Home > Hjt Log > HJT Log - Andy

HJT Log - Andy

Andy Capp10-21-2004, 03:56 PMThanks for your help. Several functions may not work. We use data about you for a number of purposes explained in the links below. Andy Budfred10-21-2004, 11:37 PMYou are probably also going to need to use the Vx2 Plugin for Ad-Aware SE...

It's always worth a little more research before jumping in the deep end. Virtual Bouncer (http://www.giantcompany.com/antispyware/research/spyware/spyware-Virtual-Bouncer.aspx) should probably go too, the line with VBouncerInner.exe as the indicated filename. {I'm in an edit window, the entire thread is not shown, just my post that I'm If we have ever helped you in the past, please consider helping us. O17 - HKLM\System\CCS\Services\Tcpip\..\{79F351A6-5B11-4F55-B527-A39BFDB07EC5}: NameServer = 205.188.146.146 This is the AOL nameserver entry.

Lawrence Abrams Don't let BleepingComputer be silenced. A case like this could easily cost hundreds of thousands of dollars. Anti-virus programs protect against infections. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes.

It may be the result of a glitch in Hijack this, which means that it does not recognise some filetypes/locations. In order to find out what entries are nasty and what are installed by the user, you need some background information.A logfile is not so easy to analyze. Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htmO9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXEO9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXEO9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - Register now!

All rights reserved. as the Temp folders should be cleaned out periodically as installation programs and hijack programs leave a lot of junk there.http://cleanup.stevengould.org/Then reboot to let it clean out what it found.By the Local time:06:41 PM Posted 06 November 2004 - 01:06 AM zale, welcome. Create a permanent folder and move hijackthis.exe into it. * From Windows Explorer, Click on drive C: * Click on File > New > Folder * Call it HJT, or any

See HERE (http://www.xtra.co.nz/help/0,,4155-1916458,00.html) for how to show hidden files. Instructions on how to do this can be found here:How to see hidden files in WindowsRun Hijackthis again, click scan, and Put a checkmark next to each of these. Please subscribe to this thread to be notified of fixes as soon as they are posted by our Team. Once again, thanks very much for your help.

Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exeO23 - Service: Odyssey Client - Funk Software, Inc. - C:\Program Files\Fujitsu Siemens Computers\Odyssey Client for Fujitsu Siemens Computers\odClientService.exeO23 - Service: StyleXPService - Unknown - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe Back to Please try the request again. There seems to be no anti-virus application installed on this machine. It keeps getting redirected to http://t.swapx.cc/h.php?aid=31403.

Could someone please look at the HJT log to see if what I think should be remove, should be. or read our Welcome Guide to learn how to use this site. Due to a few misunderstandings, I just want to make it clear that this site provides only an online analysis, and not HijackThis the program. I will ask if the message appears again, and if it does, I'll post it here :)Thanks winchester73: Hmmm ...

Click here to Register a free account now! O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) This should be left in. Click here to Register a free account now! In your next post, please include: Copy of HiJackThis log List of files that online scans failed to disinfect Tell me what stuff from taskbar startup you like removed. __________________

Logfile of HijackThis v1.98.2 Scan saved at 10:04:34 PM, on 10/20/2004 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\rundll32.exe Make sure 'show all files' is enabled:http://service1.symantec.com/SUPPORT/tsgen...=&osv=&osv_lvl=Boot into Safe Mode by tapping F8 key repeatedly at bootup.More detailed instructions here:http://service1.symantec.com/SUPPORT/tsgen...001052409420406Find and delete if still present:9n0kp7v0ym.dll<== fileStart HijackThis and tick the boxes Local time:06:41 PM Posted 09 November 2004 - 10:37 PM zale, boot the WinXP CD and install the Recovery Console:http://www.microsoft.com/windowsxp/home/us...le_overview.asp See a one page view of Security application updates.

Generated Tue, 24 Jan 2017 23:40:40 GMT by s_hp107 (squid/3.5.23)

Sorry Donn, I'm not sure what file is the reference here, but just did a quick search for basic info, not details. Blackjack - http://download.games.yahoo.com/games/clients/y/jt0_x.cabO16 - DPF: Yahoo! He has some major issues with pop up and with his PC freezing. This is my HijackThis Log File.

BLEEPINGCOMPUTER NEEDS YOUR HELP! Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. If you accept cookies from this site, you will only be shown this dialog once!You can press escape or click on the X to close this box. member Back to top #3 zale zale Topic Starter Members 4 posts OFFLINE Local time:06:41 PM Posted 07 November 2004 - 06:17 AM Hi again,I've followed the instructions but there

member Back to top #5 zale zale Topic Starter Members 4 posts OFFLINE Local time:06:41 PM Posted 09 November 2004 - 07:30 AM Hi Ken, Things are improving but I Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_12_0.dllO3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dllO4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exeO8 - Extra context menu item: Search Using Copernic Agent Please help me. It is also important you don't miss a step and perform everything in the right order!!.

By continuing to browse our site you agree to our use of data and cookies.Tell me more | Cookie Preferences Partially Powered By Products Found At Lampwrights.com ERROR The requested If there is some abnormality detected on your computer HijackThis will save them into a logfile. In IE go to Tools then Internet Options then Settings and move the slider down to 200MB.Download and install WinPatrol.http://www.winpatrol.comBrowser settings for increased security:http://bshagnasty.home.att.net/browsersettings.htmInstall IE-SPYAD then run the install.bat in the BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter.

O4 - HKLM\..\Run: [3c1807pd] C:\WINDOWS\SYSTEM32\3cmlink.exe RunServices \Device\3cpipe-3c1807pd is a driver for a 3com Winmodem. Local time:06:41 PM Posted 08 November 2004 - 12:38 PM zale, looks like NewDotNet has gone. Help us fight Enigma Software's lawsuit! (Click on the above link to learn more) Become a BleepingComputer fan: FacebookFollow us on Twitter!