MySpace FORUMS
Saved Topics
My Topics
Settings
 
Search
MySpace Forums » Computers & Technology » Computers » Search Engine Problems ...Among other things
Create New Topic

Sort:  
Listing 1 - 15 of 44  1 2 3  « previous | next »
  
  • Tuesday, November 03, 2009 10:10 AM
    Reply
    A few days ago, this computer was struck with a serious case of adware: pop-ups would keep coming up and searching became useless; clicking on any search results would cause the page to be redirected to some other unrelated site (tried this with Yahoo and Google), and images found with a Google Image search will only show up as red X's, and clicking on them also redirected the page. The computer was also running slowly.

    I ran Malwarebyte--both a Quick Scan a few days ago and a Full Scan today--and managed to remove all of the adware and malware in the system. ...Or so I thought.

    The search engines are still messed-up, and the computer is still running a bit slow. I thought that the scan would resolve this, but it didn't.

    Do anyone here know what's causing this problem? If so, what can I do / download and run to fix it?

    Thanks in advance.
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 10:23 AM
    Reply
    • Jerry
    • M/43
    • Lafayette, Tennessee, US
    Solar Crimson:
    Do anyone here know what's causing this problem?


    The simpliest answer for you is to find a copy of Trendmicro's HighJackThis or HJT, provided you run XP or older. Copy the log into this thread and do not "fix" anything. If you fix the wrong thing you can stop your computer from starting.

    Once you post a log, somebody will come along to tell you what to clean and how.

    fart Pictures, Images and Photos
  • Tuesday, November 03, 2009 10:28 AM
    Reply

    Jerry: The simpliest answer for you is to find a copy of Trendmicro's HighJackThis or HJT, provided you run XP or older


    Nope. I guess I should have mentioned it, but I'm running Vista Home Premium.

    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 10:46 AM
    Reply
    • Jerry
    • M/43
    • Lafayette, Tennessee, US
    Solar Crimson:
    but I'm running Vista Home Premium.


    You want their competitors version HighJackFree by A-Squared.
    Go here clicky

    The button to make a standalone log is in the toolbar for the program as I recall. Glitch made a picture of it if you need it.

    Good Luck,

    fart Pictures, Images and Photos
  • Tuesday, November 03, 2009 11:17 AM
    Reply
    Okay, I got it.

    Logfile of HiJackFree v3.0
    Scan saved at 2:15:53 PM, on 11/3/2009
    Platform: Windows Vista32 (Windows NT .)
    MSIE: Internet Explorer v ()

    Running processes:
    C:..Windows..System32..dwm.exe
    C:..Windows..explorer.exe
    C:..Program Files..Windows Defender..MSASCui.exe
    C:..Program Files..BigFix..bigfix.exe
    C:..Program Files..McAfee..MSK..mskagent.exe
    C:..Program Files..McAfee.com..Agent..mcagent.exe
    C:..Program Files..Common Files..Real..Update_OB..realsched.exe
    C:..Program Files..Ulead Systems..Ulead Photo Express 5 SE..CalCheck.exe
    C:..Program Files..Yahoo!..Search Protection..SearchProtection.exe
    C:..Windows..System32..rundll32.exe
    C:..Windows..RtHDVCpl.exe
    C:..Program Files..iTunes..iTunesHelper.exe
    C:..Program Files..Java..jre6..bin..jusched.exe
    C:..Program Files..Windows Sidebar..sidebar.exe
    C:..Program Files..WiFiConnector..NintendoWFCReg.exe
    C:..Program Files..Microsoft Office..Office12..ONENOTEM.EXE
    C:..Program Files..Windows Mail..WinMail.exe
    C:..Windows..System32..taskeng.exe
    C:..Program Files..McAfee..MPS..mpsevh.exe
    C:..Program Files..Internet Explorer..iexplore.exe
    C:..PROGRA~1..McAfee..MSC..mcuimgr.exe
    C:..Program Files..a-squared HiJackFree..a2hijackfree.exe

    R1 - HKCU..Software..Microsoft..Internet Explorer..Main,Search Bar = http://www.google.com/ie
    R1 - HKCU..Software..Microsoft..Internet Explorer..Main,Search Page = http://www.google.com
    R0 - HKCU..Software..Microsoft..Internet Explorer..Main,Start Page = http://www.yahoo.com/
    R1 - HKLM..Software..Microsoft..Internet Explorer..Main,Default_Page_URL =
    R1 - HKCU..Software..Microsoft..Internet Explorer..SearchURL,(Default) = http://www.google.com/keyword/%s
    R0 - HKCU..Software..Microsoft..Internet Explorer..Toolbar,LinksFolderName =
    O4 - HKLM......Run: [Aim6]
    O4 - HKLM......Run: [Sidebar] C:..Program Files..windows sidebar..sidebar.exe /autoRun
    O4 - HKLM......Run: [QuickTime Task] "C:..Program Files..QuickTime..QTTask.exe" -atboottime
    O7 - Regedit - Enabled
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:..PROGRA~1..MICROS~4..Office12..EXCEL.EXE/3000
    O14 - IERESET.INF: SearchAssistant=
    O14 - IERESET.INF: CustomizeSearch=



    ...IERESET- that search stuff looks kinda suspicious...
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 11:23 AM
    Reply
    Plz post the full log.
    It should end in O23-service entries.
    I don't see a single one btw.

  • Tuesday, November 03, 2009 11:30 AM
    Reply
    You can run hjt on 32 bit vista OS.
    Just will show lots of file missing entries on 64 bit, that's why we suggest hijackfree for 64 bit OS's.

    Always start off by doing this first.
    CLICK-->
    Clear your cache, cookies, and temp internet files, here’s how.

    If you are on a 32 bit system, first install, then run hijackthis and produce a log.

    Alternate hjt download-->

    To use Hijackthis , choose
    ,
    once the wordpad opens up copy the whole log from top to
    bottom, and post it back in the help forum where you are being helped.
    Close Hijackthis for now.

  • Tuesday, November 03, 2009 11:47 AM
    Reply
    Solar Crimson:
    ...IERESET- that search stuff looks kinda suspicious...

    I would recommend not fixing anything you know nothing about.
    Just trying to help.
    Plz post a full hijackthis log.

  • Tuesday, November 03, 2009 11:53 AM
    Reply
    glitch:
    You can run hjt on 32 bit vista OS.
    Just will show lots of file missing entries on 64 bit, that's why we suggest hijackfree for 64 bit OS's.

    Always start off by doing this first.
    CLICK-->
    Clear your cache, cookies, and temp internet files, here’s how.

    If you are on a 32 bit system, first install, then run hijackthis and produce a log.

    Alternate hjt download-->

    To use Hijackthis , choose
    ,
    once the wordpad opens up copy the whole log from top to
    bottom, and post it back in the help forum where you are being helped.
    Close Hijackthis for now.



    Aside from the cache clearing link, the other two are blocked by MySpace.

    I've already cleared the temp files in both IE and Firefox, and I already downloaded a-squared HiJackFree.
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 11:54 AM
    Reply
    glitch:
    Solar Crimson:
    ...IERESET- that search stuff looks kinda suspicious...

    I would recommend not fixing anything you know nothing about.
    Just trying to help.
    Plz post a full hijackthis log.

    Yeah, I'm not messing with anything yet.

    ...And I'm trying. I clock the Save Log button, but that's the log that they give me. I don't see any options for a full log.
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 12:03 PM
    Reply
    http://go.trendmicro.com/free-tools/hijackthis/HijackThisInstall er.exe
    http://download.bleepingcomputer.com/hijackthis/HJTInstall.exe
    That's where both links go.
    GL

  • Tuesday, November 03, 2009 12:09 PM
    Reply
    Solar Crimson:
    I ran Malwarebyte--both a Quick Scan a few days ago and a Full Scan today--and managed to remove all of the adware and malware in the system. ...Or so I thought.

    Can you post todays log from this scan also plz?

  • Tuesday, November 03, 2009 12:15 PM
    Reply
    Okay, I did the "Scan and save a log" thing.


    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 3:11:36 PM, on 11/3/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18294)
    Boot mode: Normal

    Running processes:
    C:..Windows..system32..Dwm.exe
    C:..Windows..Explorer.EXE
    c:..PROGRA~1..mcafee..msc..mcuimgr.exe
    C:..PROGRA~1..McAfee.com..Agent..mcagent.exe
    C:..Windows..system32..taskeng.exe
    C:..Program Files..Windows Defender..MSASCui.exe
    C:..Program Files..McAfee..MSK..mskagent.exe
    C:..Program Files..Common Files..Real..Update_OB..realsched.exe
    C:..Program Files..Ulead Systems..Ulead Photo Express 5 SE..CalCheck.exe
    C:..Windows..System32..rundll32.exe
    C:..Windows..RtHDVCpl.exe
    C:..Program Files..Adobe..Reader 9.0..Reader..reader_sl.exe
    C:..Program Files..iTunes..iTunesHelper.exe
    C:..Program Files..Java..jre6..bin..jusched.exe
    C:..Windows..ehome..ehtray.exe
    C:..Program Files..DNA..btdna.exe
    C:..Program Files..Yahoo!..Search Protection..SearchProtection.exe
    C:..Windows..system32..wuauclt.exe
    C:..Users..Chanel..AppData..Local..Google..Update..GoogleUpdate. exe
    C:..Program Files..WiFiConnector..NintendoWFCReg.exe
    C:..Program Files..McAfee..MPS..mpsevh.exe
    C:..Windows..ehome..ehmsas.exe
    C:..Windows..system32..SearchFilterHost.exe
    C:..Program Files..Windows Mail..WinMail.exe
    C:..Users..Chanel..AppData..Local..Google..Update..1.2.183.13..G oogleCrashHandler.exe
    C:..Program Files..Yahoo!..Messenger..ymsgr_tray.exe
    C:..Program Files..Trend Micro..HijackThis..HijackThis.exe

    R0 - HKCU..Software..Microsoft..Internet Explorer..Main,Start Page = http://www.yahoo.com/
    R1 - HKLM..Software..Microsoft..Internet Explorer..Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM..Software..Microsoft..Internet Explorer..Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8.r{}*http:/ /www.yahoo.com/ext/search/search.html
    R1 - HKLM..Software..Microsoft..Internet Explorer..Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8.r{}*http:/ /www.yahoo.com
    R1 - HKCU..Software..Microsoft..Windows..CurrentVersion..Internet Settings,ProxyServer = actsvr.comcastonline.com:8100
    R1 - HKCU..Software..Microsoft..Windows..CurrentVersion..Internet Settings,ProxyOverride = cdn
    R0 - HKCU..Software..Microsoft..Internet Explorer..Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - - (no file)
    O1 - Hosts: ::1 localhost
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:..Program Files..Common Files..Adobe..Acrobat..ActiveX..AcroIEHelperShim.dll
    O2 - BHO: Yahoo! IE Suggest - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - C:..Program Files..Yahoo!..Search..YSearchSuggest.dll
    O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:..Program Files..Yahoo!..Common..yiesrvc.dll
    O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:..program files..mcafee..virusscan..scriptcl.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:..Program Files..Java..jre6..bin..jp2ssv.dll
    O4 - HKLM......Run: [Windows Defender] %ProgramFiles%..Windows Defender..MSASCui.exe -hide
    O4 - HKLM......Run: [BigFix] c:..program files..Bigfix..bigfix.exe /atstartup
    O4 - HKLM......Run: [MskAgentexe] C:..Program Files..McAfee..MSK..MskAgent.exe
    O4 - HKLM......Run: [NapsterShell] C:..Program Files..Napster..napster.exe /systray
    O4 - HKLM......Run: [mcagent_exe] C:..Program Files..McAfee.com..Agent..mcagent.exe /runkey
    O4 - HKLM......Run: [TkBellExe] "C:..Program Files..Common Files..Real..Update_OB..realsched.exe" -osboot
    O4 - HKLM......Run: [Ulead Photo Express Calendar Checker] C:..Program Files..Ulead Systems..Ulead Photo Express 5 SE..calcheck.exe
    O4 - HKLM......Run: [AppleSyncNotifier] C:..Program Files..Common Files..Apple..Mobile Device Support..bin..AppleSyncNotifier.exe
    O4 - HKLM......Run: [Performance Center] C:..Program Files..Ascentive..Performance Center..ApcMain.exe -m
    O4 - HKLM......Run: [YSearchProtection] "C:..Program Files..Yahoo!..Search Protection..SearchProtection.exe"
    O4 - HKLM......Run: [NvCplDaemon] RUNDLL32.EXE C:..Windows..system32..NvCpl.dll,NvStartup
    O4 - HKLM......Run: [NvMediaCenter] RUNDLL32.EXE C:..Windows..system32..NvMcTray.dll,NvTaskbarInit
    O4 - HKLM......Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM......Run: [Adobe Reader Speed Launcher] "C:..Program Files..Adobe..Reader 9.0..Reader..Reader_sl.exe"
    O4 - HKLM......Run: [QuickTime Task] "C:..Program Files..QuickTime..QTTask.exe" -atboottime
    O4 - HKLM......Run: [iTunesHelper] "C:..Program Files..iTunes..iTunesHelper.exe"
    O4 - HKLM......Run: [SunJavaUpdateSched] "C:..Program Files..Java..jre6..bin..jusched.exe"
    O4 - HKLM......Run: [Malwarebytes Anti-Malware (reboot)] "C:..Program Files..Malwarebytes' Anti-Malware..mbam.exe" /runcleanupscript
    O4 - HKCU......Run: [ehTray.exe] C:..Windows..ehome..ehTray.exe
    O4 - HKCU......Run: [YSearchProtection] C:..Program Files..Yahoo!..Search Protection..SearchProtection.exe
    O4 - HKCU......Run: [BitTorrent DNA] "C:..Program Files..DNA..btdna.exe"
    O4 - HKCU......Run: [Search Protection] C:..Program Files..Yahoo!..Search Protection..SearchProtection.exe
    O4 - HKCU......Run: [DW6] "C:..Program Files..The Weather Channel FW..Desktop..DesktopWeather.exe"
    O4 - HKCU......Run: [Messenger (Yahoo!)] "C:..Program Files..Yahoo!..Messenger..YahooMessenger.exe" -quiet
    O4 - HKCU......Run: [MyWebSearch Email Plugin] C:..PROGRA~1..MYWEBS~1..bar..6.bin..mwsoemon.exe
    O4 - HKCU......Run: [xmsnkegrx] rundll32.exe "C:..Users..Chanel..AppData..Roaming..xzpmcd.dll",klqbcw
    O4 - HKCU......Run: [Google Update] "C:..Users..Chanel..AppData..Local..Google..Update..GoogleUpdate. exe" /c
    O4 - HKCU......RunOnce: [Shockwave Updater] C:..Windows..System32..Adobe..SHOCKW~1..SWHELP~1.EXE -Update -1100465 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; FunWebProducts; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30618)" -"http://www.candystand.com/play/billiards"
    O4 - HKUS..S-1-5-19......Run: [Sidebar] %ProgramFiles%..Windows Sidebar..Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS..S-1-5-19......Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS..S-1-5-20......Run: [Sidebar] %ProgramFiles%..Windows Sidebar..Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O4 - HKUS..S-1-5-21-995996556-1816073739-136882781-1001......Run: [Aim6] (User 'Chris')
    O4 - HKUS..S-1-5-18......Run: [MySpaceIM] C:..Program Files..MySpace..IM..MySpaceIM.exe (User 'SYSTEM')
    O4 - HKUS...DEFAULT......Run: [MySpaceIM] C:..Program Files..MySpace..IM..MySpaceIM.exe (User 'Default user')
    O4 - S-1-5-21-995996556-1816073739-136882781-1001 Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:..Program Files..Microsoft Office..Office12..ONENOTEM.EXE (User 'Chris')
    O4 - S-1-5-21-995996556-1816073739-136882781-1001 User Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:..Program Files..Microsoft Office..Office12..ONENOTEM.EXE (User 'Chris')
    O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:..Program Files..Microsoft Office..Office12..ONENOTEM.EXE
    O4 - Global Startup: BigFix.lnk = C:..Program Files..BigFix..bigfix.exe
    O4 - Global Startup: Run Registration Tool.lnk = C:..Program Files..WiFiConnector..NintendoWFCReg.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:..PROGRA~1..MICROS~4..Office12..EXCEL.EXE/3000
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:..PROGRA~1..MICROS~4..Office12..ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:..PROGRA~1..MICROS~4..Office12..ONBttnIE.dll
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:..Program Files..Yahoo!..Common..yiesrvc.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:..PROGRA~1..MICROS~4..Office12..REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPh otoUploader5.cab
    O16 - DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} (Bebo Uploader Control) - http://www.bebo.com/files/BeboUploader.5.1.4.cab
    O16 - DPF: {1A1F56AA-3401-46F9-B277-D57F3421F821} (FunGamesLoader Object) - http://gamesville.worldwinner.com/games/v47/shared/FunGamesLoade r.cab
    O16 - DPF: {26FCCDF9-A7E1-452A-A73D-7BF7B4D0BA6C} (AOL Pictures Uploader Class) - http://o.aolcdn.com/pictures/ap/Resources/v2.15/cab/aolpPlugins. 10.6.0.8.cab
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:..Program Files..Yahoo!..Common..Yinsthelper.dll
    O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - http://dl.tvunetworks.com/TVUAx.cab
    O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
    O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
    O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
    O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
    O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp .cab
    O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://gamenextus.oberon-media.com/Gameshell/GameHost/1.0/Oberon GameHost.cab
    O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/webgames/popcaploader_v10.cab
    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:..Windows..system32..agrsmsvc.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:..Program Files..Common Files..Apple..Mobile Device Support..bin..AppleMobileDeviceService.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:..Program Files..Bonjour..mDNSResponder.exe
    O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:..Program Files..Common Files..McAfee..EmProxy..emproxy.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - C:..Program Files..eMachines Games..eMachines Game Console..GameConsoleService.exe
    O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:..Program Files..NOS..bin..getPlus_HelperSvc.exe
    O23 - Service: iPod Service - Apple Inc. - C:..Program Files..iPod..bin..iPodService.exe
    O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:..Program Files..Common Files..McAfee..HackerWatch..HWAPI.exe
    O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:..PROGRA~1..McAfee..MSC..mcmscsvc.exe
    O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:..program files..common files..mcafee..mna..mcnasvc.exe
    O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:..Program Files..McAfee..VirusScan..mcods.exe
    O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:..Program Files..Common Files..McAfee..McProxy..McProxy.exe
    O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - C:..Program Files..Common Files..McAfee..RedirSvc..RedirSvc.exe
    O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:..Program Files..McAfee..VirusScan..Mcshield.exe
    O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:..Program Files..McAfee..VirusScan..mcsysmon.exe
    O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:..Program Files..McAfee..MPS..mps.exe
    O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:..Program Files..McAfee..MSK..MskSrver.exe
    O23 - Service: My Web Search Service (MyWebSearchService) - Unknown owner - C:..PROGRA~1..MYWEBS~1..bar..6.bin..mwssvc.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:..Windows..system32..nvvsvc.exe
    O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:..Program Files..Common Files..New Boundary..PrismXL..PRISMXL.SYS
    O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:..Program Files..Viewpoint..Common..ViewpointService.exe

    --
    End of file - 12610 bytes
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 12:17 PM
    Reply
    glitch:
    Solar Crimson:
    I ran Malwarebyte--both a Quick Scan a few days ago and a Full Scan today--and managed to remove all of the adware and malware in the system. ...Or so I thought.

    Can you post todays log from this scan also plz?


    Malwarebytes' Anti-Malware 1.41
    Database version: 2775
    Windows 6.0.6001 Service Pack 1

    11/3/2009 10:48:20 AM
    mbam-log-2009-11-03 (10-48-20).txt

    Scan type: Full Scan (C:..|D:..|)
    Objects scanned: 275249
    Time elapsed: 3 hour(s), 27 minute(s), 29 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 2
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER..SOFTWARE..Microsoft..Windows..CurrentVersion. .Ext..Stats..{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER..SOFTWARE..zangosa (Adware.Zango) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)







    ...I don't have the results from the other day (either that, or I can't find it, at least not on this account), but that one caught over 200 infected items.
    The AF's Dub-Defender
    (unless the dub is genuinely bad)

  • Tuesday, November 03, 2009 12:22 PM
    Reply
    You can run hjt on 32 bit vista OS.
    Just will show lots of file missing entries on 64 bit, that's why we suggest hijackfree for 64 bit OS's.

    If you are on a 32 bit system, first install, then run this
    (copy paste into address bar to get download to start)
    http://download.bleepingcomputer.com/hijackthis/HJTInstall.exe
    and produce a log.
    To use Hijackthis , choose
    ,
    once the wordpad opens up copy the whole log from top to
    bottom, and post it back here.

    Solar Crimson:
    I ran Malwarebyte--both a Quick Scan a few days ago and a Full Scan today--and managed to remove all of the adware and malware in the system. ...Or so I thought.

    Can you post today's malwarebytes log from this scan also plz?

    Run mbam and choose "logs tab" and find today's log, double click it to open, and post that full log here also.
    GL

Sort:  
Listing 1 - 15 of 44  1 2 3  « previous | next »
  
Available