CMD32 or another highjack? It beats AdAware

Discussion in 'Malware Help (A Specialist Will Reply)' started by n4292936, Dec 2, 2005.

  1. n4292936

    n4292936 Private E-2

    Hey there,
    Well, I've been highjacked. I've run AVG antivirus (free version) have Zonelabs running, have run AdAware.... and yet AVG is still detecting a virus even after confirming the removal of it.

    I've run Highjack this as per the instruction in another thread and have attached the log from it. Can anyone make any sense of it?

    Are the following the problem entries?
    O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [aupd] D:\WINDOWS\System32\sywsvcs.exe
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = D:\WINDOWS\System32\search.html
    D:\WINDOWS\System32\smss.exe
    D:\WINDOWS\system32\winlogon.exe

    I've also followed the instruction in anther thread I came across and deleted search.html, cmd32.exe and z12, z16, z17 in the System32 folder but the problem seems to be reoccurring. Any ideas?

    Regards
    n4292936
     

    Attached Files:

  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Welcome to MajorGeeks.com, please follow the steps below:

    http://www.majorgeeks.com/images/grenade.gif Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support

    • Make sure you check version numbers and get all updates.
    http://www.majorgeeks.com/images/grenade.gif Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    http://www.majorgeeks.com/images/grenade.gifAfter doing ALL of the above and you still have a problem, make sure you have booted to normal mode and run the steps in the below thread to properly use HijackThis and attach the log:

    http://www.majorgeeks.com/images/grenade.gif Downloading, Installing, and Running HijackThis
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds