Recent content by darkjedi

  1. D

    infected with backdoor.tidserv.l

    thanks a lot Kevin I will check with Cookiegal about the training , I will also check with SpywareHammer Academy . I tried to keep myself safe while browsing the net and downloading from the internet , I used a sandbox to protect myself . I got infected when I was trying clean my sisters hard...
  2. D

    infected with backdoor.tidserv.l

    done all steps , updated java , and needed to download a couple microsoft updates . the only strange thing is that stated that I have firefox 5 and needed to updated , but I have version 6 installed already , may be is just a glitch . thanks for all your help, I just have a question I'm...
  3. D

    infected with backdoor.tidserv.l

    Hi Kevin : I remove webroot , I ran the TFG so far so good.Just one question the webroot antivirus was the beta version of webroot secureanywhere that runs on the cloud . I read that it doesn't cause any problems with an antivirus ,is this correct ? thanks for all your help.
  4. D

    infected with backdoor.tidserv.l

    ok here are the logs: . DDS (Ver_2011-06-23.01) - NTFSAMD64 Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_24 Run by dark at 16:25:37 on 2011-08-20 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.3836.2351 [GMT -4:00] . AV: Webroot SecureAnywhere *Enabled/Updated*...
  5. D

    infected with backdoor.tidserv.l

    Here is the latest DDS log . 2011/08/20 14:31:12.0231 2720 TDSS rootkit removing tool 2.5.16.0 Aug 19 2011 17:48:17 2011/08/20 14:31:14.0234 2720 ================================================================================ 2011/08/20 14:31:14.0234 2720 SystemInfo: 2011/08/20 14:31:14.0234...
  6. D

    infected with backdoor.tidserv.l

    Hii kevin , the second hardrive is an external hardrive that is how I got infected . I have already clean that hardrive , I scanned it with norton , Kaspersky , nod32 , I also repair the mbr , and it is clean already , on my laptop looks like everything looks clean , do you need me to run...
  7. D

    infected with backdoor.tidserv.l

    from 8/18/11 MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows 7 Ultimate Edition Windows Information: (build 7600), 64-bit Base Board Manufacturer: Hewlett-Packard BIOS Manufacturer: Insyde System Manufacturer: Hewlett-Packard System Product Name...
  8. D

    infected with backdoor.tidserv.l

    Hi Kevin , sorry , I was away yesterday and could answer back. After I reboot my laptop the msg from norton hasn't shown any more . I perform a full scan with norton and it shows no infections . I guess norton was displaying some cached information . any way before we started cleaning the...
  9. D

    infected with backdoor.tidserv.l

    Hi Kevin , here is the log it did not find anything., but I'm still getting same massage from norton that I'm still infected [email protected] as CAB hook log: OnlineScanner64.ocx - registred OK OnlineScanner.ocx - registred OK # version=7 # iexplore.exe=8.00.7600.16385...
  10. D

    infected with backdoor.tidserv.l

    finish the scan , no threats found here is the log. 2011/08/15 20:08:30.0008 0804 TDSS rootkit removing tool 2.5.15.0 Aug 11 2011 16:32:13 2011/08/15 20:08:30.0389 0804 ================================================================================ 2011/08/15 20:08:30.0389 0804 SystemInfo...
  11. D

    infected with backdoor.tidserv.l

    Hi Kevin , this time it ran very fast , here is the report: After the computer reboot the norton gave the same msg that the computer is still infected with backdoor.tidserv.l. thanks for all your help ComboFix 11-08-15.08 - dark 08/15/2011 19:33:25.10.2 - x64 NETWORK Microsoft Windows 7...
  12. D

    infected with backdoor.tidserv.l

    I ran Rkill , then ran combofix , still it gets stock on stage 4 , been running the program for about 2 hrs
  13. D

    infected with backdoor.tidserv.l

    well is been almost 1 hr an still on stage 4 , should I give it more time ,or run it on safe mode ?
  14. D

    infected with backdoor.tidserv.l

    Hi Kevin ,I been running combofix for 20 minutes , how long does it take to run ?is been on stage 4 for a while .
  15. D

    infected with backdoor.tidserv.l

    here is the copy of hijackthis: thanks Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 8:54:49 AM, on 8/15/2011 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16766) Boot mode: Normal Running processes...
Top