Malware Network infection - Computer #3

Discussion in 'Malware Help (A Specialist Will Reply)' started by mlydell, Oct 9, 2006.

  1. mlydell

    mlydell Private First Class

    This is the 3rd computer I've posted logs on. The first two seemed to be the worst ones. I'm posting the other ones to make sure nothing got over the network too bad. I know this on got hit over the network by MSN Messenger.

    Here are the first three logs. I'll post the rest in another reply.

    I HAVENT TOGGLED SYSTEM RESTORE YET.
     

    Attached Files:

  2. mlydell

    mlydell Private First Class

    Here are the other logs.

    Thanks for your help!!
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    The only item in your logs that looks like a potential problems is the below from HijackThis:

    O4 - HKLM\..\Run: [XeroxRegistation] "C:\DOCUME~1\Mark\LOCALS~1\Temp\Xerox\EReg\opbreg.exe" /Startup

    Do you recognize this as being valid? I doubt it? It not valid, use HJT to fix it then boot into save mode and delete that whole Xerox folder. Any valid program should not be installed and run from a Temp folder anyway.
     
  4. mlydell

    mlydell Private First Class

    Weird.i dont recognize that, but know it was prob from an old printer i used to use...

    I ran HJT this after getting your post, and that entry didnt show up in my HJT log!!! I wonder if it got deleted since it was in a temp folder.

    Any thoughts?
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes the file was in a temp folder but the O4 line in HJT represents a registry key. It would not go away just by deleting the file in the Temp folder. Something would have to have stop the process that was the root cause of it being in the RUN list.
     
  6. mlydell

    mlydell Private First Class

    Thanks!!
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds