Over 1 million tech questions and answers.

Impossible Ads Virus, Please help.

Q: Impossible Ads Virus, Please help.

On my computer the other day I randomly hear advertisement videos playing. I can't find them so I close everything down and they are still going. I ran Malwarebytes several times and each time it picks up something. I downloaded Avast and it constantly pops up saying it blocked a random ad trying to play on my computer. It says that SVCHOST.EXE is the source. Also when I try to google something, no matter what I search for it takes me to lithuanian sites. Can someone please help? Thank you.

RELEVANCY SCORE 200
Preferred Solution: Impossible Ads Virus, Please help.

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link http://downloadreimage.com/download.php. (This link will automatically start a download of Reimage that you can save to your computer.)

A: Impossible Ads Virus, Please help.

DownloadTDSSkillerLaunch it.Click on change parameters-Select TDLFS file systemClick on "Scan".Please post the LOG report(log file should be in your C drive) DownloadaswMBRLaunch it, allow it to download latest Avast! virus definitionsClick the "Scan" button to start scan.After scan finishes,click on Save logPost the log results hereDownloadESET online scannerInstall itClick on START,it should download the virus definitionsWhen scan gets completed,click on LIST of found threatsExport the list to desktop,copy the contents of the text file in your reply

Read other 11 answers
RELEVANCY SCORE 46.8

Hello Guys, I have a really big problem which I can't solve it.
Recently I bought a 2GB Micro SD card from someone and I attempt to format it but i'm receiving a message: "Windows was unable to complete the format".
Tryed to delete them but an error is occurring.
I did an AVG Antivirus, SuperAntiSpyware, Trojan Remover and STOPzilla! scan but i find three viruses:
-Worm/AutoRun.MB
-Worm/Brontok.EZ
-Klif Trojan
but its pointless since after I remove them, they reapear.
I've attempted to delete them with Unlocker but it requires to restart and after that they reapear again.
I've even Booted a Partition Manager an wipe/delete the partition on the card using all the 35 steps format it and it took me 4 hrs. but no use. They are still there.
And even formating my card on my other friend's phones/digital cameras and is no use. The files are still there.
The card contains 220MB of corrupted, cross-linked and virused files. I tried to scandisk it but after the scan and repair, the same exact files remained there. Its like the card has a secret reservoir which replaces back all the "bad" files.
Table of files:
Folders: GFS_TMP, IMF090~1, IMF090~2, IMF090~2, IMF090~3, WA1D5E~3, WA1D5E~2(these folders contain files with weird names like random characters and various sizes like 3,5GB), WapTemp, sryk, Videos, Imsifolder, nane, Images.
The next files are hidden and can be found in the parent folder(SD card). Files marked with invisible cannot ... Read more

A:The Impossible Virus!!!

Read other 10 answers
RELEVANCY SCORE 46.8

Cannot start to safe mode
Cannot start task manager
Cannot change boot sequence...Wont allow setup to run, wont allow safe mode to run
When I try and access a program, I get a message that file is infected and will not allow it to run...all. exe files give this warning.

I have solved some anti virus problems, but this one is tops....wont allow access to anything...

Any pros wanna tackle this one?
 

A:The Impossible Virus??

Hooked a USB port keyboard, it recognized....for all that have this problem try this...then you can run MALWARE BYTES,etc.
 

Read other 1 answers
RELEVANCY SCORE 46

Hi there, im very new to removing viruses and had to come to bleeping computer for help!

I think i came in contact with this virus when i was streaming a movie online, my computer had automatically installed this virus while I was watching this movie. I had no clicked to install any plugins
Now, everytime I open internet explorer or Malware bytes Or avg or anything that would possibly help me get rid of this virus, The process iys.exe starts up again, and a faulty scanner with it called windows xp 2012 scanner.....

Im running microsoft windows xp 2002 service pack 2, and even as im writing this topic, i think the virus keeps closing my internet browser.

heres a hijack this log

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:11:53 PM, on 1/2/2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\system32\... Read more

A:iys.exe virus, impossible to remove!!!

Hello and welcome. Please follow these guidelines while we work on your PC:Malware removal is a sometimes lengthy and tedious process. Please stick with the thread until I?ve given you the ?All clear.? Absence of symptoms does not mean your machine is clean! Please do not run any scans or install/uninstall any applications without being directed to do so.Any underlined text in my posts indicates a clickable link.If you have any questions at all, please stop and ask before proceeding. Please download DDS by sUBs from one of the following links and save it to your desktop.DDS.scrDDS.comDDS.pifDisable any script blocking protection (How to Disable your Security Programs)Double click DDS icon to run the tool (may take up to 3 minutes to run)When done, DDS.txt will open.After a few moments, attach.txt will open in a second window.Save both reports to your desktop.---------------------------------------------------Post the contents of the DDS.txt report in your next replyAttach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and then click UPLOAD. Download GMER Rootkit Scanner from here to your desktop. Double click the exe file. If asked to allow gmer.sys driver to load, please consent . If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO.

Click the image to enlarge it
In the right panel, you will see several boxes ... Read more

Read other 2 answers
RELEVANCY SCORE 46

Hello!

I'm having a huge issue with a Vundo virus and I'm at my wits end. The gist of it all: I downloaded a file, extracted it using WinRAR, and BAM! ... my computer now has AIDS. This is what I've done so far:

1) Fully uninstalled Norton
2) Installed and ran a quick scan using Kapersky ... it found a monder virus and supposedly took care of it.
3) Installed a ran both a quick and full scan using MalwareBytes .. it found 3 infected registry keys and 1 infected registry value with Vundo. It supposedly deleted those keys and value. I rebooted and my computer performance didn't improve at all so I ran other anti-spyware programs.
4) Installed and ran VundoFix in both regular and safe mode ... came up clean
5) Installed and ran VundoBeGone in Safe Mode .. came up clean
6) Installed and ran Spy Doctor ... came up clean
7) Installed and ran SuperAntiSpyware .. it detected and deleted some adware cookies but did not find a virus
8) Installed and ran HijackThis ... clean scan (I think)

Even after all this, my laptop performance still sucks. This virus manifests itself by slowing my computer to a crawl about 10 minutes after each reboot. I have a 10 minute window in which I can work on my comp to clear this issue, then my blue light for my hard-drive stops flickering and stays at a solid blue, and it becomes impossible to open anything (I'll click on Notepad, which usually opens in a second or so, and it'll come up like 4 minutes after I click it) or ... Read more

Read other answers
RELEVANCY SCORE 46

Hello, I'm confident SOMEONE will be able to help me fix this. (Note: I am not a computer know-how person, so maybe just assume I'm a little daft in the area of computers when you help me lol.)
 
So my kids' pc suddenly slowed waaay down. So I tried to run AVG 2014. But when I tried, first it wouldn't open. I clicked a few times and nothing. So I right clicked the menu and clicked on "Troubleshoot compatibility". What appeared to be a Windows program ran and downloaded two files "avgrep" and "AppData" and placed them on the computer screen. AVG opened, after a pop up that says "Do you want to allow the following program to make changes to this computer?" Program Name: AVG User Interface Verified publisher: AVG Technologies CA, sro File Origin: Hard drive on this computer. I clicked yes.
 
Next, AVGs home screen pops up. So I click on "Scan Now". It begins to scan, then the whole computer shuts down. First black screen, then blue screen and says a whole lot but I can't read it all, something about a crash dump, etc...then it gets the windows recovery screen with safe mode and other options.
 
I booted in safe mode and successfully ran a whole screen from AVG, however the screen that says what's found and how to fix it never pops up, and it looks weird in safe mode, so I can't be sure but it looks like things are being found. It just never tells me. 
 
I rebooted in regular and all the original problems still exist, including my inability to run AVG. I ... Read more

A:Virus likely, and has made it IMPOSSIBLE to fix!

Really? Nobody knows how to help? Pretty please? Thanks in advance!

Read other 35 answers
RELEVANCY SCORE 46

Dear all,

I have got a problem with my laptop. Since a few days I can?t log-on into Windows XP, all I see is the screen with the XP-logo in the background.
I had waited for 15 minutes a few times and nothing happened, so I decided to reinstall Windows XP but it didn?t work. The laptop showed the message that it couldn?t get a connection to my hardware. I?m afraid it?s a virus.

I would really appreciate if you could give me a hint what happened with my computer and what I have to do now.
Regards,

gero 3000

A:Log-on Into Windows Xp Is Impossible. Virus?

Why not check with the guys at Windows xp home & professional first. They can at least rule out a system fault.They would be the 1st place to try........ it's their field.If you have no luck with them, come back and let us know.

Read other 1 answers
RELEVANCY SCORE 46

I have got a problem with my laptop. Since a few days I can’t log-on into Windows XP, all I see is the screen with the XP-logo in the background. I had waited for 15 minutes a few times and nothing happened, so I decided to reinstall Windows XP but it didn’t work. The laptop showed the message that it couldn’t get a connection to my hardware. I’m afraid it’s a virus.I would really appreciate if you could give me a hint what happened with my computer and what I have to do now.Moderator Edit: Moved topic to more appropriate forum. ~ Animal

A:Log-on Into Windows Xp Is Impossible. Virus?

As this topic is a duplicate of the thread posted here, I am going to close this.

Read other 1 answers
RELEVANCY SCORE 46

Logfile of HijackThis v1.97.7
Scan saved at 3:59:34 PM, on 6/23/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\PROGRA~1\Grisoft\AVG6\avgserv.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\ehome\ehSched.exe
c:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\ehome\ehmsas.exe
C:\Program Files\USB Storage RW\shwicon.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\CTHELPER.EXE
c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
C:\Program Files\ISP50\bin\bartshel.exe
C:\PROGRA~1\Grisoft\AVG6\avgcc32.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\rundll32.exe
C:\PROGRA~1\ISP50\bin\ppshared.exe
C:\P... Read more

A:psw.sclog.c virus is impossible to get rid of!!!!!

Read other 9 answers
RELEVANCY SCORE 45.6

It seems like I've been infected with some variant of FakeVir. I've tried everything to remove it, but the little sucker doesn't show up in the Task Manager and even runs in Safe Mode!


Quote:




Logfile of HijackThis v1.99.1
Scan saved at 8:08:06 PM, on 5/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe (wireless card)
C:\WINDOWS\System32\bcmwltry.exe (wireless card)
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\FileZilla Server\FileZilla Server.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\notepad.exe
C:\Program Files\Azureus\Azureus.exe
C:\Documents and Settings\Administrator\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://google.com/
R3 - URLSearchHook: (no name) - {06492950-9BC7-E616-E828-ECABB816B3E9} - C:\WINDOWS\system32\xaiwn.dll (file missing)
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: Nothing - {f79fd28e-36ee-4989-aa61-9dd8e30a82fa} - C:\WINDOWS\system32\hp2EB3.tmp
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dl... Read more

A:Little known virus, almost impossible to remove (HJT included)

Hello and Welcome. Please subscribe to this thread to get immediate notification of replies as soon as they are posted.

---------------------------------------------------------------------------------------------

Please print out or copy these instructions/tutorial to Notepad as the internet will not (while in Safe Mode) be available to you at certain points of the removal process. Make sure to work through all the Steps in the exact order in which they are listed below. If there's anything that you don't understand, ask your question(s) before moving on with the fixes.

---------------------------------------------------------------------------------------------

I see no evidence of an AntiVirus program on your system. This must be resolved. Here are two very good free Antivirus products which are available:Avast!
AVG
Select one of these, or another of your choice. Download, install, update definitions, and run a full system scan.

---------------------------------------------------

Please download SmitfraudFix (by S!Ri)
Extract the content (a folder named SmitfraudFix) to your Desktop.

Please download the trial version of Ewido anti-malware from here:
http://www.ewido.net/en/download/Install Ewido anti-malware.
When installing, under Additional Options uncheck Install background guard and Install scan via context menu.
When you run Ewido for the first time, you could get a warning "Database could not be found!". Click Ok.
The program will pro... Read more

Read other 1 answers
RELEVANCY SCORE 45.6

Okay, I've done EVERYTHING under the sun to remove this virus called "brontok" or "Bron-Spizaetus". 

 
The thing about this virus is that it's smart as hell.
For example: I would be searching the internet on how to get this virus removed it shuts down my pc if i goto an "antivirus" website.
 
I've had to resort to scripts i found online just to get into my registry editor because this virus disables almost everything.
The thing i hate most about it is that it Disabled the Windows MSI Installer. So i can't install x64 programs or .MSI files. I get an error saying "MSI Installer Cannot be Accessed". - No matter what fix i try it's doesn't change.
 
I'm this close [  ] to reinstalling windows, but what if the virus is deep into my pc and can't be removed? What if it infected my BIOS?  
 
As of right now i'm pretty sure the virus is dormant, because i run these two programs everytime i start me pc "CleanX-II" & "rkill64" without these programs i wouldn't even be able to come to this website because my pc would shutdown.
 
"I cannot attach files becausee i can't browse for any... (because of brontok)"
 

 
Attach.txt
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 12/18/2011 4:24:21 PM
System Uptime: 12/21/2014 6:18:20 AM (0 hours ago)
.
Motherboard: Hewlett-Pac... Read more

A:Impossible to remove virus! - NO JOKE!

Hello potmasterjasper,

Welcome to Bleeping Computer.
My name is fireman4it and I will be helping you with your Malware problem.

Please take note of some guidelines for this fix:
Refrain from making any changes to your computer including installing/uninstall programs, deleting files, modifying the registry, and running scanners or tools.
   If you do not understand any step(s) provided, please do not hesitate to ask before continuing.
   Even if things appear to be better, it might not mean we are finished. Please continue to follow my instructions and reply back until I give you the "all clean".
In the upper right hand corner of the topic you will see a button called Follow This Topic.I suggest you click it and select Immediate E-Mail notification and click on Follow This Topic. This way you will be advised when we respond to your topic and facilitate the cleaning of your machine.

   Finally, please reply using the Post  button in the lower right hand corner of your screen. Do not start a new topic. The logs that you post should be pasted directly into the reply, unless they do not fit into the post.
  I will be analyzing your log. I will get back to you with instructions. Please download Farbar Recovery Scan Tool and save it to your Desktop.Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will ... Read more

Read other 3 answers
RELEVANCY SCORE 45.6

Hello all you kind people
Thanks in advance for all your help. Would have to just cut my losses and reformat my pc if it wasn't for resources like these!

So basically my laptop (windows 7) has been acting weirdly for the last few days. I've run countless scans using pretty much everything under the sun, and it detects win32 viruses and removes them but this still doesn't solve my problem!

