Over 1 million tech questions and answers.

spammer:Win32/tendroo.gen!B

Q: spammer:Win32/tendroo.gen!B

microsoft security essentials keeps alerting of a spammer:Win32/tendroo.gen!B,

I have tried Malwarebytes,AVAST full scan & boot scan, Microsoft OneCare full service scanner but none seems to help,

the Microsoft security essentials keeps on alerting, and when i press clean computer it tries cleaning but then says Not Found , and returns to normal,,

And since late firrfox keeps opening automatically two tabs , one goes to http://www.xn--d-zfa.com/ and the other with this weird web address http://www.›d%1cj%c2%adզorŽ>.com/..

I have the latest virus definitions /microsoft updates / firewall etc, what can i do to stop this Win32/tendroo.gen!B

please help guys..........................I have switched off the microsoft secutiry essentials as I am not supposed to run two virus guards at once, in that case is avast or the new Microsofts Security essentials better?

RELEVANCY SCORE 200
Preferred Solution: spammer:Win32/tendroo.gen!B

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link http://downloadreimage.com/download.php. (This link will automatically start a download of Reimage that you can save to your computer.)

A: spammer:Win32/tendroo.gen!B

Please do not create multiple threads for the same problem.
Continue here: http://forums.techguy.org/malware-removal-hijackthis-logs/888691-avast-home-comodo-firewall.html

Read other 1 answers
RELEVANCY SCORE 115.6

microsoft security essentials keeps alerting of a spammer:Win32/tendroo.gen!B,

I have tried Malwarebytes,AVAST full scan & boot scan, Microsoft OneCare scanner but none seems to help,

the Microsoft security essentials keeps on alerting, and when i press clean computer it tries cleaning but then says Not Found , and returns to normal,,

And since late when i restart the computer firefox automatically opens two tabs , one goes to http://www.xn--d-zfa.com/ and the other with this weird web address http://www.d%1cj%c2%adզor>.com/..

I have the latest virus definitions and microsoft updates with the firewall, what can i do to stop this Win32/tendroo.gen!B

please help guys..........................
 

A:spammer:Win32/tendroo.gen!B

Please do not create multiple threads for the same problem.
Continue here: http://forums.techguy.org/malware-removal-hijackthis-logs/888691-avast-home-comodo-firewall.html
 

Read other 1 answers
RELEVANCY SCORE 61.6

hi,

I'm attaching the pic where you guys can see what virus I just got... I tried to delete it but I didnt succeed.
any suggestion?
thanks!

p.s. my HJL :

Logfile of HijackThis v1.99.1
Scan saved at 12.20.15, on 05/01/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\Eset\nod32krn.exe
C:\WINDOWS\shost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\rundll32.exe
C:\Programmi\Eset\nod32kui.exe
C:\WINDOWS\System32\aim.exe
C:\Programmi\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\Mixer.exe
C:\Programmi\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programmi\eMule\emule.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\hffext\hffsrv.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [messenger] aim.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Programmi\Zone Labs\Zo... Read more

A:just got this virus: win32/Spammer

Read other 14 answers
RELEVANCY SCORE 42.8

My Avast antivirus recently started detecting a whole host of viruses. I ran a thorough scan of all files and deleted every infected file until the scanner turned up a hit in the operating memory. It then suggested I run a boot sector scan - I did so. Upon rebooting Avast started detecting more viruses. This time I rebooted into Safe Mode and ran the scanner there, deleting everything I found. Apparently one of the files I deleted was important, because after that my computer Blue-Screened during boot-up and I had to do a system restore to a save point from a few days ago (before the virus was contracted). Since then the virus has continued to crop up, and I haven't the foggiest notion of how to get rid of it.

The title is a list of the virus descriptions that my Avast scanner gave me. I ran all the programs the walkthrough on this site instructed me to, but the RootRepeal program crashed and generated an error message and crash report, both attached (error message in .png image format - I took a screenshot of it).

Thanks for your help!

__________________________________________________________________________________
DDS (Ver_09-12-01.01) - NTFSx86
Run by Bryan at 18:56:06.09 on Wed 12/02/2009
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_17
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3070.1546 [GMT -5:00]
============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32&... Read more

A:Infected with js: downloader-FT Win32:Banload-GLR Win32:Malware-gen Win32:Refpron-AW Win32:Rootkit-gen Win32:VB-NWC

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 3 answers
RELEVANCY SCORE 41.6
Q: Spammer

i was spammed and i don't know who else to come to...my files and pictures are disappearing before my eyes and i don't know how to stop them from accessing my computer.....i went to check where all my passwords were kept...so i could auto-sign in to various sites and all of the passwords are gone..the storage area is empty....i went to look at various pictures of friends of mine and as i was looking at them they disappeared....every site i go to a pop up appears and say it is having a problem because someone else signed on at the exact time i did....from the same browser....i know i must change things to prevent him/them from entering my computer again but what...other than my windows password to start my pc running.....SOMEBODY HELP ME....ASAP PLEASE........If i put this in the wrong dont be angry and scold me i need help right now...
 

A:Spammer

your pc seems to have been compromised
Does anyone else other than you use your computer?
Do you have a firewall that filters inbound and outbound connections?
Go about changing all your passwords immediately
 

Read other 2 answers
RELEVANCY SCORE 41.6

I was just checking my junkmail and found a 'notification for failure of delivery' message, but whe I opened it I saw that it's spam, as though *I* had sent this to someone else and it failed to get through.
What on earth has happened?
Is this in itself spam or has my email been hacked (or at least compromised)???

