Do not run any other programs or open any other windows while doing a fix. I fully intend to give it a serious try. Although her computer is not currently used for any critical purposes and contains no sensitive information, that could change in the future. I will be installing a new software firewall soon, after testing on the remains of a laptop I bought at a yard sale and reconstructed. (That one, too, needs a firewall

Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! This site is completely free -- paid for by advertisers and donations. Um festzustellen, ob ein Eintrag schädlich ist oder bewusst vom Benutzer oder einer Software installiert worden ist benötigt man einige Hintergrundinformationen.Ein Logfile ist oft auch für einen erfahrenen Anwender nicht so

please help and let me know what i need to do, step by step would be most appreciated. If you need this topic reopened, please contact a member of the HJT Team and we will reopen it for you. Avast Evangelists.Use NoScript, a limited user account and a virtual machine and be safe(r)! Show Ignored Content As Seen On Welcome to Tech Support Guy!

ThanksLogfile of HijackThis v1.99.1Scan saved at 10:05:40 AM, on 6/7/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\system32\wscntfy.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Common Files\Dell\EUSW\Support.exeC:\WINDOWS\System32\hkcmd.exeC:\WINDOWS\system32\dla\tfswctrl.exeC:\Program Files\BroadJump\Client Foundation\CFD.exeC:\Program Files\Dell\Support\Alert\bin\NotifyAlert.exeC:\WINDOWS\system32\wuauclt.exeC:\Documents and Settings\Evelyn Johnson\Desktop\hjt\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet

My OS is XP Professional. Reboot winchester73, Aug 20, 2003 #3 shesun4givn2 Thread Starter Joined: Jul 7, 2003 Messages: 237 Thx for your help Brendandonhu & Winchester73 I'll remove the suggested items thru HJT Brendandonhu Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htmO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htmO8 - Extra context menu item: Yahoo! I had cleaned 714 instances of ad-ware using Ad_Warese.

on the start-up screen, you will need to first run the Webupdate Feature (gear wheel at the top), or click "check for updates" to get the Reference File up to date. Member Posts: 248 huh? or read our Welcome Guide to learn how to use this site. Banking and credit card institutions should be notified of the possible security breach.

Since it has been a few days since you scanned your computer with HijackThis, we will need a new HijackThis log. Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quietO4 - HKCU\..\Run: [SVCHOST.EXE] C:\WINDOWS\System32\drivers\svchost.exeO4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dllO9 when i come back to it, there are 5 or 6 pop ups from nowhere. I've run the detective and fixed what I was told in HJT.

Kopieren Sie dazu einfach den Inhalt Ihres Logfiles in die untenstehende Textbox. Everyone else please begin a New Topic. You can postpone the total-recall of that machine to the days where your daughter starts to take after her mum's excellent security attitudes, and I hope that day will come soon.On Die Datenbank der Online-Analyse wird nicht mehr gepflegt.

Make a Quarantine only if you do not have the Auto-Quarantine option ON. We really appreciate all your help, including the additional information and links you have given. Back to top #5 kc_at kc_at Topic Starter Members 12 posts OFFLINE Local time:07:44 AM Posted 07 June 2005 - 03:48 PM Grinler, thanks for your reply, however, I had

But I need your HELP, thanks.

Have a great day! Then click the Fix button:O4 - HKLM\..\Run: [779h3Eh] fkuwapi.exeReboot your computer into Safe ModeThen delete these files or directories (Do not be concerned if they do not exist)c:\windows\system32\fkuwapi.exeReboot your computer to Instructions on how to do this can be found here:How to see hidden files in WindowsRun Hijackthis again, click scan, and Put a checkmark next to each of these. Rootkits and backdoor Trojan are very dangerous because they use advanced techniques (backdoors) as a means of accessing a computer system that bypasses security mechanisms and steal sensitive information which they

