Home   News  Product reviews  Website reviews  Forums   Competitions  Subscribe 

Security >> HijackThis logs help and analysis

 |  Print Thread
Pancake
HijackThis Helper


Reg'd: Sat
Posts: 1257
Loc: Victoria,Australia
Re: Can't start in Safe Mode / ComboFix Log File
      Sun Mar 16 2008 10:00 PM

Just a few more bit to do and we are done.


Please copy this page to *Notepad* and save to your desktop for reference as you will not have any browsers open while you are carrying out portions of these instructions.

It's IMPORTANT to carry out the instructions in the sequence listed below.
1. Close any open browsers.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Open *notepad* and copy/paste the text in the quotebox below into it:

Quote:



Killall::

File::
C:\WINDOWS\system32\catsrvpsi.dll.bak







Save this as CFScript.txt, in the same location as ComboFix.exe which is on the Desktop.




Refering to the picture above, drag CFScript.txt into ComboFix.exe


When finished, it shall produce a log for you at C:\ComboFix.txt

Please copy and paste the ComboFix.txt along with a fresh HijackThis log in your next reply please.


*Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall*

============================


Go to http://www.kaspersky.com/kos/eng/partner/default/kavwebscan.html

Answer Yes, when prompted to install an ActiveX component.
  • The program will then begin downloading the latest definition files.
  • Once the files have been downloaded click on NEXT
  • Locate the Scan Settings button & configure to:[list]
  • Scan using the following Anti-Virus database:[list]
  • Extended
  • Scan Options:
    • Scan Archives
    • Scan Mail Bases
    [/list]
  • Click OK & have it scan My Computer
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.






  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply[/list][size=1]* Turn off the real time scanner of any existing antivirus program while performing the online scan[/size]

    --------------------



    Post Extras Print Post   Remind Me!     Notify Moderator
  • Rate this thread

    Jump to


    Entire topic
    Subject Posted by Posted on
    * Spy Shredder/Dropper small_01 - Now V.SLOW & random sites melzaway Fri Mar 14 2008 09:16 PM
    . * * Re: Spy Shredder/Dropper small_01 - Now V.SLOW & random sites Pancake   Fri Mar 14 2008 10:30 PM
    . * * Can't start in Safe Mode / ComboFix Log File melzaway   Sun Mar 16 2008 07:34 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File Pancake   Sun Mar 16 2008 10:00 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File melzaway   Sun Mar 16 2008 10:13 PM
    . * * Kaspersky report and combofix melzaway   Sun Mar 16 2008 11:18 PM
    . * * SDFix this time (and Kaspersky report and combofix) melzaway   Tue Mar 18 2008 12:02 AM
    . * * Re: SDFix this time (and Kaspersky report and combofix) melzaway   Tue Mar 18 2008 10:09 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File Pancake   Sun Mar 16 2008 10:56 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File Hello_ThereModerator   Wed Mar 19 2008 10:38 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File melzaway   Wed Mar 19 2008 11:31 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File Pancake   Wed Mar 19 2008 11:22 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File melzaway   Wed Mar 19 2008 11:26 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File Pancake   Wed Mar 19 2008 11:51 PM
    . * * Re: Can't start in Safe Mode / ComboFix Log File melzaway   Thu Mar 20 2008 12:37 AM

    Extra information
    0 registered and 9 anonymous users are browsing this forum.

    Moderator:  putasolutions, greysts, bricat, AndrewC, Joe_London, John_McKenna, Mouse, Hello_There, TheFatControlleR, Nanook, Noviciate 


    Print Thread
    Forum Permissions
          You cannot start new topics
          You cannot reply to topics
          HTML is disabled
          Mark-up is enabled

    Rating:
    Thread views: 0

    Contact Us | Privacy statement Main website
    Hitwise Top 10 Award Winner - Jan-Mar 2005

    About us | Contact us | Link to us | Terms & Conditions | Privacy Policy
    © Copyright IPC Media Limited, All rights reserved