Audio and IExplorer running in background

Microsoft Windows xp professional w/serv...
April 14, 2010 at 07:03:05
Specs: Windows XP
I am experiencing problems with my desktop
in which I believe it may be an issue with a
virus/spyware. I hear random advertisements
and audio in the background while no
programs are running. Internet explorer seems
to be running 15 times in the background.
How can I get rid of this virus??

See More: Audio and IExplorer running in background

Report •


#1
April 14, 2010 at 09:19:38
you can use various scans by Malwarebytes, spybot S&D, Trojan Remover, Hitman Pro and the list goes on.
They are all free & great working programs.

Some HELP in posting on Computing.net plus free progs and instructions Cheers


Report •

#2
April 14, 2010 at 09:42:04
I have already ran all sorts of spyware programs and they have deleated a bunch of stuff. nothing has helped

Report •

#3
April 14, 2010 at 09:56:21
did you try the ones I mentioned?

Also, if you would list what you tried it sure takes the guesswork out on this end

Some HELP in posting on Computing.net plus free progs and instructions Cheers


Report •

Related Solutions

#4
April 14, 2010 at 10:24:59
I am running the ones you mentioned above. I just finished running malwarebytes. here is the log. i will update you when the others run.

Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org

Database version: 3987

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

4/14/2010 12:21:35 PM
mbam-log-2010-04-14 (12-21-35).txt

Scan type: Quick scan
Objects scanned: 134685
Time elapsed: 12 minute(s), 15 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 2
Registry Keys Infected: 27
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 10
Files Infected: 11

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
C:\WINDOWS\system32\zzvijxla.dll (Adware.Adrotator) -> Delete on reboot.
C:\WINDOWS\system32\ferpfzhx.dll (Adware.Adrotator) -> Delete on reboot.

Registry Keys Infected:
HKEY_CLASSES_ROOT\AppID\{38061edc-40bb-4618-a8da-e56353347e6d} (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{a9722a0d-365f-47d2-b70b-37d046316d99} (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e0ec6fba-f009-3535-95d6-b6390db27da1} (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\617670aa-2465-ffb3-37b2-d11b1f2ced02 (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zspufgxtrhzvtena (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CscrptXt.CscrptXt (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\cscrptxt.cscrptxt.1.0 (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ezLife (Adware.EZlife) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Smart-Ads-Solutions (Adware.SmartAds) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart-Ads-Solutions (Adware.SmartAds) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Smart-Ads-Solutions (Adware.SmartAds) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\AppDataLow\HavingFunOnline (Adware.BHO.FL) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\adshothlpr.adshothlpr (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\adshothlpr.adshothlpr.1.0 (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\adhlpr.adhlpr (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\adhlpr.adhlpr.1.0 (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27fbdb22-cfbe-0c14-4b71-fbe4675cb3c5} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{27fbdb22-cfbe-0c14-4b71-fbe4675cb3c5} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30d91e0d-84a1-ec98-ebbf-2bdebb0ef671} (Adware.AdRotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{30d91e0d-84a1-ec98-ebbf-2bdebb0ef671} (Adware.AdRotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44194a02-6e19-44e5-9223-4e93ecda1d33} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{44194a02-6e19-44e5-9223-4e93ecda1d33} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ddef99a7-dfd2-479f-ab4d-1d20e32501c5} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ddef99a7-dfd2-479f-ab4d-1d20e32501c5} (Trojan.BHO) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dskevslspenaeozpo (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Program Files\Smart-Ads-Solutions (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Program Files\Smart-Ads-Solutions\SmartAds (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Program Files\Smart-Ads-Solutions\SmartAds\1.4.2.0 (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Application Data\Smart-Ads-Solutions (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Application Data\Smart-Ads-Solutions\SmartAds (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Application Data\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Application Data\ezLife\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Program Files\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Program Files\ezLife\ezLife (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Program Files\ezLife\ezLife\1.4.2.0 (Adware.EzLife) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS\system32\zzvijxla.dll (Adware.Adrotator) -> Delete on reboot.
C:\WINDOWS\system32\ferpfzhx.dll (Adware.Adrotator) -> Delete on reboot.
C:\Program Files\Mozilla Firefox\Components\ffxShot.dll (Adware.Adrotator) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\617670aa-2465-ffb3-37b2-d11b1f2ced02.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\zspufgxtrhzvtena.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Local Settings\Temp\COM Security Update Level 3 (Adware.Adrotator) -> Quarantined and deleted successfully.
C:\Program Files\Smart-Ads-Solutions\SmartAds\1.4.2.0\uninstall.exe (Adware.SmartAds) -> Quarantined and deleted successfully.
C:\Documents and Settings\mtolsky\Application Data\ezLife\ezLife\log.xml (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Program Files\ezLife\ezLife\1.4.2.0\uninstall.exe (Adware.EzLife) -> Quarantined and deleted successfully.
C:\Program Files\Mozilla Firefox\components\nsFFxSHot.xpt (Adware.Adrotator) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\bkemvwvaonpopwnr.dll (Trojan.Agent) -> Delete on reboot.


Report •


Ask Question