O18 - Protocol

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by jarcher, Jul 27, 2004.

  1. jarcher

    jarcher I can't handle a title

    O18 - Protocol: start - {53B95211-7D77-11D2-9F81-00104B107C96} - C:\WINDOWS\System32\msxmlfilt.dll


    what is this and is it bad?
    hijak this will not remove it, I have run adaware, cw. . .ect

    I read MA' s sticky and i am still lost. ...
     
  2. jarcher

    jarcher I can't handle a title

    and a virus, that I have run everything and I can't open the folder to even find the infected file. . .
     
    Last edited: Jul 27, 2004
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes, it is a CWS hijacker. You could try running both of these in safe mode:
    CWShredder
    CoolWWWSearch.SmartKiller

    but I'm guessing it will not work. We may have to unregister the DLL, delete the file, and then search the registry for all occcurrences and delete them by hand. And then fix the line in HijackThis.

    You other problem with the virus is in system restore. Disable system restore and reboot.
    Then renable system restore and reboot again. Now see if it is gone. To diable/enable system restore see this.
     
  4. jarcher

    jarcher I can't handle a title

  5. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

  6. jarcher

    jarcher I can't handle a title

    sorry MA, I did it though
    thanx chaslang
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay! So what's the current status?
     
  8. jarcher

    jarcher I can't handle a title

    its there only in my log, but nowhere else
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Download and install Registrar Lite: http://www.majorgeeks.com/download469.html

    And Click on the Search icon (the magnifier glass).
    Paste into the "Text to search for" box the following:

    msxmlfilt.dll

    and hit your Enter key

    Tell me if you get any matches on the right side of the Window. And Copy and Paste back here what you get.
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    When you say you did all that....did you do it in safe mode?
     
  11. jarcher

    jarcher I can't handle a title

    yes. . .but I will try to find it useing cmd.exe. . .
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Do the stuff I told you with Registar Lite.
     
  13. jarcher

    jarcher I can't handle a title

    done. . .and the pop ups are gone. .too
    sorry. . .gave you something to read though. . huh?
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay! So all is good here? No more problems?
     
  15. jarcher

    jarcher I can't handle a title

    noppe all good, again thanks chas
    again, sorry MA
     
  16. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your welcome! It's good to have another issue closed! :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds