I have a Trojan.Media-Codec/isamonitor.exe/pmmon.exe problem

Discussion in 'Malware Help (A Specialist Will Reply)' started by statelines, Nov 28, 2006.

  1. statelines

    statelines Private E-2

    I have read and completed all of the steps in 'READ & RUN ME FIRST'.

    Okay, there's a little button in my taskbar/tray that constantly tells me it's detected 'critical errors' and tells me to click that 'baloon' to download anti-virus software, which is called VirusBurster, which is a VIRUS ITSELF I've learned. I'm also getting notifications that I don't have a firewall enabled. Sometimes it messes with google, but this hasn't happened to me.


    I have deleted isamonitor.exe, pmmon.exe (which has shown up again even though I've deleted it while in Safe Mode) and pmsngr.exe, which seem to be part of Trojan.Media-Codec? Yet still the problem persists.


    I am running Winborg XP, which is basically a clone of Windows XP, 512 MB of ram, with SP2.



    Attached is my HiJack This log.



    All help is appreciated, thank you.
     

    Attached Files:

  2. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    However you have only posted 1 log in Hijackthis, there are the below ones, too, skipping straight to hijackthis will not help find and help us remove any malware thats on your PC, hijackthis should be the last step and scan run.

    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
     
  3. statelines

    statelines Private E-2

    Sorry =/ It was late and I was totally exhausted, lol.


    I zipped all of the logs, since I can only add three attachments per post.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Uninstall the below software:
    Internet Explorer Security Plugin 2006 <--- should have been uninstalled in step 0 of the READ & RUN ME
    Internet Security Add-On <--- should have been uninstalled in step 0 of the READ & RUN ME
    J2SE Runtime Environment 5.0 Update 3
    Mozilla Firefox (1.5.0.8)
    Viewpoint Media Player <--- should have been uninstalled in step 0 of the READ & RUN ME

    Now install the current version of Sun Java from: Sun Java Runtime Environment

    Then install the current version of FireFox from: Mozilla Firefox




    Now I'm going to post two sets of instructions below. Each will be enclosed in separate Quote boxes. Make sure to complete the first one 100% before moving on to the second one.


    Now attach new logs from:
    • GetRunKey
    • ShowNew
    • HJT
    How are things working now?
     
  5. statelines

    statelines Private E-2

    Thank you! The problem is fixed. :)
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome but it would be wise to post the all the logs that were requested so we can be sure you are clean.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds