Thread: Hjt Log
View Single Post
Old 08-06-2006, 08:25 PM   #6 (permalink)
fredmh
Analyst, Security Team ; TSF Supporter
 
fredmh's Avatar
 
Join Date: May 2006
Location: Phila,Pa
Posts: 2,335
OS: XP


Please read this post completely before begining the fix. If there's anything that you do not understand, kindly ask your questions before proceeding.
Please ensure that there aren't any opened browsers when you are carrying out the procedures below. Save the following instructions in Notepad as this
webpage would not be available when you're carrying out the fix.



IT IS IMPORTANT THAT YOU DON'T MISS A STEP & PERFORM EVERYTHING IN THE RIGHT ORDER.

----------------------------------------

We got the New Net, but there's still other items which need to be corrected.

----------------------------------------

CWSHREDDER

Download CWShredder and run it. Click Check for Update. Click on 'I Agree' button if you agree.
Click on 'Fix' (it will automatically fix anything it finds for you) and then click OK. If it asks if you want to delete a certain random file,
choose No and post that filename here. Let it finish the scan and then hit Next and Exit.

----------------------------------------

Download the attached heart.zip file to your desktop. Double click on the zip folder, then double click on the .reg file within.
Click yes to allow it to merge into your registry.

----------------------------------------

Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.

c:\windows\system32\d3fk32.exe
c:\windows\system32\sdkmb32.exe


----------------------------------------

Clearing the Java Runtime Environment (JRE) Cache
  • Click Start > Control Panel.
  • Double-click the Java icon (Coffee cup) in the control panel. The Java Control Panel appears.
  • Click Settings under Temporary Internet Files. The Temporary Files Settings dialog box appears.
  • Click Delete Files. The Delete Temporary Files dialog box appears.
  • Click OK on Delete Temporary Files window. Note: This deletes all the Downloaded Applications and Applets from the cache.
  • Click OK on Temporary Files Settings window.

If you experience any difficulty, you can view this Java Tutorial

----------------------------------------

Clearing Cookies

Clear Internet Explorer Cookies:
Launch Internet Explorer>Tools>Internet Options>Delete Cookies

----------------------------------------

F-Secure Online Scanner


Click here to use the F-Secure Online Scanner
It's explained there with images how to allow the ActiveX to start the scan, so read that first.
  • Then click the F-Secure Online Scanner Next Generation Beta link.
  • Once the ActiveX is installed, you should accept the License terms by clicking OK below to start the scan.
  • Click the Full System Scan button.
  • It will start to download scanner components and databases. This can take a while.
  • The main scan will start.
  • Once the scan finished scanning, click the Automatic cleaning (recommended) button
  • It could be possible that your firewall gives an alert - allow it, because that's a connection you establish to submit infected files to F-Secure.
  • The cleaning can take a while, so please be patient.
  • Then click the Show report button and copy and paste what's present under results in your next reply.
----------------------------------------

Please return and post these reports:

F-Secure report
A new HJT Log
Attached Files
File Type: zip heart.zip (316 Bytes, 3 views)
fredmh is offline