I switched antiviruses since I got the infection, from Mcafee to Kaspersky IS 2011 then to AVG internet security 2011. When I tried to run a kaspersky scan on normal or safe mode, it would get to maybe 20-30% then switch itself off, same with AVG in safe mode. I can run AVG in normal mode and it finds nada.
Also, the other day I had my google account hacked and the password changed, as well as my megaupload premium account and passwords. I have now managed to get those back safely but I strongly believe that this was linked to my malware woes.

In addition to antivirus scans, I've run several online scans; panda, eset and trendmicro. trendmicro found nothing, panda is still running and eset found a virus, i think it was win32 again, in a directory to do with my windows media player, and i chose the option to delete it and I couldn't find the file after that so I presumed it was gone.

Also, I've run MBAM, full and quick scans, all of which have found nothing; and spybot which on first run found a win32 virus of some description but says it deleted it....

... Read more

A:infected with virus/trojan thats impossible to get rid of!

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the ... Read more

Read other 2 answers
RELEVANCY SCORE 45.6

This redirect virus is causing me a great deal of trouble. I've tried TdSSKiller, Malwarebytes, Kaspersky IS 2010, and a bunch of others - and it won't die.

I'm on XP SP2. It redirects links from everything, mostly Google, but it also redirects wikipedia searches, sometimes just any link from a webpage I'm on. Different ads pop up - it never seems to end up at the same site. It also lags for about 20-30 seconds before redirecting - just sits there after you click the link. Anything you could do to help me would be appreciated.

Here is the DDS - I've attached the GMER and Attach.txt files that I'm supposed to in ZIP format:


DDS (Ver_10-03-17.01) - NTFSx86
Run by HP_Administrator at 13:03:41.79 on Tue 08/10/2010
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_03
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.397 [GMT -7:00]


============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\dllhost.exe
C:... Read more

A:Evil, Impossible Redirect Virus

Hello bloomingdedalus,

I'd like to see a scan from a different rootkit scanner. Please download Rootkit Unhooker and save it to your desktop.

Close all open programs and browsers, then double-click RKUnhookerLE.exe to run it.Click the Report tab, then click Scan
Check Drivers, Stealth Code, Files, and Code Hooks
Uncheck the rest, then click OK
When prompted to Select Disks for Scan, make sure C:\ is checked and click OK
Wait till the scanner has finished then go File > Save Report
Save the report somewhere you can find it. Click Close
Copy the entire contents of the report and paste it in your next reply.

Note** you may get the following warning. Please click OK to continue:

"Rootkit Unhooker has detected a parasite inside itself!
It is recommended to remove parasite, okay?"

Read other 19 answers
RELEVANCY SCORE 45.6

I have a persistent virus, I've done malwarebytes scans, Norton scans, Hijack this, I tried to uninstall IE8 and reinstall it, And still I have a persistent pop-up blocking me from sites. Now my norton is repeatedly warning me that it just blocked an attack on my computer describing it as: : "Network traffic from 86b6b96b.com matches signature of known attack. The attack was resulted from \DEVICE\HARDDISKVOLUME2\WINDOWS\SYSTEM32\SVCHOST.EXE" I can't locate it to remove it, and apparently neither can all these scans.. Killing me.. Any Ideas? THANKS..
 

Read other answers
RELEVANCY SCORE 45.6

i'm new on this forum, hi everyone, i got a virus or adware i don't know. i used adwcleaner, malware bytes removal tool, and then combofix, none of these has worked. these tools remove many viruses but when i restart i can see again their processes. simptoms are new start page on browsers, websearch instead google search, winrar updater, google chrome updater and java updater want to update these programs. what can i do. here is the combofix log. i hope it can help. thanks in advance 
some suspected processes are exttag.exe and many others with some strange name composed by letters and numbers.
i was able to remove many adware before now, using just adwcleaner but now, none of them is working. please help.
sorry for my bad english

A:impossible to remove a virus/Adware

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Download the version of this tool for your operating system.Farbar Recovery Scan Tool (64 bit)Farbar Recovery Scan Tool (32 bit)and save it to a folder on your computer's Desktop.Double-click to run it. When the tool opens click Yes to disclaimer.Press Scan button.It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.===Wait for further instructions.

Read other 6 answers
RELEVANCY SCORE 45.2

hey mate, it fixed half of my problmes, the blue bg came out, and the popup messages on the clock bar stoped, but for some reason my computer still have problems, every time i connect to the interent it start to send emails all over the shop. My norton 2005 start to showing that thing when it scans for messages that are being send...

and what its even stranger is the fact that outlook is not even on...

do you have any magic tricks for that????

cheers, dan
 

A:virus sending emails - impossible to clean

hi everyone,

i'm having this problem with virus on my computer. and I can't fix it. Norton 2005 won't pick it up, i've tried spybot, ad-aware, hijackthis, ewido, microsoft anti-spyware, online sacan housecall trend micro, now i'm downloading mcafee. but nothing seems to work.

I got a virus, that had that blue screen with a black box on the desktop, saying your computer is infected... i've fixed this one with some instructions from this forum.

But, my computer still infected, every time i conect online, my norton start scannig for email messages that my computer is sending [even with outlook off..] i get those yelow little boxes saying scaning message 1 of 1, and that fills my screen with it. Than some errors start to show: "couldn't send this message because server not responding..."

All message have on the subject somehting like Re[8]:.

So i can't remove this virus, tried everything, i know what are you thinking, just format the computer... You are probablly right, if you get all the time i spent on this computer trying to fix it, i've would have finished reinstalling everything.

But now it's a metter of honour, i need to get this thing out of my computer, and my pc has so many programs and files that will take me one week to have everything back the way it is, if i format it... if you know what i mean...

Well, the question is. does anyone had this problem b4, and fix it without formating????

can someone hel... Read more

Read other 2 answers
RELEVANCY SCORE 45.2

Hi there,

I'm working on a friend's computer. Her computer was acting weird about a week ago. I did system restore. When I was working on that, I found a hijack virus that had hidden all of her files. I used Malware bytes and rkill in the process and was able to restore all her files.
Now she brought me the computer again saying there was a power outtage and when it came back the computer went through a loop trying to do a startup system repair. I tried letting it do that, but then it came back asking me for a password which apparently doesn't exist. It doesn't let you do anything else, so I restarted. It goes through the loop again.

I have a norton antivirus/antispyware 2011 trial, so I then tried to boot up the computer using that. It goes through scanning and all that. Says it removed 2 trojans.
But then, it brings me to a repair screen where it has something it can't remove. I clicked on details. This is what it says:
Hosts: c:\windows\system32\drivers\etc\hosts

I can't seem to do anything else. I tried to close all of Norton, but then it takes me through the loop again, unless I boot the computer using the disk again. So I did that.
After some of the scanning, Norton has a link for the command prompt. I thought HORRAY! But once I'm there, it won't let me do anything on c:\
Instead, I'm on x:\Windows\System32
I tried finding the file above, c:\windows\system32\drivers\etc\hosts
but it says it does not regognize.
So I tried x:\windows\system32\drivers\etc\hosts
... Read more

A:Nasty trojan virus seems impossible to remove

I still need a miracle with this. I thought I might be able to get at least someone here who had to deal with this virus and defeated it. :(
Please, please if you've had to deal with this or you have an answer, I would love you forever!

Read other 2 answers
RELEVANCY SCORE 45.2

Hi, I've been hacking at this Google Redirect for hours now to no avail - it takes me to some site when I click on a search result which immediately directs me to another site.One of the sites it directs me to first is called "n-tuff.com/clickn.php" or something along those lines.I've tried Malwarebytes Anti-Malware, Ad-Aware, Spybot, Kaspersky Internet Suite 2010 updated, SuperAntiSpyware.The various programs have found a few mallicious things, but still haven't killed this redirect virus. When you click on a google link - it sits for about 10-30 seconds then redirects to an advertisement. I am attaching first the Hijackthis report.Hijackthis:Logfile of Trend Micro HijackThis v2.0.4Scan saved at 7:26:02 AM, on 8/8/2010Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.17055)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exeC:\WINDOWS\system32\DRIVERS\CDANTSRV.EXEC:\WINDOWS\eHome\ehRecvr.exeC:�... Read more

A:IMPOSSIBLE to kill Google Redirect Virus

Just tried SuperAntiSpyware to no avail.

Also did TDSSkiller and it detected no threats. This sucker is impossible to find. I'll keep browsing other people's redirect problems hoping to find something.

Running GMER now - but I'm not certain if I know how to identify anything.

It seems to simply crash out Firefox 3.0.19 occasionally as well after churning when clicking on a link.

A few times it has done this with links not related to Google.

Read other 1 answers
RELEVANCY SCORE 45.2

Hello all i have this problem:
my pc started to have daily BSOD of windows 7 64 bit - then i found a virus with Kaspersky Pure scan that deleted it.
 
After that the pc is still very slow and if i run any antirootkit program it crash with a blocked end blurried screen.
 
Can someone help me? 
 
Ross

A:Impossible to run any antirootkit program after a virus disinfection

Hi there,my name is Marius and I will assist you with your malware related problems.Before we move on, please read the following points carefully. First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding. Perform everything in the correct order. Sometimes one step requires the previous one. If you have any problems while following my instructions, Stop there and tell me the exact nature of your problem. Do not run any other scans without instruction or add/remove software unless I tell you to do so. This would change the output of our tools and could be confusing for me. Post all logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts. If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed. Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean. My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.    Scan with FRST (Recovery Environment)To run FRST on Vista and Windows7:For x32 (x86) bit systems download Farbar Recovery Scan Tool and save it to a flash drive.For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.Plug the flashdrive into ... Read more

Read other 52 answers
RELEVANCY SCORE 45.2

My computer is infected with a virus that redirects google results to other pages on Mozilla Firefox. I've tried nearly every anti-virus program available, and none of them have been able to remove it. My computer is a desktop machine, it's Windows 7 64-bit. Any help would be appreciated!DDS (Ver_2011-08-26.01) - NTFSAMD64 Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_22Run by Carol at 16:16:46 on 2012-03-26Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6007.3898 [GMT -4:00].AV: AVG Anti-Virus Free Edition 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}SP: AVG Anti-Virus Free Edition 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}.============== Running Processes ===============.C:\Windows\system32\wininit.exeC:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k netsvcsC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k NetworkServiceC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:�... Read more

A:Google redirect virus, impossible to remove!

Hello and Welcome to Bleeping Computer!!My name is Gringo and I'll be glad to help you with your computer problems.I have put together somethings for you to keep in mind while I am helping you to make things go easier and faster for both of us1.Do not run any other tool untill instructed to do so!doing so will only at best cause you unneeded worry as it finds our backups and may even list our toolsand at worst can cause conficts with our tools and lead to unforseen things to happen2.Please Do not Attach logs or put in code boxes.besides the time it takes me to open the reports it makes it harder to find something if I need to go back to do more research and putting them in code boxes just makes them so hard to read3. After each step give me a little feedback It does not need to be long but just something so I know how things are going it can be something likeI am still getting redirectedThe computer is running as it shouldDon't put things like - it is the same as before or still the same this just makes me go back and look for you last feedback as to how things are4. read every post completely before doing anythingPay special attention to the Notes** I have put inThese are things I have found that happen allot and can be taken care of easily just by reading the Notes**Click on the Watch Topic Button and select Immediate Notification and click on proceed, this will help you to get notified faster when I have replied and make the cleaning process faster.Back... Read more

Read other 8 answers
RELEVANCY SCORE 44.8

I was just wondering if there is something that exists like this..thanks
 

A:Is there any virus, spyware, adaware, or hijacker thats impossible to remove ??

With the pros here, like Flrman1, DVK01 and Cookiegirl, et. al. - I doubt it!
 

Read other 2 answers
RELEVANCY SCORE 44.8

Symptom 1: I keep getting browswer pop-ups even when IE isn't open. They are adds for online casino and sometimes spyware removal tools (ironic isn't it) If I am offline, they still appear only they are blank.

Symptom 2: I sometimes get system alerts telling me that my computer is infected (no joke!). I have recognised the process as helper.exe in the task manager. If I end the process when the alert fires, it dissapears.

symptom 3: I get a yellow triangle in my taskbar with an exclamation mark in the middle. It tells me that I have x amount of infections on my computer and that I should upgrade my security software. This also appears to be the helper.exe process!

It seems to be the same problem that this guy had

http://computercops.biz/postitle107987-0-0-.html

I did as many of the same things as were relevant to my machine but to no avail.

I have also completed the Major Geeks basic removal process but still I get these annoying symptoms. I have searched everywhere online and haven't been able to find any information about this hijacker/virus.

I read your sticky on posting logs and did everything requested.

I have used

Hijack this
Adaware SE with the special plugin
Spybot Seek and Destroy with the plugin
CCcleaner (cleaned everything)
Spyware Blaster
Vet Antivirus
Cool Web Shredder
aboutbuster
kill2me
ADSD spy utility
Microsoft malware remover
McAfee stinger


I did all of this in safe mode too.

No matter what I do, nothing seems ... Read more

A:Taskbar/Desktop Hijacker/Virus - Tried everything. Impossible to remove! Please help!

Let's use a program to scan for any trojans that may exist. Download TDS-3. Learn how to use it here. Make sure to update it after you installed it. You can get the manual updates here. When you launch the program, it will scan your memory for running processes. This will take less than 30 seconds. Next go to System Testing on the menu and choose Full System Scan. After that's finished, post the log file by selecting everything on the top pane (select from bottom to top). If any alarms are found, it will be listed in the bottom window. Please copy and paste that here also if it applies.

==========

Download StartDreck http://www.greyknight17.com/spy/StartDreck.zip

Unzip to its own folder and start the program:
Press 'Config'
Press 'mark all'

Uncheck the following boxes only:
System/Running Process -> List Modules
System/Drivers -> NT Services
System/Drivers -> NT Kernel- and FS-drivers
Press 'OK'

Press 'Save' and select the location to save the log file (default is the same folder as the application)

Post the log in this thread.

Read other 13 answers
RELEVANCY SCORE 44.8

My main desktop PC (configuration below) worked fine accessing the Internet via Firefox, I.E., and Chrome until yesterday morning when AVG found and deleted these "dangerous" infections that had to have come via Firefox since it was the only software in use:
C:\Windows\SysWOW64\AdpeakProxy.dll
C:\Windows\SysWOW64\Adware Generic5.AKMV
C:\Windows\SysWOW64\Adware Generic5.AKOC
C:\Temp\ScorpionSaver.exe

Agent Ransack confirms that all 4 of those files are NOT present now anywhere on C:\.

Since the AVG deletions, I've had no Internet Access via Firefox, I.E. 11, or Chrome, even though \ControlPanel\Network and Sharing says the computer is connected and \ControlPanel\Internet Properties says "You are already connected to the Internet".

I have tried System Restore for December 17, 13, 10, and 3. All completed successfully, but still no Internet Access even though Control Panel says it's connected.

My laptop and backup computer (using it now but hate to) work fine on the same cable modem connection for FF, IE, and Chrome.

Seven Forums has been very helpful previously, and I'm crossing my fingers
that someone wiser than me can help me to straighten out this very vexing snag.

Thanks in advance for your help.


Machine Setup:
Windows 7 Home Premium (x64) Service Pack 1 (build 7601)
3.00 gigahertz AMD Athlon II X4 640
512 kilobyte primary memory cache
2048 kilobyte secondary memory cache
64-bit ready
Multi-core (4 total), Not hyper-threaded
2000.40 Gig... Read more

A:Virus Deletion Now Makes Internet Access Impossible

  
Quote: Originally Posted by Florida Rene


My main desktop PC (configuration below) worked fine accessing the Internet via Firefox, I.E., and Chrome until yesterday morning when AVG found and deleted these "dangerous" infections that had to have come via Firefox since it was the only software in use:
C:\Windows\SysWOW64\AdpeakProxy.dll
C:\Windows\SysWOW64\Adware Generic5.AKMV
C:\Windows\SysWOW64\Adware Generic5.AKOC
C:\Temp\ScorpionSaver.exe

Agent Ransack confirms that all 4 of those files are NOT present now anywhere on C:\.

Since the AVG deletions, I've had no Internet Access via Firefox, I.E. 11, or Chrome, even though \ControlPanel\Network and Sharing says the computer is connected and \ControlPanel\Internet Properties says "You are already connected to the Internet".

I have tried System Restore for December 17, 13, 10, and 3. All completed successfully, but still no Internet Access even though Control Panel says it's connected.

My laptop and backup computer (using it now but hate to) work fine on the same cable modem connection for FF, IE, and Chrome.

Seven Forums has been very helpful previously, and I'm crossing my fingers
that someone wiser than me can help me to straighten out this very vexing snag.

Thanks in advance for your help.


Machine Setup:
Windows 7 Home Premium (x64) Service Pack 1 (build 7601)
3.00 gigahertz AMD Athlon II X4 640
512 kilobyte primary memory cache
2048 kilobyte secondary ... Read more

Read other 9 answers
RELEVANCY SCORE 44.8

Hello there,I have malware in my computer, amongst others scvhost.exe, listening to port 135. I noticed because:- The computer was running astonishingly slowly- Every time I turned it on, Zonealarm asked me if I allowed scvhost.exe to act as a server on 0.0.0.0:135, and then on other ports- The command "net view" on the DOS console sends me back error 1231- I can no longer connect to my home network with my computer (but connecting to Internet works very well)I usually run Avast + ZoneAlarm + Spyboot search & destroy + Spyware blaster. Since I detected that I was infected I have downloaded and installed BitDefender and turned ZoneAlarm and Avast off.First BitDefender Scan found one malware which it erradicated. Further BitDefender thorough scans do not detect anything (neither do any scans with other antivirus/antispyware) but some minutes after turning the computer on and having done one clean scan, BitDefender says it is blocking on "standard" backdoor malware (cf attachment).Is there any other option than reinstalling windows?Please find below the extract of today's highjack this' post.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 10:21:55, on 25/01/2009Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16762)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32�... Read more

A:Malware detected but impossible to find with anti-virus

Hi NiceRabbit,Welcome to BC HijackThis forum and sorry for the delay. I am farbar. I am going to assist you with your problem.Please refrain from making any changes to your system (updating Windows, installing applications, removing files, etc.) from now on as it might prolong handling your log and make the job for both of us more difficult.Tell me if you have done anything since previous post. Or you have run any other tools. Also tell me how is the current condition of your computer.

To get an idea about the current condition of you computer download random's system information tool (RSIT) by random/random from here and save it to your desktop.Double click on RSIT.exe to run RSIT.Set the scan files/folders to 3 mounts.Click Continue at the disclaimer screen.Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)

Note 1: If you have difficulty finding the logs, the logs are in this folder: C:\rsit

Note 2: The tool takes not more than one minute to scan the system.You might want to save this page on your favorites, so you can find it again when you return.

