Home > Please Help > Please Help Another Poor Newbie-with Hijack This Log

Please Help Another Poor Newbie-with Hijack This Log

Is a virus?? You will know if the account has administrator access because you will be able to see the System Restore tab. Share this post Link to post Share on other sites Blue Mermaid    Regular Member Topic Starter Members 79 posts Location: UK ID: 40   Posted April 22, 2009 Hi thereThank I shall have a look again over the next few days to see if the error is showing up again.Right, I'll go and follow Step B now of your instructions... http://wcsonline.org/please-help/please-help-this-poor-soul-hijackthis-log-for-about-blank-problem.html

I will be back with a fix for your problem as soon as possible. You can't tell me they just have well-doing spree and are sharing to help. If you're the topic starter, and need this topic reopened, please contact me via pm with the address of the thread.Everyone else please begin a New Topic. I later learned that it leads to some vietnamese dating site or whatever. (Whenever I try to click on the link, IE doesnt want to open the site.)Anyway, here is what

Pls pls somebody help me... Turn off System Restore.Go to Start and right-click on *My Computer*.Click Properties.Click the System Restore tab.Put a Checkmark in the box next to "Turn off System Restore".Click Apply, and then click I rebooted to safe mode (control 8) to command prompt only; you must use dos commands to delete the files; you can type 'help' and get a list of commands, I I cannot close it (I cant even activate my task manager).

Please save it to a convenient location and post it back when you replyThen look for the following Java folders and if found delete them.C:\Program Files\JavaC:\Program Files\Common Files\JavaC:\Documents and Settings\All Users\Application I get to the end of a line then when I moved my eyes back to the right to go to the next line I totally lose where I was lol If you see a rootkit warning window, click OK.When the scan is finished, click the Save... Share this post Link to post Share on other sites AdvancedSetup    Staff Root Admin 63,871 posts Location: US ID: 43   Posted April 22, 2009 Yes I'm sure it was

Answer Yes to the question "Replace infected file ?" by typing Y and hit Enter.A reboot may be needed to finish the cleaning process, if you computer does not restart automatically If I had a gazillion hours, I could have done this one at a time and figured out what that file was I suppose ... Where would we be without you helpfull people Back to top Prev Page 3 of 3 1 2 3 Back to Resolved/Inactive HijackThis Logs 0 user(s) are reading this topic 0 Please refer to our CNET Forums policies for details.

Share this post Link to post Share on other sites AdvancedSetup    Staff Root Admin 63,871 posts Location: US ID: 27   Posted April 16, 2009 No, no. IM realy upset about this... You have extenuating circumstances so we'll forgo the normal closing of the post when users don't respond back in a timely manner.Take care and we'll be here when you're ready.Just remember Please if you know anyway to get internet authorities to act (if there are internet authorities ) they should shut down these internet sites The website was created on May 23rd

Poker - http://download.games.yahoo.com/games/clients/y/pt1_x.cab O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall No worries about spoolsv.exe: spoolsv.exe is a Microsoft Windows system executable which handles the printing process to your local printers. Should I still follow all the Java instructions you've given me?Thanks in advance. So, there was no disclaimer that came up and therefore, I coudn't select "2".

I tried that first and it took care of everything. have a peek at these guys Close all (browser) windows & rescan with hijackthis. Look for the *New Topic* Button near the top right when viewing the forums. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJBR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHPR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search

Disruptive posting: Flaming or offending other usersIllegal activities: Promote cracked software, or other illegal contentOffensive: Sexually explicit or offensive languageSpam: Advertisements or commercial links Submit report Cancel report Track this discussion The only worry now is why the following entry is running from the temp folder?? What shall i do with the logfile where must i post it. check over here huhuhu Back to top #7 SexyGoddess SexyGoddess Newbie Members 6 posts Posted 09 March 2008 - 05:13 AM HI..

We do not give a personal support via PM The way to request help is to post a NEW TOPIC in the appropriate forum. I'll post the directions again for anyone reading this:Good news! Please note that this is under the supervision of an expert analyst.

Keep a log of this so you can find it easily should you need to use System Restore.Then use the Disk Cleanup to remove all but the most recently created Restore

Hopefully this will save you some time, keeping any further clean-up to a minimum. my 6 month old dell inspiron series 3000 laptop windows 8.1 won't boot up? After all this you will STILL be infected; but will have gotten rid of some of the bits and pieces and some of the other stuff this nasty D*mn program will If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below I will

Please re-enable javascript to access full functionality. huhuhuhu... Post another log after. 0 Discussion Starter Comrade Potato 12 Years Ago Cheers for the advice! this content Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\YAHOO!\Companion\Installs\cpn1\yt.dllO2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dllO2 -