5.EXE infected by...
Wow...done L2mfix log: L2MFIX find log 1.01 These are the registry keys present...
Silent runner log: "Silent Runners.vbs ", revision 29, launched at: 10:07 Output limited to non-default values, except where indicated by...
Whew! Ok... Everything seemed to go smoothly. hjt log: Logfile of HijackThis v1.99.0 Scan saved at 3:12:31 PM, on 1/19/2005 Platform:...
ok...i deleted everything in safe mode EXCEPT, the system wouldn't let me delete wvwwvq.exe...it said it was in use. i don't know how to get...
L2mfix: L2MFIX find log 1.01 These are the registry keys present...
Ok, ran the omytoofixmereg.reg...did all the rest...kept looking for a kalv(anything).exe file in winnt/system32...and it simply isn't...
also, I got an error message when running the fix (#2) it said: "Cannot import cecho.reg: error opening the file. There may be a disk or file...
here's the log: Setting Directory H:\ H:\ System Rebooted! Running From: H:\ killing explorer and rundll32.exe Command Line...
L2mfix report: These are the registry keys present **********************************************************************************...
Here we go... NEW findkalv.bat text: Volume in drive C is WINDOWS 2K Volume Serial Number is 07D1-080F Directory of C:\winnt\system32...
OK. text from findkalv.bat: Volume in drive C is WINDOWS 2K Volume Serial Number is 07D1-080F Directory of C:\winnt\system32...
Hello there... I've run Spybot S&D 1.3 TODAY...and Adaware SE Personal, Build 1.05. The pop-ups are INCREDIBLE! Also, I get a UMonitor error...
just another DMVlite victim I'm sorry for piggy-backing!
Separate names with a comma.