Home > Solved Please > Solved: Please Help With Hijack This Log--Thanks!

Solved: Please Help With Hijack This Log--Thanks!

Click OK At the main program windowMake sure the following is checked: Perform Quick Scan Click: Scan When the scan completes, a message box appears as shown in the image below: Once again, you are a gem, my friend. Sign up for the SourceForge newsletter: I agree to receive quotes, newsletters and other information from sourceforge.net and its partners regarding IT services and products. A DLL is missing. have a peek at this web-site

Files Infected: C:\wspan\GoRes\IEHelper.dll (Worm.OnlineG) -> Quarantined and deleted successfully. If you're not already familiar with forums, watch our Welcome Guide to get started. Please re-enable javascript to access full functionality. SourceForge About Site Status @sfnet_ops Powered by Apache Allura™ Find and Develop Software Create a Project Software Directory Top Downloaded Projects Community Blog @sourceforge Resources Help Site Documentation Support Request © Check This Out

Logfile of HijackThis v1.97.7 Scan saved at 11:18:41, on 23/07/2004 Platform: Windows ME (Win9x 4.90.3000) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\mmtask.tsk C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\SYSTEM\MSTASK.EXE C:\WINDOWS\SYSTEM\SCARDSVR.EXE C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE C:\NORTON regards, Elise "Now faith is the substance of things hoped for, the evidence of things not seen." Follow BleepingComputer on: Facebook | Twitter | Google+| lockerdome Malware analyst @ Please refer to our Privacy Policy or Contact Us for more details You seem to have CSS turned off. HKEY_CLASSES_ROOT\iehlprobj.iehlprobj.1 (Worm.OnlineG) -> Quarantined and deleted successfully.

Logs can take some time to research, so please be patient with me. or read our Welcome Guide to learn how to use this site. Things are better....I gave yopu the 2 scans below. Spybot got rid of the pop up window saying "windows has detected an internet attack attempt" But I still have a popup asking me to download--adobe flash player installer-- My home

button to save the scan results to your Desktop. TANSTAAFL!!I am not a Comcast employee, I am a paying customer just like you!I am an XFINITY Forum Expert and I am here to help. Everyday is virus day. https://www.bleepingcomputer.com/forums/t/7599/hijackthis-log-please-help-solve-non-stopsearch-spyware/?view=getlastpost C:\Program Files\asks~1 C:\WINDOWS\smdat32m.sys . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_CORE ((((((((((((((((((((((((( Files Created from 2008-03-14 to 2008-04-14 ))))))))))))))))))))))))))))))) . 2008-04-14 10:21 . 2008-04-14 10:21

d-------- C:\Documents and Settings\Bill\Application Data\Malwarebytes 2008-04-14 10:20

Now click "Apply to all folders" Click "Apply" then "OK" Locate and delete: C:\WINDOWS\zhelp.exe C:\Program Files\Internet Explorer\venzjjxp.exe ============================== Empty the Recycle Bin. If you would like to refer to this comment somewhere else in this project, copy and paste the following link: tsunix - 2013-06-11 I have the searchiu.com page as a start scanning hidden files ... Mark it as an accepted solution!I am not a Comcast employee.Was your question answered?Mark it as a solution! 2 Kudos Posted by Lil_SisToo ‎12-31-2008 04:07 PM Regular Contributor View All Member

Several functions may not work. http://newwikipost.org/topic/xighH3PTK71lucrfP3gIEquIyAkeeeSw/Solved-My-HijackThis-Log.html The logs that you post should be pasted directly into the reply. http://wwwwz.websear...izon.net/search ------------------------------------------------------------------------------------------------- ComboFix 08-04-13.3 - Bill 2008-04-14 16:07:46.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.1.1252.1.1033.18.113 [GMT -4:00] Running from: C:\Documents and Settings\Bill\Desktop\ComboFix.exe * Created a new restore point WARNING -THIS MACHINE hijackThis Log--please help solve Non-StopSearch spyware Started by winigo , Dec 29 2004 02:37 PM This topic is locked 7 replies to this topic #1 winigo winigo Members 40 posts OFFLINE

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{343ce214-9998-4b21-a151-ffe970167297} (Rogue.Installer) -> Quarantined and deleted successfully. http://bornsunsoft.com/solved-please/solved-please-chk-hijack-log.html scan completed successfully hidden files: 0 ************************************************************************** . ------------------------ Other Running Processes ------------------------ . Several functions may not work. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules BleepingComputer.com Forums Members Tutorials Startup List

Discussion in 'Virus & Other Malware Removal' started by one-eyedjake, Jul 24, 2004. Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... Click on the Appearance tab 4. http://bornsunsoft.com/solved-please/solved-please-help-hijack-this-log.html Thanks 1 Attachments hijackthis.log Related Support Requests: #12 Discussion Loucif Kharouni - 2013-05-28 Hi tsunix, Can you please describe the symptoms noticed on the machine?

As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged Are you looking for the solution to your computer problem? Select: Properties 3.

Mark it as an accepted solution!I am not a Comcast employee.Was your question answered?Mark it as a solution! 0 Kudos All Forum Topics Previous Topic Next Topic Popular Help Articles Set

C:\WINDOWS\system32\ClickToFindandFixErrors_US.ico (Malware.Trace) -> Quarantined and deleted successfully. When the machine starts, tap the F8 key before Windows startsYou are presented with a Windows XP Advanced Options menu. Any more problems? If not please perform the following steps below so we can have a look at the current condition of your machine.

Completion time: 2008-04-14 16:13:48 - machine was rebooted [Bill] ComboFix-quarantined-files.txt 2008-04-14 20:13:38 Pre-Run: 31,372,120,064 bytes free Post-Run: 31,322,271,744 bytes free . 2008-04-05 22:06:02 --- E O F --- mboFix 08-04-13.3 - If you would like to refer to this comment somewhere else in this project, copy and paste the following link: tsunix - 2013-06-21 Yes, i guess so... Select the option for Safe Mode using the arrow keys.Press Enter to boot into Safe Mode. have a peek here You seem to have CSS turned off.

Sign In Sign In Remember me Not recommended on shared computers Sign in anonymously Sign In Forgot your password? In the Appearance Window click on the Advanced button 5. Double-click combofix.exe to run the program Follow the prompts. (Don't click on the window while the program is running, it may cause your system to stall.) When finished, a log, ComboFix.txt, Select the option for Safe Mode using the arrow keys.Press Enter to boot into Safe Mode.

Using the site is easy and fun. will this affect the downloading of the places you suggested? Edited by Aaflac, 10 April 2008 - 09:35 PM. Sign In All Activity Home Privacy Policy Contact Us Back to Top Malwarebytes Community Software by Invision Power Services, Inc. × Existing user?

Back to top #4 Daisuke Daisuke Cleaner on Duty Members 5,575 posts OFFLINE Gender:Male Location:Romania Local time:12:37 AM Posted 01 January 2005 - 08:13 AM i searched windows for any

© Copyright 2017 bornsunsoft.com. All rights reserved.