I have Avast 4.8 Professional. Build Jul2008 4.8.1229. According to the log, my data base was updated yesterday.
I Use XP Professional and Outlook 2003.
I have an avast virus warning message popping up multiple times until it finds at least 22 different instances. The messages state:
Suspicious Message!
There are too many identical e-mails in appointed time.
Sender: “UPS” badq@bonusbooks.com
Recipient: mwansbrough@tafisa.ca
Sublect: UPS INVOICE 8238597476There are too many identical e-mails in appointed tiem.
Please download HijackThis from the link below, run the program but do not make any fixes, and then post the log results using the “copy & paste” method. It will probably take more than one post to be able to get the complete log posted. OR, you can post it as an attachment to your post by clicking on “Additional Options…” below left of the posting box. Someone will review your log and then offer help.
Over and above HiJackThis, this is one of the better anti-spyware applications.
If you haven’t already got this software (freeware), download, install, update and run it, preferably in safe mode and report the findings (it should product a log file). SUPERantispyware On-Demand only in free version.
It is possible that this is hidden by another piece of malware.
hello,
I have Avast 4.8 home edition.i,m getting troubled by “Avast suspicious message” pop ups since past few hours.i have read your forum and scanned my pc with “hijachthis”.i am posting the log here.please tell me how can i fix the problem.
appreciate your help.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:42:50 AM, on 8/23/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
O20 - Winlogon Notify: WinCtrl32 - C:\WINDOWS\SYSTEM32\WinCtrl32.dll (This is a problem)
Suggest you follow Davidr’s instructions to remove.
Are you running a firewall?
Update to Windows XP service pack 3 (Service packs increase the safety of your system)
joshitushar
please start your own thread - No more posts in Woodwine’s thread
tednelly
let’s not guess to whom you are replying
joshitushar
tednelly was posting about YOUR 020 entry
carry on
download and run Malware Bytes Anti Malware AND Rogue Remover
click “REMOVE”
post the logs and an new HJT in your new thread (when you FIX the 020)
Woodwine exactly which “spyware” did you run
waiting to hear from you
please ignore the Joshitushar thread hijack
wyrmrider
duh! gee!! sorry pal-- thought that the reply would be pretty obvious as it was directly after the a HJT log posted by?? joshitushar
this is the only post containing any reference to 020 - Winlogon Notify: WinCtrl32 - C:\WINDOWS\SYSTEM32\WinCtrl32.dll
Sheesh!!
tednelly was posting about YOUR 020 entry
carry on
Really don't like carrying ON!?
OK if I must......again!! As I have already posted Davidr's suggestion will go a long way to solve the O20 - Winlogon Notify: WinCtrl32 problem [b]joshitushar[/b]
There is no need for duplicate/multiple malware removal programs SUPERantispyware will do just fine.
Just in case?? joshitushar Firewall? XPSP3? Post HJT log file after SUPERantispyware Scan woodnwine please follow advice offered.
PS Hope naming conventions meet with your approval
Not only a spambot but given the email’s Subject/title, the outbound email could also be malicious.
I have seen this subject UPS INVOICE 8238597476 previously related to malware, either there is an attachment to open for the invoice or a web link to view the invoice, either of which is designed/likely to infect the recipient.
So it is potentially more serious than a spambot, a shame that woodnwine hasn’t been back in almost three weeks
I’m of the opinion that you can lead a horse to water but you can’t make them drink. The same is true of information, you can give it but it is a two way process and we shouldn’t have to chase people to help them.
Sorry if that sounds harsh but it is a reality as many topics in the forums in the forums attest, some people only ever post once.