Home > Hijackthis Log > Hijackthis Log - Popups Still A Problem

Hijackthis Log - Popups Still A Problem

Can someone identify what I need to get rid of to fix the problem and go back to a normal computing experience? Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe O9 - Extra button: AIM scanning hidden autostart entries ... Using the site is easy and fun. check over here

Resources Join | Advertise Copyright © 1998-2017 ENGINEERING.com, Inc. There are still pop ups poker, 888.com, and a lot other things. Click here to Register a free account now! Ask a question and give support. http://www.bleepingcomputer.com/forums/t/63541/popups-still-a-problem/

TechSpot Account Sign up for free, it takes 30 seconds. The scan area is clean. A tutorial on installing & using this product can be found here: Using Ad-aware to remove Spyware, Malware, & Hijackers from Your Computer Install SpywareBlaster - SpywareBlaster will added a large

Posting Guidelines Promoting, selling, recruiting, coursework and thesis posting is forbidden.Tek-Tips Posting Policies Jobs Jobs from Indeed What: Where: jobs by HomeForumsDesktop SoftwareBrowser issuesBrowser issues for IT professionals Forum Hijackthis Log, By joining you are opting in to receive e-mail. ou should also scan your computer with program on a regular basis just as you would an antivirus software in conjunction with Spybot. Already have an account?

This can be bad if they are malware, so I would like you to re-enable those startup entries. Show Ignored Content As Seen On Welcome to Tech Support Guy! If it prompts you as to whether or not you want to save the settings, press the Yes button. RE: Hijackthis Log, Plz Advise Pop-up Problem Marcs41 (IS/IT--Management) 15 Jan 04 19:14 Why are you using a program you don't know what to do with?Run AdAware or similar and let

Instructions on how to do this can be found here: How to see hidden files in Windows Run Hijackthis again, click scan, and Put a checkmark next to each of these. Pager"="C:\\Program Files\\Yahoo!\\Messenger\\ypager.exe -quiet" "Aim6"="\"C:\\Program Files\\AIM6\\aim6.exe\" /d locale=en-US ee://aol/imApp" "updateMgr"="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AdobeUpdateManager.exe\" AcRdB7_0_8 -reboot 1" [HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce] "nvwrsv"="" [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "nvwrsv"="C:\\WINDOWS\\system32\\nvwrsv.exe" "rqik"="C:\\PROGRA~1\\COMMON~1\\rqik\\rqikm.exe" "Aida"="\"C:\\Program Files\\rdso\\eetu.exe\" -vt yazr" [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer\Run] "nvwrsv"="C:\\WINDOWS\\system32\\nvwrsv.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{54D9498B-CF93-414F-8984-8CE7FDE0D391}"="ewido shell guard" HKEY_LOCAL_MACHINE\software\microsoft\windows Join our site today to ask your question. By default, the log file is in the same directory as the executable.

By OIN Yazzle Picster by OIN Yazzle Snowball Wars by OIN Yazzle Sudoku by OIN Zolero Translator (Anything else with the word "OIN" or "Outerinfo" or "Outer Info Network" or "Yazzle" http://www.techspot.com/community/topics/problem-with-popups-hijackthis-log-attached.18695/ Click Here to join Tek-Tips and talk with other members! Registration on or use of this site constitutes acceptance of our Privacy Policy. A tutorial on installing & using this product can be found here: Using SpywareBlaster to protect your computer from Spyware and Malware Update all these programs regularly - Make sure you

Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\WINNT\Downloaded Program Files\ycomp5_3_16_0.dll O3 - Toolbar: Yahoo! check my blog I am using WindowsXP. That may cause it to stall. The .cab you uploaded was empty.

Click on CloseBlackLight beta would create a log file "fsbl-.log". Do not run a scan just yet. Please double-click Killbox.exe to run it. this content Back to top Back to Solved Malware Logs 1 user(s) are reading this topic 0 members, 1 guests, 0 anonymous users Reply to quoted postsClear PC Pitstop Forums → Community

The scans did pick up more than 3000 traces of an adware called AP Hosting. Started by cereal , Feb 01 2007 12:46 PM Please log in to reply 10 replies to this topic #1 cereal cereal Member Members 10 posts Posted 01 February 2007 - Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab O16 -

Back to top #10 whazat whazat New Member Members 9 posts Posted 23 February 2009 - 04:08 AM Log from look.bat: wininet.dll c:\windows\system32\wininet.dll c:\windows\system32\en-us\wininet.dll.mui c:\windows\winsxs\backup\x86_microsoft-windows-i..mentation.resources_31bf3856ad364e35_6.0.6000.16386_en-us_1619e9095cbe2181_wininet.dll.mui_f8b64b63 c:\windows\winsxs\backup\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6001.18203_none_01ebf827a1d05839_wininet.dll_790e2e3a c:\windows\winsxs\x86_microsoft-windows-i..mentation.resources_31bf3856ad364e35_6.0.6000.16386_en-us_1619e9095cbe2181\wininet.dll.mui c:\windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16386_none_ffb23181a4e80112\wininet.dll c:\windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16448_none_ffdf73aba4c5c123\wininet.dll c:\windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16512_none_fff9e399a4b2d26d\wininet.dll c:\windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_6.0.6000.16546_none_ffdd74fda4c78b9c\wininet.dll

Here is the information you were asking about My Latest Panda ActiveScan Report Incident Status Location Spyware:Spyware/BetterInet No disinfected Windows Registry Adware:Adware/BookedSpace No disinfected C:\WINNT\bsx32 Adware:Adware/Apropos No disinfected Windows Registry Adware:Adware/IPInsight How to remove begin2search / coolwebsearch Regards Howard :wave: :wave: Dec 29, 2004 #2 RealBlackStuff TS Rookie Posts: 6,503 Reboot in Safe Mode Kill these running processes first with Task I'll post it the log just as soon as it is done. Back to top #16 whazat whazat New Member Members 9 posts Posted 27 February 2009 - 01:50 AM The screen shot that i sent through previously was from what it has

If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. You should never run more than one antivirus program at a time. NEXT: Please go to Start -> Search -> All files and folders. have a peek at these guys Any help? -edit: this didn't capture some suspicious Processes..

Click the red-and-white Delete File button. I could really use some help as the computer is running very slow and it is very annoying to have these pop-ups. Please post that log in your next reply.Important Note - Do not mouseclick combofix's window whilst it's running.