View Single Post
Old 10-02-2007, 02:22 PM   #4 (permalink)
sUBs
Asst Manager Security, Expert Analyst, Moderator, Security Team; Rangemaster, Moderator, TSF Academy
 
sUBs's Avatar
 
Join Date: May 2005
Posts: 24,465
OS: N/A


Re: WinAntiVirusPro - 5 steps completed

Go to Start > Control Panel > Add or Remove Programs and uninstall the following programs:
  • ViewPoint
Please note any other programs that you dont recognize in that list in your next response


---------------


Do a HijackThis scan & place a check next to these items and select "Fix checked":

O4 - HKLM\..\Run: [gjyxknan] regsvr32 /u "C:\Documents and Settings\All Users\Application Data\gjyxknan.dll"


---------------


Open notepad and copy/paste the text in the quotebox below into it:

Code:
http://www.techsupportforum.com/security-center/hijackthis-log-help/185162-winantiviruspro-5-steps-completed.html
Collect::
C:\WINDOWS\system32\awturol.dll
C:\WINDOWS\system32\urqqrqo.dll
C:\WINDOWS\system32\vahylvrc.dll
C:\WINDOWS\system32\vldpmvww
C:\WINDOWS\system32\tuvtqpo.dll
C:\WINDOWS\system32\drvkad.dll
Folder::
C:\Documents and Settings\All Users\Application Data\Viewpoint
C:\VundoFix Backups
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"gjyxknan"=-
Save this as "CFScript"




Refering to the picture above, drag CFScript.txt into ComboFix.exe

When finished, it shall produce a log for you, C:\ComboFix.txt. Post that log in your next reply.

Additonally, ComboFix will generate a zipped file on your Desktop, called [4]Submit@Date_Time.zip
Please submit this file before proceeding to the next step.


---------------


Click here perform an online scan >> Online Scanner


---------------


In your next post, please include fresh logs from:
  1. Fresh Hijackthis log taken just before replying
  2. Online scan
  3. ComboFix's log
Please provide details of any problems you encountered whilst performing the above steps & update us on how the computer behaves now
__________________

Question - what have you done for the community today?
sUBs is offline