Home > Hjt Log > Hjt Log- Comp Acting Awkward.

Hjt Log- Comp Acting Awkward.

Reboot your machine Post back with a new HJT log Please do not use the Quote button, use the button located at the bottom of the page to reply back. Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. It's really weird.Logfile of HijackThis v1.99.1Scan saved at 9:26:12 AM, on 5/20/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16441)mod note: Log removedStart here, Brad: »Security Cleanup FAQ »Mandatory Steps Please do a scan with Kaspersky Online Scanner or from here http://www.kaspersky.com/virusscanner Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as http://softsystechnologies.com/hjt-log/hjt-log-comp-acting-strange.html

bluewizard, Jan 10, 2017, in forum: Virus & Other Malware Removal Replies: 4 Views: 196 bluewizard Jan 18, 2017 at 11:43 PM In Progress Possible virus on my computer, need help Yes, my password is: Forgot your password? Inc.)O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)O4 - HKLM..\Run: [ClamWin] C:\Program Files\ClamWin\bin\ClamTray.exe (alch)O4 - HKLM..\Run: The team • Delete all board cookies • All times are UTC - 5 hours [ DST ] Contact us: forum@malwareremoval.com Advertisements do not imply our endorsement of that product or

I ran hjt and saw the embarq security stuff still on there. NEXT** I'd like for you to run this next online scan to check for remnants or anything that might be hidden. If you accept cookies from this site, you will only be shown this dialog once!You can press escape or click on the X to close this box.

Have you run a defrag lately? Choose your usual account. I have my other computer that I'd like to post a HJT log for... O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~1\NEOTRA~1\NTXcontext.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -

Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: EMBARQ Online Security (BackWeb Plug-in - 7211241) - Unknown owner - C:\PROGRA~1\EMBARQ~1\backweb\7211241\Program\SERVIC~1.EXE (file missing) O23 - Service: Symantec Event Download SDFix or from Here and save it to your Desktop Double click SDFix.exe and it will extract the files to %systemdrive% (Drive that contains the Windows Directory, typically C:\SDFix) Please Open HijackThis, Click Do a system scan only, checkmark these. scan completed successfully hidden files: 0 ************************************************************************** . --------------------- DLLs Loaded Under Running Processes --------------------- PROCESS: c:\windows\system32\winlogon.exe -> c:\windows\system32\c0086810.mat .

O24 - Desktop Component 1: Aqua Real - 7db39a0d-580f-4be9-9195-8bfcd226f6c2 Please do not PM me for HJT help, we all benefit from posting on the open board.Want to help others? Back to top #6 Juliet Juliet Advanced Member Trusted Malware Techs 23,130 posts Gender:Female Posted 24 March 2008 - 08:10 PM Let's go at it again Please disable Winpatrol, as it please check and let me know if you see anything. The forum is run by volunteers who donate their time and expertise.

C:\SWSetup\SYMNSC\FI\LURegWMI.exe -> Adware.Dm : Cleaned with backup (quarantined). Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O3 - Toolbar: Yahoo! Back to top #2 dog_soldier dog_soldier Advanced Member Anti-Spyware Brigade 923 posts Gender:Male Location:in the mountains of Pa in a small town Posted 13 October 2005 - 09:39 AM this should Thanks.

Read the instructions about the cookies. his comment is here What I need to ask you to do now....... Please re-enable javascript to access full functionality. When finished, it shall produce a log for you, C:\ComboFix.txt.

O4 - Global Startup: Picture Package VCD Maker.lnk = ? If we have ever helped you in the past, please consider helping us. I noticed in this hjt log that the embarq security stuff is still in there Here is my hjt log and malware log. this contact form O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~1\NEOTRA~1\NTXcontext.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -

I have ran another scan with norton and it came up clean. If you use the Firefox or Opera browsers, you can use this program as a quick way to tidy those up as well. So here is my log, I know this was not as descriptive of the problem as you would like, but it is a very sublte issue but it is clear there

Finally click Empty Selected.

Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed. Skip to main content Norton.com Norton Community Home Forums Blogs Search HelpWelcome Message FAQs Search Tips Participation Guidelines Terms and Conditions MenuUserLog in Sign up English简体中文 Français Deutsch 日本語 Português Español Older versions have vulnerabilities that malware can use to infect your system. Now to the issue, I have recently had someone come in to help protect my PC better and they seemed to fail.

O8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~1\NEOTRA~1\NTXcontext.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - this is me off I need help, please please please help me in anyway Thank you in advance Back to top #6 Matty323 Matty323 Member Members 90 posts Posted 14 October My first question is, will I have to resolve this problem on each computer after resolving on this? http://softsystechnologies.com/hjt-log/hjt-log-for-a-comp-infected-with-vx2-and-abi-network.html here is my hjt log after a restart, normal windows xp, not safemode.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 4:46:25 PM, on 1/16/2010Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer

o Click Open. Check the boxes to the left of: Windows Temp Current User Temp All Users Temp Temporary Internet Files Java Cache The rest are optional - if you want to remove the Go to Start->Run and type in notepad and hit OK. 2. Check the boxes to the left of: Windows Temp Current User Temp All Users Temp Temporary Internet Files Java Cache The rest are optional - if you want to remove the

C:\SWSetup\SYMNSC\AR\LUREGWMI.EXE -> Adware.Dm : Cleaned with backup (quarantined).