Home > Can Someone > Can Someone Look Over This Hjt Log?

Can Someone Look Over This Hjt Log?

Loading... Join over 733,556 other people just like you! by WaxTheRabbit / March 18, 2009 11:40 AM PDT My computer has been incredibly slow lately with pop ups. Click Scan to scan the system.

on the system, please remove or uninstall them now and read the policy on Piracy. Vista/Windows 7/8 users right-click and select Run As AdministratorClick on the Scan button.AdwCleaner will begin...be patient as the scan may take some time to complete.When it's done you'll see: Pending: Please Discussion is locked Flag Permalink You are posting a reply to: Can someone look at this HijackThis Log file?!! Literati - http://download.games.yahoo.com/game...ts/y/tt3_x.cab O16 - DPF: Yahoo!

Multiple linked Gmail accounts. But … Couple questions about Assembly 6 replies Couple statements, couple answers. Join the DaniWeb Community with Dazah

or read our Welcome Guide to learn how to use this site. C:\WINDOWS\temp\Perflib_Perfdata_2cc.dat scheduled to be deleted on reboot. Similar Threads - someone In Progress Virus or someone has remote control Robin2020, Sep 11, 2016, in forum: Virus & Other Malware Removal Replies: 8 Views: 817 askey127 Sep 16, 2016 Yes, my password is: Forgot your password?

Hello. these can/could be causing script errors that can distort images on web pages.Looks lean to me. Using the site is easy and fun. However I sometimes get sweetpack PUP's in my scans, and also, beginning yesterday, one program wouldn't open so I updated Java.

If you are still having problems please follow the directions found in this topic:http://www.bleepingcomputer.com/forums/t/34773/preparation-guide-for-use-before-using-malware-removal-tools-and-requesting-help/When done with those steps, please post a new HJT log as a reply to this topic and Will it slow things up? Here's my mbytes log, and thank you very much.-Kalimba Malwarebytes' Anti-Malware 1.46www.malwarebytes.orgDatabase version: 913090905Windows 5.1.2600 Service Pack 2Internet Explorer 6.0.2900.21809/9/2013 1:10:03 PMmbam-log-2013-09-09 (13-10-03).txtScan type: Quick scanObjects scanned: 327335Time Temp folders emptied. Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ad7d5f2c-5853-11dd-be0f-001422dd442a}\\ deleted successfully. ========== FILES ========== c:\windows\system32\drivers\ybcyg.sys moved successfully. ========== COMMANDS ========== File delete failed.

  1. Create Account How it Works Javascript Disabled Detected You currently have javascript disabled.
  2. Lawrence Abrams Don't let BleepingComputer be silenced.
  3. Please post a complete log.
  4. Please download and run RogueKiller 32 bit to your desktop.
  5. http://www.seomoz.org/blog/12-popular-browser-toolbars-reviewed-the-worthwhile-and-the-worthlessHow much room do you have on your hard drive?
  6. Advertisement Recent Posts Windows 7 BSOD with ntkrnlpa.exe blues_harp28 replied Feb 2, 2017 at 3:04 AM HP pavilion g4 blues_harp28 replied Feb 2, 2017 at 3:01 AM A little help please

Save the report to your desktop. User's Temporary Internet Files folder emptied. Logfile of HijackThis v1.99.0 Scan saved at 12:57:14 PM, on 1/25/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe Dots - http://download.games.yahoo.com/game...s/y/dtt1_x.cab O16 - DPF: Yahoo!

Most browsers toolbars these days have pop up blockers. Try our mobile theme. Fleet - http://download.games.yahoo.com/game.../y/fltt3_x.cab O16 - DPF: Yahoo! As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed.

my log file: Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16791)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Lavasoft\Ad-Aware\AAWService.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\PROGRA~1\McAfee\MSC\mcmscsvc.exec:\program files\common files\mcafee\mna\mcnasvc.exec:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exeC:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exeC:\Program Files\McAfee\MPF\MPFSrv.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\System32\nvsvc32.exeC:\Program Files\Viewpoint\Common\ViewpointService.exeC:\WINDOWS\system32\svchost.exec:\PROGRA~1\mcafee.com\agent\mcagent.exeC:\Program Files\SiteAdvisor\6172\SiteAdv.exeC:\Program Files\Lavasoft\Ad-Aware\AAWTray.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exeC:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program During the scan it will prompt you to clean files, click OK. This applies only to the originator of this thread. ktp121, Jul 12, 2016, in forum: Virus & Other Malware Removal Replies: 0 Views: 281 ktp121 Jul 12, 2016 New Hi everyone!

Back to top Back to Virus, Trojan, Spyware, and Malware Removal Logs 0 user(s) are reading this topic 0 members, 0 guests, 0 anonymous users Reply to quoted postsClear BleepingComputer.com You will be prompted to install an application from Kaspersky. If CTH has helped you, please consider liking and sharing us on Facebook Search Forums Show Threads Show Posts Advanced Search Go to Page...

Will it slow things up?

Can Someone Look Over My Log Please? This applies only to the original topic starter. Click Run.When the downloads have finished, click on Settings.Make sure these boxes are checked (ticked). O16 - DPF: {3A7FE611-1994-4EF1-A09F-99456752289D} (WildTangent Active Launcher) - http://install.wildtangent.com/Acti...iveLauncher.cab O23 - Service: ZESOFT - Unknown - C:\WINDOWS\zeta.exe Next reboot to safe mode ( By tapping the F8 key on start up)

windows-virus This article has been dead for over six months. Local Service Temp folder emptied. O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine) - http://office.microsoft.com/officeupdate/content/opuc2.cab O16 - DPF: {62FE4FA0-792C-11D0-9CB5-0000C0EC9FDB} (StWebImage General Propery Page Object) - O16 - This post has been flagged and will be reviewed by our staff.

The time now is 09:57 AM. Click here to Register a free account now! Plainfield, New Jersey, USA ID: 2   Posted September 7, 2013 Welcome to the forum, please start HERE Post back the 2 logs here.....DDS.txt and Attach.txt (please don't put logs in All rights reserved.

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot. OK!Finished : << RKreport[0]_S_09072013_225802.txt >>  Share this post Link to post Share on other sites MrCharlie    Forum Deity Experts 34,168 posts Location: So. Please download AdwCleaner by Xplode and save to your Desktop.Double click on AdwCleaner.exe to run the tool. Log in or Sign up Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Computer problem?

Get the latest one here: http://thespykiller.co.uk/files/hijackthis_sfx.exe Let it extract to C:\Program Files Rerun it from there and post a new log Cheeseball81, Sep 27, 2005 #2 kymanfredo Thread Starter Joined: Advertisements do not imply our endorsement of that product or service. Check the following entries, but don't do anything to them yet...R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://localhost:9100/proxy.pacO4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXEO16 - DPF: {15589FA1-C456-11CE-BF01-00AA0055595A} - http://w4s2.work4sure.com/c/ge/w4sgeen9.exeNow, close all windows (including this one) Preview post Submit post Cancel post You are reporting the following post: Can someone look at this HijackThis Log file?!!

scan completed successfullyhidden files: 0**************************************************************************.--------------------- LOCKED REGISTRY KEYS ---------------------[HKEY_USERS\S-1-5-21-248062892-4062483867-3852297588-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.* **%\OpenWithList]@Class="Shell".--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'winlogon.exe'(872)c:\windows\system32\Ati2evxx.dllc:\program files\Citrix\GoToAssist\514\G2AWinLogon.dll.Completion time: 2009-02-26 10:11:37ComboFix-quarantined-files.txt 2009-02-26 15:11:17Pre-Run: 15,565,975,552