Results 1 to 10 of 22

Thread: Help With Win32 Darksma O !

Hybrid View

  1. #1
    Join Date
    Jan 2007
    Posts
    11
    Here is the new combofix log. Blacklight turned up nothing.

    GM
    Last edited by Glassman; 01-08-2007 at 10:33 PM.

  2. #2
    Join Date
    Aug 2006
    Posts
    578

    Lightbulb

    Quote Originally Posted by Glassman View Post
    Here is the new combofix log. Blacklight turned up nothing.
    Well . . . looks like the VUNDO was just a remnant like the smitfraud. You'll need to manually delete these remnants.

    C:\WINDOWS\system32\klnmp.bak2
    C:\WINDOWS\system32\klnmp.bak1

    For the life of me, I cannot find anything in these logs! I am at a loss.

    I'm thinking sfc might be a good idea. Something is definitely borked, but whatever did it (if malware) isn't present any longer.


    BTW - What scanner popped up the Darksma reference?

    PP

  3. #3
    Join Date
    Jan 2007
    Posts
    11
    Sorry for the delay...been pretty busy...

    Deleted the VUNDO items. As soon as I do sfc I'll post any changes (hopefully there are some.) I am wondering more and more if this really is a video card issue??

    Oh, the Darksma hit was from a scan by my old anti-virus software. That was the trojan that was discovered at the same time the screen became corrupted.

    I actually wrote "breed of Darksma"? !

    GM
    Last edited by Glassman; 01-07-2007 at 12:37 PM.

  4. #4
    Join Date
    Aug 2006
    Posts
    578

    Lightbulb

    Quote Originally Posted by Glassman View Post
    I actually wrote "breed of Darksma"? !
    That's pretty accurate! LOL!

    There isn't much info available on that guy. Plus, it doesn't help that all the different AV vendors come up with their own names for the baddies.

    All the logs show clean + Blacklight did not produce any rootkit hits. Probably no active malware to worry about.

    I just do not have any leads for how to proceed. Hopefully sfc will help (it is often a "shot in the dark")

    Here is a good link if you have trouble:

    http://www.updatexp.com/scannow-sfc.html

    Best
    PP

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •