Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

ie keeps popping up with checkedstats.com


  • This topic is locked This topic is locked
4 replies to this topic

#1 775cracky

775cracky

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:04:27 AM

Posted 12 December 2010 - 12:12 AM

here is my hijackthis log. i had alot of viruses pop up within the last 2 days. the walmart card winner thing i had system tools. mywebsearch. i got rid of most of them i thought but the ie pages keep coming. please help me figure this out. thank you!


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:54:46 PM, on 12/11/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchtool.com/?hp=7
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=101664&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=101664&gct=&gc=1&q=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;*.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
O1 - Hosts: ::1 localhost
O1 - Hosts: 91.212.65.127 browser-security.microsoft.com
O1 - Hosts: 91.212.65.127 spywareprotector-2009.com
O1 - Hosts: 91.212.65.127 www.spywareprotector-2009.com
O1 - Hosts: 91.212.65.127 secure.spywareprotector-2009.com
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - (no file)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [ViewMgr] "C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LVCOMS] "C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo R260 Series on JANICE] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBNA.EXE" /FU "C:\WINDOWS\TEMP\E_S11.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?5cad5033694c403f8027af4fc732308c
O8 - Extra context menu item: Open in new foreground tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?5cad5033694c403f8027af4fc732308c
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Kaitlynn\Start Menu\Programs\IMVU\Run IMVU.lnk (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/FIOS/Verizon%20FiOS%20Installer.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkId=39204&clcid=0x409
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw+0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw-0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw-0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw00 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw00s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw10 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw10s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw20 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw20s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw30 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw30s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw40 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw40s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw50 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw50s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw60 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw60s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw70 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw70s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw80 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw80s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw90 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bw90s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwa0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwa0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwb0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwb0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwc0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwc0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwd0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwd0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwe0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwe0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwf0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwf0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - (no file)
O18 - Protocol: bwg0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwg0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwh0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwh0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwi0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwi0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwj0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwj0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwk0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwk0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwl0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwl0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwm0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwm0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwn0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwn0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwo0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwo0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwp0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwp0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwq0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwq0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwr0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwr0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bws0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bws0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwt0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwt0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwu0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwu0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwv0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwv0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bww0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bww0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwx0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwx0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwy0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwy0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwz0 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: bwz0s - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: offline-8876480 - {F26E146C-ABDF-4C80-902B-34D32EA1DB7E} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: iaspack.dll certqueue.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - Unknown owner - C:\WINDOWS\wanmpsvc.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 15691 bytes

BC AdBot (Login to Remove)

 


#2 775cracky

775cracky
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:04:27 AM

Posted 19 December 2010 - 09:56 PM

just wondering if anyone has checked this yet........... im still having problems

#3 Blade81

Blade81

    Bleepin' Rocker


  • Malware Response Team
  • 6,465 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Finland
  • Local time:03:27 PM

Posted 20 December 2010 - 04:25 AM

Hi,

Sorry for delayed response. Forums have been really busy. If you still need help with this do following, please.


Download DDS and save it to your desktop from here or here or here.
Disable any script blocker, and then double click dds file to run the tool.
  • When done, DDS will open two (2) logs:
    • DDS.txt
    • Attach.txt
  • Save both reports to your desktop. Post them back to your topic.

Microsoft Windows Insider MVP 2016-2017

Microsoft MVP Consumer Security 2008-2015
UNITE member since 2006
unite_blue.png

Provided malware removal related instructions are meant to be used in the correspondent user's case only. If you have similar symptoms create own topic instead of following instructions given to some other, please.


#4 775cracky

775cracky
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:04:27 AM

Posted 20 December 2010 - 03:12 PM

i just reinstalled windows thanks anyway

#5 Blade81

Blade81

    Bleepin' Rocker


  • Malware Response Team
  • 6,465 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Finland
  • Local time:03:27 PM

Posted 20 December 2010 - 04:04 PM

Ok. Thanks for letting us know.

Microsoft Windows Insider MVP 2016-2017

Microsoft MVP Consumer Security 2008-2015
UNITE member since 2006
unite_blue.png

Provided malware removal related instructions are meant to be used in the correspondent user's case only. If you have similar symptoms create own topic instead of following instructions given to some other, please.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users