Home > Please Help > Please Help With My HJT Log! Spyware Is Killing Me

Please Help With My HJT Log! Spyware Is Killing Me

The Virus is called Security System 2009.I am not sure if I have that or more, but here are all the details. ... Create Account How it Works Javascript Disabled Detected You currently have javascript disabled. I went through the usual removal and got everything that I could see that didn't belong.For some reason I STILL get pop ups on startup and just out of the blue. Bowers\Application Data\??sks\r?ndll32.exeO4 - Global Startup: Billminder.lnk = C:\QUICKENW\BILLMIND.EXEO4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXEO4 - Global Startup: Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exeO4 - http://dataforceus.com/please-help/please-help-with-loadingwebsite-com-spyware.html

Pop-up problem... Logfile of HijackThis v1.99.1 Scan saved at 5:05:23 PM, on 12/7/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Thread Tools Search this Thread 12-07-2005, 02:13 AM #1 This One Is Killing Me! We use data about you for a number of purposes explained in the links below.

Bowers\Application Data\??sks\r?ndll32.exeI also could not find C:\WINNT\RACLE~1\C:\Documents and Settings\Terry L. Now the only thing that finds anything is XoftSpy. Computer running very slow, help with HJT log please Ah crap sorry. Using the site is easy and fun.

Bowers\Desktop\HJT\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://sidesearch.dr.../sidesearch.htmR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://sidesearch.dr.../sidesearch.htmR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R3 - URLSearchHook: (no name) - {9168BBF1-514F-0DBD-45F3-7CE29A777495} - Adware killing me, here are my logs please help Started by vucelick, Sep 28 2006 06:07 PM This topic is locked 8 replies to this topic #1 vucelick vucelick Member Full Password Site Map Posting Help Register Rules Today's Posts Search Site Map Home Forum Rules Members List Contact Us Community Links Pictures & Albums Members List Search Forums Show Threads Join the ClassRoom and learn how.MS - MVP Consumer Security 2009 - 2016 Back to top #10 dprestia dprestia Member Members 16 posts Posted 20 October 2008 - 09:45 PM I

Trojan.Vundo virus...hijack this log Popups and slow computer Cant Run anything. WORM_MUGLY.I is Killing me! Serious Virus on my laptop! http://www.geekstogo.com/forum/topic/35396-worm-muglyi-is-killing-me-hjt-log-inside/ Please re-enable javascript to access full functionality.

OK ! --------------------\\ Checking the Hosts file Hosts file CLEAN --------------------\\ Searching for hidden files with Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-10-17 18:32:46 File Not found. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\Local Page (Hijack.Search) -> Bad: (http://www2.iesearch.com/) Good: (http://www.google.com/) -> Quarantined and deleted successfully. Delete the following file: C:\WINDOWS\system32\ hpCF04.tmp --------------------------- Open the smitRem folder, then double click the RunThis.bat file to start the tool.

Terms of Use Privacy Policy Licensing Advertise International Editions: US / UK India Toggle navigation Network Windows Mother Board Video Cooling Phone Operating System Hardware RAM Virus VIRUS PLEASE HELP internet In the Resident Shield section, toggle the AVG Anti-Spyware active protection off by clicking Change state which will then change the protection status to 'inactive' If you are instructed to reboot Adam Smith Glasgow, 1760 Back to top #9 nasdaq nasdaq Forum Deity Global Moderator 49,120 posts Posted 16 October 2006 - 03:28 PM Glad we could help. Open IE music starts run32dll.com trying to access internet and act as a server Yes!

Click the big Scan Now buttonIf it wants to install an ActiveX component allow itIt will start downloading the files it requires for the scan (Note: It may take a few please help, i've tried everything, continued pop-ups **Porno finder** what is this? Please save the following instructions in Notepad. Reply No and set it to inactive for the duration of your cleanup.

Please Help with my HJT log!!! Join the ClassRoom and learn how.MS - MVP Consumer Security 2009 - 2016 Back to top #3 dprestia dprestia Member Members 16 posts Posted 17 October 2008 - 08:45 PM Thank Post the contents of the ActiveScan report In your next reply post: Panda ActiveScan.report New HJT log Please give mean update on how the computer is at the moment. Make sure it's the newest version and check for any updates before running it.

When you have finished, click on the Exit button in the Main menu. ======================== For the next scan you will need to use Internet Explorer Next go Here to run Panda's Sensationalist journalism? Please do not PM me for HJT help, we all benefit from posting on the open board.Want to help others?

Then, go to Start >Run and enter: cleanmgr Select the drive to clean: C:\ Check the following boxes and then press OK to remove: Temporary Files Temporary Internet Files RecycleBin Agree

nasdaq Favorite tools: [ SpywareBlaster ] [ Spybot ] [ AdAware ] [ HijackThis ] [ Housecall online virus scan ] [ Bitdefender online virus scan ] [ AVG antivirus ] Adam Smith Glasgow, 1760 Back to top Back to Resolved or inactive Malware Removal 1 user(s) are reading this topic 0 members, 1 guests, 0 anonymous users Reply to quoted postsClear Join thousands of tech enthusiasts and participate. Bowers\Application Data\??sks\r?ndll32.exeC:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exeC:\Documents and Settings\All Users\Start Menu\Programs\Startup\Printkey2000.exeC:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exeC:\QUICKENW\QWDLLS.EXEC:\Program Files\WinZip\WZQKPICK.EXEC:\WINNT\System32\WBEM\WinMgmt.exeC:\Documents and Settings\Terry L.

Check the boxes to the left of: Windows Temp Current User Temp All Users Temp Temporary Internet Files Java Cache The rest are optional - if you want to remove the You may delete the file afterwards Now reboot your machine. The time now is 03:15 PM. -- Mobile_Default -- TSF - v2.0 -- TSF - v1.0 Contact Us - Tech Support Forum - Site Map - Community Rules - Terms of Hijack log included Possible conflicts between Microsoft AntiSpyware & Spybo cant get in safe mode Booting Issues Unable to Log In hijack log file://C:\WINDOWS\warnhp.html HiJack This log AOLServiceHost.exe spontaneous generation NEW