Total Format - Total Entertainment
 
 

Go Back   Total Format Forum > Computing Forums > Troubleshooting & Security

Troubleshooting & Security If you need answers or advice regarding problems with your computer hardware or software or need to discuss your computers security, firewalls and anti virus software then you should post your thoughts to this section.

Reply
 
LinkBack Thread Tools Display Modes
Old 17-08-2004, 17:31   #1 (permalink)
Name, Title, Location BlueFlame
Full Member

UK - [ Ipswich ]
England
AvatarBlueFlame's Avatar
Posts64
Karma BlueFlame has not done anything good or bad yet.
Pu-1,119.65
Attention Help With HijackThis !!

ive had so many problems wiht tmy old pc with pop up windows and random processes running that i thought id post a log fioe for a hijack this done 15mins ago by me. If anyone could give me help or advice id be much appreciated. I dont have a clue whats meant to be on the file and not.

Here it goes



Logfile of HijackThis v1.97.7
Scan saved at 16:34:36, on 17/08/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\LEXBCES.EXE
C:\WINNT\system32\spoolsv.exe
C:\WINNT\system32\LEXPPS.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton Personal Firewall\NISUM.EXE
C:\WINNT\System32\drivers\CDAC11BA.EXE
C:\WINNT\System32\DRIVERS\CDANTSRV.EXE
C:\Program Files\Norton Personal Firewall\ccPxySvc.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\tcpsvcs.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\System32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\inetsrv\inetinfo.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\Fmctrl.EXE
C:\PROGRA~1\NORTON~1\navapw32.exe
C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
C:\WINNT\System32\spool\drivers\w32x86\3\hpztsb05.exe
C:\Program Files\Common Files\CMEII\CMESys.exe
C:\WINNT\system32\GSICON.EXE
C:\WINNT\system32\dslagent.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\GMT\GMT.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Common Files\Nokia\Services\ServiceLayer.exe
C:\Program Files\Common Files\Nokia\NCLTools\NclTray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINNT\system32\rundll32.exe
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\WINNT\system32\RUNDLL32.exe
c:\progra~1\intern~1\iexplore.exe
C:\WINNT\system32\bnrxkr.exe
C:\PROGRA~1\ScanSoft\PAPERP~1\PPWebCap.exe
C:\Program Files\HistoryKill\histkill.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Serif\GraphicsPlus\GpStart.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Kodak\Picture Easy Software\Program\PezDownload.exe
C:\WINNT\FSScrCtl.exe
C:\Program Files\HistoryKill\hkPopupKiller.exe
\Pc1\My Downloads\Programs\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://searchweb2.com/passthrough/in...ww.google.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.rtwautbttxiazxdyzv.info/U...dSnBPxbfZ.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by BTopenworld
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.companion.yahoo.com/slv...om/search?p=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: (no name) - {000004CC-E4FF-4F2C-BC30-DBEF0B983BC9} - C:\WINNT\IPINSIGT.DLL
O2 - BHO: (no name) - {000020DD-C72E-4113-AF77-DD56626C6C42} - C:\WINNT\twaintec.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\ycomp5_0_2_7.dll
O2 - BHO: (no name) - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet6_30.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-C0FF-FD60B590A87D} - C:\PROGRA~1\COMMON~1\Real\Toolbar\realbar.dll
O2 - BHO: (no name) - {8AFA9279-BAC3-E340-B3BA-8E0DA113F94E} - C:\PROGRA~1\POKEWA~1\RDRBUILD.exe
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\ycomp5_0_2_7.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: REALBAR - {4E7BD74F-2B8D-469E-C0FF-FD60B590A87D} - C:\PROGRA~1\COMMON~1\Real\Toolbar\realbar.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [FmctrlTray] Fmctrl.EXE
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINNT\System32\spool\DRIVERS\W32X86\2\printray.exe
O4 - HKLM\..\Run: [InstantAccess] C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE /h
O4 - HKLM\..\Run: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [LoadQM] loadqm.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\System32\spool\drivers\w32x86\3\hpztsb05.exe
O4 - HKLM\..\Run: [Sentry] C:\WINNT\Sentry.exe
O4 - HKLM\..\Run: [CMESys] "C:\Program Files\Common Files\CMEII\CMESys.exe"
O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [FastTrack Accelerator] C:\Program Files\KaZaA Lite\Speed Up.exe
O4 - HKLM\..\Run: [WebInstall2] C:\WINNT\Temp\Adware\WebInstall.exe /R
O4 - HKLM\..\Run: [PromulGate] "C:\Program Files\DelFin\PromulGate\PgMonitr.exe"
O4 - HKLM\..\Run: [KAZAA] "C:\Program Files\KaZaA Lite\kpp.exe" "C:\Program Files\KaZaA Lite\kazaalite.kpp" /SYSTRAY
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Microsoft Tray] C:\Program Files\KaZaA Lite\My Shared Folder\UoGamer.exe
O4 - HKLM\..\Run: [OneTouch Monitor] C:\PROGRA~1\VISION~1\ONETOU~2.EXE
O4 - HKLM\..\Run: [ShareMonkey Speedup] C:\Program Files\KaZaA Lite\speed up.exe
O4 - HKLM\..\Run: [Kernel32] Kernel32.exe
O4 - HKLM\..\Run: [LWBMOUSE] C:\Program Files\Browser Mouse\Browser Mouse\1.1\MOUSE32A.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [ServiceLayer] C:\Program Files\Common Files\Nokia\Services\ServiceLayer.exe
O4 - HKLM\..\Run: [Nokia Tray Application] C:\Program Files\Common Files\Nokia\NCLTools\NclTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [DDCM] "C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe" -Background
O4 - HKLM\..\Run: [DDCActiveMenu] "C:\Program Files\WildTangent\DDC\ActiveMenu\DDCActiveMenu.exe" -boot
O4 - HKLM\..\Run: [alchem] C:\WINNT\alchem.exe
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,NewDotNetStartup -s
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [Less Vc] C:\PROGRA~1\CLOSEF~1\meta copy wma.exe
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [eddgjadnkiei] C:\WINNT\system32\bnrxkr.exe
O4 - HKLM\..\Run: [downloadupmailwait] C:\Documents and Settings\All Users\Application Data\Remotemanagerdownloadup\Blue Audio.exe
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [Kernel32] Kernel32.exe
O4 - HKCU\..\Run: [PPWebCap] C:\PROGRA~1\ScanSoft\PAPERP~1\PPWebCap.exe
O4 - HKCU\..\Run: [HistoryKill] C:\Program Files\HistoryKill\histkill.exe /startup
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\Symantec\LIVEUP~1\SNDMon.EXE
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: Check for OneTouch Updates.lnk = C:\Program Files\Visioneer OneTouch\WiseUpdt.exe
O4 - Startup: Screen Saver Control.lnk = C:\WINNT\FSScrCtl.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: GraphicsPlus.lnk = C:\Program Files\Serif\GraphicsPlus\GpStart.exe
O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
O4 - Global Startup: Kodak Picture Easy 3.1 Batch Transfer.lnk = C:\Program Files\Kodak\Picture Easy Software\Program\PezDownload.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: SYSTRAN: &Clear Translation Cache - C:\Program Files\Systran\Standard\menuClearCache.html
O8 - Extra context menu item: SYSTRAN: &Options - C:\Program Files\Systran\Standard\menuConfigure.html
O8 - Extra context menu item: SYSTRAN: &Register - C:\Program Files\Systran\Standard\menuRegister.html
O8 - Extra context menu item: SYSTRAN: &Translate - C:\Program Files\Systran\Standard\menuTranslate.html
O8 - Extra context menu item: SYSTRAN: Check for &Updates - C:\Program Files\Systran\Standard\menuUpdate.html
O8 - Extra context menu item: SYSTRAN: Translate All &Frames - C:\Program Files\Systran\Standard\menuTranslateAll.html
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: @sysiecom.dll,-2100 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2102 (HKLM)
O9 - Extra button: @sysiecom.dll,-2103 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2105 (HKLM)
O9 - Extra button: @sysiecom.dll,-2115 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2117 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2108 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2111 (HKLM)
O9 - Extra 'Tools' menuitem: @sysiecom.dll,-2114 (HKLM)
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O10 - Hijacked Internet access by New.Net
O16 - DPF: ChatSpace Full Java Client 3.1.0.224 - http://surechat.com:9000/Java/cfs31224.cab
O16 - DPF: ChatSpace Full Java Client 3.1.0.229 - http://surechat.com:9000/Java/cfs31229.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/SU/ocx/CTSUEng.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/s...irector/sw.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary...r.cab27571.cab
O16 - DPF: {2AF973E9-21D2-4BCE-AB51-9DE67165A7C4} (ActiveGL Control) - http://nl.mirrors.gtaskins.com/viewer/modelviewer.ocx
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/2600000290b1f74...p/RdxIE601.cab
O16 - DPF: {597C45C2-2D39-11D5-8D53-0050048383FE} (OPUCatalog Class) - http://office.microsoft.com/productu...ntent/opuc.cab
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/soft...ch/alaunch.cab
O16 - DPF: {8522F9B3-38C5-4AA4-AE40-7401F1BBC851} - http://www.trinsic.org/download_serial.exe
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab27571.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.co...618.3704861111
O16 - DPF: {AB29A544-D6B4-4E36-A1F8-D3E34FC7B00A} (WTHoster Class) - http://install.wildtangent.com/bgn/p...ll/install.cab
O16 - DPF: {AD7FAFB0-16D6-40C3-AF27-585D6E6453FD} - http://dload.ipbill.com/del/loader.cab
O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/SSC/Sha.../bin/cabsa.cab
O16 - DPF: {CD17FAAA-17B4-4736-AAEF-436EDC304C8C} (ContentAuditX Control) - http://a840.g.akamai.net/7/840/5805/...ditControl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload.macromedia.com/pub...sh/swflash.cab
O16 - DPF: {DF6A0F17-0B1E-11D4-829D-00C04F6843FE} (Microsoft Office Tools on the Web Control) - http://dgl.microsoft.com/downloads/outc.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EC5A4E7B-02EB-451D-B310-D5F2E0A4D8C3} (webhelper Class) - https://register.btopenworld.com/tem...webcontrol.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Companion) - http://us.dl1.yimg.com/download.yaho...bio5_0_2_7.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary...n.cab28578.cab
BlueFlame's Sig:

Legend Of Mir 2
BlueFlame - Lvl 38 Warrior Retired

Legend Of Mir 3
**** - Lvl 00 Warrior Due Soon
Biosfear
LordNova - Lvl 157 Bulkan Slowly Fading Away...
ToolsBlueFlame is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 17:40   #2 (permalink)
Name, Title, Location TheHowling
Horrors anew

Devon
England
AvatarTheHowling's Avatar
Posts2,046
Karma TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.
Pu1,199.99
Default Re: Help With HijackThis !!

Try downloading adware first and doing a clean


http://www.noadware.net/?hop=wintech


then do another hijack list to see what left
TheHowling's Sig:
N
RevivalI The Howling is Getting Louder 6The UprisingM PartTimeSlayer of Pests
:dbwish: :drag:
ToolsTheHowling is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 17:49   #3 (permalink)
Name, Title, Location BlueFlame
Full Member

UK - [ Ipswich ]
England
AvatarBlueFlame's Avatar
Posts64
Karma BlueFlame has not done anything good or bad yet.
Pu-1,119.65
Default Re: Help With HijackThis !!

ok thank you
BlueFlame's Sig:

Legend Of Mir 2
BlueFlame - Lvl 38 Warrior Retired

Legend Of Mir 3
**** - Lvl 00 Warrior Due Soon
Biosfear
LordNova - Lvl 157 Bulkan Slowly Fading Away...
ToolsBlueFlame is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 17:56   #4 (permalink)
Name, Title, Location BlueFlame
Full Member

UK - [ Ipswich ]
England
AvatarBlueFlame's Avatar
Posts64
Karma BlueFlame has not done anything good or bad yet.
Pu-1,119.65
Default Re: Help With HijackThis !!

i like the way you run it then it tells you in order to clear them you have to buy the product anyother ways or should i fork out for this program?
BlueFlame's Sig:

Legend Of Mir 2
BlueFlame - Lvl 38 Warrior Retired

Legend Of Mir 3
**** - Lvl 00 Warrior Due Soon
Biosfear
LordNova - Lvl 157 Bulkan Slowly Fading Away...
ToolsBlueFlame is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote

Sponsored Links

Old 17-08-2004, 18:19   #5 (permalink)
Name, Title Puratech
The True Forsaken

United Kingdom
AvatarPuratech's Avatar
Mood
Posts5,947
Karma Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.
Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.
Pu1,539.29
Awards
TF Top Poster Bronze TF Top Poster - Silver 
Total Awards: 2
Heart Love Hearts Banana Grapes Dummy Cookie TV Chocolate Nut Slush Cake Donut Burger in a bun Big Beer Beer Umbrella Pie

Default Re: Help With HijackThis !!

Quote:
Originally Posted by BlueFlame
i like the way you run it then it tells you in order to clear them you have to buy the product anyother ways or should i fork out for this program?
Which program told you that?

Adaware should be free as is hijackthis.

Download spybot too, id rather you ran both. If it has problems deleting anything, run them in safemode too.

Then repost your HJT log.

Seriously you have a huge amount of crap running on your pc, its going to be very easy to miss spyware etc in that without us checking every single thing in detail. Run the scans first and let them clean what they can though.
Puratech's Sig:It's funny how life turns out,
The odds of faith in the face of doubt,
Camera One closes in,
The soundtrack starts,
The scene begins...


Quocunque Jeceris Stabit
ToolsPuratech is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 19:03   #6 (permalink)
Name, Title, Location TheHowling
Horrors anew

Devon
England
AvatarTheHowling's Avatar
Posts2,046
Karma TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.
Pu1,199.99
Default Re: Help With HijackThis !!

Quote:
Originally Posted by BlueFlame
i like the way you run it then it tells you in order to clear them you have to buy the product anyother ways or should i fork out for this program?
I will look for a free version

sorry about that. I assumed it was free for home use version

I will post here a link in a sec

:Tomcat:

Last edited by TheHowling; 17-08-2004 at 19:07..
TheHowling's Sig:
N
RevivalI The Howling is Getting Louder 6The UprisingM PartTimeSlayer of Pests
:dbwish: :drag:
ToolsTheHowling is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 19:04   #7 (permalink)
Name, Title, Location TheHowling
Horrors anew

Devon
England
AvatarTheHowling's Avatar
Posts2,046
Karma TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.TheHowling is trained in the ways of TF.
Pu1,199.99
Default Re: Help With HijackThis !!

Quote:
Originally Posted by TheHowling
I will look for a free version

sorry about that. I assumed it was free for home use version

I will post here a link in a sec

:tomcat:
this one is free

http://www.download.com/3000-2094-10...ml?legacy=cnet

pm me if you have any difficutlies running it

aslo do what puratech says, as he knows his stuff :good:
TheHowling's Sig:
N
RevivalI The Howling is Getting Louder 6The UprisingM PartTimeSlayer of Pests
:dbwish: :drag:
ToolsTheHowling is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 17-08-2004, 21:03   #8 (permalink)
Name, Title Puratech
The True Forsaken

United Kingdom
AvatarPuratech's Avatar
Mood
Posts5,947
Karma Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.
Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.Puratech is one of the elite.
Pu1,539.29
Awards
TF Top Poster Bronze TF Top Poster - Silver 
Total Awards: 2
Heart Love Hearts Banana Grapes Dummy Cookie TV Chocolate Nut Slush Cake Donut Burger in a bun Big Beer Beer Umbrella Pie

Default Re: Help With HijackThis !!

Quote:
Originally Posted by TheHowling
this one is free

http://www.download.com/3000-2094-10...ml?legacy=cnet

pm me if you have any difficutlies running it

aslo do what puratech says, as he knows his stuff :good:
Theres a link to adaware in my resources thread at the top of this forum www.lavasoftusa.com off the top of my head, most people recommend also using spybot as well as adaware to catch anything the other might miss.

To do the cleanest scan, turn off system restore (system restore tab, under system app in control panel), reboot into safemode, run adaware, run spybot, reenable system restore.
Puratech's Sig:It's funny how life turns out,
The odds of faith in the face of doubt,
Camera One closes in,
The soundtrack starts,
The scene begins...


Quocunque Jeceris Stabit
ToolsPuratech is offline
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply

Tags
hijackthis

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
hijackthis Cintaria Troubleshooting & Security 4 12-01-2008 19:59
HijackThis log Gandalf Troubleshooting & Security 4 19-04-2005 08:58
help with hijackthis log plz :) Adrienne Troubleshooting & Security 4 11-11-2004 00:36
HijackThis log kadafi Troubleshooting & Security 2 09-07-2004 08:11
Hijackthis... Pete Troubleshooting & Security 3 27-03-2004 01:59

 
 
Archive - RSS Feeds - About Us - Privacy - Terms of Use - Site Map - Advertising - Link To TF - Contact Us - Top
Content Relevant URLs by vBSEO 3.2.0 RC5 Copyright ©2003 - 2000, Total Format. Forums powered by vBulletin, Copyright ©2000 - 2009, Jelsoft Enterprises Limited.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385