1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

[resolved]task manger not responding

Discussion in 'Virus & Other Malware Removal' started by Andrew Chng, Sep 9, 2004.

Thread Status:
Not open for further replies.
Advertisement
  1. Andrew Chng

    Andrew Chng Thread Starter

    Joined:
    Sep 9, 2004
    Messages:
    18
    Hi, I find that I have the following problems:

    1) Keep getting operation timed out from webpages and especially from this spinbox.versiontracker.com or Document contains no data. Need to click on weblink alot of times before it links me to the page.

    2) Cant double click some of my exe files and thus is unable to run my CD-label program. I can't run Norton as well. I also can't launch any media programs from double clicking on the file.

    3) I got MSN 6.2 signed out automatically and sometimes can't manually sign in back.

    4) The last time I run a check, [email protected] was not found. Now I can't even launch HiJackThis.exe and a few other exe files.

    In my last resort, I installed Avast4 to replace Norton, install Spybot S&D 1.3, TrojanHunter 4 (but it can't seem to delete the scanned files), XoftSpy.

    I tried downloading the symantec fix to solve the [email protected], but my system is not infected with [email protected]

    Also how do I unistall Norton's Liveupdate? When I do CLT+ALT+Delete to launch Task Manager, it flash out once and disappears. I can't do the START>RUN> msconfig.exe, redegit.exe etc...

    What do I do??
    I am desperate.
    Thanks
     
  2. cybertech

    cybertech Retired Moderator

    Joined:
    Apr 16, 2002
    Messages:
    72,115
    Hi Andrew Chng, Welcome to TSG!! :)

    If you still need help please post a HJT log.

    Make a folder on your hard drive, like My Documents\HJT
    Download Hijackthis.
    Unzip the file to the folder on your hard drive.

    Double click on Hijackthis.exe then click on the "Scan" button, then click on "Save Log".

    Copy and paste it back here and someone will be happy to review it.

    Don't make any changes until instructed to do so.
     
  3. Andrew Chng

    Andrew Chng Thread Starter

    Joined:
    Sep 9, 2004
    Messages:
    18
    There's one problem. I can't run HJT at all. Can't click on HJT to run it.
    But while doing a Panda scan, I copied down this:


    Incident Status Location

    Virus:Exploit/iFrame No disinfected C:\Documents and Settings\Andrew\Application Data\Thunderbird\Profiles\default.ls6\Mail\mail.pacific.net.sg\Inbox
    HTML:
                                                                                                                                             
