Thread: HJT Log Help!
View Single Post
Old 08-21-2005, 02:38 AM   #6 (permalink)
sUBs
Asst Manager Security, Expert Analyst, Moderator, Security Team; Rangemaster, Moderator, TSF Academy
 
sUBs's Avatar
 
Join Date: May 2005
Posts: 24,350
OS: N/A


Kaspersky's online scan does not disinfects the files it found.

Please empty Norton's quarantine folder.

Clear Java Cache
  1. Click Start >Settings>Control Panel
  2. Click the Java Plugin Icon
  3. Click the Cache tab
  4. Click the Clear button and click OK to confirm
Note: Please repeat this procedure for each "Java Plugin" button in your Control Panel

Follow the instructions outlined here to clear Sun Java's cache.



Get an archiving utility like WinZip. Zip up the following files:

C:\WINDOWS\DELL.BMP
C:\WINDOWS\DirectX.log
C:\WINDOWS\KB828035.log
C:\WINDOWS\KB833987.log
C:\WINDOWS\KB835732.log
C:\WINDOWS\KB842773.log
C:\WINDOWS\Q329441.log
C:\WINDOWS\Q810577.log
C:\WINDOWS\Q811630.log
C:\WINDOWS\Q813862.log
C:\WINDOWS\Q816486.log
C:\WINDOWS\Q816982.log
C:\WINDOWS\{B6656B57-15D6-4E8F-AFAD-58AA2E3486CF}.dat
C:\WINDOWS\{B6656B57-15D6-4E8F-AFAD-58AA2E3486CF}.dat
C:\WINDOWS\{B6656B57-15D6-4E8F-AFAD-58AA2E3486CF}.dat
C:\WINDOWS\{B6656B57-15D6-4E8F-AFAD-58AA2E3486CF}.dat


After you have zipped them up, delete the original files.
Restore the deleted files from the zipped archive.
This will remove the malicious streams from the infected files.


Locate & delete these files:

C:\Documents and Settings\Andy\My Documents\crack.zip
C:\ms32.tmp
C:\WINDOWS\oiklv.dat
C:\WINDOWS\orun32.isu


Run CleanUp! once more

Repeat the Kaspersky scan to check if any files is still infected.
__________________

Question - what have you done for the community today?
sUBs is offline