also @ TechSpot: Exploit allows command prompt to launch at Windows 7 login screen

TechSpot

Password stealing trojans, URL redirects - am I still infected?

Discussion in 'Virus and Malware Removal' started by Sesmu, Jan 29, 2008.

Thread Status:
Not open for further replies.
  1. Sesmu Newcomer, in training

    Hi,

    I ran a bunch of cleaning utilities - Ad-Aware, Spybot, HouseCall, McAfee Avert tools - and just want to find out if my system still has anything dangerous. From the behavior and cleaning utilities results I had (hopefully used to) password stealing trojans, URL redirects among other nasties. So here's my Hijack log:

    Thank you.
  2. jobeard TechSpot Ambassador

    The last two R1 entries look bogus as you have no proxy server running.

    The O17 entries can be deleted as the proper ones will be recreated after booting and
    connecting to your router (or modem).

    All the O23 entries point to missing files -- delete those too.
  3. Sesmu Newcomer, in training

    Thank you.

    So, how did those two R1 entries appear in the first place?

    And, besides what you pointed, there are no concerns with my system being infected by anything?

    Thanks again.
  4. jobeard TechSpot Ambassador

    I went for the obvious -- await someone else to analyze for infections :)
  5. Sesmu Newcomer, in training

    Hmm... I'd appreciate a detailed reply from someone. Thank you.
Thread Status:
Not open for further replies.