    Virus:Trj/Downloader.SF       No disinfected                C:\Documents and Settings\Andrew\Local Settings\Temp\Temporary Internet Files\Content.IE5\ZGHKERU0\IELower[1].asd                                                                                                                                               
    Virus:Trj/Downloader.SF       No disinfected                C:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\D6HCJ7UL\IELower[1].asd                                                                                                                                                    
    Virus:Trj/Downloader.SF       No disinfected                C:\RECYCLER\NPROTECT\00000878.exe                                                                                                                                                                                                                               
    Virus:W32/Sasser.ftp          No disinfected                C:\WINDOWS\system32\cmd.ftp                                                                                                                                                                                                                                     
    Virus:Trj/Downloader.SF       No disinfected                C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KPYNK5EZ\IELower[1].asd                                                                                                                                            
    Virus:W32/Gaobot.ANK.worm     No disinfected                C:\WINDOWS\system32\mswinc.exe                                                                                                                                                                                                                                  
    Virus:W32/Gaobot.AEE.worm     No disinfected                C:\WINDOWS\system32\runndll.exe                                                                                                                                                                                                                                 
    Virus:W32/Sdbot.AQT.worm      No disinfected                C:\WINDOWS\system32\scvhosting.exe                                                                                                                                                                                                                              
    Virus:Bck/IRCFlood.F          No disinfected                C:\WINDOWS\system32\seystares\NBVCXZ.exe                                                                                                                                                                                                                        
    Virus:W32/Gaobot.AMI.worm     No disinfected                C:\WINDOWS\system32\spoolsvc.exe                                                                                                                                                                                                                                
    Virus:W32/Sdbot.gen.worm      No disinfected                C:\WINDOWS\system32\SPOOLSVD32.EXE                                                                                                                                                                                                                              
    Virus:W32/Sdbot.AOO.worm      No disinfected                C:\WINDOWS\system32\sysentry32.exe                                                                                                                                                                                                                              
    Virus:W32/Gaobot.ALU.worm     No disinfected                C:\WINDOWS\system32\TFTP3104                                                                                                                                                                                                                                    
    Virus:W32/Gaobot.ALU.worm     No disinfected                C:\WINDOWS\system32\TFTP7696                                                                                                                                                                                                                                    
    Virus:W32/Gaobot.ADZ.worm     No disinfected                C:\WINDOWS\system32\TFTP9840                                                                                                                                                                                                                                    
    Virus:W32/Sdbot.gen.worm      No disinfected                C:\WINDOWS\system32\wmplayer.exe                                                                                                                                                                                                                                
    Virus:Exploit/iFrame          No disinfected                D:\Documents and Settings\Andrew\Application Data\Thunderbird\Profiles\default.1ai\Mail\pacific.net.sg\Inbox[html]                                                                                                                                              
    Virus:W32/Bagle.pwdzip        No disinfected                D:\Documents and Settings\Andrew\Application Data\Thunderbird\Profiles\default.1ai\Mail\pacific.net.sg\Inbox[TextDocument.zip]                                                                                                                                  
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\01UB89MB\dwn[1].hta                                                                                                                                                        
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\01UB89MB\dwn[2].hta                                                                                                                                                        
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\01UB89MB\object2[1].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\01UB89MB\object2[2].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\4PP8ZVRC\object2[1].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\4X2BWL63\object2[1].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\4X2BWL63\object2[2].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\4X2BWL63\tibs1[2].hta                                                                                                                                                      
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\64IDTR6K\dwn[1].hta                                                                                                                                                        
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\64IDTR6K\object2[1].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\64IDTR6K\object2[2].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\64IDTR6K\object2[4].hta                                                                                                                                                    
    Virus:Exploit/iFrame          No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\64IDTR6K\wbk411.tmp                                                                                                                                                        
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\AHV0T4JY\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\AHV0T4JY\object2[4].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\C9QN89QN\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\C9QN89QN\tibs1[1].hta                                                                                                                                                      
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\G5AB4HYF\dwn[1].hta                                                                                                                                                        
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\G5AB4HYF\object2[1].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\G5AB4HYF\object2[2].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\J31JV14W\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\PHT6VM4R\dwn[1].hta                                                                                                                                                        
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\PHT6VM4R\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.R              No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\Q58B21M1\dwn[3].hta                                                                                                                                                        
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\SFUFYIIT\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\SFUFYIIT\object2[2].hta                                                                                                                                                    
    Virus:Trj/Dropper.E           No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\SFUFYIIT\object2[3].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\WNVVUCP1\object2[1].hta                                                                                                                                                    
    Virus:VBS/Inor.gen            No disinfected                D:\Documents and Settings\Andrew\Local Settings\Temporary Internet Files\Content.IE5\WNVVUCP1\tibs1[1].hta                                                                                                                                                      
    
    
    What do I do from here?
    Thanks cybertech
     
  4. cybertech

    cybertech Retired Moderator

    Joined:
    Apr 16, 2002
    Messages:
    72,115
    Down load Stinger it will fit on a floppy in case you have to use another machine.

    Reboot your machine in Safe Mode.

    Delete all of the folders under content.ie5
    C:\Documents and Settings\Andrew\Local Settings\Temp\Temporary Internet Files\Content.IE5

    Now run stinger.

    Empty your recycle bin.

    Reboot and see if you can get on line. If you can go here and run at least two of the online scanners.
    http://forums.techguy.org/t110854/s.html

    Then see if you can post a HJT log.
     
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/272027

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice