In any event here's my HJT log, plz advise as to how to remove this search paga thing and anything else you see that is hurting my puter. Thanks in advance!ALLogfile of HijackThis v1.97.7Scan saved at 5:29:33 PM, on 2/19/2005Platform: Windows XP (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 (6.00.2600.0000)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Nhksrv.exeC:\WINDOWS\System32\alg.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exeC:\WINDOWS\System32\nvsvc32.exeC:\WINDOWS\Explorer.EXEC:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exeC:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exeC:\Program Files\Microsoft Office\Office\OSA.EXEC:\Documents and Settings\AL\Desktop\SystemRestore.exeC:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXEC:\WINDOWS\System32\wuauclt.exeC:\Program

Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove ads #2 Mazink Mazink Topic Starter Members 7 posts OFFLINE Local time:01:43 AM Posted 29 December 2007 Thank you

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dllO3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLLO3 - Toolbar: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe1.dllO3 - Toolbar: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program ADS - svchost.exe: deleted 51200 bytes in 1 streams. ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))).C:\Program Files\screensavers.comC:\Program Files\screensavers.com\ActiveDesktop\bin\ActiveDesktopExe.exeC:\Program Files\screensavers.com\SSSInstaller\bin\SSSInstaller.dllC:\Program Files\screensavers.com\SSSUninst.exeC:\WINDOWS\system32\e404d.dllC:\WINDOWS\Temp\1069896690.exeC:\WINDOWS\Temp\1904473440.exe.((((((((((((((((((((((((( Files Created from 2007-12-09 to 2008-01-09 ))))))))))))))))))))))))))))))).2008-01-09 14:41 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe2008-01-04

Close any open browsers.2. thank you for all yall's help. :lol: :lol: :lol: :lol: :lol: 0 DMR 152 12 Years Ago Whatever the reason for DSO exploit warning in SpyBot- from my experience in using Open notepad and copy/paste the text in the quotebox below into it:Registry:: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] "E404Helper"=- [-HKEY_LOCAL_MACHINE\system\ControlSet001\Services\FFI] RENV:: C:\Documents and Settings\Mazin\My Documents\My Completed Downloads\Ultimate Cheat Pack\Miners\Sythe's Powerminer .exeSave this as CFScript.txt, in the

Heres my HJT log:_______________________________________________________________________________Logfile of Trend Micro HijackThis v2.0.2Scan saved at 5:13:44 PM, on 12/27/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\Program Files\McAfee.com\VSO\mcvsshld.exeC:\Program Files\McAfee.com\VSO\oasclnt.exeC:\PROGRA~1\mcafee.com\agent\mcagent.exeC:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exeC:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exeC:\Program Files\Hewlett-Packard\HP