For the next two seasons after returning, Feliz regularly found himself on the disabled Basketball Jerseys list and often struggled when he was active. clk320cpe says: Nov 9 7 PM Your Cheap Jerseys From China Wholesale Jerseys Eagles fans as making much noise all off that their genius coach had busted the injury bug is garbage, made up by haters.

The popular Aurelio López, known as Señor Smoke, also had a strong as the Tigers #2 relief pitcher.
You can follow him on : @corryjoel You can email him at: .
The 6-foot-4-pound Smith started all 14 games he played Wholesale NFL Jerseys year. By Paul Silverfarb Sentinel Editor Blue Jackets forward Cam Atkinson is fatigued. Via Schmitz, here's Basketball Jerseys a five minute video breakdown of some of the more notable things scouts were Cheap NFL Jerseys Wholesale able to last night, both good and bad, on either end of the floor. got a piece of it and the puck caromed off defenseman 's skate and between Cheap NFL Jerseys pads to give Montreal a 1 lead at 10 of the first period.

They also spoke about using him Wholesale Jerseys a tight end the future if needed. After what was a, well, tumultuousoffseason to say the least, the Tampa Bay Buccaneers have listed tight end Seferian-Jenkins as their backup behind fellow tight end Cameron Brate, according to Buccaneers reporter Jenna of ESPN. Yet Eberle has now gone five without a point. The Vikings drafted to immediately provide competition and flair Cheap NBA Jerseys to a lackluster wide receiver corps, Cheap Jerseys With Free Shipping it appears the rookie may not be ready to make immediate impact. Pool Staff Photographer Cowboys tight end Escobar catches passes with a mesh bag over his head a drill during morning practice at training camp on Tuesday, Aug. Sometimes we play zone, sometimes we play zone-, or if we have to, we'll play , Breeland said.

Tuomo Ruutu Jersey fun because obviously he's a big hockey fighter but boxing and hockey is pretty different. They've been able to help out by limiting their opponents' time and space the defensive zone and they've also blocked a ton of shots. credits part of the growth the college's program to the air traffic control degree's approval by the Federal Aviation Administration under its 2008 Air Traffic Control Collegiate Training Initiative. does a great T.J. Lang Jersey protections, Siemian said Wednesday, and he also expressed support for and Bibbs. Wholesale NFL Jerseys Free Shipping 2007 Played all 61 , starting 59 at shortstop and two as the designated hitter...earned All-Pac-10 honors for the first time his career; was named All-Pac-10 honorable mention 2006...earned 2007 team most valuable player honors for the second consecutive ...one Max Bullough Womens Jersey 's most clutch hitters, tallied two 10-game hit streaks ...tied for the team lead with 24 multi-hit , including six three-hit efforts and the second four-hit game of his career...hit safely 46 of 56 ...keyed two Bruin comebacks - trailing 7 the bottom Nike NFL Jerseys Supply of the eighth, belted a two-out grand slam to send to a 9 victory and series sweep of East ; finished that game 2-for-5 with three runs and career-high five RBI...led to victory at ; trailing 6 with two outs and runners at second Michael Strahan Youth Jersey third, lined 0-and-2 count single into left field, tying the contest, Authentic Ronald Leary Jersey scored from second base on infield single one at-bat later to give the lead for good...hit 3-for-4 with two runs a 3 victory against UC Riverside ...earned Pac-10 Player of the Week accolades Feb. 2015 he's started three games coming away with 29 total tackles. all, he flew 120 combat missions and was awarded two Distinguished Flying Crosses and 13 Air Medals. With the quarterbacks the NFC South, including league MVP Wayne Gallman Jersey Falcons' Matt , the Saints need to be able to get some pressure on these guys. We didn't play very good Cheap NFL Jerseys China defense the whole night. You like to give someone the benefit of the doubt.

The 22-year-old former seventh-round did not make the cut the 2016 composite but jumped into the No.

The finale for the Blue Jays came with two on the Chris Hogan Youth Jersey and holding a 2 lead. We are committed to maintaining a Desmond Jennings Youth Jersey but civil forum for discussion, so we ask you to avoid personal attacks, and please keep your comments relevant and respectful. Tuaau joined the Dolphins as a reserve future free agent January. I had the opportunity to produce, I did. • Dontae Lashun Wiley, 20 St. While it works some cases ) it is Leon Hall Jersey always the case. The decision proved wise as -Cook put the Moors ahead after barely 90 seconds before adding a second as the second half closed. The first reception was a wide receiver screen he took down the left sideline for 51 yards with great blocking help from the rookie, Brown. VIP tickets are also available. Driving the net, using his size, Roger Craig Womens Jersey his speed.

the final moments of the Canadiens' 4 victory over the Buffalo Sabres Thursday, Shaw found himself Authentic Vince Dunn Jersey the ice Montreal's defensive zone killing a penalty. Even with Rodriguez and Joe close to coming off the disabled list, there's George Fant Jersey way the Red Sox can take Wright out of the rotation now. From the outside theirs was a glamorous relationship: the player and the television sweetheart.

One Kareem Hunt Jersey the surgeons who performed the procedure admitted he had never seen anyone with that level of damage still walking. Free Puck Retrieved by . and did it together? That's kind how it's been all year. Players are invited on three criteria: interest from the NFL, interest from national media and local regional interest. Asked if it was safe to say Scherff would remain the team's starting Evan Engram Jersey guard rather than moving back to the outside, Gruden indicated that the answer was yes. The tight end turns upfield, but Green Bay Packers linebacker pulls him David Amerson Jersey from behind. Everything that strongly about how great on everything that's wrong with the basketball. might not be back the rest of the season, Manley said, but I 't think this would preclude him from playing baseball.

Mank of Belleville rolled the first Illinois 900 March 18. He's the longest-tenured Falcon on the roster Authentic Koa Misi Jersey is tied for the third-oldest player on the Authentic Jihad Ward Jersey

rushed 14 times for 42 yards, and caught four of five targets for 42 yards and a touchdown 's 44 NFC championship win over the Packers. Feldman, 30, is 7 with a 3 15 starts this season with the Cubs. I knew that there would be some teams Pavel Datsyuk Jersey for another to wrestle and that we could add two, maybe three, teams to our event,'' Stroh said. He was named a QMJHL First- All- at center. My dad was throwing popcorn and beer. Eifert's resurgence isn't a mistake. He went on to win four of his first five starts and took over as the Maple Leafs' No. This is what we get paid to do, matter whatever the weather is - if it's Curtis Martin Youth Jersey degrees outside or if it's freaking Minnesota weather - you've still got to Johnathan Joseph Jersey Overall, it helps the team, but hurts Ryan Griffin Jersey younger players. Do Jenkins and McLeod, after nine of Lavonte David Jersey play, deserve to be mentioned the same breath?

Members of Clinton McDonald Jersey 16-man committee include Hall of Famers Rod Carew, Carlton Fisk, Whitey Herzog, Tommy Lasorda, Morgan, Molitor, Phil Niekro and Robinson; major league executives Beeston , Andy MacPhail , Montgomery and Jerry Reinsdorf ; and historians Hirdt , Jenkins and Reeves .

Boeser is now a candidate for Hockey Commissioners' Association National Player of the Month for October, which be announced on Wednesday. All linebackers who failed to do . Duron Harmon Jersey second surgery comes with much more risk and is not nearly as successful.

I'm tempted to say the Eagles won't splash this year either, but I know better.
While he's not quite ready to return just yet, Chalmers still remains a free agent The veteran Authentic Nick Fairley Jersey is expected to be cleared for full basketball activities this week and anticipates he'll be ready to return to an court by early December. Nance is now better, having scored 21 points each of his last two , as Wyoming enters the Mountain West Tournament with a 22 record, 11 the conference. But this team Shaq Lawson Womens Jersey trailed 13 midway through the final quarter. The boys team finished second the 200 IM relay, fourth the 200 freestyle relay and second Authentic Marcus Williams Jersey 400 freestyle relay. He's quiet, Cutler said of Leno. What's the purpose of still playing?' You have your family and kids, you their activities ...

To put Authentic Vic Beasley Jersey context, Schultz has never registered more than 33 points a single . And, for Volquez, it was a memorable one. , the second pick the third round from Miami, Ohio, receives Frederik Andersen Womens Jersey million, including a signing bonus of $617. They're a really good team.

Add a display case to protect the quality and integrity of your memorabilia as this piece is likely to increase value over time. While they've won two of their last three and are 5 since . I could have scored 100 but mom told me to stop playing because the noise from me blasting into my bedroom door after yet another Nerf ball dunk was distracting her viewing of Maude. But seriously. His father Bob ran a lawn care service, his mother worked a nursing home. were to leave. If that means catching more balls, yeah sure. Today we hired the best available coach, and one of Cheap NFL Jerseys league's best. All three plays were made against cornerback Cheek. His knee throbbed, making sleep difficult and what was supposed to be NFL Jerseys Free Shipping situation the lowest point of his basketball career.

After the All- Game, exploded offensively-from February 2 to 18, he recorded at least one point seven consecutive Cheap Jerseys and recorded his second career hat-trick on February 5 against the Colorado Avalanche. I can spell and with the best of them, and I know , and , to say nothing of and and . The more a team fits , the better it has of winning enough to get to the postseason, a seventh weekend, the players pretty hustle their sit-upons down to the Wholesale NFL Jerseys for the extra paycheck. McCollum added 19 points Wholesale NFL Jerseys eight boards.

His best was 1979 when he rushed for 1 yards. 10 of 1st period - Despres is hit by Monahan. After two seasons with the Yankees, he signed William Gay Jersey the Braves Hector Rondon Womens Jersey a free agent 1991. He ended the with career-highs home runs and RBIs . The Royals were trailing 1 the fourth inning of Monday's game Toronto when Jarvis Landry Jersey singled to left field with two outs. He knows the history here. READ: CENTER POSITION STILL FOR GRABS I definitely trust that with all heart, I know Coach Koetter trusts him and this team trusts him, said Andre Ellington Jersey second-year quarterback. Disclaimer: AthleteSpeakers assists companies seeking to hire talent like for speaking engagements, appearances, product endorsements, and business sanctions. Then-starting cornerback went inside to nickel, and ailing took 's right cornerback spot. Gibson is approaching his diagnosis with the best possible attitude -- strong resolve to educate himself about Parkinson's disease, to exercise and maintain a healthy lifestyle, and to engage with family, Melvin Ingram Jersey and community.

It looks like he just got baked, $hitfaced from pounding about a case of beers, and lost a fight to a garden hose and rake. He went out there with a purpose and got it done. Just joking, he didn't say that.

Choo, who has dealt with a sore lower back for much of the last two weeks, said Monday he was good enough to play for the first time since the All- break. Former Texans offensive coordinator Malik McDowell Womens Jersey could also be play. Normal Forward Lineup #2 - Fehr, McGinn, Radim Vrbata are on ice for Predators. Duke Ihenacho Jersey you get to show it off that much sooner.

Authentic Kirk Cousins Jersey ended up playing a mere 4 years, Authentic Josh Harrison Jersey Frerotte played 15 years and had more than 5 time Shuler's yards.
The Giants offered no comment on the situation to the , and the rookie cornerback had Brett Favre Jersey talked to reporters before the column was published. was 26, but Gasol, , World Peace, and Nash were all…old. Democratic presidential candidate plans to make job creation the focus of her campaign over the next month, beginning with a $275 billion infrastructure spending plan that be released this week. He has a substantial amount of offensive skill to add to complement his frame. The Wild are first place the Conference, on the same points as the Chicago Blackhawks but have a vastly superior goal difference and have played four fewer .

Sketch by A.

hijack this log help | MyTechSupport.ca
MyTechSupport.ca :: Your Computer Technical Resource Headquarters! MyTechSupport.ca :: Your Computer Technical Resource Headquarters!
HOME FORUMS RESOURCES & TOOLS ARTICLES ONLINE STORE ABOUT US
Computer Support Forums arrow Internet & Network Support arrow Security & Viruses arrow Topic: hijack this log help
July 24, 2017, 09:22:59 AM
 

Home Forum Rules Help Search Mobile Version Login Register

Welcome, Guest. Please login or register.
Did you miss your activation email?
July 24, 2017, 09:22:59 AM

Login with username, password and session length

The space he had to work with was less than Jimmy Howard Jersey - office with short ceilings above Authentic Rodney McLeod Jersey garage with a miserable landlord. Detmer: Just playing, week and week out, was tough enough. is going to pick up. The spotlight enveloped him, and this time, he embraced its glow. Minnesota ...struck out a -high 13 batters a 4 loss vs. Few athletes Olympic history have reached such heights and depths as Jones. Do children think I'm a bad mother? And there are a bevy of defencemen trying Authentic Brandon LaFell Jersey take that Authentic Justin Britt Jersey away from him.

also struggles with run defense and overall technique. 2001, led his Petes to a victory the inaugural OHL Cup Bantam championship held Peterborough. Best case scenario for the Jets would be that he plays well enough to be flipped for a pick at Jake Elliott Womens Jersey trade deadline. I guess that's incentive to have better teams. I also accept and agree to be bound by Postmedia's Terms and Conditions with respect to use of the Site and I have read and understand Postmedia's Privacy Statement.

Traded Cheap NFL Jerseys by Vancouver with Gelinas for Burke, Geoff Sanderson and Enrico Ciccone, 3. They have done a marvelous job of getting it up and running a short amount of time, Cheap NFL Jerseys From China and we have already received great feedback. BUCKNER'S BUNGLE The Boston Red Sox were on the verge of ending their long World Series drought 1986 when the New Mets rallied, capped when first baseman Bill Buckner committed maybe the most cringe-worthy error of all time. guess would be that the Cavaliers either sign Farmar or Chalmers but that they prefer Chalmers because of his chemistry with . Andrew is a writer at For The Win. You know, came out with a new -Davidson street version, the 750…and the dealers Cheap Youth Football Jerseys not selling Cheap NFL Jerseys China these. It's a tough pill to swallow. 1, coming off a 1-yard year. The same can be said when Branden , Pouncey, and Laremy Tunsil went down.

He played all 82 for the Flames 2007 despite being hit the face by the puck a game and suffering a deep bruise on his foot while blocking a shot that was initially feared to be Wholesale NFL Jerseys broken bone. As a kid growing up father told me about Orr. She can finalize her stamp on what she's done, said Lucero, adding that Wells has drawn interest from collegiate Wholesale NFL Jerseys Meier be on a line with Tierney and Joonas Donskoi as the Sharks face the Montreal Canadiens at the Bell Centre looking to extend their winning streak to four . More importantly Stills is emerging as a leader Cheap NFL Jerseys From China on the outside and Wholesale NFL Jerseys well liked the locker room. Either way, it's a low-risk signing, but could make or break Strait's career.

Cheap Jerseys yet there Cheap Jerseys From China concerns. Interesting pass-catcher out of the backfield with more agility and ability after the catch than expected. We're building a community of people who care about quality journalism. He and Wholesale Jerseys are one of the best linebacker pairings the sport's history, and they led the Giants to a Super Bowl XXI victory. We'll take a look at McKissic to how he does, that's one of the areas we thought he might be able to help us backup, we'll how that goes this week. The visit presented the Wholesale NFL Jerseys for Dr. 18, the Magic hosted the Raptors at Center and lost a 109 rout. beat bold cornerbacks over the top if they wait to turn and run. He Wholesale Jerseys vain, occasionally arrogant, often intolerant, unforgiving, and there were moments when I thought for sure he'd cornered the market on self-pity.

The hits kept rolling with their late '30s and early '40s shows . Stay up-to-date with the latest news and scores from your favorite teams anywhere and get customized notifications, special offers and much more For further information, please contact customer service at -4833 or write to Sports Illustrated Customer Service | Attention: Consumer Affairs | 3000 University Center Drive Tampa, FL 33612. Maybe it's because we're Minnesota or whatever the reason, but he's a good player and tonight he came to play and so did Niederreiter. Oladipo has been a huge success story for the Thunder this .

Smith Getty Images Newhouse reclaimed his starting position after Cheap Jerseys From China strong performance against the Washington Redskins the finale. Devin Cheap Jerseys Michael Karas, Joe Tucholski and all swished 3-pointers for , and Courter totaled Wholesale NFL Jerseys points and 6 rebounds. Pass to Andrej Nestrasil. had offer opportunities, various scholarship opportunities, school scholarship opportunities, and he come here as a gray shirt, which means we put him on next , and he's a that Wholesale NFL Jerseys very, Cheap Jerseys well our camps. On defense. He is ready, Rizzo said. , who has two children, reportedly dumped Norwood after she told him she was pregnant with his baby. He meant Wholesale Jerseys living, breathing tiger. Weaver also said the NCBA is using beef checkoff money to lobby for big agriculture and against farmers.

 Featured Sites: de.harddriveparts.com |
News
New  Looking for cheap hardware and/or software?
Visit our new Online Store where you will be able to purchase from a reputable vendor by country.
  0 Members and 1 Guest are viewing this topic.
Pages: [1] Go Down Print
Author Topic: hijack this log help  (Read 1071 times)
noob2k4
Jr. Member
**

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 10


Bookmark and Share

View Profile
« on: December 25, 2004, 02:35:44 AM »

PLEASE SUPPLY RELEVANT INFORMATION:
Operating System Version:winxp sp2
Problem Application Name & Version:
Problem Hardware Make & Model:
Error Messages:


tell me if i have any spyware , adware or any thing that should not be there.
Logfile of HijackThis v1.99.0
Scan saved at 1:26:53 PM, on 12/24/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\GWMDMMSG.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\COMMON~1\AOL\110197~1\EE\AOLHOS~1.EXE
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\PROGRA~1\COMMON~1\AOL\110197~1\EE\AOLServiceHost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\wanmpsvc.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\America Online 9.0\waol.exe
C:\Program Files\America Online 9.0\shellmon.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccVScan.exe
C:\Program Files\Avant Browser\avant.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aolsearch.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gatewaybiz.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.gatewaybiz.com/
R3 - Default URLSearchHook is missing
O2 - BHO: IeControler Class - {9AFD91F9-6B03-4D22-A1E1-67D224CB7AB1} - C:\Program Files\Superhunter\NetSpeeder\IEMate.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: NavExcel Toolbar - {5AA06644-BC46-4220-A460-47A6EB47C96D} - C:\Program Files\NavExcel Search Toolbar\NavExcelBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [GWMDMMSG] GWMDMMSG.exe
O4 - HKLM\..\Run: [GWMDMpi] C:\WINDOWS\GWMDMpi.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1101975575\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [AWMON] "C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKCU\..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0\AOL.EXE" -b
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: officejet 6100.lnk = ?
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Add to AD Black List - C:\Program Files\Avant Browser\AddToADBlackList.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Block All Images from the Same Server - C:\Program Files\Avant Browser\AddAllToADBlackList.htm
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Highlight - C:\Program Files\Avant Browser\Highlight.htm
O8 - Extra context menu item: Open All Links in This Page... - C:\Program Files\Avant Browser\OpenAllLinks.htm
O8 - Extra context menu item: Search - C:\Program Files\Avant Browser\Search.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [!ANetSpeeder]  NetSpeeder
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://support.gateway.com/support/profiler/PCPitStop.CAB
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {511073AD-BE56-4D43-AE68-93390514385E} (TechToolsActivex.TechTools) - file://C:\Program Files\Gateway\helpspot\TechTools.CAB
O16 - DPF: {739E8D90-2F4C-43AD-A1B8-66C356FCEA35} (RunExeActiveX.RunExe) - file://C:\Program Files\Gateway\helpspot\RunExeActiveX.CAB
O16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} (StartFirstControl.CheckFirst) - file://C:\Program Files\Gateway\helpspot\StartFirstControl.CAB
O16 - DPF: {9A57B18E-2F5D-11D5-8997-00104BD12D94} (compid Class) - http://support.gateway.com/support/serialharvest/gwCID.CAB
O16 - DPF: {CE37E095-ACFF-4380-A856-A560D389E5E1} (XPLControlProject.XPLControl) - file://C:\Program Files\Gateway\helpspot\XPLControl.CAB
O23 - Service: AOL Connectivity Service - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: avast! iAVS4 Control Service - Unknown - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: Intel NCS NetService - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Trend Micro Central Control Component - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: PrismXL - Lanovation - C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
O23 - Service: Sophos Anti-Virus Network - Unknown - C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE (file missing)
O23 - Service: Sophos Anti-Virus - Unknown - C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS (file missing)
O23 - Service: Trend Micro Real-time Service - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: TuneUp WinStyler Theme Service - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
O23 - Service: WAN Miniport (ATW) Service - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: ZESOFT - Unknown - C:\WINDOWS\zeta.exe (file missing)

Logged

 
Cactus
Security & Virus Specialist
Global Moderator
Hero Member
*****

Karma: +2/-0
Offline Offline

Gender: Male
Posts: 4327


Bookmark and Share

View Profile
« Reply #1 on: December 25, 2004, 03:05:03 AM »

Set Windows to show Hidden files and folders
* Click Start.
* Open My Computer.
* Select the Tools menu and click Folder Options.
* Select the View Tab.
* Under the Hidden files and folders heading select Show hidden files and folders.
* Uncheck the Hide protected operating system files (recommended) option.
* Click Yes to confirm.
* Click OK.



**(Always create a Folder for HiJackThis anywhere but your Temp/Temporary Internet Folders. This is where it will save the backup files needed if there's a problem.)**

Press Ctrl/Alt/Del and "End Task" or "End Process" on each of the following: (They may or may not be there)


jusched.exe
realsched.exe
zeta.exe
msmsgs.exe
BackWeb-8876480.exe
LDMConf.exe
OSA.EXE



Turn off System Restore WinXP WinME. (Turn it back on after this is repaired and you've rebooted.) Close all other open Windows and have HiJackThis Fix:


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - Default URLSearchHook is missing
O2 - BHO: IeControler Class - {9AFD91F9-6B03-4D22-A1E1-67D224CB7AB1} - C:\Program Files\Superhunter\NetSpeeder\IEMate.dll

O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)

O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKCU\..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe /background

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe

O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [!ANetSpeeder] NetSpeeder

O23 - Service: ZESOFT - Unknown - C:\WINDOWS\zeta.exe (file missing)


Go to Control Panel / Add/Remove Programs and remove the
 following if they are there:


Superhunter
NetSpeeder
ZESOFT

Now delete these Folders or Files that are Highlighted: (You may need enable "Show all Files" and disable "Hide System Files" in Windows Explorer / Tools / Folder Options / View Tab) (You may have to boot to "Safe Mode" in order to delete some Files/Folders)

C:\WINDOWS\zeta.exe
C:\Program Files\Superhunter\NetSpeeder\IEMate.dll


Now, empty all your TEMP Folders (WinXp has up to 4 of them) / Temporary Internet Files Folder and then empty your "Recycle Bin" and Reboot.

In Xp, here are some locations of Temp files

C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Username\Local Settings\Temporary Internet Files
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files


Turn on System Restore

Before opening your browser goto START>CONTROL PANEL>INTERNET OPTIONSand make sure your Homepage is correct,if not ,type the URL you would like in the HomePage box.

Now re-run HJT and post a new logfile back here.

Cactus
Logged

**PLEASE**.....do not post your hijack log in someone else's thread. Start a separate thread HERE! Thank you.

cactus@mytechsupport.ca

My System Specs

Avg Antivirus::Ad-Aware::Spybot::Windows Update::Recuva
Malwarebytes::SUPERAntiSpywareFREE
noob2k4
Jr. Member
**

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 10


Bookmark and Share

View Profile
« Reply #2 on: December 25, 2004, 09:22:15 PM »

im a noob so bare with me, i have the new hjt log file check it out.   Logfile of HijackThis v1.99.0
Scan saved at 4:09:24 PM, on 12/25/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\GWMDMMSG.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe
C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\COMMON~1\AOL\110197~1\EE\AOLHOS~1.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\PROGRA~1\COMMON~1\AOL\110197~1\EE\AOLServiceHost.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\wanmpsvc.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aolsearch.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gatewaybiz.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.gatewaybiz.com/
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_16_0.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [GWMDMMSG] GWMDMMSG.exe
O4 - HKLM\..\Run: [GWMDMpi] C:\WINDOWS\GWMDMpi.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1101975575\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [AWMON] "C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0\AOL.EXE" -b
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: officejet 6100.lnk = ?
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://support.gateway.com/support/profiler/PCPitStop.CAB
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {511073AD-BE56-4D43-AE68-93390514385E} (TechToolsActivex.TechTools) - file://C:\Program Files\Gateway\helpspot\TechTools.CAB
O16 - DPF: {739E8D90-2F4C-43AD-A1B8-66C356FCEA35} (RunExeActiveX.RunExe) - file://C:\Program Files\Gateway\helpspot\RunExeActiveX.CAB
O16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} (StartFirstControl.CheckFirst) - file://C:\Program Files\Gateway\helpspot\StartFirstControl.CAB
O16 - DPF: {9A57B18E-2F5D-11D5-8997-00104BD12D94} (compid Class) - http://support.gateway.com/support/serialharvest/gwCID.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {CE37E095-ACFF-4380-A856-A560D389E5E1} (XPLControlProject.XPLControl) - file://C:\Program Files\Gateway\helpspot\XPLControl.CAB
O23 - Service: AOL Connectivity Service - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: avast! iAVS4 Control Service - Unknown - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: Intel NCS NetService - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Trend Micro Central Control Component - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: PrismXL - Lanovation - C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
O23 - Service: Trend Micro Real-time Service - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: TuneUp WinStyler Theme Service - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
O23 - Service: WAN Miniport (ATW) Service - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

« Last Edit: December 25, 2004, 09:33:57 PM by noob2k4 » Logged

 
Cactus
Security & Virus Specialist
Global Moderator
Hero Member
*****

Karma: +2/-0
Offline Offline

Gender: Male
Posts: 4327


Bookmark and Share

View Profile
« Reply #3 on: December 25, 2004, 09:36:54 PM »

It's gone... Grin


Press CTRL+ALT DEL stop these processes:

BackWeb-8876480.exe
jusched.exe
realsched.exe

You can have HJT fix these(it will not disable them,just prevent them from loading at Start-up)

O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll


Now, empty all your TEMP Folders (WinXp has up to 4 of them) / Temporary Internet Files Folder and then empty your "Recycle Bin" and Reboot.


Merry Christmas....

Cactus
Logged

**PLEASE**.....do not post your hijack log in someone else's thread. Start a separate thread HERE! Thank you.

cactus@mytechsupport.ca

My System Specs

Avg Antivirus::Ad-Aware::Spybot::Windows Update::Recuva
Malwarebytes::SUPERAntiSpywareFREE
noob2k4
Jr. Member
**

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 10


Bookmark and Share

View Profile
« Reply #4 on: December 25, 2004, 10:49:55 PM »

thank you very very much for you help, nuff respect and have a merry merry christmas.Grin
Logged

 
Pages: [1] Go Up Print 
 
Jump to:  

Powered by MySQL Powered by PHP

Powered by SMF 1.1.21 | SMF © 2015, Simple Machines

Valid XHTML 1.0! Valid CSS!

Disclaimer
This site is NOT responsible for any damage that the information on this site may cause to your system. Everything you try, whether inspired by the response given from this site or not, is entirely at your own risk. All product names and company names used herein are for identification purpose only and may be trademarks or registered trademarks of their respective owners. We are in no way affiliated or representing any of the companies on this site unless specified.
Back to Top
Stop Spam Harvesters, Join Project Honey Pot Fight Back Against Spammers! Get Firefox! Get Thunderbird! View Sylvain Amyots profile on LinkedIn
Back to Top
Google visited last this page Today at 08:11:32 AM