OK, you want to check your C: drive for any of the following files:
C:\Program Files\PCHealthCenter\0.exe
C:\Program Files\PCHealthCenter\1.exe
C:\Program Files\PCHealthCenter\2.exe
C:\Program Files\PCHealthCenter\3.exe
C:\Program Files\PCHealthCenter\4.exe
C:\Program Files\PCHealthCenter\5.exe
C:\Program Files\PCHealthCenter\7.exe
C:\Program Files\PCHealthCenter\0.gif
C:\Program Files\PCHealthCenter\1.gif
C:\Program Files\PCHealthCenter\2.gif
C:\Program Files\PCHealthCenter\3.gif
C:\Program Files\PCHealthCenter\sc.html
C:\Program Files\PCHealthCenter\sex1.ico
C:\Program Files\PCHealthCenter\sex2.ico
C:\Program Files\AV9\av2009.exe ~(Rogue.Antivirus2009)
C:\Documents and Settings\All Users\Application Data\Secure Solutions\Antispyware 2008 XP\LOG\20080811205939687.log ~(Rogue.Multiple)
C:\Documents and Settings\All Users\Application Data\Secure Solutions\Antispyware 2008 XP\LOG\20080811212255390.log ~(Rogue.Multiple)
C:\Documents and Settings\All Users\Application Data\Secure Solutions\Antispyware 2008 XP\LOG\20080811214330109.log ~(Rogue.Multiple)
C:\Documents and Settings\All Users\Application Data\Secure Solutions\Antispyware 2008 XP\LOG\20080812102404093.log ~(Rogue.Multiple)
C:\WINDOWS\system32\tdssadw.dll ~(Trojan.Agent)
C:\WINDOWS\system32\tdssmain.dll ~(Trojan.Agent)
C:\WINDOWS\system32\tdssinit.dll ~(Trojan.Agent)
C:\WINDOWS\system32\tdsslog.dll ~(Trojan.Agent)
C:\WINDOWS\system32\tdssservers.dat ~(Trojan.Agent)
C:\WINDOWS\system32\drivers\tdssserv.sys ~(Trojan.Agent)
C:\WINDOWS\system32\avm.cpl ~(Trojan.FakeAlert)
C:\Documents and Settings\Denton\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk ~(Rogue.Antivirus2008)
If you find any of the above listed files, anywhere on your hard drive; Let me know which ones and where you found them, for example, if you open my computer | drive C |the windows folder | system32 sub folder | drivers sub folder and see a file named tdssserv.sys, you would type it out as C:\windows\system32\drivers\tdsserv.sys
Best bet is to do the search from the start menu "files and folders" all, something something, on ALL local drives, for any one of those files listed above//
Have you used an up to date anti-virus application? besides Mbam? other antivirus software that lists a full log of what it removed? Maybe some of the steps you've already done have not been documented as to what happened, or what was removed, cause there's usually more listed in MBam log for this malware infection..


Reply With Quote