MyTechSupport.ca :: Your Computer Technical Resource Headquarters! MyTechSupport.ca :: Your Computer Technical Resource Headquarters!
HOME FORUMS RESOURCES & TOOLS ARTICLES ONLINE STORE ABOUT US
Computer Support Forums arrow Internet & Network Support arrow Security & Viruses arrow Topic: SE.DLL Trojan. Using Win95...at wit's end.
November 21, 2019, 03:58:57 AM
 

Home Forum Rules Help Search Mobile Version Login Register

Welcome, Guest. Please login or register.
Did you miss your activation email?
November 21, 2019, 03:58:57 AM

Login with username, password and session length
 Featured Sites:
News
Article Writers We are looking for quality, informational articles to add to our Computer Articles
Please contact us if you are interested in submitting some....
  0 Members and 1 Guest are viewing this topic.
Pages: [1] Go Down Print
Author Topic: SE.DLL Trojan. Using Win95...at wit's end.  (Read 1537 times)
bobgure
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 7


Bookmark and Share

View Profile
« on: March 26, 2005, 02:54:39 AM »

PLEASE SUPPLY RELEVANT INFORMATION:
Operating System Version:Windows 95 4.00.950B
Problem Application Name & Version:
Problem Hardware Make & Model:
Error Messages:"Error Loading Se.dll access denied"
"Exec-You have performed illegal operation and program will.."
"Your copy of Netzero software has been corrupted. Please reinstall."
"Explorer has caused an error...will be shut down",
"Setup failed to run installation" (many times when trying to reinstall Netzero software)

Hi. Kinda desperate here. I did numerous searches for "se.dll" but no one seems to have Win95 and i'm not sure what specific probs might go along with that, ie: not sure whether I have 'system restore' and other newer op system functions.
I was infected a couple of weeks ago. A "Search Assistant UnInstall" program was maliciously installed in my "Ad/Remove" program. It cannot be uninstalled. My operating system seems to be very unstable at this point and I'm constantly uninstalling Netzero and reinstalling just to get on line--reboot hell.
SE.Dll will replicate and reappear in C/windows/temp/se.dll even after I thought I cleaned out suspicious items in registry.
No good. It keeps coming back for more and more torture sessions. One heck of a Trojan!

CW Shredder cannot be opened on this machine- "Error Starting Program-a required .dll file OLEACC.Dll was not found". Seems like i'd have to go to Microsoft site and dl an Active accessibility redistributable component, ver.1.3  to make it work. That sounds a little perilous considering the weakened state of my poor old comp.

I'd be very grateful for some help with this. I'm exhausted and out of luck. Thanks.





Logged

 
Pancake
Global Moderator
Hero Member
*****

Karma: +78/-0
Offline Offline

Gender: Male
Posts: 3915


Bookmark and Share

View Profile
« Reply #1 on: March 26, 2005, 06:54:49 AM »

Please download HijackThis.  Create a folder at C:\HJT and move HijackThis.exe there.  Run a scan and save the log file.  Post the whole log file here.  Do not fix anything since most of them listed there are harmless (some are system required).  This program will help us determine if there is any spyware/malware on your computer.
Logged

An Australian Member of

EDDY
bobgure
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 7


Bookmark and Share

View Profile
« Reply #2 on: March 26, 2005, 03:05:52 PM »

Thanks for your reply. Here is HJT log as requested. Btw, since my isp software keeps getting corrupted, it takes some time to be able to get online...and I appreciate your bearing with me.

Logfile of HijackThis v1.99.1
Scan saved at 9:54:59 AM, on 3/26/05
Platform: Windows 95 B (Win9x 4.00.1111)
MSIE: Internet Explorer v5.00 SP1 (5.00.3105.0105)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\MATROX MGA POWERDESK\COLOR\HGCCTL95.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\PROGRAM FILES\LOGITECH\MOUSEWARE\SYSTEM\EM_EXEC.EXE
C:\WINDOWS\SYSTEM\LOADWC.EXE
C:\PROGRAM FILES\INTERNET CALL MANAGER\ICM.EXE
C:\PROGRAM FILES\NETZERO\ZCAST.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\SYSTEM\tapiexe.exe
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\NETZERO\CHKRAS.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\HJT\HIJACKTHIS1991.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://c:\windows\TEMP\se.dll/sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://c:\windows\TEMP\se.dll/sp.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: (no name) - {D2A52299-2136-4252-A29D-D33C3230C492} - C:\WINDOWS\SYSTEM\AMJODA.DLL
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [Colorific Control Panel] C:\Program Files\Matrox MGA PowerDesk\Color\hgcctl95.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\LOGITECH\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [BrowserWebCheck] loadwc.exe
O4 - HKLM\..\RunOnce: [Media Jukebox Install Wizard Completion] "C:\Program Files\J River\Media Jukebox\SetupComplete.exe"
O4 - Startup: Internet Call Manager.LNK = C:\Program Files\Internet Call Manager\ICM.EXE
O4 - Startup: NetZero and NZ Platinum.lnk = C:\Program Files\NetZero\nzStart.exe
O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin3.dll
O12 - Plugin for .mpg: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin3.dll
O13 - WWW. Prefix: http://
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O18 - Filter: text/html - {618117CD-B788-4512-B519-D252661924A9} - C:\WINDOWS\SYSTEM\AMJODA.DLL
O18 - Filter: text/plain - {618117CD-B788-4512-B519-D252661924A9} - C:\WINDOWS\SYSTEM\AMJODA.DLL

Logged

 
Pages: [1] Go Up Print 
 
Jump to:  

Powered by MySQL Powered by PHP

Powered by SMF 1.1.21 | SMF © 2015, Simple Machines

Valid XHTML 1.0! Valid CSS!

Disclaimer
This site is NOT responsible for any damage that the information on this site may cause to your system. Everything you try, whether inspired by the response given from this site or not, is entirely at your own risk. All product names and company names used herein are for identification purpose only and may be trademarks or registered trademarks of their respective owners. We are in no way affiliated or representing any of the companies on this site unless specified.
Back to Top
Stop Spam Harvesters, Join Project Honey Pot Fight Back Against Spammers! Get Firefox! Get Thunderbird! View Sylvain Amyots profile on LinkedIn
Back to Top
Google visited last this page October 28, 2018, 12:08:51 PM