Over 1 million tech questions and answers.

Low Priority...Somthing stinks though...

Q: Low Priority...Somthing stinks though...

First, forgive my if I have broken any posting rules. I'm not necessarily new at this, but I sure know how to make mistakes. Anyway here is a little information about what I'm working with:

ISP: Hughesnet

Software:
Avast Antivirus
AVG Anti-spyware
Webroot Spy Sweeper and of course
Hijackthis

Now, my computer is working fine, but I sense a parasite hoarding vital resources and thought maybe if my hijackthis log is analyzed, it could be found and killed.

I cannot express my gratitude as well as I should be able to, so I will say THANK YOU. Here is my hijackthis log:

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank" class="wLink">http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank" class="wLink">http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = www.direcwaysupport.com;www.systemcontrolcenter.com;192.168.0.1;;127.0.0.1;<local>
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O4 - HKLM\..\Run: [Hcontrol] C:\WINDOWS\ATK0100\Hcontrol.exe
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [SonyPowerCfg] "C:\Program Files\Sony\VAIO Power Management\SPMgr.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] "rundll32.exe" bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [HKSERV.EXE] "C:\Program Files\Sony\HotKey Utility\HKserv.exe"
O4 - HKLM\..\Run: [Switcher.exe] "C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe"
O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [VAIOSurvey] "c:\program files\sony\vaio survey\surveysa.exe"
O4 - HKLM\..\Run: [VAIO Recovery] "C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe"
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\HUGHES~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [SetDefPrt] "C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe"
O4 - HKLM\..\Run: [ControlCenter2.0] "C:\Program Files\Brother\ControlCenter2\brctrcen.exe" /autorun
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe
O4 - Global Startup: HughesNet Tools.lnk = C:\Program Files\HughesNet Tools\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Remocon Driver.lnk = ?
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: &Download with FGDM - C:\Program Files\FAP Guard\\fgdmdc.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1166566619564
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5...ws-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{203322D6-1556-4E71-83CD-5F67090144AE}: NameServer = 66.82.9.59,66.82.12.39
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Giga Pocket\halsv.exe
O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Giga Pocket\RM_SV.exe
O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

RELEVANCY SCORE 200
Preferred Solution: Low Priority...Somthing stinks though...

I recommend downloading and running DAP. It can help sort out any driver and firmware related issues on your system

It's worked out well for many of us in the past.

You can download it direct from this link http://downloaddap.org. (This link will open the download page of DAP so you can save a copy to your computer.)

A: Low Priority...Somthing stinks though...

Will anyone take my case? Please...

Read other 11 answers
RELEVANCY SCORE 51.2

I just noticed this yesterday and I believe it is what has been giving me computer problems for the past few days.

So what I've spotted is in Task Manger that about 30 regularly running programs that normally start in Normal priority are now starting in High priority. I'm running Windows XP Pro. I've rebooted, check the msconfig to see if anything looks out of place, I've ran ad-aware, spybot search and destroy and did some registry cleanup with Glary Utitlities. Nothing has fixed this issue.

My computer has been sluggish and had a few problems with IE just freezing the computer up when it was working on something. Other programs have done this too at different times resulting in my only choice to restart the computer or try waiting out the issue and force quit the offending program. As an aside I don't regularly use IE. I use Firefox or Google Chrome but jump into IE for specific websites that require it.

I haven't installed anything that is sketchy or should have changed this start up behavior.

Any idea on how these programs are starting in high priority and what I can do about it? I just loaded HijackThis on the system and it started in High priority. Maybe I'm just off my rocker, but I could swear these programs were starting in Normal priority.

Here is a quick list of running processes that are in high priority.
ekrn.exe
svchost.exe
mozystat.exe
StarWindServiceAE.exe
csrss.exe
winlogon.exe
services.exe
PDVDServ.exe
svchost.exe... Read more

A:Programs starting in high priority should start normal priority

I've started using Process Lasso to push the programs into the correct priority level. Still trying to figure out why Windows XP is doing this. Any suggestions or ideas on where to look?
 

Read other 1 answers
RELEVANCY SCORE 51.2

Hello, I am having a problem where programs on my XP box that I am quite certain SHOULD be starting as a normal base priority are starting as high. I found a post from August of 2009 that describes the issue perfectly, but no one responded.

Any ideas why this would be happening?

Even stuff like notepad starts as a high priority. Almost all programs do, but some do not. For example, when I open WinAmp, it starts as a normal priority.

-Bill

http://forums.techguy.org/showthread.php?t=857175&referrerid=636866

Programs starting in high priority should start normal priority I just noticed this yesterday and I believe it is what has been giving me computer problems for the past few days.

So what I've spotted is in Task Manger that about 30 regularly running programs that normally start in Normal priority are now starting in High priority. I'm running Windows XP Pro. I've rebooted, check the msconfig to see if anything looks out of place, I've ran ad-aware, spybot search and destroy and did some registry cleanup with Glary Utitlities. Nothing has fixed this issue.

My computer has been sluggish and had a few problems with IE just freezing the computer up when it was working on something. Other programs have done this too at different times resulting in my only choice to restart the computer or try waiting out the issue and force quit the offending program. As an aside I don't regularly use IE. I use Firefox or Google Chrome but jump into IE for sp... Read more

A:Programs starting in high priority should start normal priority

Read other 14 answers
RELEVANCY SCORE 46.4

Hello,

Not sure if I'm writing for help in the correct category. Please let me know if I'm in the wrong place. I would also like to add that I am completely pc illiterate.

I recently lost my web cam connection. I've installed & reinstalled everything several times with no avail. I've even done a system recovery (boy was I was sweating when I did that) Thought that was the end of my pc! My friend is on a Mac notebook and is using aim 4.7 whom I am trying to connect with and I'm on a pc, (windows xp) Our connection (when we were able to connet a while back) was always very lousy but at least we were able to connect somewhat. We are both stay at home moms and we both really miss our web cam connection. I've tried to connect via aol, aim, aim 6.0 and aim pro which all did not work. I've called Labtec (web cam people) and they told me to call aol. I've called aol and they told me to call Labtec.

Any suggestions?

Regards,
Krisztina
 

Read other answers
RELEVANCY SCORE 46.4

The developer preview has been out for less than 24 hours. Nevertheless, let's start complaining!

I'll go first just to get the ball rolling...

The Metro UI absolutely sucks for any sort of computer other than a tablet/phone. I like my computers like I like my men: under the desk and connected to the power mains.

A:It Stinks!

Now that's funny right there.

Read other 61 answers
RELEVANCY SCORE 46

Trying to install photoshop with installshield.

My C: drive does not have enough room, so i tell it to install to a different drive, even after selecting one that DOES have enough space, it won't continue because it's STILL claiming the C: is the problem. I've changed my temp file directories under enviromental settings. But it still wants to install things on my C:
 

Read other answers
RELEVANCY SCORE 46

Hi All,I booted my pc and found that my home page had been changed to some kinda website called protect advanced cleaner. I downloaded some antivirus softwares and it removed some stuff and put my homepage back to msn.com but it's still grayed out and i can't change stuff cause it's telling me that i have to have administration priviledges to do that even though i am the administrator. Can someone look at my hijack log and see you can help me?I have a 13 year old daughter that uses my pc too and i would really hate for her to see some of the stuff pop up that i saw this morning. Oh and by the way, since i ran the anti virus programs and my homepage reappeared, every time i open IE i get the message that IE has encountered a problem and needs to close. I already had foxfire so that's what i'm using for now.Thank you in advance.TammyLogfile of Trend Micro HijackThis v2.0.2Scan saved at 12:21:25 AM, on 2/11/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16574)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\System32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Common Files\Symantec Shared\ccSvcHst.exeC:\Program Files\Common Files\Symant... Read more

A:Malware Stinks! Please Help Me

Hi tbrazel and Welcome to the Forums. Please download Malwarebytes' Anti-Malware from Here or HereDouble Click mbam-setup.exe to install the application.Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.If an update is found, it will download and install the latest version.Once the program has loaded, select "Perform Quick Scan", then click Scan.The scan may take some time to finish,so please be patient.When the scan is complete, click OK, then Show Results to view the results.Make sure that everything is checked, and click Remove Selected.When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.Copy&Paste the entire report in your next reply along with a fresh HijackThis log.Extra Note:If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

Read other 15 answers
RELEVANCY SCORE 46

Hello,
My computer is driving me crazy. I know its old but I cant buy a new one right now. It seams like something is always running in the backround. My AVG says that its not infected but I think it my be. Please help!
Dell dimension 8200
Win XP Service Pack 3
512 Ram
I know I dont have much RAM but the type this uses is expensive and I would have to buy it in pairs and the computer isnt worth the cost.
I downloaded the two scan to my desktop.
Thank you
Chris
here is my dds.txt.
i cant run the root reapel because it frezzes my computer
DDS (Ver_09-10-26.01) - NTFSx86
Run by chris at 21:25:34.73 on Sat 11/21/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.46 [GMT -5:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\svchost.exe -k hp... Read more

A:computer stinks

Hello,We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up.My name is Syler and I will be helping you to solve your Malware issues. If you have since resolved your issues I would appreciate if youwould let me no so I can close this topic, if you still need help please let me no what issues you are still having, in your next reply.Download random's system information tool (RSIT) by random/random from here and save it to your desktop.Double click on RSIT.exe to run RSIT.Click Continue at the disclaimer screen.Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)Then please post back here with the following: log.txt info.txtThanks

Read other 2 answers
RELEVANCY SCORE 46

Hard drive froze last week, new drive, Windows 7 won't let me install IE8, only IE9. Really hate IE9 (tried the Beta when it came out). Just moved and all documents are 400 miles away. Would really like to download IE8. Not that computer literate. Thanks in advance.

A:IE 9 Stinks, can't get IE 8 to download.

IE8 is the default browser in Windows 7, just uninstall IE9 and then you have IE8.

Read other 6 answers
RELEVANCY SCORE 46

Hi, and thank you for your help (ahead of time). Contracted Trojan.Vundo somehow. Have run the Combofix, and Vundo is still showing up and corrupting my files. Here's my log. I'd appreciate next step directions and put Vundo to sleep forever!

ComboFix 07-12-12.3 - KCHijacked 2007-12-13 0:12:57.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.151 [GMT -8:00]
Running from: C:\Documents and Settings\Mary Myers\Desktop\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\All Users\Application Data.\salesmonitor
C:\Documents and Settings\Mary Myers\Application Data\FunWebProducts
C:\Documents and Settings\Mary Myers\Application Data\FunWebProducts\Data\Mary Myers\avatar.dat
C:\Documents and Settings\Mary Myers\Application Data\FunWebProducts\Data\Mary Myers\corrupt.dat
C:\Documents and Settings\Mary Myers\Application Data\FunWebProducts\Data\Mary Myers\register.dat
C:\Documents and Settings\Mary Myers\Application Data\FunWebProducts\Data\Mary Myers\zbucks.dat
C:\Documents and Settings\Mary Myers\err.log
C:\Documents and Settings\Mary Myers\g2mdlhlpx.exe
C:\Documents and Settings\Mary Myers\ResErrors.log
C:\Program Files\FunWebProducts
C:\Program Files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html
C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html
C:\Program Files\FunWebProducts\Sh... Read more

A:Vundo Stinks

Please download HijackThis to your desktop.. http://www.trendsecure.com/portal/en...HJTInstall.exe

Alternate link
http://download.bleepingcomputer.com...HJTInstall.exe

This program will help us determine if there are any spyware/malware on your computer. Double-click on the file you just downloaded.
Click on the "Unzip" button to install. It will by default install to the directory - C:\Program Files\Trend Micro\HijackThis

Upon install, HijackThis should open for you.Just close it.

Should it not open, navigate to C:\Program Files\Trend Micro\HijackThis and double click on HijackThis.exe

If it gives you an intro screen, just close it


==========================


Please copy this page to *Notepad* and save to your desktop for reference as you will not have any browsers open while you are carrying out portions of these instructions.

It's IMPORTANT to carry out the instructions in the sequence listed below.
1. Close any open browsers.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Open *notepad* and copy/paste the text in the quotebox below into it:


Quote:





KillAll::
File::
C:\WINDOWS\system32\ghlipcjv.ini
C:\WINDOWS\system32\mcrh.tmp
C:\Temp\u900Y714.exe
C:\WINDOWS\system32\vyuseaje.ini






Save this as CFScript.txt, in the same location as ComboFix.exe which is on the Desktop.




Refering to the picture above, drag C... Read more

Read other 5 answers
RELEVANCY SCORE 46

I have an Epson Stylus c80 inkjet printer that has never given me a good color print job. Mostly I always get those vertical bands and lines running through. I know that's probably a common thing, but I've tried every utility to solve it - the head cleaning, nozzle cleaning, etc. Nothing works. This has gone on since the day I brought it home, about 2 yrs ago. I only use Epson cartridges. I've contacted Epson..they just tell me to use Epson cartridges..I tell them I DO!..they just repeat themselves..so no help there.

I researched printers pretty thoroughly and thought I was getting a great printer. Now I don't trust myself! Any recommendations for a printer that does a good, reliable color printing? I've hung in with this disaster as long as I can.

I'm NOT doing any high-quality photo-type printing at all - - I'm just talking about printing quick, small things like jewel case covers, or things I do in Paint, or small pictures from the internet. The color itself is okay, but it's the bands and lines running vertically through them that are always present and I cannot solve. That's what I want to avoid in a new printer.
 

A:This printer stinks!

Read other 8 answers
RELEVANCY SCORE 46

Got the new FF update last night, what a bummer!!!  Many book marks disappeared, the look and feel has changed much to my dislike.  I wonder if I can revert to the last version?  Is anyone else not happy???
 
Phil 

A:New Fire Fox Stinks!

 My Firefox v56 updated yesterday to v57. My 'add-ons',the ones that i deem important ie. Ad-blocker & Privacy Badger were still there,so on that count everything was ok.
However,regarding the hoped for increase in broswer speed - it simply hasn't materialised !. It's as slow as v56,which was never that bad that i lost sleep over it.
 
   All my bookmarks are still in place,& the only thing that seems to have changed is the Homepage appearance. All in all,a waste of time - at the moment. I'll await further updates in the hope that eventually Firefox v57 will live up to the months  of 'hype'
 
   I had 'Auto update' turned on & it didn't update on the 14th. I turned auto UD 'off' & then had to turn it back on again for v57 to install,which it did within seconds.
 
  I suppose to give Mozilla the benefit of the doubt - this is a brand new version,'relatively' untried except for the Beta version,so we should expect a few glitches. However,since most of the hype was about 'speed' - i'd have expected that to be there from the first second it went live - it wasn't. Just something else that's been 'improved worse' !!!. (At the moment)

Read other 71 answers
RELEVANCY SCORE 45.2

I have an Inspiron 1000. It originally had XP on it, but stupid me wanted the most updated OS so guess what I went and did?? That's right! I put vista on my lappy and now it just plain stinks! A slug moves faster than my laptop does!! How do I remove vista from my laptop and reinstall xp? I have tried reinstalling with cd and it doesn't give me the option to install(appears vista is alot harder to get rid of-kinda like the flu!) Can anyone give me instructions on how to do this? I have backed everything up so I am ready to dump! I am not a tech chick so go easy on me! Thanks a bunch!!!
 

A:Solved: Vista Stinks!

Read other 16 answers
RELEVANCY SCORE 45.2

Hey.. I've tried getting rid of cool web search so many times! I have adaware and run that.. and it get rids of it for awhile but then it comes back! i also run cool web search.. but hey.. does the same thing.. comes back!! I've tried to go thru that whole process of findnfix but i dont think the dude knew too much which i thought was fine.. cuz I'd try again.. but if anyone could help me it would be GREAT! Here is a fresh hijack log.. when its ON my computer.. if you want one when its not.. just tell me... by that i mean.. when i delete it for like 2 minutes
 

A:cool web search stinks! HELP!

Read other 10 answers
RELEVANCY SCORE 45.2

I have been here, done this before, still need some advice.

I am using DirectCD 3.01C, on a PentiumII, 450 Mhz, Gateway PC with 256Mb RAM, and using a HP 9100 CD Burner. My Norton AV is updated weekly, so I know I don't have a virus.

I reformatted about a month ago because of this same problem. [you can look up my past letter on TSG] It was suggested I reformat the C: drive by a PC tech at a computer store after he played with my PC for a couple days, charged me $213, and didn't do a thing for me.

After I reformatted and reinstalled Adaptec DirectCD, I could copy small files and photographs neatly to a CD-RW and I could copy full CDs to CD-Rs with no problems. (I could alway copy full CDs with CloneCd without any problems.) Single file copying worked fine up until about yesterday, then I started getting the same problem ~ Adaptec DirectCD would not recognize an already formatted CD-RW with files on it. If it did recognize it, it would take a very, very long time to try to copy those few little files [10 to 300 kb long] and then it would quit with the standard error [it has become standard to me, I see it so much] "...this CD has an unrecoverable read/write error, you should move all your files off this disk, blah, blah, blah..."

Any suggestions or ideas out there? Am I one of the few [or many] that is beginning to think that this technology or the software is still in it's infancy and is not a really good way to backup or do I need another softw... Read more

A:Adaptec DirectCD STINKS!

Read other 16 answers
RELEVANCY SCORE 45.2

Okay. I want your opinions. I'm only going to use Vista for making screenshots and doing documentation. I wish I could avoid buying it, but I need it for an ongoing documentation project.

What version of Vista stinks the least?

I've ruled out Home Basic as too basic, and Ultimate as too expensive.

I'm trying to decide between Home Premium and Business.

Opinions?

Thanks!

 

A:Vista: Which version stinks less?

Read other 11 answers
RELEVANCY SCORE 44.8

DSL (cable)- download speed is great, but the upload speed has gone away. Seems that I can send emails and such but at a much lower speed. I attached a log to look at. Any help is appreciated. Win98se and IE6

Logfile of HijackThis v1.97.7
Scan saved at 8:28:02 AM, on 5/6/04
Platform: Windows 98 SE (Win9x 4.10.1998A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\SA3DSRV.EXE
C:\PROGRAM FILES\MESSENGER PLUS! 2\MSGPLUS.EXE
C:\PROGRAM FILES\BITWARE\CBWATTN.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\PROGRAM FILES\BITWARE\CBWHOST.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\WINDOWS\SYSTEM\SXGDSENU.EXE
C:\MOUSE\SYSTEM\EM_EXEC.EXE
C:\COMPAQ\INTERNET\CISRVR.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\LOADQM.EXE
C:\WINDOWS\SYSTEM\QTTASK.EXE
C:\PROGRAM FILES\MYWEBSEARCH\BAR\1.BIN\MWSOEMON.EXE
C:\PROGRAM FILES\FOUR PURE FUNK\MAPIGREYBROWSE.EXE
C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\MY MUSIC\MY DOCUMENTS\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearchnow.com/searchbar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://mysearchnow.com/sea... Read more

A:Send speed stinks, recieve is ok though

fix these:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearchnow.com/searchbar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://mysearchnow.com/searchbar.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.firstbankonline.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://mysearchnow.com/searchbar.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearchnow.com/searchbar.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://mysearchnow.com/searchbar.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://mysearchnow.com/searchbar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.presario.net/scripts/...&query=%s&i=enu

also i believe this entry is bad:

O4 - HKLM\..\Run: [mdac_runonce] C:\WINDOWS\SYSTEM\runonce.exe
 

Read other 3 answers
RELEVANCY SCORE 44.8

Last week i brought my 2.5 yrs old T440 to Lenovo Bugis suppt center to replace a cracked LCD back cover (one fine day i noticed a crack along the righthand side hinge and after opening, the cover was hard to close & open!). I had a queue tkt that said waiting tme approx 5 mins, but it took 20 mins for the front desk asst to call me. He rightly said the warranty had expired and they need to charge me $50 (+gst) to assess how much it would cost to fix it. When i asked what they want to assess as the laptop was working fine, he said in that case i should pay $30 - to source for the broken part and only after that they can tell how much would the total repair cost be! To me, it didn't make sense as they are the 'makers', but the guy started explaining the parts are made by 3rd party suppliers and and that's the process they hv to follow for 'older' models! Then another colleague of him came to explain, but he also couldn't tell me the rational for not able to tell me upfront the charge for replacing a 'highly visible' broken part! They are cheats in my opinion!! I have been a ThinkPad user for nearly 20 years and never experienced such poor quality machines and bad service!!! Hell with Lenovo.

A:Lenovo Singapore Support stinks

since your machine is already out of warranty, source it online for 3rd party and get it done. Im having hell with my Lenovo too.

Read other 1 answers
RELEVANCY SCORE 44.8

I can't open a installasion, it closes change or remove programs, it closes most of the stuff!! Even it's own settings!!! So I'm asking if I can delete the DEP. Can I?
 

A:Data Execution Prevention Stinks

First make sure you are installing known good software (not something questionable).

You can disable DEP for the software you are installing by going to System Properties > Advanced tab > Performance settings button > Data Execution Prevention tab > tick the button for Turn on DEP for all programs and services except for those I select. Then Add the program you are having trouble with.

You can also completely disable DEP for all programs by editing the boot.ini file (C:\boot.ini) by changing /NOEXECUTE=OPTIN to /NOEXECUTE=ALWAYSOFF. You must reboot for the change to take effect.
 

Read other 3 answers
RELEVANCY SCORE 44

As online gaming grows in popularity ESET researchers found that cybersecurity measures haven't kept pace as 36 percent gamers reported actively turning off security software if they found it was slowing down their computer.

The study, conducted by Google Consumer Surveys, polled 500 gamers and found that 52 percent of respondents said they don't even use security software on their gaming computers, according to a Sept. 13 blog post.

Gamers stated numerous reasons for their lack cybersecurity hygiene with 20 percent saying they don't need it, 13 percent saying they don't like they pop ups, 12 percent saying it slowed down their computers, and eight percent saying that it interrupts their gaming experience.

Researchers warn whenever security settings are disabled, users run the risk of malware stealing their login credentials and using gaming accounts for malicious activity which could lead to the legitimate user getting banned from the gaming platform for someone else's actions.

The stolen accounts could be used for botting, item farming, and other activities without the account owner's knowledge.

Full Article. Study finds gamer cyber hygiene stinks
 

Read other answers
RELEVANCY SCORE 40

its like the spinter you get, you pull the splinter out but it still hurts becasue theres a little tiny tip still in there. thats likethis problem, none of my anyvirus o spyware apps are going off but my world of warcraft account got hacked again so there must be somthing still in here. gimer crashed the entire computer while scanning Drivers/0000007E i belive it was. i do have a DDS log tho as per the introduction post.

A:theres somthing in there...

Hello and and Welcome to BleepingcomputerPlease note we are very busy, so if I don't hear from you within 5 days the topic will be closed, If you have sinceresolved your issues I would appreciate if you would let me no so I can close this topic.We need to create an OTL ReportPlease download OTL from one of the following mirrors:This is THE MirrorSave it to your desktop.Double click on the icon on your desktop.Click the "Scan All Users" checkbox.Under the Custom Scans/Fixes box at the bottom, paste in the following bold text.%appdata%\*.*%systemroot%\system32\*.dll /lockedfiles%systemroot%\Tasks\*.job /lockedfiles%SYSTEMDRIVE%\*.exenetsvcsmsconfig/md5startproquota.exesfcfiles.dlleventlog.dllscecli.dllnetlogon.dllcngaudit.dllsceclt.dllntelogon.dlllogevent.dllbeep.sysiaStor.sysnvstor.sysatapi.sysnvatabus.sysviamraid.sysnvata.sysiastorv.sys/md5stopCREATERESTOREPOINTPush the button.Two reports will open, copy and paste them in a reply here:OTL.txt <-- Will be openedExtra.txt <-- Will be minimizedThanks

Read other 10 answers
RELEVANCY SCORE 40

Hello i had a bad malware infection from antivirus 2010 on my computer i took it to a buddies house and he did some scans.He got the av2010 off of my computer but i lost all of my desktop icons and start button.I am logged on as the administrator but when i try to access some programs through the task manager it tells me it's been disabled by the admin.Also i cant use system restore anymore at all.I had hijack this on my computer and can use that along with mbam.exe but it finds nothing.Hijack this i have done a scan and can post here.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 17:13:36, on 9/30/2009Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: Safe mode with network supportRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\taskmgr.exeC:\Program Files\Windows Live\Messenger\msnmsgr.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\really help\HijackThis\Trend micro.exeC:\Documents and Settings\Joe... Read more

A:Somthing not right

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 2 answers
RELEVANCY SCORE 40

I did a scan and found this
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=BKDR_SDBOT.GEN
And it couldent fix it what do I so

heres my log
Logfile of HijackThis v1.97.7
Scan saved at 1:47:38 PM, on 7/23/2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\LXSUPMON.EXE
C:\Program Files\Lexmark X5100 Series\lxbabmgr.exe
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Lexmark X5100 Series\lxbabmon.exe
C:\WINDOWS\System32\McAfeeAV.exe
C:\WINDOWS\kdx\KHost.exe
C:\WINDOWS\wt\updater\wcmdmgr.exe
C:\PROGRA~1\Adaptec\EASYCD~1\CreateCD\CreateCD.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AIM95\aim.exe
C:\Program Files\AWS\WeatherBug\Weather.EXE
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and... Read more

A:I got somthing!

Boot into safe mode.
Navigate to the following areas and delete the bold type folders or files:
C:\WINDOWS\kdx
C:\Program Files\Kazaa Lite K++
C:\WINDOWS\System32\P2P Networking
C:\Program Files\TV Media

Use hjt to remove the following:

R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497}_ - (no file)
O4 - HKLM\..\Run: [KAZAA] "C:\Program Files\Kazaa Lite K++\kpp.exe" "C:\Program Files\Kazaa Lite K++\KazaaLite.kpp" /SYSTRAY
O4 - HKLM\..\Run: [P2P Networking4] C:\WINDOWS\System32\P2P Networking\P2P Networking4.exe /AUTOSTART
O4 - HKLM\..\Run: [kdx] C:\WINDOWS\kdx\KHost.exe
O4 - HKCU\..\Run: [TV Media] C:\Program Files\TV Media\Tvm.exe

reboot and repost a new log.
 

Read other 2 answers
RELEVANCY SCORE 40

when ever i go to google and serch i am redirected and the machine seems to be running funny i have run meny virus scane and adware and spyware scanes nothing seems to help here is the log Logfile of HijackThis v1.99.1Scan saved at 9:20:17 AM, on 2/6/2006Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\System32\atiptaxx.exeC:\WINDOWS\System32\carpserv.exeC:\PROGRA~1\HPQ\ONE-TO~1\OneTouch.EXEC:\Program Files\Synaptics\SynTP\SynTPLpr.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\PROGRA~1\mcafee.com\agent\mcagent.exeC:\Program Files\McAfee.com\VSO\mcvsshld.exeC:\WINDOWS\System32\Ati2evxx.exeC:\WINDOWS\system32\HPConfig.exec:\progra~1\mcafee.com\vso\mcvsescn.exeC:\Program Files\McAfee\QuickClean\Plguni.exeC:\Program Files�... Read more

A:Somthing Is Not Right

just woundering if any one has looked at the log hows it look any ideas

Read other 11 answers
RELEVANCY SCORE 40

I just did a clean install of windows 7 ultimate on my windows 7 home premium machine. and i want to know how i can get to my old desktop.. i don't see it.i see every thing else from windows.old.

A:need help with somthing

Are you talking about the items you had on the desktop, like icons and data, or are you talking about the settings, like the background and such?

Read other 1 answers
RELEVANCY SCORE 40

something hit me but i don't know wat it is.. it disabled my taskmanager(ctrl+alt+del), it diplays diabled by the administrator wen i press ctrl+alt+del, it also somehow diabled my malwarebytes and superantispyware.. wen i click on them it closes on its own it is never displayed on the taskbar and for some rison even my notepad is disabled. I hav hir a hijackthis on my computer i pressed the do a system file and save a logfile it runs but the logfile is always on minimize so i cannot copy nor see the logfile.. i can see the notpad on the taskbar, everytym i restore or maximize the notepad it returns to minimize.. i also notice that when i surf the net i tried to search antivirus on the internet and boom! firefox has been close all the programs hav been close i think.. its like rebooting but you still see your desktop its just like they refreshed all wat u hav done..
o yeah one more thing there is this forum wer u post if u think you are hijack or sumthing wen i click it firefox automatically closes.. i don't know wat to do can you pls help me.. tnx

A:Somthing bad hit me..

i think this is my logfile i posted it on rapidshare since i cannot copy paste it.. http://rapidshare.de/files/40906079/hijackthis.log.htmlsori 4 the inconvinience..

Read other 1 answers
RELEVANCY SCORE 40

Every now and then I come to my computer and the hard drive is going crazy. And something is on the network. However the second I touch the mouse all activity stops. Hard drive goes back to normal and same for network. Before we all go jumping in the virus boat I have already done scans with mbam avast and the such. Infact I suspect avast might be doing it as it is always trying to update itself. But there lies the problem I DONT KNOW. So is there a little program that i can turn on to monitor my network and what is accessing it? It will need to be based on history as the second i try to investigate what it is it turns off.

Thanks

Edit: The more i think about it this the more i think it should have gone in the security section instead of the network/sharing section. If it needs to be moved my apologies.

A:Is there somthing that will tell me what is getting on the net?

That behavior sounds more like the disk indexing itself when the input activity to it is low. Have you checked that?

Read other 5 answers
RELEVANCY SCORE 40

Being the Idiot that I am, i clicked on a link in someones AIM away message which lead me to a site similar to this one below (Same location, differnt file) that downloaded some type of program onto my system... noticed today for the first time that it put up an away message on AIM w/out me even relizing it, leading to the same site, as well as opend up an IE window, and was trying to open up the page below.

http://www.angelfire.com/oz/sunz/staff.html
**This is the adress the link points to, and the file it downloads**
http://www.angelfire.com/ar3/sunz/bestfriends.scr
When I tpye CTRL-ALT-DLT it automaticly closes...same thing with msconfig.

I restarted in safemode and took somthing out of my startup that looked like it didnt belong, called NETSTAT.exe, however this didnt fix the problem

HELP SOMEONE

here is my hijackthis log

Logfile of HijackThis v1.97.7
Scan saved at 1:56:35 PM, on 6/26/2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files... Read more

A:Odd new somthing

Disregard, i fixed the problem myself
 

Read other 1 answers
RELEVANCY SCORE 40

I tried replying to "something has taken over" thread but the tech guy site won't let me. Neither can I send an email to AANJ. So I hope I'm not breaking any site rules by posting the below info. If I am, please shame me but tell me why I can't reply or send emails yet.

Secure.trusted-serving.com, referenced by the thread "something has taken over" appears to be benign at this point but it can be prevented from showing up as a redirect simply by using Tools, internet options, security, restricted sites, sites ,and entering the exact url link Secure.trusted-serving.com and adding it to Restricted sites. Same goes for googleads.g.doubleclick.net Works for me with Windows 7 Ultimate.
 

Read other answers
RELEVANCY SCORE 39.6

ok, when a thred sais closed at the top and bottem then that means i cannot comment on it??

yep that's my Q
 

A:Solved: had to ask somthing

Read other 6 answers
RELEVANCY SCORE 39.6

This is a cry for help, i have many valuble files on my drive which i am not able to backup because my computer is acting so slow, so disk cleanup is not an option.Hey guys! i have a huge problem. It all started yestorday when i downloaded a programme to remove spyware. When i downloaded the .exe file it had the default C++ icon usually i dont trust those type of programes but for some resson i opend it...Ever since my computer has been really slow and has been acting really strange here are my symptons:- On task bar next to the time it says "VIRUS ALERT!"- When i press alt+l+del it says task manager was dissabled by administrator.- When i right click on desktop and click on properties it says "this can only be accessed by the admistrator"- In my computer the only thing that shows up is the floppy drive "A:\"- I cannot access my computer or the programme list from the start menu, i have to create shortcuts on the desktop- Big red circle icon appears in my quick launch bar saying i have been infected with spy ware and i need to remove it. then i get a message box saying the following:Security Warning!Worm.win32.netbooster detected on your machine. this virus is distributed via the internet through e-mailand active-x objects. the worm has its own SMTP engine which means it gathers e-mails from your local computer and re-distributes itself. in worst casr this worm can allow attackers to access your computer, stealing passwords and personal data. This process should be removed fr... Read more

