Home > Hijackthis Help > HijackThis Help - I'm Sure I Have Multiple Problems.

HijackThis Help - I'm Sure I Have Multiple Problems.

If malwarebytes isn't doing the trick, I'd try a few other anti-virus programs and see if they can clean it up. I'd appreciate any insight anyone might be capable of providing. http://www.pcthreat....yid-7904en.html I don't know if you have multiple viruses or those others are just parts or clones of each other. This will patch the system with the most current security fixes and plug all the known holes which are present on this system. his comment is here

c:\documents and settings\user\local settings\Temp\system.exe (Trojan.Dropper) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\autochk (Trojan.Agent) -> No action taken. I will also post the second from earlier today. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken. https://forums.techguy.org/threads/hijackthis-help-im-sure-i-have-multiple-problems.512023/

Are you looking for the solution to your computer problem? so this does not indicate a malware issue.C:\Program Files (x86)\Malwarebytes' Anti-Malware\ChameleonC:\Windows\System32C:\Windows\SysWOW64C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48cC:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356This could be a reason your computer is running slow... Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. Using the site is easy and fun.

I'm Lost! - Forums Home - Tutorials - Get Computer Help - Spyware Help - Help2Go Detective - Software Picks - Newsletter - Testimonials - Donate Our Sponsors Help2Go Archive Top The biggest problem with this system is how out of date the operating system is. Several functions may not work. Please re-enable javascript to access full functionality.

Please re-enable javascript to access full functionality. Please post the contents of C:\vundofix.txt and a new HiJackThis log. The computer is running a lot better though (IE Can get online, boot up normal, not get re-directed to bogus sites) but I'd like to be able to do some full More about the author Looking in the Task Manager, the CPU Usage was always 100%.

c:\documents and settings\user\local settings\Temp\a.exe (Trojan.Dropper) -> No action taken. If you plan on keeping Norton, I would uninstall Emsisoft. I looked at all of the processes that were running when I pressed ALT+CTL+DEL and it said that svchost.exe, services.exe, lsass.exe, csrss.exe, spoolsv.exe, winlogon.exe, smss.exe, winreg.exe, and explorer.exe were all created Stay logged in Sign up now!

CAGiversary! 461 Posts Joined 10.6 Years Ago KhaosX 100% 1 0 - - - Posted 16 July 2009 - 06:19 PM there is a nice little program called http://www.theeldergeek.com/forum/index.php?showtopic=45995 NFL GameChannel StatTracker - http://aud5.sports.yahoo.com/java/y/nflgcst1008_x.cab O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - http://www.pestscan.com/scanner/axscanner.cab O16 - DPF: {52A5CD24-64C6-4BAF-A4EC-4D13F451763F} - https://www.cuworld.com/PIC/inner_pi...es/CUworld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1093645463734 O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Warmth CAGiversary! 1398 Posts Joined 10.2 Years Ago Richard Longfellow 100% 2 0 - - - Posted 18 July 2009 - 02:49 AM Here's a set of instructions Logfile of HijackThis v1.98.0 Scan saved at 6:31:09 PM, on 8/27/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe

I appreciate all the help I can get. http://pcialliance.org/hijackthis-help/hijackthis-help-pop-ups.html Check any item with Java Runtime Environment (JRE or J2SE) in the name. c:\WINDOWS\system32\gsf83iujid.dll (Trojan.Ertfor) -> No action taken. mode: Politics & Controversy Lifestyle & Off Topic Quick Links What's New My Profile My Content Content l Follow Community Areas User Blogs User Galleries Games Reviews Contests Code Giveaways Prices

c:\documents and settings\all users\application data\13165314\13165314.exe (Rogue.SystemSecurity) -> No action taken. Please use them so that others may benefit from your questions and the responses you receive.OldTimer Back to top Back to Virus, Trojan, Spyware, and Malware Removal Logs 0 user(s) are Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu weblink I really don't know what the is going on with the computer.

Repeat as many times as necessary to remove each Java versions. Register now! Discussion in 'Virus & Other Malware Removal' started by jmei79, Oct 23, 2006.

Check the box that says: "Accept License Agreement".

I looked at all of the processes that were running when I pressed ALT+CTL+DEL and it said that svchost.exe, services.exe, lsass.exe, csrss.exe, spoolsv.exe, winlogon.exe, smss.exe, winreg.exe, and explorer.exe were all created IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {68F94579-4CD7-0CEB-AA6A-0A2B436F33FB} - C:\WINDOWS\system32\qprvtsj.dll (file missing) O2 - BHO: SSVHelper Thread Status: Not open for further replies. So there's my story.

Please download VundoFix.exe to your desktop. You will receive a prompt asking if you want to remove the files, click YES Once you click yes, your desktop will go blank as it starts removing Vundo. If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. check over here Back to top #16 Richard Longfellow Mr.

Free Antivirus MS Security Essentials Startup: WinPatrol Cleaning: CCleanerAdware/Spyware: Malwarebytes' Anti-Malware Spybot S & D Windows Defender SUPERAntiSpywarePersonal Software Update: Secunia Personal Software Inspector FileHippo.com App ManagerPlease report problems with links. I understand this probably isn't the best place to get help, so I'm going to post a thread on Bleeping Computer, and will just use my workaround for the time being. c:\documents and settings\user\local settings\Temp\3525530756.exe (Trojan.Dropper) -> No action taken. Alternative to Windows Indexing Last Post 2 Weeks Ago I frequently find myself looking for files on my computer. 99.9% of the time I am looking for a file by name

Several functions may not work. if you have questions, you may open another topic here at TEG.If you have opened topics at other malware help sites... Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe O9 - Extra 'Tools' menuitem: Yahoo! c:\WINDOWS\system32\lowsec\user.ds (Stolen.data) -> No action taken.

It completed that scan (899 things found) and now I'm trying again with the full system scan. Please note that your topic was not intentionally overlooked. Click the "Download" button to the right. c:\documents and settings\user\local settings\Temp\3615687006.exe (Trojan.Dropper) -> No action taken.

Logfile of HijackThis v1.97.7 Scan saved at 11:28:17 PM, on 2/22/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe so there are 4 occurrences of iexplore.exe in my Task Manager. 0 Admin/Teacher at Malware Removal University - - Member of UNITEI seek not to know all the answers...but to understand Click here to Register a free account now! C:\WINDOWS\system32\certstore.dat (Trojan.Agent) -> No action taken.

Join our site today to ask your question. c:\documents and settings\user\local settings\Temp\zjhufhdfe.exe (Trojan.Ertfor) -> No action taken. Register now!