can't logon

Discussion in 'Malware Help (A Specialist Will Reply)' started by mag00, Apr 8, 2006.

  1. mag00

    mag00 Sergeant

    I can't seem to log on to hotmail or yahoo. Everytime I try the IE stalls and then I get a page can't be displayed. What set me to suspicion was trying to log to ebay. I couldn't get to my signin page. Then when to check hotmail, and started getting suspicious. Then tried yahoo. no go.

    I can login to any number of userboards etc, no trouble.

    My question is about a few hjt intries I can't seem to verify.

    O17 - HKLM\System\CCS\Services\Tcpip\..\{24BF9997-5B28-4823-BA88-5FACA4818FCD}: NameServer = 67.151.108.1 67.151.108.220
    O17 - HKLM\System\CS1\Services\Tcpip\..\{24BF9997-5B28-4823-BA88-5FACA4818FCD}: NameServer = 67.151.108.1 67.151.108.220

    When I go to the nameserver, a data base comes up. Would this be associated with accel or ebay

    The other one is
    Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll

    This one bugs me. But I don't want to delete it before I know if it is part of office2003 or the macromedia products.

    Anyway I don't see anything in my log that looks like a keylogger or anything, but I am a bit spooked now.

    I have compared my new log to old know good ones.

    Any info on these entries would be greatly appreciated.
    mag00
     
  2. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    The IPs in the 017 Lines belong to PaeTec Communications, which is a Broadband provider.

    Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll, belongs to Sun Microsystems Java Virtual Machine; which is several revisions old and should be updated.

    If you are concerned about Malware do the below:

    - Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis:

    Downloading, Installing, and Running HijackThis

    When you return to make your next post make sure you attach the following logs and that you have run these scans in the following order too (these scans are covered in steps 6 & 7 of the READ & RUN ME sticky)
     
  3. mag00

    mag00 Sergeant

    Oh I panic at the smallest things when running the laptop and email etc.
    I will not bugger my puter up with nortons lmao

    I was worried about a keylogger and that ebay and hotmail and yahoo were detecting another form of activity and would then not let me to the site.

    I didn't want to delete the 17 entries as I went to the dns and a database came up. That could have been for exel or other stuff of recent loading.

    So I decided to config the old Imac for dialup and it too, had the same trouble. Called a buddy and had him log into hotmail (my account) from his residence and he had no trouble.

    Turns out the ISP I was using for dialup is either blocking me or has been banned for spam.

    Which is a drag as it was free internet for my boat when I stay there, so now I have no email on the boat. It always worked before.

    So today I checked and everything is OK with the laptop (using wireless). I did my scans with hjt while connected to dialup and that is where line 017 came from. So did I change all my passwords for nothing? maybe, oh well.

    Thanks for check SPD
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds