Home > Solved Hjt > Solved: HJT Log #2

Solved: HJT Log #2

Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy MyBB Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software) SRV - (!SASCORE) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com) SRV - (vsmon) -- C:\Windows\System32\ZoneLabs\vsmon.exe (Check Point Software Technologies LTD) SRV - (IswSvc) -- C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe (Check WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - Please post your HijackThis log as a reply to this thread and not as an attachment.

Applications-->C:\PROGRA~1\Yahoo!\Common\uninstall.exe Audacity 1.2.4-->"C:\Program Files\Audacity\unins000.exe" AusLogics Disk Defrag-->"C:\Program Files\Auslogics\AusLogics Disk Defrag\unins000.exe" avast! There is a shortage of helpers and taking the time of two volunteer helpers means that someone else may not be helped. Free Antivirus "Broadcom 802.11b Network Adapter" = Dell Wireless WLAN Card "CCleaner" = CCleaner "CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3" = Conexant HDA D110 MDC V.92 Modem "conduitEngine" = Conduit Engine "Eusing Free Registry Cleaner" = My OS is XP Professional.

Posted 02/01/2014 the_greenknight 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 HiJackThis is very good at what it does - providing a log of Please re-enable javascript to access full functionality. [Resolved](Solved) HJT Log Started by Spaceytjk , Oct 18 2008 09:25 AM Page 1 of 2 1 2 Next This topic is locked 17 Because of this, I advise you to backup any personal files and folders before you start. Posted 03/20/2014 minnen 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 A must have, very simple, runs on-demand and no installation required.

Please refer to our Privacy Policy or Contact Us for more details You seem to have CSS turned off. Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd Select option #2 - Clean by typing 2 and press "Enter" to delete infected files. Mammuthus Hibernian Scouserus, member of ASAP and UNITE. I haven't done anything since posting in this thread that could have brougt this up (at least that im aware of).

Essential piece of software. avatar2005 Avast Evangelist Poster Posts: 423 In search of Harmony in our lives hijackthis log analyzer « on: March 25, 2007, 09:26:20 PM » Hi friends!I need a good online hijackthis All Rights ReservedAd Choices The information on Computing.Net is the opinions of its users. https://www.bleepingcomputer.com/forums/t/275961/posting-hjt-log-to-solve-cwindowssystem32shdoclcdlldnserrorhtm/ This is a good information database to evaluate the hijackthis logs:http://www.short-media.com/forum/showthread.php?t=35982You can view and search the database here:http://spywareshooter.com/search/search.phpOr the quick URL:http://spywareshooter.com/entrylist.htmlpolonus « Last Edit: March 25, 2007, 10:30:03 PM by polonus

I'll attach the second one in a seperate post as requested. It's free. Tell me about problems or symptoms that occur during the fix. Screenshot instructions: Windows Mac Red Hat Linux Ubuntu Click URL instructions: Right-click on ad, choose "Copy Link", then paste here → (This may not be possible with some types of

Please re-enable javascript to access full functionality. https://forums.whatthetech.com/index.php?showtopic=96195 Advertisement tryntolive Thread Starter Joined: Feb 21, 2007 Messages: 11 Been noticeing pop ups, randomd internet crashes and 2 of the same program at once, just making sure everything allright and Inc. - C:\WINDOWS\system32\YPCSER~1.EXE -- End of file - 9529 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\MP Scheduled Scan.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] Yahoo! Off-Topic Tags How-tos Drivers Ask a Question Computing.NetForumsSecurity and VirusGeneral Solved W7 IE11 (all browsers) only work in safe mode (See HJT log) Tags:windows 7browsersCrashNot Responding JimiS82 October 21, 2015 at

Toolbar) -- C:\Users\Brenda\AppData\Roaming\Mozilla\Firefox\Profiles\itwgprzv.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2009/02/24 22:03:19 | 000,000,000 | ---D | M] (PhishTank SiteChecker) -- C:\Users\Brenda\AppData\Roaming\Mozilla\Firefox\Profiles\itwgprzv.default\extensions\{8bc5b5eb-0ec4-46ed-a024-ace8a3032888} [2011/09/28 06:53:37 | 000,000,000 | ---D | M] (ZoneAlarm Security Community Toolbar) -- C:\Users\Brenda\AppData\Roaming\Mozilla\Firefox\Profiles\itwgprzv.default\extensions\{91da5e8a-3318-4f8c-b67e-5964de3ab546}(55) [2009/11/16 21:07:50 Source code is available SourceForge, under Code and also as a zip file under Files. It is nice that you can work the logs of X-RayPC to cleanse in a similar way as you handle the HJT-logs. Unknown [openas] -- "C:\Program Files\File Type Assistant\tsassist.exe" "%1" (Trusted Software ApS) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe

  1. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
  2. Software ▼ Security and Virus Office Software PC Gaming See More...
  3. Does it need to be in normal mode?
  4. O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies) O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe (IDT, Inc.) O4 - HKLM..\Run:
  5. I'm going to work on uninstalling the other AV's and leave Trend Micro running.
  6. Why should not avatar2005 not learn to work these specific tools himself as well, He can go to sites and analyse particular cleansing routines at majorgeeks, analyse cleansing routines we have
  7. o It will open in your default text editor (such as Notepad/Wordpad).
  8. Since it has been a few days since you scanned your computer with HijackThis, we will need a new HijackThis log.
  9. Thanks -Jason Here are both RSIT logs: Logfile of random's system information tool 1.04 (written by random/random) Run by Owner at 2008-10-21 17:15:28 Microsoft Windows XP Home Edition Service Pack 2

Logged "If at first you don't succeed keep on sucking 'till you do succeed" - Curley Howard in Movie Maniacs (1935) DavidR Avast Überevangelist Certainly Bot Posts: 76837 No support PMs What the Tech → Spyware / Malware / Virus Removal → Virus, Spyware & Malware Removal Javascript Disabled Detected You currently have javascript disabled. Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. Logged polonus Avast Überevangelist Maybe Bot Posts: 28625 malware fighter Re: hijackthis log analyzer « Reply #2 on: March 25, 2007, 09:48:24 PM » Halio avatar2005,Tools like FreeFixer, and the one

Thank you. If a USER doesn't heed or understand the warning & clicks, it is too late.Go to any malware forum & no matter what AV is installed, they got infected.Go with the SUPERAntiSpyware Scan Log Generated 02/23/2007 at 04:59 AM Application Version : 3.5.1016 Core Rules Database Version : 3187 Trace Rules Database Version: 1197 Scan type : Complete Scan Total Scan Time

Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [2006-10-26 440384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]

Do not start a new topic.Refrain from running self fixes as this will hinder the malware removal process.It may prove beneficial if you print of the following instructions or save them Please try again. Try What the Tech -- It's free! Please Copy & Paste the contents into your reply. Report • #6 JimiS82 October 22, 2015 at 05:02:35 Sorry for the late reply, I'll try this as soon as I get

free 17.2.2288beta/ Outpost Firewall Pro9.3/ Firefox 51.0.1, uBlock Origin, RequestPolicy/ MailWasher Pro7.8.0/ DropMyRights/ MalwareBytes AntiMalware Premium 2.2.0/ WinPatrol+/ Drive Image 7.1/ SnagIt 10.0/ avast! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - HijackThis scan results make no separation between safe and unsafe settings , which gives you the ability to selectively remove items from your machine. Note: If it is necessary to restore the registry, open the backup folder and start ERDNT.exe Next: Right-click OTL.exe and select Run as Administrator to start the program.

o Click the Close button to leave the control center screen. · On the main screen, under Scan for Harmful Software click Scan your computer. · On the left check C:\Fixed Several functions may not work. Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-07-23 348344] R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-09-08 536872] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144] The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.

Click Restore Microsoft’s Host File and then click OK. Logged "If at first you don't succeed keep on sucking 'till you do succeed" - Curley Howard in Movie Maniacs (1935) polonus Avast Überevangelist Maybe Bot Posts: 28625 malware fighter Re: Also hijackthis is an ever changing tool, well anyway it better stays that way. Comparison Chart Deals Top Searches hijackthis windows 10 hijackthis malware anti malware registry hijack this shortcut virus remover facebook password hack hjt bad sector repair Thanks for helping keep SourceForge clean.

Error - 10/17/2011 8:26:37 AM | Computer Name = Brenda-PC | Source = EventLog | ID = 6008 Description = The previous system shutdown at 4:15:07 PM on 10/14/2011 was unexpected. Messenger" "C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader" "C:\Program Files\AIM6\aim6.exe"="C:\Program Files\AIM6\aim6.exe:*:Enabled:AIM" "C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire" "C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:Torrent" "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger" "C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)" Report • #17 Johnw October 23, 2015 at 15:55:24 "I had some things come up and wasn't at work today"No problem JimiS82. Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

everything is working GREAT!!!