Home > Pls Check > Pls. Check This Hijack Log

Pls. Check This Hijack Log

No, create an account now. am i just missing something?? All rights reserved.REDDIT and the ALIEN Logo are registered trademarks of reddit inc.Advertise - technologyπRendered by PID 11124 on app-493 at 2017-02-22 09:17:59.650989+00:00 running fee530b country code: IL. Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... this contact form

Go to add/remove programs and uninstall HijackThis. Today, looking through Drive folder more, it really seems to be all there and I think you are correct that I can proceed to manually remove all ink shortcuts. After that, the only thing showing inside E:\ Adata will be the Drive folder and 1,000s of Ink shortcuts. Only the Ink shortcuts.

It is a resource hogger and frequently causes PCs to crash. Regards, Jim Attached Files KSS_Ink_20131231_190914.png 133.52KB 0 downloads Back to top #141 Elise Elise Bleepin' Blonde Malware Study Hall Admin 59,244 posts ONLINE Gender:Female Location:Romania Local time:11:18 AM Posted 18 Regards, Jim Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove ads #137 Elise Elise Bleepin' Blonde Malware Study Hall Admin 59,244 posts ONLINE Gender:Female Location:Romania Keep all communication public, on the subreddit.

Learn More. The command prompt will open, enter the following command and press enter (I'm assuming here that your drive letter is E:\, if it is not, just change the e:\ in whatever If I Right Click any file, like that mentiioned above, and select Properties, the initial tab that opens is "Shortcut" tab. Approach the communities affected directly, not here!

How to get started Open Forum Hints and Tips Feedback & Announcements Web User magazine feature suggestions Security Security & Privacy Facebook Google+ Twitter YouTube Subscribe to TechSpot RSS Get our weekly newsletter Search TechSpot Trending Hardware The Web Culture Mobile Gaming Apple Microsoft Google Reviews Graphics Laptops Smartphones CPUs Storage Cases The good news is, since drive.bat is no longer there, nothing malicious actually happened (this shortcut basically tries to execute drive.bat AND open the original pdf). http://www.bleepingcomputer.com/forums/t/6799/hijack-log-pls-chck/?view=getnextunread See how here.

Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account? If they're there and you can open them, then nothing can happen if you delete the shortcut. Before doing that, I'd just delete all shortcuts first (select all > delete). Staff Online Now etaf Moderator Advertisement Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Home Forums Forums Quick Links Search Forums Recent

  1. Stay away from Zonealarm.
  2. He didn't see them accessing folders or anything but said he saw the mouse moving.
  3. I then looked at Properties of the actual 2003.pdf file.
  4. I have thousands of files and numerous folders that transfered to Drive folder. 95% of what I had is inside there.
  5. I am always cautious to not lose anything more, it already screwed up I.E. (right now I can already use all ADATA files even though the Ink shortcuts infested the drive)

Download / Print this Topic Download this topic in different formats or view a printer friendly version. Thread Status: Not open for further replies. U can check urself at : http://www.hijackthis.de/ « Next Oldest · Technical Support · Next Newest »

Top Close Topic Options Track this topic Receive email notification Loading...

regards, Elise "Now faith is the substance of things hoped for, the evidence of things not seen." Follow BleepingComputer on: Facebook | Twitter | Google+| lockerdome Malware analyst @ weblink You won't be able to vote or comment. 012Can someone pls check this HiJackThis log to see if anything looks fishy?Solved (self.techsupport)submitted 3 years ago by songofthemanI posted on here a few days ago that Unhide cannot restore your missing shortcuts!! If you are running Win 8, Win 7, Vista, Windows XP or Windows ME, do the below to flush restore points: Refer to the instructions for your WIndows version in this

Please re-enable javascript to access full functionality. Log in with Facebook Log in with Twitter Log in with Google Your name or email address: Do you already have an account? I did not click around in various files because I did not want to activate any existing virus possibly still maliscious sitting inside the E:\ ADATA drive. navigate here As per your suggestion, I did the following: (Windows 7) 1.Selected the Start button, then selected Control Panel > Appearance and Personalization. 2.

Forum Home Search Help Front Desk |-- Announcements |-- Main Site/Forum Feedback and Helpdesk |---- Accepted Feature Requests Computers |-- Reviews and Guides |-- Technical Support |-- Hardware |---- Hardware Clubs Kaspersky tells you the files are "infected" because it has no way to know if those weren't real shortcuts in the first place; it detects something in the shortcut path it I've used CCleaner many times since Dec. 9th, so I do not think there is going to be any benefit with unhide.exe to relocate tmp files.

Someone suggested running HiJackThis and posting the log.

Bhd. |---- Compuzone |---- Cycom Sales & Service |---- Inter-Asia (Edifier, Noctua, Bitfenix, Silverstone, Seasonic, Box2s, Doss, Filco) |---- Gadget Zone |---- Winchance |---- JACtech Advance Computer Services |---- TECH Computer So why only a small part of the universe of possible Ink files I have no idea. Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exeO23 - Service: avast! I think you are correct that the main drive.bat danger has been expelled.

If that ...Settings\Temp directory is empty, you have nothing to worry about. I noticed that the file WATER Companies Worldwide 86941.pdf had opened on my desktop. I went back and checked it to "hide protected Operating System files (Recommended)" I next used the UNHIDE software and looked inside E:\ Adata drive, but., once again.. => his comment is here If you don't see it or it will not uninstall, don't worry about it.

Dismiss Notice TechSpot Forums Forums Software Virus and Malware Removal Today's Posts Infected with adware..popups/msn shutting down..pls check myhijackthis.log Byfgutier Jul 6, 2005 new to the site...have been checking it out Main Sections Technology News Reviews Features Product Finder Downloads Drivers Community TechSpot Forums Today's Posts Ask a Question News & Comments Useful Resources Best of the Best Must Reads Trending Now Just move on to the next step. I don't know in how many folders you saved your files, but you can easily sort them on file type or date inside the Drive folder and just copy/paste them to

Make sure you switch the XP-internal firewall OFF when you install Sygate. I do not want to lose them if at all possible. Make sure you typed the name correctly, then try again"]. There was no change!

Its important to make a difference here: the .lnk files have not replaced the images, they have been added; you can see that because they're only 1 kb. Don't ask us to compare or recommend products. For now, advise me on the use of Kaspersky KVRT if you know how to use it to simply quarantine and not remove/delete external HDD files. Jul 7, 2005 #3 RealBlackStuff TS Rookie Posts: 6,503 Run HJT again and fix just this one line: O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file) MS Antispyware is

Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions Inc. - C:\Program Files\Common Files\Comodo\launcher_service.exe O23 - Service: COMODO Internet Security Helper