New SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL" »»»»»»»»»»»»»»»»»»»»»»»» Winlogon !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "Userinit"="C:\\WINDOWS\\system32\\userinit.exe," "System"="" Instead of Windows loading as normal, a menu should appear.

Hittin the scan button and wait just like that wont do you any good, You have to make sure while your anti virus is cleaning, virus wont multiply. End of the scan: 09 April 2011 08:44 Used time: 2:03:59 Hour(s) The scan has been done completely. 8692 Scanned directories 641920 Files were scanned 6 Viruses and/or unwanted programs were

Here's how you properly do it: - Go to safe mode. - Run malware software - Run anti virus software - Run 5x - Run Windows normally you`ll be good to

here is the log: ComboFix 11-04-07.08 - Hazel 08/04/2011 11:31:08.1.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.44.1033.18.1014.603 [GMT 1:00] Running from: c:\documents and settings\Hazel\Desktop\ComboFix.exe . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) .

I've also thought that maybe it is some setting somewhere that got changed and maybe the files ARE actually on my computer somewhere but I can't see them for some reason I'm running Vista Home Premium. If one is compromised, are all of them? 10 replies Howdy! Most of what it finds will be harmless or even required.Ken Back to top #4 ken545 ken545 Malware Response Team Malware Response Team 1,685 posts OFFLINE Gender:Male Location:The Space Coast

I see the loading bar and all appears normal, bu when I look in the folder, it is empty, every time.

Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Intel\Wireless\Bin\EvtEng.exeC:\Program Files\Intel\Wireless\Bin\S24EvMon.exeC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\WINDOWS\system32\drivers\CDAC11BA.EXEC:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exeC:\WINDOWS\system32\DVDRAMSV.exeC:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exeC:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exeC:\PROGRA~1\McAfee\MSC\mcmscsvc.exec:\program files\common files\mcafee\mna\mcnasvc.exeC:\WINDOWS\Explorer.EXEC:\PROGRA~1\McAfee\VIRUSS~1\mcods.exeC:\PROGRA~1\McAfee\MSC\mcpromgr.exec:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exec:\PROGRA~1\mcafee.com\agent\mcagent.exeC:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exeC:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exeC:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exeC:\Program Files\McAfee\MPF\MPFSrv.exeC:\WINDOWS\system32\PSIService.exeC:\Program Files\Intel\Wireless\Bin\RegSrvc.exeC:\Program Files\Analog Devices\SoundMAX\SMAgent.exeC:\WINDOWS\system32\svchost.exec:\Toshiba\IVP\swupdate\swupdtmr.exec:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exeC:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exeC:\WINDOWS\wanmpsvc.exeC:\Program Files\Toshiba\Tvs\TvsTray.exeC:\Program Files\Toshiba\Toshiba Applet\thotkey.exeC:\WINDOWS\system32\igfxtray.exeC:\WINDOWS\system32\hkcmd.exeC:\WINDOWS\system32\igfxpers.exeC:\WINDOWS\AGRSMMSG.exeC:\Program Files\Synaptics\SynTP\SynTPLpr.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exeC:\Program Files\TOSHIBA\ConfigFree\NDSTray.exeC:\Program Files\TOSHIBA\Touch and Launch\PadExe.exeC:\Program Cool1mccool, Feb 5, 2006 #3 dvk01 Derek Moderator Malware Specialist Joined: Dec 14, 2002 Messages: 50,441 Run AIM fix and see what that finds http://www.jayloden.com/aimfix.htm dvk01, Feb 5, 2006 #4 Please install this FREE AntiVirus program, update it, and run a full system scan.

Advertisement Recent Posts Win 10 and CCleaner alicez replied Jan 24, 2017 at 6:54 PM Blue screen appears in middle... To view their database and list of restricted sites, launch the program and click on each of the tabs on the main display page. Richard N. I recall now that I got scared at the loud bleeping when I installed ComboFix and THAT was the reason I deleted it.

waht should i learn? In other words, it compacts the Registry to a small size which allows Windows to load & perform faster. Sometimes I get stuck in a reboot loop, sometimes it wants to run Repair, sometimes it wants me to choose safe mode/no safe mode. C:\System Volume Information\_restore{46DE8921-1D39-44D2-A9E9-64119261F211}\RP267\A0036777.cpl (Trojan.FakeAlert) -> Quarantined and deleted successfully.

If you pull select links out of the chain, it is then broken. After you have updated, click the button - enable protection for all unprotected items.SpywareBlaster is a preventative program. Thanks and safe surfing. 0 Discussion Starter bytegently 8 Years Ago No... Online services are available: Licensee : Avira AntiVir Personal - FREE Antivirus Serial number : 0000149996-ADJIE-0000001 Platform : Windows XP Windows version : (Service Pack 3) [5.1.2600] Boot mode : Normally

Gosh I hope somebody knows whats happening because this is something I've never seen before. It happened 20 hours after the fresh install. If we have ever helped you in the past, please consider helping us. It is especially helpful when browsing or searching in unfamiliar territory.

enclose HJT Log....please help!!! Thanks for trying to help with the log though. Everything looks normal and you think your file got downloaded, but when you search for it, it is nowhere to be found. When I try to open the file i recieve the following message: … dell inspiron series 3000 laptop windows 8.1 won't boot 1 reply .... **dilemma**!

Also, did you make sure that you installed the right version? 64/32-bit depending on your OS m 0 l sadmaster12 May 19, 2015 6:21:53 AM Messing around with Chrome settings stopped