Pc backdoored again!, even after re-install!

  bamfiesler 09:51 04 Dec 06

Started to notice Firefox being re-directed(!!!) last week, and after much trouble found a new account -APS.Net - had been created! All kinds of weird stuff began happening after that, so I did a clean install, but today the account was back again!

Why isn't my firewall (Comodo) catching this? The only thing I re-imported after the wipe was Outlook files.

Any ideas?

THankx, etc.

  Trackrat 10:11 04 Dec 06

Post a HJT log here.

click here

  bamfiesler 10:13 04 Dec 06

HJT shows nothing.

  Z1100 11:30 04 Dec 06


  bamfiesler 11:36 04 Dec 06

SP2 installed.

I am now not sure if the account was APS or ASP.net, but it was one of them. Had a look at what Comodo is monitoring, but I can't see anything.

PC is ok, for now. Is there any where in the Admin Tools that allows me to block the setup of new accounts? I have turned off the Guest account, and my own Admin one is PPd.

  Fruit Bat /\0/\ 19:06 04 Dec 06

click here

not trojan is genuine MS what updates have you installed? netframework?

  bamfiesler 20:20 04 Dec 06

I now know that. But why is it now there, after several reformats in in 5 years??

  Fruit Bat /\0/\ 20:29 04 Dec 06

MS updates when you reinstalled.

This thread is now locked and can not be replied to.

Surface Pro (2017) vs Surface Pro 4

Where HTML5 is headed next

MacBook Pro v Surface Pro 5