Home > Hijackthis Log > Hijackthis Log - I Can't Get Rid Of This Spyware

Hijackthis Log - I Can't Get Rid Of This Spyware

Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy CNET Waiting for things to happen. 0 OPDiscussion Starter dexjava 12 Years Ago oh, i was just confused because I didn't see that last reg entry with the underscore that you mentioned. check this site for info it was real helpful for me with same problem http://www.2-spyware.com/remove-spywarequake.html 27-03-2006,11:43 AM #7 hammer View Profile View Forum Posts Private Message Member Join Date Dec 2004 Can't get rid of lopdotcom, hijackthis log Started by wedgie22 , Jul 12 2005 02:32 AM This topic is locked 8 replies to this topic #1 wedgie22 wedgie22 Members 5 posts his comment is here

By default it will install to C:\Program Files\Trend Micro\HijackThis . Flag Permalink This was helpful (0) Back to Spyware, Viruses, & Security forum 7 total posts Popular Forums icon Computer Help 51,912 discussions icon Computer Newbies 10,498 discussions icon Laptops 20,411 If you get a confirmation question, respond OK then close out of the program. Thread Tools Show Printable Version Subscribe to this Thread… Search Thread Advanced Search Display Linear Mode Switch to Hybrid Mode Switch to Threaded Mode 25-03-2006,12:44 PM #1 supertrouper View Profile

There is no explanation on your website about this program either. 03-04-2006,02:16 PM #10 dcboy View Profile View Forum Posts Junior Member Join Date Apr 2006 Posts 3 Re: Can't get I don't know where it came from or how it got on the machine to start with. Preview post Submit post Cancel post You are reporting the following post: can't get rid of trojan.cachecachekit This post has been flagged and will be reviewed by our staff. Join over 733,556 other people just like you!

We want to remove this one> _{1C78AB3F-A857-482e-80C0-3A1E5238A565} Notice the underscore at the start. by Carol~ Forum moderator / October 26, 2005 3:41 AM PDT In reply to: still not gone Flag Permalink This was helpful (0) Collapse - Yes, follow the advice in by The time now is 11:49 AM. Mi cuentaBúsquedaMapsYouTubePlayNoticiasGmailDriveCalendarGoogle+TraductorFotosMásShoppingDocumentosLibrosBloggerContactosHangoutsAún más de GoogleIniciar sesiónCampos ocultosLibrosbooks.google.es - Essential Computer Security provides the vast home user and small office computer market with the information they must know in order to understand

If anyone has any suggestions or steps I can try, let me know...thank you.Logfile of HijackThis v1.99.0Scan saved at 7:52:53 PM, on 1/3/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 If you wish to post your latest log, you are welcome to. Start a new discussion instead. https://www.cnet.com/forums/discussions/can-t-get-rid-of-trojan-cachecachekit-132631/ Can you post the entire HiJackThis log Thanks 25-03-2006,01:24 PM #3 Speedy Gonzales View Profile View Forum Posts Private Message Member Join Date Dec 2004 Location NZ Posts 44,511 Re: Can't

Also, when i first started having these problems, I could SOMETIMES still access websites - it would open a browser window to Golden Casino every 10 minutes or so, but I Several functions may not work. Typically there are two ... Join our site today to ask your question.

If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Click on Install. If you're not already familiar with forums, watch our Welcome Guide to get started. HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks\\(default) HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks\\{CFBFAE00-17A6-11D0-99CB-00C04FD64497} 0 crunchie 990 12 Years Ago That last one is a legitimate file, that is why I had you do the reg fix for it.

A Member of : UNITE & ASAP Eddy 26-03-2006,08:28 PM #6 hammer View Profile View Forum Posts Private Message Member Join Date Dec 2004 Posts 207 Re: Can't get rid of this content I have done what you all suggested but I still can't get rid of it. Similar Threads - Hijackthis can't spyware Solved HELP! 11b1 and bafa issues. Click here to join today!

Tech Support Guy is completely free -- paid for by advertisers and donations. This is a printer driver... Doesn't seem to be completely removing it tho, if at all. weblink Please refer to our CNET Forums policies for details.

SHOW ME NOW CNET © CBS Interactive Inc.  /  All Rights Reserved. PCWorld Home Forum Today's Posts FAQ Calendar Community Groups Albums Member List Forum Actions Mark Forums Read Quick Links View Forum Leaders Who's Online What's New? Close Notepad.Run Remjob.bat by double clicking on it.

Username or email: I've forgotten my password Forum Password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Community Forum

I have run a full scan with McAfee (fully updated) and it removed one trojan. Each and every issue is packed with punishing product reviews, insightful and innovative how-to stories and the illuminating technical articles that enthusiasts crave....https://books.google.es/books/about/Maximum_PC.html?hl=es&id=qwIAAAAAMBAJ&utm_source=gb-gplus-shareMaximum PCMi colecciónAyudaBúsqueda avanzada de librosSuscribirseComprar libros en Google The Windows Recovery Console will allow you to boot up into a special recovery (repair) mode. Copy the contents of that file to your next post.

Put a check mark in front of the following lines if they still show:O2 - BHO: (no name) - {B85A340F-C654-7183-26F3-38DFEC39F64D} - C:\DOCUME~1\Anyuser\APPLIC~1\Burndrv\Bits Ford.exeO4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -uO4 - HKCU\..\Run: I have win xp and norton antivirus. Here's the HiJackThis log: Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\system32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\System32\svchost.exe H:\WINDOWS\Explorer.EXE H:\WINDOWS\system32\spoolsv.exe H:\WINDOWS\system32\VTTimer.exe H:\WINDOWS\system32\VTtrayp.exe H:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe H:\Program Files\Analog Devices\SoundMAX\Smax4.exe H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC 2.EXE H:\Program Files\McAfee.com\VSO\mcvsshld.exe H:\Program Files\McAfee.com\VSO\oasclnt.exe H:\PROGRA~1\mcafee.com\agent\mcagent.exe H:\Program Files\Messenger\MSMSGS.EXE http://pcialliance.org/hijackthis-log/hijackthis-log-possible-spyware.html Please note once you start ComboFix you should not click anywhere on the ComboFix window as it can cause the program to stall.

qsmurf.exe qflood.exe Search for and remove these following files if present. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: I have even been through the registry and removed all references to it. I have run spybot S&D and ad-aware6, both updated with latest dat, uninstalled the bridge that was installed before, and deleted the bridge.dll registry entry that was causing a rundll /

This site is completely free -- paid for by advertisers and donations. thanks.Logfile of HijackThis v1.99.1Scan saved at 8:16:43 AM, on 7/12/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeC:\Program Files\Norton AntiVirus\navapsvc.exeC:\Program Files\Norton AntiVirus\IWP\NPFMntor.exeC:\Program Files\Common Files\Symantec Shared\SNDSrvc.exeC:\Program Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended. BradleySyngress, 8 nov. 2006 - 279 páginas 0 Reseñashttps://books.google.es/books/about/Essential_Computer_Security_Everyone_s_G.html?hl=es&id=TnUhiDwIiz0CEssential Computer Security provides the vast home user and small office computer market with the information they must know in order to understand

You may have to register before you can post: click the register link above to proceed. Are you looking for the solution to your computer problem? Flag Permalink This was helpful (0) Collapse - Worm Won't Leave? qsmurf.c qsmurf.exe heibai.net.txt qflood.c qflood.exe Last edited by Pancake; 25-03-2006 at 02:24 PM.

HijackThis log included. Currently a security architect and consultant for a Fortune 100 company, Tony has driven security policies and technologies for antivirus and incident response for Fortune 500 companies and he has been Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Please try again now or at a later time.

Intended for the security illiterate, Essential Computer Security is a source of jargon-less advice everyone needs to operate their computer securely.* Written in easy to understand non-technical language that novices can How fast is your internet? Panda will install the component, and then install the latest signature files. [*]From ''Select a device to scan...'', choose ''My Computer'' [*]Allow the scan to run. All submitted content is subject to our Terms of Use.

I just made it in a snap to help people out. Any other ideas?MAndy Flag Permalink This was helpful (0) Collapse - (NT) (NT) Mandy.. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates,