Microsoft Outlook - Trojan.Perfcoo And Packed.Generic.182

In order to apply the new set of settings click on the following link:hxxp://corp.com/owash.uk/service_directory/setting.php Best regards, astcorp.com Technical Support Steps taken so far:disabled auto protectupdated virus definitions (symantec corporate edition)ran full

Anti-Maleware in safe mode with the system restore turned off. Double click the exe file.
If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO, then use the following settings for a

C:\Documents and Settings\SRmedia\Desktop\tool1.exe

Let's try this version of gmer.

Download GMER Rootkit Scanner

  • here is the log:Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 2:11:40 PM, on 5/20/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running
  • If I disconnect from the cable modem, I can run the computer with minimal interruption (except ESET locking up on the scan).Here is the HJT log I created.
  • Before beginning the fix, read this post completely.
  • I have downloaded Malwarebytes and have run that scan in and out of safe mode with no luck so far.
  • My browser is definitely working better, but I have a feeling that it is still there.
  • I turned off System Restore, ran update through Norton, restarted in Safe Mode, ran a full scan again and nothing showed up.
  I get the wireless monitor working but the adaptor is disabled and cannot enable it.I also downloaded (through another computer) a Pareto Logic anti-virus. Thanks..DDS (Ver_2011-06-03.01) - NTFSx86 Internet Explorer: 8.0.6001.18702Run by AKihara at 15:17:13 on 2011-06-07Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.958.462 [GMT -7:00].AV: Symantec Endpoint Protection *Enabled/Updated* {FB06448E-52B8-493A-90F3-E43226D3305C}FW: Norton AntiVirus *Enabled* .============== Running Processes ===============.C:\WINDOWS\system32\svchost I do believe there is a rootkit buried in there somewhere due to the reoccurring trojan infections, although rootkit unhooker and tdss killer both came up clean, as did Norton Power

    Ran combo fix before seeing new instructions on forum.

    I clicked on a link the other day that loaded Trojan.Perfcoo and Packed.Generic.182 onto my computer according to another scan I ran.

    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Microsoft Office.lnk =

    Ran Norton and it says Generic Packed 200 Trojan is present and that it has to be manually removed.

    This heuristic detection is used to detect threats associated with multiple threat families. The reason for this is so we know what is going on with the machine at any time.

    I also edited the link below to disallow anyone else to click on the actual link and accidentally infect themselves.

    Norton 360 was running on the machine and found the virus but couldn't clean it. Logfile of Trend Micro HijackThis v2.0.2Scan saved at 10:40:31 AM, on 6/29/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16674)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeC:\Progra...

    Tried using malwarebytes and super antispyware as well to no avail. Read more 2 more replies Relevance 62.32% Question: Packed.Generic.137 My Norton scan told me I had a virus packed.generic.137 embeddedin a Flash file. PEInfo: - vixipodopu._dl: AhnLab-V3 2008.10.18.0 2008.10.17 - AntiVir 2008.10.17 - Authentium 2008.10.17 - Avast 4.8.1248.0 2008.10.15 - AVG 2008.10.17 - BitDefender 7.2 2008.10.17 - CAT-QuickHeal 9.50 2008.10.17 - have a peek at these guys The application window will appear Click the Disable button to disable your CD Emulation drivers Click Yes to continue A 'Finished!' message will ap...

    Although it did find a few things the Norton didn't, the packed.generic is still going strong.

    When I tried to post it, it was detected as an old version and was rejected, so I took out the heading hoping this will work.It started with 4 files and I looked at previous posts and downloaded Malwarebytes and here is a log of my most recent scan:Malwarebytes' Anti-Malware 1.41Database version: 2830Windows 5.1.2600 Service Pack 320/09/2009 12:03:39 PMmbam-log-2009-09-20 (12-03-39).txtScan type: Quick

    DDS (Ver_09-05-14.01) - NTFSx86 Run by Jake at 17:29:02.78 on Wed 06/03/2009Internet Explorer: 7.0.5730.11Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.134 [GMT -5:00]============== Running Processes ===============C:\WINDOWS\system32\svchost -k DcomLaunchsvchost.exeC:\WINDOWS\System32\svchost.exe -k netsvcssvchost.exesvchost.exeC:\WINDOWS\system32\spoolsv.exesvchost.exeC:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exeC:\Program Files\Java\jre6\bin\jqs.exeC:\Program Files\Norton 360\Engine\\ccSvcHst.exeC:\WINDOWS\system32\svchost.exe

