also @ TechSpot: A List of PC Game Classics Available Free of Charge
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.

Go Back   TechSpot OpenBoards > Tech Support > Virus and Malware Removal

HJT log for review - windows firewall issue

Closed Thread
Bookmark Thread Tools
  #1  
Old 04-11-2006
Newcomer, in training
 
Member since: Apr 2006, 3 posts
HJT log for review - windows firewall issue

I recently encountered a virus that AVG picked up. My windows firewall seems to have stopped working (it was disabled and I am now unable to re-enable it) at the very same time (I'm assuming this has something to do with the virus, though I'm not up on this sort of thing).

Attached is my HJT log after running through the processes recommended on this site prior to posting said log.

This issue has been rather exhausting for me, I appreciate anyone who takes the time to have a look.
Attached Files
File Type: txt hijackthis.txt (4.9 KB, 2 views)
  #2  
Old 04-11-2006
Banned
 
Member since: Aug 2004, 25,945 posts
[B]Hello and welcome to Techspot.[/B]

Boot into safe mode. See how HERE. [url]http://www.bleepingcomputer.com/forums/tutorial61.html[/url]

Turn off system restore.(XP/ME only) See how HERE. [url]http://www.bleepingcomputer.com/forums/tutorial56.html[/url]

In Windows Explorer, turn on "Show all files and folders, including hidden and system". See how HERE. [url]http://www.bleepingcomputer.com/forums/tutorial62.html[/url]

Open your task manager, by holding down the ctrl and alt keys and pressing the delete key.

Click on the processes tab and end process for(if there).

ibm00001.exe

Close task manager.

Run HJT with no other programmes open. Have HJT fix the following, by placing a tick in the little box next to(if there).

O4 - HKCU\..\Run: [Shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"

Click on the fix checked button.

Close HJT.

Locate and delete the following bold files(if there).

C:\Program Files\Common Files\Microsoft Shared\Web Folders\[b]ibm00001.exe"[/b]

Reboot into normal mode and turn system restore back on.

Forget Windows firewall it`s not very good. Get the free Zonealarm firewall from [URL=http://www.zonelabs.com/store/content/catalog/products/sku_list_za.jsp;jsessionid=EElu1mSWlQjHS1lqOdGhtXP8vPmn2BX3FugIF1oqBBJ4j9pn XWWc!-559734354!-1062696904!7551!7552!NONE?dc=12bms&ctry=US&lang=en&lid=dbtopnav_zass]HERE.[/URL]

Regards Howard

Last edited by howard_hopkinso; 04-11-2006 at 11:04 PM..
To remove this ad, sign in. To register for a new account, click here.
  #3  
Old 04-11-2006
Newcomer, in training
 
Member since: Apr 2006, 3 posts
Howard,

Thank you very much for the reply. I was, however, unable to locate any of the files you mentioned for removal.

I will attempt to get the Zonealarm firewall you recommended, though I'm concerned that the issues I am experiencing with my Windows Firewall may be indicative of other problems existing on my machine as a result of the virus I picked up.

-Mike
  #4  
Old 04-11-2006
Banned
 
Member since: Aug 2004, 25,945 posts
You did In turn on "Show all files and folders, including hidden and system". See how HERE. [url]http://www.bleepingcomputer.com/forums/tutorial62.html[/url] as suggested?

If you would like to post a fresh hJT log, I`ll gladly check it to make sure the nasty entry has gone.

Regards Howard
  #5  
Old 04-11-2006
Newcomer, in training
 
Member since: Apr 2006, 3 posts
I got Zonealarm up and running. I've disabled Windows Firewall for now. I'm already feeling more confident with the features I see with this app.

I will go through the motions again and post a new HJT log tomorrow after work. I appreciate your help so I thought I'd at least give you the courtesy of a post before I turn in for the night (I just can't devote anymore energy to this issue tonight).

Thanks so much, Howard!

Edit: Forgot to mention... Yes I did make sure I turned on "show all files."
  #6  
Old 04-11-2006
Banned
 
Member since: Aug 2004, 25,945 posts
That`s ok.

Thanks for the feedback.

Regards Howard
To remove this ad, sign in. To register for a new account, click here.
Closed Thread

Thread Tools


Similar Topics
Topic Category Replies Last Post
Microsoft Jokes Off-topic | The Meeting Spot 126 05-27-2008 07:45 PM
System Mechanic 6 changed Network settings - can't access PC Storage and Networking 26 06-14-2007 04:47 AM
Windows XP SP2 Firewall issue Virus and Malware Removal 0 08-06-2005 03:08 PM
every1 read windows xp warning Links From Around the Web 0 07-28-2005 04:40 PM
Multiple OS-XP + 2000-second system boots safe mode only Windows OS 9 01-23-2005 09:25 AM


All times are GMT -4. The time now is 07:49 AM.