If I closed your topic and you need it to be reopened, simply PM me. Open the folder where the contents were unzipped and run mbar.exe Follow the instructions in the wizard to update and allow the program to scan your computer for threats. Logged willythecatTopic StarterHopeful Experience: Beginner OS: Windows 7 Re: HJT Log for perusal before l submit another post « Reply #2 on: July 06, 2009, 03:01:22 PM » Thanks very much Although things look a lot better [ie> Media Player doesn't launch @ start-up anymore] I get this weird German (!) Exclamation in SpyBot -- Z-Demon [Ungultiger Datentyp...]..

You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus. TIA Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 1:38:37 p.m., on 2/01/2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16421) Boot mode: Normal Running processes: C:\Program Finished : << RKreport[0]_D_06222013_113020.txt >> RKreport[0]_S_06222013_112841.txt Malwarebytes Anti-Rootkit BETA www.malwarebytes.org Database version: v2013.06.22.02 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Mike :: HAWAII [administrator] 22/06/2013 11:36:32 mbar-log-2013-06-22 Done!

Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\bootstrap_0_1_128520_i.mbam... Drive 0 Scanning MBR on drive 0... Loading... http://www.geekstogo.com/forum/topic/102010-ebaycamel-huh-hijackthis-log-for-your-perusalresolved/ Computer Hope Forum Main pageFree helpTipsDictionaryForumLinksContact Welcome, Guest.

Partition starts at LBA: 0 Numsec = 0 Partition 2 type is Empty (0x0) Partition is NOT ACTIVE. Check out the forums and get free advice from the experts. Wait until the Status box shows Scan Finished Click on Delete. C:\Documents and Settings\Mike\Application Data\SwvUpdater\status.cfg (PUP.Software.Updater) -> Quarantined and deleted successfully.

Graffiti - http://download.game...ts/y/grt5_x.cabO16 - DPF: Yahoo! Thanks Mike [HJT log removed by Broni] Jun 21, 2013 #1 Broni Malware Annihilator Posts: 53,147 +349 Welcome aboard We don't use HJT anymore. Never run more than one scan at a time. s'that OK?

C:\WINDOWS\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Quarantined and deleted successfully. (end) DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_39 Run by Mike at 22:39:33 on 2013-06-21 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3070.1611 [GMT 1:00] http://pcialliance.org/hijackthis/hijackthis-what-else-can-i-remove.html Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe O9 - Extra 'Tools' menuitem: Yahoo! Error Type: MyBB Error (40) Error Message: Your board has not yet been installed and configured. Please re-enable javascript to access full functionality.

HKCR\GTDOWNDE.GTAutoFixDLCtrl (Adware.Gdown) -> Quarantined and deleted successfully. Please post the "C:\ComboFix.txt" **Note 1: Do not mouseclick combofix's window while it's running. Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_1_i.mbam... his comment is here Be patient.

He has ZoneAlarm & Norton System works running here.. uStart Page = about:blank uDefault_Page_URL = hxxp://www.dell.co.uk/myway uURLSearchHooks: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\prxtbFre2.dll BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program Your mistakes during cleaning process may have very serious consequences, like unbootable computer.

If the connection is not there use restore point you created prior to running Combofix.

Register now to gain access to all of our features, it's FREE and only takes one minute. My services.exe is running at 40-50% CPU and I've no idea why. Once it has finished click "Finish".Configure Ad-Aware SE Personal 1.06:Click on the Gear button at the top of the window.Click "General" on the left hand side to display the General Settings I did as you said, here are the logs from ewido and hijackthis.. -things feel better, now.. -------------------------------------------------------------------------- --------------------------------------------------------- ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 2:57:14 AM, 3/14/2006

Inspecting partition table: MBR Signature: 55AA Disk Signature: B6266 Partition information: Partition 0 type is Primary (0x7) Partition is NOT ACTIVE. and what are those 017s ... Ask a question and give support. weblink If they do not, click once on the circle next to them to put a green checkmark in it.:"Include basic Ad-Aware settings in log file" "Include additional Ad-Aware settings in log

HijackThis log included. Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_0_r.mbam... Keep updating me regarding your computer behavior, good, or bad. Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exeO23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) -

Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.