Help!
 

A:I've been used as a spammer?

Read other 14 answers
RELEVANCY SCORE 41.2

Hi,Please help me in getting rid of the pop ups which keep coming up.trojan downloader win32 agent bqtrojan clicker win32 tiny htrojan spy win32 key logger.aatrojan spy win32 green screentrojan spy html bankfraud.dqHijakThis log file.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 15:00:40, on 9/8/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16705)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Common Files\Symantec Shared\ccProxy.exeC:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeC:\Program Files\Symantec Client Security\Symantec Client Firewall\ISSVC.exeC:\Program Files\Common Files\Symantec Shared\SNDSrvc.exeC:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exeC:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Hewlett-Pac... Read more

A:Infected With Trojan Clicker Win32 Tiny.h / Downloader Win32 Agent Bq / Spy Win32 Key Logger.aa/spy Win32 Green Screen / Html B...

Sorry for the delay. If you are still having problems please post a brand new HijackThis log as a reply to this topic. Before posting the log, please make sure you follow all the steps found in this topic:Preparation Guide For Use Before Posting A Hijackthis LogPlease also post the problems you are having.

Read other 1 answers
RELEVANCY SCORE 41.2

hello. sorry about this mess. im afraid i dont really know what im doing. my nephew asked me to help get rid of a red circle with a white cross telling him he had spyware but its turned into something much worse. he only used windows firewall and nothing else saying he only uses world of warcraft and msn and music and doesnt surf the web!! i tried to scan with avg but it was aborted and the windows firewall was continually turned off no matter how many times i put it on. tried other antivirus progs but all were turned off. eventually i managed to do online scan on microsoft safety centre and deleted quite a few v high threat trojans but many unable to clean. i also ran sophos rootkit and nearly gave myself a heart attack - 938 hidden things that recommend not to clean. i resorted to you now. i followed the tutorial for posting hijack this and here are the resultskaspersky report for critical areas--------------------------------------------------------------------------------KASPERSKY ONLINE SCANNER 7 REPORT Saturday, November 29, 2008 Operating System: Microsoft Windows XP Professional Service Pack 3 (build 2600) Kaspersky Online Scanner 7 version: 7.0.25.0 Program database last update: Saturday, November 29, 2008 12:40:36 Records in database: 1426420--------------------------------------------------------------------------------Scan settings: Scan using the following database: extended Scan archives: yes Scan mail databases: yesScan area - Critical Areas: C:\Do... Read more

A:win32/alureon.gen, win32/Eldycow.en!A, win32/Small, win32/Olmafik, winNT/Xantvi.gen!A, Trojan-Game Thief and more

i think i have sorted this. i ran SDFix which cleaned up enough for me to install antivirus. avast caught lots of trojans and i have now been able to onlinescan and spybot s/d etc. all logs now coming back clean so can u delete this post please

Read other 3 answers
RELEVANCY SCORE 40.8

Can someone tell me what these are? I emailed AOL-no reply. Comcast said not to worry, but to contact AOL if it happens again. I received 16 of these in a 15 min span. All returned from AOL. Here are the headers from 3 of them. I had sent no email at the time. Is this just spam, or was my address hijacked? The headers make me dizzy. Any explanation and/or advice will be greatly appreciated. Thank you.

Received: from omr-d06.mx.aol.com ([205.188.156.71])
by sccrmxc14.comcast.net (sccrmxc14) with ESMTP
id <20060524175331s14004gqg7e>; Wed, 24 May 2006 17:53:31 +0000
X-Originating-IP: [205.188.156.71]
Received: from rly-yc05.mail.aol.com (rly-yc05.mail.aol.com [172.18.205.148]) by omr-d06.mx.aol.com (v107.10) with ESMTP id RELAYIN4-544749d8715c; Wed, 24 May 2006 13:53:13 -0400
Received: from localhost (localhost)
by rly-yc05.mail.aol.com (8.8.8/8.8.8/AOL-5.0.0)
with internal id NAA03782;
Wed, 24 May 2006 13:53:10 -0400 (EDT)
Date: Wed, 24 May 2006 13:53:10 -0400 (EDT)
From: Mail Delivery Subsystem <[email protected]>
Message-Id: <[email protected]>
To: <[email protected]>
MIME-Version: 1.0
Content-Type: multipart/report; report-type=delivery-status;
boundary="NAA03782.1148493190/rly-yc05.mail.aol.com"
Subject: Returned mail: User unknown
Auto-Submitted: auto-generated (failure)
X-AOL-IP: 172.18.205.148

Received: from omr-m05.mx.aol.com ([64.12.138.17])
by rwcrmxc20.comcast.net (rwcrmxc20) with ESMTP
id <20060524175127r2000m5js... Read more

A:Am I the spammer or spamee?

Read other 7 answers
RELEVANCY SCORE 40.8

Hi guys. my pc sends spam mails.
when i start windows xp, it connect to ev1s-209-62-68-194.ev1servers.net port 80 and get emails adresses from different servers. and finally start to send emails. norton, ad-ware, avast and kaspersky cant find any virus. please help me.
thanks.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:41, on 2008-02-21
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CheckPoint\SSL Network Extender\slimsvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\sapdb\programs\web\pgm\wahttp.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\sapdb\programs\pgm\serv.exe
C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett... Read more

Read other answers
RELEVANCY SCORE 40.8

Emails are being sent to many on the email list. This is a VISTA AMD 64 system. Here's the HijackThis log: Logfile of Trend Micro HijackThis v2.0.2Scan saved at 9:48:45 PM, on 3/28/2010Platform: Unknown Windows (WinNT 6.01.3504)MSIE: Internet Explorer v8.00 (8.00.7600.16385)Boot mode: NormalRunning processes:c:\PROGRA~2\mcafee.com\agent\mcagent.exeC:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\STService.exeC:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exeC:\Windows\System32\spool\drivers\x64\3\E_S10IC2.EXEC:\Program Files (x86)\Polar\WebSync\WebSync.exeC:\Program Files (x86)\Java\jre6\bin\jusched.exeC:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exeC:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exeC:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exeC:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWow64\Macromed\Flash\FlashUtil10e.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exeR1 - HKCU\Software ... Read more

A:Email Spammer

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 19 answers
RELEVANCY SCORE 40.8

I recevied an email frommyself the other day, but I didn't send it. It was my email address in the to and from lines; it ended up in my Bulk folder since it was spam. I sent a not to my ISP and they said to look for info on line (nice help). So how can I stop someone from using my email to send Spam? Thank-you!
Holly

A:Spammer Using My Email

A virus can search the address book & send emails using your address.
Either you or someone with your address in their address book is infected with a virus that does this.
Run a scan on your computer.
Contact anyone you know that might have your address in their address book & suggest they run a virus scan too.

Read other 2 answers
RELEVANCY SCORE 40.8

I suspect that a spammer is using my computer to send his spam.

I repeatedly get this message for emails I don't send...

"Mail System Error"

"This Message was undeliverable due to the following reason:

Your message was not delivered because the destination computer refused
to accept it (the error message is reproduced below). This type of error
is usually due to a mis-configured account or mail delivery system on the
destination computer; however, it could be caused by your message since
some mail systems refuse messages with invalid header information, or if
they are too large.

Your message was rejected by cluster1.us.messagelabs.com for the following reason:

Message filtered. Please see the FAQs section on spam
at http://www.messagelabs.com/support/ for more
information. (#5.7.1)

The following recipients did not receive this message:

<[email protected]>

Please reply to <[email protected]>
if you feel this message to be in error."

please help.
 

A:Spammer using my computer?

Read other 8 answers
RELEVANCY SCORE 40.8

Hello;
I was marked as a spammer, and I'm afraid this virus/botnet is still active, and I am even more afraid it has infiltrated other hosts on the network. Please help me!


Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 2:38:54 PM, on 5/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\Program Files\RemotelyAnywhere\RaMaint.exe
C:\Program Files\RemotelyAnywhere\RemotelyAnywhere.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\system32\Tablet.exe
C:\WINDOWS\system... Read more

A:Help, marked as a spammer

Hi and welcome to TSF.

Apologies for any delay in replying, but we have been rather busy lately, and, of course, all our helpers are volunteers.

Since it has been a few days since you first posted, please follow these instructions if you still need assistance.

Download Deckard's System Scanner (DSS) to your Desktop . Note: You must be logged onto an account with administrator privileges.Close all applications and windows.
Double-click on dss.exe to run it, and follow the prompts.
When the scan is complete, two text files will open - minimised > extra.txt and maximised > main.txt.
Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt back in this thread (do not attach it).
Please attach extra.txt to your post.


To attach a file to a new post, simplyClick the[Manage Attachments] button under Additional Options > Attach Files on the post composition page, and
copy and paste the following into the "Upload File from your Computer" box:C:\Deckard\System Scanner\extra.txt

Click Upload.

I will monitor this thread for your reply.

Thank you for your patience.

Read other 1 answers
RELEVANCY SCORE 40.8

Recently I started noticing a lot of "message delivery failures" coming into my inbox when my self hasn't been sending any emails. I noticed my Hotmail settings were changed, the signature was advertising some website that sold products, as well as "vacation messages" set up too do the same if I recieved some.

I ended up changing the password today and I was wanting too be sure if I fixed this problem. Is thier anyway too check it?

A:Email Spammer

There really is not a one size fits all answer to see if you have fixed it. You'll just have to keep an eye on things for awhile to see if you get the failures again. Read through the following for more information as to what you can do to protect your account: Windows Live Hotmail Technical Support BlogCreate a Safe List for incoming messages Recent reports of Account hijacksSpam Prevention: Don't Let Spammers Find You

Read other 1 answers
RELEVANCY SCORE 40.8

Spamhaus tell my I have been collared by spammers. I am rather out of my depth with this - apologies - and hope I have included the information you want. I run WINXP SP2, save my documents to drive D and run most programmes from drive E. My back up is on a partitioned internal hard drive (K/ L) that is normally disconnected from the USB port. I had a full Avast 7 but cannot afford the sub, so now I have the free version, plus Malwarebytes.

A short time ago I reformatted C drive and re-installed Windows. Spamhaus say there was spam activity after that.

My concern is whether it is possible/likely that spam can have entered drives D, E and K/L.

I'm grateful for any help you can give me.

John Orford
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows XP Professional, Service Pack 2, 32 bit
Processor: Intel(R) Pentium(R) Dual CPU E2200 @ 2.20GHz, x86 Family 6 Model 15 Stepping 13
Processor Count: 2
RAM: 895 Mb
Graphics Card: SiS Mirage 3 Graphics, 128 Mb
Hard Drives: C: Total - 12307 MB, Free - 7299 MB; D: Total - 130057 MB, Free - 11246 MB; E: Total - 10260 MB, Free - 3113 MB;
Motherboard: Acer, F672CR
Antivirus: avast! Antivirus, Updated: Yes, On-Demand Scanner: Enabled

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:41:12, on 02/09/2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.e... Read more

A:rootkit/spammer

Please run the MGA Diagnostic Tool and post back the report it creates:
Download MGADiag to your desktop.
Double-click on MGADiag.exe to launch the program
Click "Continue"
Ensure that the "Windows" tab is selected (it should be by default).
Click the "Copy" button to copy the MGA Diagnostic Report to the Windows clipboard.
Paste the MGA Diagnostic Report back here in your next reply.

Next,

Please download WVCheck from Artellos.com.
Double click WVCheck.exe. (If you downloaded the zipped version you will need to extract it.)
As indicated by the prompt, This program can take a while depending on your hard drive space.
Once the program is done, copy the contents of the notepad file as a reply.

Post both of those logs please,

Kevin
 

Read other 1 answers
RELEVANCY SCORE 40.8

i started getting alot of spam after posting to few classified sites--i was tolerent at first but now im mad,i understand how to read the headers--recieved from etc,but if i have an isp number how do i find out what isp it came from so i can complain--i tried puting the number in the address bar in ie5.5 but usually i get the page cannot be displayed or i get a page that says i logged onto apache server-i assume that is the server they sent the spam through,but how do i find the isp name using the isp number?
i hope you understand what i am talking about
i use win 98
 

A:finding a spammer

Read other 6 answers
RELEVANCY SCORE 40.8

I have been receiving spam from a place called kittypages.com. I resent spam, as most do, and I am tired of just deleting it without getting some kind of revenge.

I programmed my Eudora Mail filters to react in such a way that 1068 e-mails are sent to this spammer with just two clicks. I managed to send approximately five hundred thousand e-mails to this bast*rd last night and this morning.

Now, the e-mail is being returned with a message, "relaying denied".

Would someone please look at this header and tell me exactly what is happening. To be clear, I want an opinion from someone who knows. Would those who don't know, please refrain from "I guess" responses.
Failed to deliver to '[email protected]'
SMTP module(domain kittypages.com) reports:
host mail.kittypages.com says:
550 5.7.1 <[email protected]>... Relaying denied
Reporting-MTA: dns; dc-mx13.cluster1.charter.net
Original-Recipient: rfc822;[email protected]
Final-Recipient: rfc822;[email protected]
Action: failed
Status: 5.0.0
Received: from [65.88.95.78] (HELO Alex.Charter.net)
by dc-mx13.cluster1.charter.net (CommuniGate Pro SMTP 3.5.9)
with ESMTP id 63389393; Fri, 14 Mar 2003 11:50:31 -0500
Message-Id: <[email protected]>
X-Sender: [email protected]
X-Mailer: QUALCOMM Windows Eudora Version 5.1
Date: Fri, 14 Mar 2003 10:49:21 -0600
To: [email protected],

 

A:Revenge Against a Spammer

Read other 16 answers
RELEVANCY SCORE 40.8

managed to stop most spam in hotmail inbox BUT there's a persistant one from the same network.
I've complained and complained to their abuse addresses to no avail.
..are there other tactics to try?
 

A:persistent spammer

Is it always coming from the same domain name?
If yes hotmail lets you filter by domain name.
 

Read other 2 answers
RELEVANCY SCORE 40.8

During the last two days I have received hundreds of delivery-failure notices from emails that are using my domain name jdmpics.com in their return address fields. I am the owner and sole user of the domain so I receive every email sent to that domain. The emails use names like [email protected], [email protected], [email protected], etc. Some of the notices were from spam-filtering companies telling me jdmpics.com has been added to their list of bulk emailers and emails from that domain will be blocked. Regrettably I have deleted those messages and don't know which blacklists I am now on.

I examined many of the bounced spams. Each email has a link at the bottom using various domains -- panchoem.com, softini.net, dudukasoft.com, oempivo.com -- all of which go to a site called Downloadable Software. The Whois registrant for each domain gives an address in Tahiti, but I could not find the person listed in a Pacific island telephone directory that included Tahiti. The Downloadable Software site reveals no contact information or location for the company. Downloadable Software sells big-name software at 80% discounts, probably illegal copies.

What can I do? I daresay if big companies like Microsoft, Symantec, Adobe, etc can't shut them down then I probably can't do anything. I want them to stop using my domain and I want my domain to be removed from spammer blacklists. If you read this far, thanks for listening. <g>

Jon
 

A:My address is being used by a spammer. What can I do?

Read other 9 answers
RELEVANCY SCORE 40.8

I didn't read the rules, and now I'm banned.
 

A:Oops, I'm a SPAMMER

Category II Offenses
Advertising and Spamming

* Spamming/Advertising - You cannot post advertisements of any sort in any forum. This includes products, services, or web sites from which you'd directly or indirectly benefit in any way.
o EXCEPTIONS (may be objected to, at the discretion of the moderators)
1. Unaffiliated Announcements - If you see a great deal somewhere, you're welcome to share it with everyone by posting it in the "General Opinions and Reviews" forum if and only if you are completely unaffiliated with that deal.
 

Read other 1 answers
RELEVANCY SCORE 40.8
RELEVANCY SCORE 40.8
RELEVANCY SCORE 40.8

It also says my IP address is different than what my pc says it is. My email address is on some 'botscout blacklist' according to the site I've been on multiple times. What is up with this? Thanks!

A:Website says I'm a spammer

It seems somebody submitted you to their database yesterday, you will need to contact botscout and ask to be removed - BotScout.com

Read other 0 answers
RELEVANCY SCORE 40.8

So I log onto my Windows XP Proffesional machine today, see my dad downloading stuff, and think, okay, whatever.

Log onto MSN, shortly after, everyone on my contact list is sent some stupid link in German or something to go to some site. It's happened about 4-6 times, and it's getting fairly annoying. On top of that, I don't want them to get infected.

I would love any bit of help you guys could provide me

Here's my HiJackThis log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:43, on 2008-12-02
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Intel\IDU\awServ.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\TortoiseSVN\bin\TSVNCache.exe
D:\DOCUME~1\Tata\LOCALS~1\Temp\sidebar.exe
D:\Program Files\Intel Audio Studio\IntelAudioStudio.exe
D:\Program Files\ESET\ESET Smart Security\egui.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Program Files\Java\jre6\bin\jusched.exe
D:\Program Files\ESET\ESET Smart Security\ekrn.exe
D:\WINDOWS\system32\igfxtray.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDO... Read more

A:Some ridiculous MSN spammer

bump
Not sure if they're allowed, but I need someone to help me out.
 

Read other 2 answers
RELEVANCY SCORE 40.8

Hi,

I am a self employed photographer who only ever sends emails to individual friends and clients, occasionally I send a group email to friends but NEVER have I ever sent anything resembling Spam.

Problem is now that a large percentage of my emails are not being delivered because my IP address is listed under a whole bunch of anti-spam companies.

My ISP blames them, my host blames my ISP and the anti-spam companies don't care at all.

I have figured it's not my domain name as I can send from the same email address from my Treo. My ISP suggested I clean my laptop which I did, in fact a complete format. They also suggested I renew my IP Address through ipconfig at the command prompt.

When I do that, it seems everything is OK again and I can send emails to recipients who I previously couldn't. But about ten minutes later though it reverts back to the same problem.

Can anyone offer some help, this is extremely frustrating.

Thanks,



Darrin



This is typical of a message I get back although sometimes I get no notification at all.



Action: failed
Status: 5.0.0
Diagnostic-Code: X-Postfix; host mail.pennmarhaus.com[213.86.240.250] said: 550
5.7.1 This system has been configured to reject your mail. An IP address
(87.201.62.122) found in the message's 'Received:' headers is listed by the
lookup site 'sbl-xbl.spamhaus.org.'. (in reply to end of DATA command)

A:Help Me Please, Apparently I am a Spammer!

Hello and Welcome. Apologies for the delay, and thanks for your patience.

Please subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

Before beginning the fix, read this post completely. If there's anything that you do not understand, kindly ask your questions before proceeding. Ensure that there aren't any opened browsers when you are carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

Please do this:
Download ComboScan to your Desktop. Note: You must be logged onto an account with administrator privileges.
Close all applications and windows.
Double-click on comboscan.exe to run it, and follow the prompts.
When the scan is complete, a text file will open - ComboScan.txt
Copy and paste the contents of ComboScan.txt in your thread in the HijackThis Log Help forum.
A folder, C:\ComboScan will also open. In it will be another text file, Supplementary.txt
Please Attach Supplementary.txt to your post. (If the folder does not open, please go to it to find Supplementary.txt)
To attach a file to a new post, simplyClick the[Manage Attachments] button under Additional Options>Attach Files on the p... Read more

Read other 1 answers
RELEVANCY SCORE 40.8

Hi, I have an email address I only use for facebook, and today I got a spam message, how did a spammer get my address?

A:So how did a spammer get my address?

Perhaps you have a weak password and your account has been compromised.

Run through the "Best Practices" on this site to see if any of them rings a bell: http://www.sophos.com/en-us/security-news-trends/best-practices/facebook.aspx

Read other 26 answers
RELEVANCY SCORE 40.8

I'm running windows 7 pro, Microsoft security esentials, and just did a full scan with MBAM and everthing is coming up clean.

I'm still sending out spam to all my contacts every night.

here is my latest HJT log

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:27:57 AM, on 3/1/2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Freecorder\FLVSrvc.exe
C:\Program Files\MSN Toolbar\Platform\4.0.0401.0\mswinext.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Users\Mike\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - ... Read more

A:Help! I've turned into a spammer.

A little further research shows the spam showing up in my sent folder at the hotmail.com site but not in my outlook sent folder. I changed my hotmail password and I believe that will at least stop the flow. It turns out, that the spam was only going to the same 12-15 addresses every time and not all 900 contacts in my contact file. I still believe it's something on my PC sending it out, so any help is appreciated.
 

Read other 1 answers
RELEVANCY SCORE 40.8

Hi,

I installed yahoo messenger last week, and it was a huge mistake! It installed without my permission a toolbar in both browsers I use, Firefox and explorer, set "Yahoo" the default search engines in both browsers too, and changed the homepage in both of them to "Yahoo website , all without my permission or even letting me know ! I un-installed all their bugs from my machine , but still I cannot change some features in my browsers. everything I search redirected automatically to "Yahoo" ! I am really shocked , in the past I considered this " Yahoo" as a respectful clean professional site, but no more !

Do you have any idea how to get ride of this "Yahoo" spam ?

Thanks
 

A:Has Yahoo become a spammer ?

Read other 16 answers
RELEVANCY SCORE 40.8

well first i noticed that norton continuously scanned for sended messages which i didnt do. i did a scan with norton and spybot and got positives on smitfraud, spysheriff, spysheriff1, torpig and an app 102d0b98. I cleand my system but the problem wasnt gone.
then i noticed that i couldnt access the windows firewall due a non identificated problem so i got zonealarm and seemed to work but couldnt configurated it neither and now i dont have internet connection (some problem with IP assign) and the system seems to be clean. I've tried smidfraudfix too.. what else can i do.. i got windows xp sp2.... the problem source seemed to be a corrupted keygen but cant locate it

thanks a lot
 

A:Solved: can't get rid of spammer

Read other 16 answers
RELEVANCY SCORE 40.8
RELEVANCY SCORE 40.8

Hello,My computer became infected last night, and It's pretty bad. I became infected with Infected: Trojan:Win32/Alureon.BT, Win32:Jifas-CY, and the others listed (maybe more). Long story short, I'd just watched Harry Potter on dvd, and logged onto the computer to see who he married in the end. I ended up at a Harry Potter encyclipdiea website, and looked it up. Avast went nuts after a few minutes, and showed 4 different virus alerts, and Windows Defender showed 1 as well after I shut down.The virus listed by Defender was Trojan:Win32/Alureon.BT. Avast listed Win32:Jifas-CY, I didn't get the others in time.The last 2 I listed in the title, a "security center alert" claimed it detected these programs trying to acess the internet. It listed one more, but I didn't get it's name in time.I know Alureon is a downloader and backdoor for other viruses, and it basically shuts down security systems, which it's trying to do since windows now thinks I have no anti-virus installed.All of these trojans are listed as "server" and "high risk." I'm not sure a root kit didn't try to make it's way in too.EDIT: I wanted to add a few things in. First, I have XP SP3 set up with multiple accouts, one admin "owner" account and then 1 limited access "user" account. The Viruses came in while the user account was logged on (I am not dumb enough to connect to the internet with an admin account). It seems the Viruses we... Read more

A:Infected: Trojan:Win32/Alureon.BT, Win32:Jifas-CY, Backdoor.Win32.Kbot.al, Net-Worm.Win32.Mytob.t

Hello again.I booted into Safe Mode and ran an Avast scan (which took forever) and it was a waste of time. The stupid thing found nothing wrong, and said the system was clean (which is the opposite it says when you log into the limited user account). The computer (and specially that account at least) is definitely infected. Could the viruses be hiding themselves when in safe mode?Should I scan from a Pre-install environment like BartPE? Or from the Regular "Owner" Admin account? I waited 2 days for the stupid program to scan 700gb (painfully slow for a qaud core, though to be excepted in safe mode), and it was useless.Other than running windows defender (which I'm doing now), and maybe trying MBAM, I'm not sure what to do. I'm not expect enough to dive into programs like OTViewIT and Combofix, so I'll need help here. Please, ANY HELP is appreciated. I would rather NOT wipe the drive and reinstall the whole system, but I need to get this figured out.Does no one have any ideas???

Read other 5 answers
RELEVANCY SCORE 40.4

Hotmail.

I've tried EVERYTHING.
Cant stop this junk from this one email address
 

A:Solved: Unstoppable spammer

Read other 8 answers
RELEVANCY SCORE 40.4

Yesterday I suffered the results of a stolen e-mail address. A spammer broadcast a message to people s/he thought were in my e-mail address book. Strangely, the addresses s/he used were at least 4 years old. Many, probably most, were obsolete/invalid, so I wound up with 45 'bounce' messages in my Inbox -- which was the first indication I had that someone had used my e-mail address.

I realize it's relatively easy for a spammer to set up an account using my e-mail address, and I assume there's little I can do to keep that from happening (is that true?), but I'm EXTREMELY curious as to where s/he found a 4-or-more-year-old address book to send her/his garbage out. I currently use Comcast. The e-mail system I used before that was AOL, but that was at least 10 years ago.

Within minutes of discovering the stolen address, I changed my password to a VERY cryptic one (generated by LastPass). But I'm dubious that will do anything to stop the spammer from repeating the incursion. Will it? Is there any way to keep the spammer from using my address other that retiring that e-mail address and creating a new one?

FYI, I ran Avast, Malwarebytes, SuperAntiSpyware and Trend Micro House Call scans to see if I had spyware or worms on the computer. None of them found anything.
 

A:Solved: Where did the spammer get the addresses?

Read other 11 answers
RELEVANCY SCORE 40.4

OK, this is really annoying. I've tried two internet connections (both wired and wireless). I tried to sign up for a forum website (REX Support Forums)
After filling out complete information and agreed to the terms and stuff, the website tells me I'm a "known spammer". When I tried to create my account again to see what's wrong, I typed my email and beside the input box, the following message says "Banned E-mail". The next thing was I wasn't allowed to view forums anymore. The screenshot below is the greeting I get every time I try to access the forum on their website:
I've known recently that their forums had been Ddos attacked. It also tells me to check if my e-mail is listed here: (Stop Forum Spam) Can anyone tell me why this is occurring and how to solve this? Thanks in advanced.

A:Why is this website telling me I'm a spammer?

Just for your information: I am and will never be a spammer.

Read other 3 answers
RELEVANCY SCORE 40.4

Hi

So it seems someone managed to hijack my WOW account (it has been reactivated by someone else and reported as a spammer in game).

So Blizzard recommend I do certain things, one of which is paste my hijackthis log on here. So here it is - can anyone see anything bad going on please?

I cleaned things up first with several malware removal tools - as per blizzards instructions. To be honest i don't care about the WoW account as I no longer use it but I need to know if there is a keylogger / trojan in place on my pc! Many thanks in advance.

hijackthis log :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:07:26, on 27/03/2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\EDIMAX\Common\RaUI.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Sof... Read more

Read other answers
RELEVANCY SCORE 40.4

I am having the same problem as listed below, tried a few things myself, Malwarebytes found some registry issues and I removed those and also ran a security scan thru MSF Security Essentials, removing some things from there, but the problem persists.

Its the same problem as this thread:
http://forums.techguy.org/virus-other-malware-removal/1137415-please-help-me-remove-platypus.html

I have downloaded FRST64 and here are the results
FRST.TXT

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-11-2014
Ran by Barbel (administrator) on BARBEL-HP on 19-11-2014 15:20:07
Running from C:\Users\Barbel\Desktop
Loaded Profile: Barbel (Available profiles: Barbel)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(iolo technologies, LLC) C:\Program Files (x86)\iolo\System Mechanic\ioloGovernor64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
() C:\Program Files (x86)\Roxio\BackOnTrack\App\SaibSVC.exe
() C:\Program Files (x86)\Roxio\BackOn... Read more

A:Browser HiJack and pop-up spammer

anybody?
 

Read other 2 answers
RELEVANCY SCORE 40.4

Can anyone explain this to me?

I use gmail, my brother uses comcast.

Last Monday (April Fools day) I received an email from my brother or so I thought so....

It had his correct address, but the subject line was a link to some gardening site, and when you clicked on it my WOT threw up the dark screen and warned me not to go any further.
WOT linked the redirect to a Russian site known for spam and I did not go any further and backed out of there.

We talked about it and he said to just ignore it and delete it.

Now today I received another one, and did not open this one. What would my best course of action be?

I did mail him back in a separate and different email and told him I would wait for his decision, but I figure I had two ways to go.

1.) Report it as spam to gmail, but I didn't want to cause him more headaches, and have his email blacklisted.

2.) Just delete it and ride out the storm of spam emails.

What would my best course of action be?

The sad part about this is our spam had just started to calm down to a trickle, but it is starting to build back up.

A:My brother got hit with a spambot or spammer.

Get him to change his e-mail password to something more secure using letters and numbers. This should put a stop to it. If he uses e-mail software as opposed to web-based e-mail eg outlook/thunderbird he may have an infection on his local machine. It would be a reccomendation for him to use Malware Bytes to scan his system.

Does he recieve a lot of mailer-deamon delivery failure notifications for e-mails he has not sent? if so his account is being used for spam.

Worst case scenario, he should set up rules to forward all his important mail to a new account and stop using this account, then report as spam.

Read other 3 answers
RELEVANCY SCORE 40.4

My norton antivirus detected Hacktool.Spammer and removed it but my PC still lag. And always when i start my pc norton alerts: Hacktool.spammer found. Deleted from c:\windows\system32\"alot of number".exe.I think there is another virus whic creates Hacktool.Spammer or smth.
I've looked log and found somekind Trojan.Tannick.B was deleted 1 minute before Hacktool.Spammer went in my pc i don't know what to do i ran a norton scan in safe mod,ad-aware scan,house call scan and they all say there is no infectons in your PC.
Please help i don't want to reinstall my windows again.
 

A:Hacktool.Spammer madness

well norton doesn't alert now, but my pc still lagz
 

Read other 1 answers
RELEVANCY SCORE 40.4

Hi folks, I appreciate any help you can give me. I have Kaspersky Internet Security 2010 installed, Kaspersky says it detected a HEUR Trojan Script Iframer and it won't let me quarantine it, it just says "infected". It has also alerted me of a PDM keylogger. I don't know if I'm being paranoid but it seems that when I type keys it lags. I've defragged and memory is fine so I'm kind of clueless as what to do next. Also some websites make me verify if I'm human often. I checked out my IP address and it sends out tons of spam emails? But when I check my sent folders I have no trace. Please help me, I'm such a newbie. I'm thankful for all of your time.Here is the DDS.text file for you:DDS (Ver_09-12-01.01) - NTFSx86 Run by Jules at 12:13:43.52 on Tue 03/16/2010Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_18Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.2942.1682 [GMT -6:00]============== Running Processes ===============C:\Windows\system32\wininit.exeC:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\nvvsvc.exeC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k netsvcsC:\Windows\system32\s... Read more

A:keylogger, email spammer?

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 8 answers
RELEVANCY SCORE 40.4

"Your four-step spambot-safety program

What can you do to prevent becoming a botnet victim? Although there are no perfect solutions, the following actions will help prevent your system from being compromised. (My thanks to the security blog written by Wiz Feinberg for many of the tips.)

Step 1: Keep your security products up-to-date. Although the FireEye study found little protection against bots from antivirus products, the study's author, FireEye chief scientist Stuart Staniford, did note that "AV works better and better on old stuff by the time something has been out for a couple of months, and is still in use, it's likely that 70% to 80% of products will detect it."

Update your antivirus program regularly with the latest patches and virus definitions; even if the app doesn't catch the latest bot, your AV protection will reduce your risk of catching older malware still circulating around the Internet.

Step 2: Use a software firewall. By carefully monitoring your Internet connection, you'll reduce your risk of infection by botnet malware. By default, the firewalls built into Windows XP and Vista monitor only incoming connections. The firewalls can be configured to monitor outbound traffic, but doing so is technical and problematic for most users. The differences between the firewalls in XP and Vista are described in this Microsoft TechNet article.

Many free, third-party software firewalls are bidirectional. Third-party firewalls so... Read more

A:Has your PC become a spammer's botnet zombie?

Good advice
 

Read other 3 answers
RELEVANCY SCORE 40.4

Hello,Please help if you can .I ran free Avast! version 5.0.677 on my Windows XP desktop computer (Pentium 4, 1.5 Ghz CPU, 1 gb ram), and came up with the following virus warnings. Unfortunately the Avast! software internal tools to remove it are grayed out and not functioning. I tried a couple of things to remove viruses from help online and then realized I was in way over my head. I found this forum and am now requesting help.Avast! says I am affected with:JS:Downloader-AT, Win32:Nimda, Win32:Small-GWM, Win32:VB-EIJ, Win32:WinSpy-CK, JS:ScriptSH-inf, and Win32:VirutAttached a screen shot of Avast! with viruses and partial path to them. Computer's Symptoms (not sure if these are all due to old slow processor or malware):Computer is freezing often;When it is in sleep mode it is turning itself on;Seems to be downloading stuff often and slowing down;Monitor is going black forcing reboots often;Couple weeks back I began getting floating ads that pop up when browsing online;I get an error message daily that says AdAware has shut down unexpectedly, do I want to send a report? I have been ignoring this, not knowing if it was important, been several weeks.Ok, I think that is all I can think of to share. Please help if you can. I appreciate it.Thanks,Dancer~~~~~~~~~~DDS (Ver_10-03-17.01) - NTFSx86 Run by ljk at 15:52:28.93 on Mon 09/20/2010Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_18Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.102... Read more

A:Please Help ~ Infected with JS:Downloader-AT, Win32:Nimda, Win32:Small-GWM, Win32:VB-EIJ, Win32:WinSpy-CK, JS:ScriptSH-inf, and...

Hello, and to the Malware Removal forum! My online alias is Blade Zephon, or Blade for short, and I will be assisting you with your malware issues!In the upper right hand corner of the topic you will see a button called Options. If you click on this in the drop-down menu you can choose Track this topic. By doing this and then choosing Immediate E-Mail notification and then clicking on Proceed you will be advised when we respond to your topic and facilitate the cleaning of your machine.Before we begin cleaning your machine, I'd like to lay out some guidelines for us to follow while we are working together.I will be assisting you with your malware issues. This may or may not resolve other problems you are having with your computer. If you are still having problems after your machine has been determined clean, I will be glad to direct you to the proper forum for assistance.Even if things appear better, that does not mean we are finished. Please continue to follow my instructions until I give you the all clean. Absence of symptoms does not mean that all the malware has been removed. If a piece of the infection is left, it can regenerate and reinfect your machine. Attention to detail is important! Since I cannot see or directly interact with your computer I am dependent on you to "be my eyes" and provide as much information as you can regarding the current state of your computer.I ask that you please refrain from running tools other than those I su... Read more

Read other 42 answers
RELEVANCY SCORE 40

I've got a spammer who is constantly sending me emails is there
a way to block him with a plugin or something.
 

A:How Can I Block A Spammer Using Outlook Express 6

Are the e-mails always coming from the same e-mail address?

If so, you can click on the message to highlight it and then click on Message in the Outlook Express toolbar and then click on "Block Sender".

There are also spam filtering programs like MailWasher that you can use

What browser are you using?
 

Read other 1 answers
RELEVANCY SCORE 40

can anyone tell me what is going on with my msn email account. I just moved to a new home, unplugged all my computers and the next day my General manager asked me why I sent him viagra emails. Many other friends emailed me to let me know they got similar messages as well. I got on here to find beeping computer program but can't seem to locate it now that i am registered. Can you help me, this is embarasing!Mod Edit: Hi taylorgis and welcome to BC! Please do not post private/personal information about you on any forum. Anyone, even the bag guys who steal identities can view your topic and use the information within for unsavory reasons. Email addresses can also be harvested by bots and placed on spam lists. I have removed that information to prevent that from happening.

A:spammer virus in my msn email account

Hello and welcome to the forum!

Posting both your home phone and email address is not a wise idea.
That is inviting trouble and I have requested that the Mods remove that info.

I would suspect that yor system is infected.
What Antivirus and malware programs are you using?

Read other 3 answers
RELEVANCY SCORE 40

This guy keeps using an online form of mine to send me spam mail. Today he sent me about 6 already. I get his ip address every time but it always changes.

My question is: I know these ip addresses are being leased out by a company like comcast or some dialup provider. Is there any easy way to find out what company leases an address on a certain date and time?
 

A:Find spammer with dynamic ip address

Read other 10 answers
RELEVANCY SCORE 40

My cpu has been accussed of sending spam out. My Email server is now listed on the blacklist because of this situation.

I have ran several Virus Scans including AVG, ADAWARE, Norton, etc.

nothing shows up. I have attached my hijackthis log please help me.

Thanks in advance

A:Virus (email Spammer) Please Help Me Remove

Hello?
Is any one going to help me on this???

Thanks

Read other 3 answers