A:Infected With Somthing (not Sure What It Is)(this Is A Cry For Help)

Hello chrisc666 and welcome to BC. Let's see what we can find. Please follow the steps below in order:Before running a new scan let's clean out the temporary folders. Download ATF Cleaner to your Desktop.Double-click ATF-Cleaner.exe to run the program.Click Select All found at the bottom of the list.Click the Empty Selected button.If you use Firefox browser, do this also:Click Firefox at the top and choose Select All from the list.Click the Empty Selected button.NOTE : If you would like to keep your saved passwords, please click No at the prompt.If you use Opera browser, do this also:Click Opera at the top and choose Select All from the list.Close ALL Internet browsers (very important).Click the Empty Selected button.NOTE : If you would like to keep your saved passwords, please click No at the prompt.Click Exit on the Main menu to close the program.Now download OTScanIt.exe to your Desktop and double-click on it to extract the files. It will create a folder named OTScanIt on your desktop.Note: You must be logged on to the system with an account that has Administrator privileges to run this program.Close ALL OTHER PROGRAMS.Open the OTScanIt folder and double-click on OTScanIt.exe to start the program (if you are running on Vista then right-click the program and choose Run as Administrator).
In the Drivers section click on Non-Microsoft.Under Additional Scans click the checkboxes in front of the following items to select them:Reg - BotCheck
Reg - Desktop Components
Reg ... Read more

Read other 1 answers
RELEVANCY SCORE 39.6

Websites just dont fully load anymore, no idea what ive done.

Heres my log.
Thank you

Logfile of HijackThis v1.98.2
Scan saved at 18:23:13, on 16/10/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Apache Group\Apache\Apache.exe
C:\CFusionMX\runtime\bin\jrunsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\CFusionMX\runtime\bin\jrun.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Apache Group\Apache\Apache.exe
C:\PROGRA~1\FREESE~1\BIN\WIN2K\tidslmon.exe
C:\Program Files\Roxio\Roxio DVDMax Player\PDVDServ.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Pinnacle\Shared Files\Programs\Scheduler\PCLEScheduler.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\PopUpCop\PCCloser.exe
C:\unzipped\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.heretofind.com/show.php?id=113&q=%s
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.freeserve.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main... Read more

A:Somthing aint right :-(

Hi RadicalMan,

1 Click on the appropriate bold text, if you need to learn how to :
Start your computer in Safe mode ;
Disable or enable Windows XP System Restore ;

2 Log in safe mode;

3 Disable system restore;

4 Close all open applications before launching HijackThis, it is very important;

5 Run HijackThis and fix the following entries :

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.heretofind.com/show.php?id=113&q=%s
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.heretofind.com/show.php?id=113&q=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,SearchURL = http://realsearcher.com/?a=2
R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,SearchURL = http://realsearcher.com/?a=2
O4 - Global Startup: Pinnacle Scheduler.lnk = ?
O9 - Extra button: Corel Network monitor worker - {4F7E3533-006C-4AE1-A807-A205DC561292} - (no file)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker - {4F7E3533-006C-4AE1-A807-A205DC561292} - (no file)
O9 - Extra button: Corel Network monitor worker - {4F7E3533-006C-4AE1-A807-A205DC561292} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Corel Network monitor worker - {4F7E3533-006C-4AE1-A807-A205DC561292} - (no file) (HKCU)
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab

6 Reboot normally;

7 I notice that you are using an Apache server, improv... Read more

Read other 1 answers
RELEVANCY SCORE 39.6

Hello i hope someone can help me.

My computer is running slow and a window keeps popping up which is trying to find "ezarc.msi" which it can not find.
also my task manager will not open.

I have ran a virus scan with window live one care which told me i have over 6000 "win32/vb.al".

Here is my Hijackthis


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:19:22 PM, on 7/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\arservice.exe
C:\Program Files\EarthLink TotalAccess\WENGINE\wmonitor.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Windows OneCare Live\Firewall\msfwsvc.exe
C:\Program Files\Microsoft Windows OneCare Live\winss.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\ARPWRMSG.EXE
C:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe
C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
C:\Program Fil... Read more

A:help me please Com has virus or somthing

---> ttt

Read other 1 answers
RELEVANCY SCORE 39.6

I have been having problems with my modem, java script pages, and just all around problems.

I uninstalled my virus program, PCcillian, and then reinistalled, and updated it.
When I ran it, it started to delete and quarantine every .exe program on my comp. I was able to stop it and restore most of it.

Please help.

Mikumber
 

A:Somthing went very wrong...please help

Read other 6 answers
RELEVANCY SCORE 39.6

i dont wont to reinstall again i just got every thing back up and running. And well i was going to Defrag my hd And I notice another Drive Its in CHINNESE LETTERS! From that fake 7600
(the Deal is I cant find the drive its showing me...)
Is there away to maybe sweep my hd and keep files lol and fix this?

A:Somthing wrong with my hd

you could try the avira emergency rescue disk. or the bit defender one. They are CD linux based antivirus scans. Dunno if they would help or not. They both allow you to copy data, but avira only has text based tools while bit defender has gui(and a 250 mb download). Download one, burn it, boot with it, clean. Dunno if it'll help.

Read other 3 answers
RELEVANCY SCORE 39.6

Recently 'cleared up' my programmes list in Windows and now every time on starting up windows xp i get a notifcation of a 'failing file' and something dus not start up but i don not know what.. Everything seems to be working. Who knows how I can find what's missing.

A:lost somthing..

Please post the exact wording of the message.

Louis

Read other 1 answers
RELEVANCY SCORE 39.6

Ok here's the problem.
My windows updates wont run, I cant turn on automatic updates and I can't manually update. Also my Norton Systemworks wont open or run scans. I have tried several online virus scans, I have Ad-aware and Spybot along with Spyware Blaster. Oh yes, and I have just reformated so I don't know whats going on. Everything was working and I got my computer set up and all updated then it just wouldnt. I can still go online though.

A:Somthing's Wrong

Haqve you tried using Hijack this?

Read other 2 answers
RELEVANCY SCORE 39.6

I downloaded a crack, I know that's a huge no-no and now I have virus's out the ying-yang. Or so avast is saying. I know that avast will come up with virus's that are really spyware. Here they are
angelex.exe C:\windows\system32
backup-20041021-080... C:\prgramfiles\backup
bargains.exe C:\programfiles\bullseyenetwork
instsrv.exe C:\windows\system32
msbe.dll C:\windows\system32 (twice)
msbe.dll C:\programfiles\bullseyenetwork
msexreg.exe C:\windows\system32
trkgif.exe C:\windows
msbbhook.dll C:\Temp

They are all in the virus chest. What do I have to do to get rid of them? I'll never ever do that again!! HELP!!! Thanks

A:I did somthing stupid and need immediate HELP!

Run these online virus scanners:http://www.pandasoftware.com/activescan/http://housecall.trendmicro.com/Are you using these basic security programs?a? free-a complementary product to antivirus software which is specialized in protection against harmful software. Antivirus software often features an inadequate protection against Trojans, Dialers and Spyware. a? fills this gap.Ad-Aware-A good program similar to SpyBot S & D.Spybot S&D-Detects and removes spyware, of different types, from your computer.SpywareBlaster-A good program that prevents spyware from being installed on your computer in the first place. This program is always running in the background, protecting your computer. It prevents the installation of bad active X controls found in web pages.SpywareGuard-A nice compliment to SpywareBlaster. This allows you the option to prevent downloads that contain bad active X controls.If not, you need to. These programs, updated and used regularly, will do a lot to keep your computer clean of spyware, trojans, keyloggers, browser hijackers, etc...Download them, update them, and then run them.Important:Please read this tutorial on Spybot S&D before using it. Spybot can do SERIOUS damage, if not used properly.If that doesn't help, then:Download the latest version of HijackThis (HJT), from here.Put HijackThis in a Permanent folder:Click My Computer / C: / File / New / Folder / name the folder; HijackThisPut HijackThis.exe, in this folder.This is a mandatory step, for the ... Read more

Read other 3 answers
RELEVANCY SCORE 39.6

Hi There, Let me 1st thank anyone and everyone who reads or replies to this in advance. Thank You!!! Ok so earlier tonight my son tried to download photoshop from a shady website and obviously dl'd a trojan or some type of malware. It was one file named Photoshop.exe that was approx 74mb. After downloading it he ran the .exe and unleashed somthing. All i have noticed so far is alot of popups and advertisements but am afraid there may be more lurking in the background. after running the photoshop.exe file we were unable to delete it so i booted the system in safe mode and was then able to delete it. Now everytime i boot up normally i have a program called "Form1" open in the taskbar. I am convinced this has to do with the photoshop.exe. Heres the thing thats wierd to me. I've run antimalware, spybot, spy hunter and currently have avast as my antivirus but all programs show my system is free of problems although i can tell somthing is still up. Any ideas???
-Norman Walsh

A:I got somthing but dont know what... Please Help

PS I just went to task manager and went to applications... i right clicked Form1 and chose go to process and found out its connected to the executible called alg.exe. Also a file running that looks suspicious is csrss.exe after researching that file it appears to be a trojan as well.

Read other 18 answers
RELEVANCY SCORE 39.6

very slow, internet exploere keeps freezing or shuting down. Ad-Aware, and AVG cant find anything. not error messeges. jsut do not understand. every thing works fine when I'm off line.

can you take a look at my HJL and addvise please? Thank you very much.
Logfile of HijackThis v1.99.1
Scan saved at 12:26:34 PM, on 3/6/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\PROGRA~1\COSIDS\BIN\TbMux32.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program... Read more

Read other answers
RELEVANCY SCORE 39.6

Somthing has infected my computer, here are some of my problums.When i am on the internet, most of the time my Norton virus software shuts down and says an error has occured. When i try to update Norton i run the auto update and it loads and then it says i need to update again like it didnt even work.I was on limewire and then i noticed that three porn movies had somehow downloaded and we in my recent doccuments.My internet disconects and i try to reconnect and it says the phone line is busy.This is my second time writing this topic, 10 minutes ago my computer completly locked down so i couldnt even turn off num lock on my keybord.I tried to install new virus software and it didnt work, i purchased the newest verson of McAfee and it wouldnt install, it kept locking up my computer.( I am using Windows XP, and i have reinstalled Norton many times and done 2 online chat sessions with Norton support, they fix it and then it fails in a few days).I talked to someone i know that works at Hyland Software and is a computer software programer, he told me about HiJackThis and i ran it and it gave me this.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 7:57:39 PM, on 11/7/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16544)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC: ... Read more

A:Somthing Has Taken Over My Norton

Welcome to the BleepingComputer HijackThis Logs and Analysis forum Geo Bomber My name is Richie and i'll be helping you to fix your problems.Please download FixWareout:http://downloads.subratam.org/Fixwareout.exehttp://www.bleepingcomputer.com/files/lonny/Fixwareout.exe Save it to your desktop and run it. Click Next,then Install,then make sure "Run fixit" is checked and click Finish.The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your system may take longer than usual to load,this is normal.When your system reboots,follow the prompts. Afterwards, HijackThis will launch automatically,if it doesn't open,please launch it manually. Please click Scan, and checkmark the following items:O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)O16 - DPF: {33331111-1111-1111-1111-611111193423} -O16 - DPF: {33331111-1111-1111-1111-611111193429} -O16 - DPF: {33331111-1111-1111-1111-615111193427} - O17 - HKLM\System\CCS\Services\Tcpip\..\{FE08E2DA-FC86-4894-9B27-C789DE480E7E}: NameServer = 85.255.116.34 85.255.112.106Click 'Fix Checked'. Close HijackThis,and click OK to proceed.At the en... Read more

Read other 24 answers
RELEVANCY SCORE 39.6

Please look at my hjt log. I'm hoping you will be able to see what's wrong with my pc.

Thank you!

Logfile of HijackThis v1.99.1
Scan saved at 4:38:46 PM, on 11.24.06
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Progr... Read more

A:I think my son downloaded somthing bad!

Run HJT again and put a check in the following:

O2 - BHO: (no name) - {F6788382-65D4-44BB-B375-63E2C38F03C2} - (no file)
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbar...rch.jhtml?p=ZN
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/2470c8c2e5b304b...p/RdxIE601.cab
O16 - DPF: {65E7DB1D-0101-4100-BD66-C5C78C917F93} - http://install.wildtangent.com/bgn/p...im/install.cab
O16 - DPF: {666DDE35-E955-11D0-A707-000000521958} - http://69.56.176.227/webplugin.cab
O16 - DPF: {886DDE35-E955-11D0-A707-000000521958} - http://69.56.176.78/webplugin.cab

Close all applications and browser windows before you click "fix checked".
 

Read other 2 answers
RELEVANCY SCORE 39.6

-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Sunday, April 27, 2008 12:55:35 PM
Operating System: Microsoft Windows Vista Professional, (Build 6000)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 27/04/2008
Kaspersky Anti-Virus database records: 727600
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - Critical Areas:
C:\Windows
C:\Users\ABOUHA~1\AppData\Local\Temp\

Scan Statistics:
Total number of scanned objects: 56096
Number of viruses found: 3
Number of infected objects: 11
Number of suspicious objects: 0
Duration of the scan process: 00:39:42

Infected Object Name / Virus Name / Last Action
C:\Windows\bthservsdp.dat Object is locked skipped
C:\Windows\CSC\v2.0.6\pq Object is locked skipped
C:\Windows\Debug\PASSWD.LOG Object is locked skipped
C:\Windows\Debug\sam.log Object is locked skipped
C:\Windows\Debug\WIA\wiatrace.log Object is locked skipped
C:\Windows\Logs\DPX\setupact.log Object is locked skipped
C:\Windows\Logs\DPX\setuperr.log Object is locked skipped
C:\Windows\ServiceProfiles\LocalService\AppData\Local\... Read more

A:Infected Somthing

Welcoming to Bleeping Computer, please be sure you have read and followed the Preparation Guide For Use Before Posting A Hijackthis Log, Instructions for receiving help in cleaning your computer http://www.bleepingcomputer.com/forums/t/34773/preparation-guide-for-use-before-using-malware-removal-tools-and-requesting-help/All advice given is taken at your own risk.If I can help, I will need more information than you have provided. Review the instructions posted above and pinned to the top of this forum.If you still need help, provide for starters:Download Trend Micro Hijack This? http://download.bleepingcomputer.com/hijac.../HJTInstall.exeDoubleclick the HJTInstall.exe to start it.By default it will install HijackThis in the Program Files\Trendmicro folder and create a desktop shortcut.HijackThis will open after install. Press the Scan button below. This will start the scan and open a log.Copy and paste the contents of the log in your next reply using Add Reply.If your issues are resolved, post to let me know so I can close your topic.Thanks

Read other 2 answers
RELEVANCY SCORE 39.6

when ever i use IE i get a bunch of pop ups wanting me to download winxp anti virus once in awhile i get the blue screen when i try to clse all of the anoying windows. im going to get firefox once this is fixed. Deckard's System Scanner v20071014.68Run by Chad on 2008-04-29 20:06:46Computer is in Normal Mode.---------------------------------------------------------------------------------- System Restore --------------------------------------------------------------Successfully created a Deckard's System Scanner Restore Point.-- Last 5 Restore Point(s) --86: 2008-04-30 03:07:09 UTC - RP265 - Deckard's System Scanner Restore Point85: 2008-04-30 02:10:56 UTC - RP264 - Software Distribution Service 3.084: 2008-04-29 22:58:06 UTC - RP263 - Last known good configuration83: 2008-04-29 22:58:02 UTC - RP262 - System Checkpoint82: 2008-04-29 22:58:02 UTC - RP261 - System Checkpoint-- First Restore Point -- 1: 2008-04-29 22:57:54 UTC - RP180 - System CheckpointBacked up registry hives.Performed disk cleanup.-- HijackThis (run as Chad.exe) ------------------------------------------------Logfile of Trend Micro HijackThis v2.0.2Scan saved at 8:10:30 PM, on 4/29/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16640)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\sys... Read more

A:Infected With Somthing

Hello porky008,Welcome to Bleeping Computer This tool is not a toy. If used the wrong way you could trash your computer. Please use only under direction of a Helper. If you decide to do so anyway, please do not blame me or ComboFix.1. Download this file - combofix.exe http://download.bleepingcomputer.com/sUBs/ComboFix.exe http://www.forospyware.com/sUBs/ComboFix.exe http://subs.geekstogo.com/ComboFix.exe2. Double click combofix.exe & follow the prompts.3. When finished, it will produce a log for you. Post that log in your next reply please, along with a new HijackThis log.Note:Do not mouseclick combofix's window while it's running. That may cause it to stall.Thanks,tea

Read other 10 answers
RELEVANCY SCORE 39.6

I am having problems and my pctools and avg wont update and I can't recover windows and it hasn't performed a backup since December. Please help. Thanks

A:Help does my computer have somthing??

I would like to know if this log look fishy. It is my grandmothers computer and it is barely running. I cannot put any malware software on it because it keeps it from updating. I would like to know more and am leaving tomorrow. Thanks,Kevin===============Hello While we understand your frustration at having to wait, please note that Bleeping Computer deals with several hundred requests for assistance such as yours on a daily basis. As a result, our backlog is quite large as are other comparable sites that help others with malware issues. Although our HJT Team members work on hundreds of requests each day, they are all volunteers who work logs when they can and are able to do so. No one is paid by Bleeping Computer for their assistance to our members.Further, our malware removal staff is comprised of team members with various levels of skill and expertise to deal with thousands of malware variants, some more complex than others. Although we try to take DDS/HJT logs in order (starting with the oldest), it is often the skill level of the particular helper and sometimes the operating system that dictates which logs get selected first. Some infections are more complicated than others and require a higher skill level to remove. Without that skill level attempted removal could result in disastrous results. In other instances, the helper may not be familiar with the operating system that you are using, since they use another. In either case, neither of us want someone to assist yo... Read more

Read other 3 answers
RELEVANCY SCORE 39.6

Logfile of Trend Micro HijackThis v2.0.2Scan saved at 6:11:58 PM, on 9/20/2009Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\LEXBCES.EXEC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\system32\LEXPPS.EXEC:\WINDOWS\Explorer.EXEC:\WINDOWS\BCMSMMSG.exeC:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program Files\McAfee.com\Agent\mcagent.exeC:\PROGRA~1\AVG\AVG8\avgwdsvc.exeC:\Program Files\HP\HP Software Update\HPWuSchd2.exeC:\Program Files\iTunes\iTunesHelper.exeC:\WINDOWS\system32\svchost.exeC:\PROGRA~1\AVG\AVG8\avgtray.exeC:\Program Files\CA\PPRT\bin\ITMRTSVC.exeC:\PROGRA~1\McAfee\MSC\mcmscsvc.exeC:\Program Files\Messenger\msmsgs.exeC:\WINDOWS\system32\ctfmon.exec:\PROGRA~1\COMMON~1\mcafee\mn... Read more

A:Somthing is amiss

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.??If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine.??Please perform the following scan:Download DDS by sUBs from one of the following links.??Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool.??No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 2 answers