Home > Please Look > Please Look At My HJT

Please Look At My HJT

Member Posts: 25 Re: help please look « Reply #3 on: October 10, 2008, 10:32:04 PM » thanks guys for the help!! Similar Threads - Please ActiveScan AVGAS New all-czech.com problem please help. Reboot your computer normally, start HijackThis and perform a new scan. The deleted files will be backed up and saved to C:\avenger\backup.zip.

then let us know if there is any improvement. __________________ PLEASE CONSIDER GIVING A DONATION TO HELP IN MY FIGHT AGAINST MALWARE. Contacts About Web User Contact Us Advertising Info Top 10 Website - HitWise 2008 Follow Web User on Twitter Join the Web User Facebook group Watch the Web User Youtube channel remove\uninstall this folder C:\program files\AlfaAntivirus Also can you tell me anything about the Smart Bridge message I get when I boot up Willma View Public Profile Send a private message to Download Chrome SMF 2.0.13 | SMF © 2015, Simple Machines XHTML RSS WAP2 Page created in 0.063 seconds with 18 queries. http://www.bleepingcomputer.com/forums/t/33668/hi-please-look-at-my-hjt-log/

Yes, my password is: Forgot your password? I have not had any web pages "pop" up in 24 hours...I will keep an eye on it though. Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Boot up is extreeeeemely slow.

  • Logfile of HijackThis v1.99.1 Scan saved at 9:35:49 PM, on 1/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe
  • Click Yes to allow ComboFix to continue scanning for malware.
  • IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dllO3 - Toolbar: Yahoo!
  • C:\Documents and Settings\test\Start Menu\Programs\InternetGameBox C:\Documents and Settings\test\Start Menu\Programs\InternetGameBox\InternetGameBox.lnk C:\Documents and Settings\test\Start Menu\Programs\InternetGameBox\Privacy Policy.lnk C:\Documents and Settings\test\Start Menu\Programs\InternetGameBox\Terms and conditions.lnk C:\Documents and Settings\test\Start Menu\Programs\InternetGameBox\Website.lnk C:\Program Files\Common Files\{00000~1
    C:\Program Files\Common Files\{3C69E~1
  • Yes, my password is: Forgot your password?
  • Also, cleanout the prefetch folder and the recycle bin.Then reboot into normal mode to let it clean out the remaining files, I also like Ccleaner for the same purposes.
  • I downloaded a virus TheGreatCornholio, Nov 5, 2016, in forum: Virus & Other Malware Removal Replies: 34 Views: 1,203 kevinf80 Nov 9, 2016 Thread Status: Not open for further replies.
  • Advertisement sailorman Thread Starter Joined: Sep 12, 2004 Messages: 38 Laptop is like running through molasses.

Spybot S&D Use these programs to regularly scan your system for and remove many forms of spyware/malware. Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dllO4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [Adobe Reader Speed All help much appreciated! Run another HijackThis to see if the line has been removed. 0 Kudos Posted by Bumpman ‎07-28-2006 08:43 AM Regular Contributor View All Member Since: ‎06-27-2006 Posts: 287 Message 4 of

D: is CDROM (No Media) \\.\PHYSICALDRIVE0 - ST340810A - 37.27 GiB - 1 partition \PARTITION0 (bootable) - Installable File System - 37.22 GiB - C: -- Security Center ------------------------------------------------------------- AUOptions is and the dial-up connection....I have tried various spyware removal to no effect. Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. my review here Mark it as an accepted solution!I am not a Comcast employee.

Logfile of HijackThis v1.99.1Scan saved at 9:24:34 AM, on 7/28/2006Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\system32\acs.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exeC:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exeC:\WINDOWS\system32\DVDRAMSV.exeC:\Program Files\ewido anti-spyware 4.0\guard.exec:\TOSHIBA\IVP\swupdate\swupdtmr.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\igfxtray.exeC:\WINDOWS\system32\hkcmd.exeC:\WINDOWS\system32\igfxpers.exeC:\Program Files\ltmoh\Ltmoh.exeC:\WINDOWS\AGRSMMSG.exeC:\Program Files\Apoint2K\Apoint.exeC:\WINDOWS\system32\00THotkey.exeC:\WINDOWS\system32\TPSMain.exeC:\WINDOWS\system32\TFNF5.exeC:\Program Files\TOSHIBA\TouchED\TouchED.ExeC:\Program I truly do apprecite it. 0 Kudos Posted by Bumpman ‎07-28-2006 12:31 PM Regular Contributor View All Member Since: ‎06-27-2006 Posts: 287 Message 5 of 7 (241 Views) Re: HJT log Reset System RestoreIf you are using Windows ME or Windows XP, please reset your System Restore. Jul 17, 2006 #4 (You must log in or sign up to reply here.) Show Ignored Content Topic Status: Not open for further replies.

I can see Avast but not F-Secure. https://forums.techguy.org/threads/please-look-at-my-hjt-activescan-avgas.530216/ Choose option #2 - Clean by typiing 2 and push "Enter".When you get the next prompt: "Registry cleaning - Do you want to clean the registry ?"; answer "yes" by clicking Answer "Yes" twice when prompted. Do not run it yet.Step #2Open Notepad and copy/paste the text in the quotebox below into the new document:@ECHO OFFprocess -k explorer.execd %windir%Nail.exe /fullremovesc config SvcProc start= disabledsc stop SvcProcsc delete

Please look at my HJT log and help me..Please This is a discussion on Please look at my HJT log and help me..Please within the Resolved HJT Threads forums, part of Many thanks, here is my HJT log: Logfile of HijackThis v1.99.1 Scan saved at 17:41:01, on 30/01/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Running processes: C:\WINDOWS\System32\smss.exe The time now is 09:02.

-- Default Style ---- Alt Blue Theme ---- Alt Grey Theme Contact Us - Web User - Archive - Privacy Statement - Top I am yours.

Double click on the WinPFind folder on your desktop to open it and then double click on the WinPFind.exe file to start the program. All rights reserved. Disconnect from the internet (pull the plug) before running scans in Safe Mode if possible.Always select the option to quarantine any malware found rather than delete it, then you will be Attached Files: 12,28,2006 Activescan.txt File size: 5.4 KB Views: 27 12.28.2006 hijackthis.log File size: 6.1 KB Views: 24 AVGAS Report-Scan-20061227-121630.txt File size: 20 KB Views: 25 sailorman, Dec 28, 2006 #1

Please create a permanent folder for HijackThis (such as C:\Program Files\HJT") and move HijackThis.exe there.2. Thank you so very much. Avast Evangelists.Use NoScript, a limited user account and a virtual machine and be safe(r)!

Ask a Question See Latest Posts TechSpot Forums are dedicated to computer enthusiasts and power users.

Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon thx again. Go to folder options in My COmputer and Show all hidden files and folders Turn off system restore. The IP address being used is

Any suggestions Thanks Michelle888 Michelle888 View Public Profile Send a private message to Michelle888 Find all posts by Michelle888 #5 08-09-10, 19:49 bricat Global Moderator Join Date: Jun Member Posts: 25 Re: help please look « Reply #10 on: October 11, 2008, 04:56:57 AM » (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))).2008-10-10 23:50138,464----a-wC:\WINDOWS\system32\drivers\PnkBstrK.sys2008-10-10 23:47183,128----a-wC:\WINDOWS\SYSTEM32\PnkBstrB.exe2008-10-10 23:36---------d-----wC:\Program Files\YPOPs2008-10-09 22:02---------d-----wC:\Program Files\Absolute Poker2008-10-09 22:01---------d-----wC:\Documents and Settings\LtDan\Application Password Register FAQ / Help Calendar Today's Posts Search Search Forums Show Threads Show Posts Tag Search Advanced Search Go to Page... Copyright Dennis Publishing 2010, All rights reserved Log in or Sign up Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Computer problem?

My grandfather nicknamed me Cookie when I was an infant and I've been called that ever since. it looks clean, and of course my post clean up canned speech as well.. ComboFix 08-05-08.1 - test 2008-05-09 22:03:47.1 - NTFSx86 Running from: C:\Documents and Settings\test\Desktop\ComboFix.exe Command switches used :: C:\Documents and Settings\test\Desktop\WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe * Created a new restore point . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) Using the site is easy and fun.

scan completed successfullyhidden files: 0**************************************************************************.Completion time: 2008-10-10 22:54:11ComboFix-quarantined-files.txt 2008-10-11 03:54:02ComboFix2.txt 2008-10-10 21:24:29Pre-Run: 53,394,508,800 bytes freePost-Run: 53,466,948,608 bytes free232--- E O F ---2008-09-09 22:47:59 Logged ltdanman44 Jr. O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: TrayMin230.lnk = ? Show Ignored Content As Seen On Welcome to Tech Support Guy! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- End of file - 15027 bytes Michelle888 View Public Profile Send a private message to Michelle888 Find all posts by Michelle888 #2 30-08-10, 10:01

And of course he did it on my computer! BTW, the dog is a he and his name is Brandy. When I first boot up, I get the following message: Smartbridge Alerts: Motive SB.exe.entrypoint not found.