Read other 10 answers
RELEVANCY SCORE 44.8

I have recently noticed every 15 mins roughly, a notification from Nortin Internet Security saying it has detected a risk/virus called Dialer.Dialplatform. I clicked on scan, and it said I would have to close all my internet browsers to do it. Great it says it has removed it. 15 minutes later I recieve the same message again, and it just keeps going... . Also, I have noticed that when it scans for the risk, it goes into temporary internet files (and yes I have cleared my cookies etc, and even when I view hidden operating system files, I still can't find that path name). Also, I keep recieving another message from Norton saying it is blocking WIN(random 4 character name).exe from accessing 69.50.184.133 on port 80 (http). When I look in my Win\temp\ i find some blank .tmp files and the attacking .exe file. Of course, when I try and remove it using a full sys scan, it is only replaced. I have visited the Norton website and couldn't find one of th reg keys or files I should. Also, I used Ewido and although it found it (under the name trojan.dialer.oy) it still keeps coming back!! I have used HijackThis to produce this log:

Logfile of HijackThis v1.99.1
Scan saved at 20:32:07, on 26/04/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program F... Read more

A:Solved: Dialer.dialplatform virus - removing is impossible!

Hi, Welcome to TSG!!

* Click Here and download Killbox and save it to your desktop.
* Download the trial version of Ewido Security Suite here.
Install ewido.
During the installation, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
Launch ewido
It will prompt you to update click the OK button and it will go to the main screen
On the left side of the main screen click update
Click on Start and let it update.
DO NOT run a scan yet. You will do that later in safe mode.
* Please download ATF Cleaner by Atribune.
This program is for XP and Windows 2000 only

Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browser
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browser
Click Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.
* Now copy these instructions to notepad and save them to your desktop. You will need them to refer to in safe mode.

* Restart in safe mode by tapping the F8 key when the computer begins to reboot.

Run HJT again and put a check in the following:

O20 - Winlogon Notify: wineij32 - wineij32.dll (... Read more

Read other 3 answers
RELEVANCY SCORE 44

I have been fighting a virus for weeks that I simply can not "find" or fix. I have tried tons of anit-virus programs and recommendations, including AVG (free, both in Windows and booted from DVD), a "special" AVG file sent to me by them (AVG_remover_all, probably part of paid pckge?)), Avast(free), Malwarebytes, FarBar, aswMBR, RogueKiller, RKill, HitmanPro, UnHackMe, Greatis, TDSSKiller, and Kaspersky... This is an MBR virus that uses scvhost for hooks(?)... I'm 95% sure I got this right (or close enough). First, Kaspersky logs show,most importantly,==================================================11/25/14 8:18 PM OK sdc3/MININT/SYSTEM32/PCA_OPT.DLL11/25/14 8:18 PM OK sdc3/MININT/SYSTEM32/MBR.DLL/#11/25/14 8:18 PM OK sdc3/MININT/SYSTEM32/MBR.DLL/#/HDDImage11/25/14 8:18 PM Packed: HDDImage sdc3/MININT/SYSTEM32/MBR.DLL/#11/25/14 8:18 PM OK sdc3/MININT/SYSTEM32/PCA_MSG.DLL================================================== 
 HDDImage.jpg   44.12KB
  0 downloads  
 svchost-services.jpg   84.11KB
  0 downloads  From my novice (virus) knowledge base, but with a "programming history" - a bank programmer for 1+yr in early 80s until I decided I didn't like - and STILL BEEN DOING IT FOR MYSELF+ FOR the 30+yrs since, but on a lmited scale (VBA, MacroExpress).... and with lots of "virus surfing", my understanding is that an MBR virus has "packed" or "zipped" files hiding it's code that is substitut... Read more

A:"Memory Monster" Virus (scvHost) impossible to find/eradicate

Hello and welcome to Bleeping Computer! I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.
We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.
To help Bleeping Computer better assist you please perform the following steps:
*************************************************** In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/557694 <<< CLICK THIS LINK
If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.
***************************************************If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of t... Read more

Read other 4 answers
RELEVANCY SCORE 43.6

Hello folks!
i am having some problems with my system.
im using a acer extensa 2001lm_512 notebook with windows xp.
i know its my own fault having problems because i surfed the net unprotected for 2 days.
i had norton antivirus 2004 installed but it is not working anymore.
i spent some time reading here and have done the following:
installed ad-aware, spybot, zonealarm. used fix-agent and cwshredder.
had my system scanned online at RAV.
installed a 30day trial antivirus software and tuneup2004 trial.
ran virus scans and found a lot of them and got rid of what i found.

so, now i am having these problems with my computer being really slow---opening folders takes a long time, displaying icons takes time to load.
random programs having problems and being closed.
antiviruskit-guard telling me of prevented virus infections in folders i can not find searching for. and of course the problem with not being able to shut my system down.
so i finally downloaded hjt and hjt-analyzer and iw ould really appreciate it if you could help me out a bit because i do not know how to fix my problems.

i have been here before some time ago and i know you guys are experts and friendly ones as well
thanks for any help and please excuse my poor english

Log was analyzed using HijackThis Analyzer - Updated on 12/4/04
Get updates at http://www.greyknight17.com/download.htm#programs

Logfile of HijackThis v1.98.2
Scan saved at 15:28:03, on 05.12.2004
Platform: Windows XP SP1 (... Read more

A:hijacked, virus-infected, shut-down impossible, slow, and a newbie as a user :)

Hi
Just remove this file from your drive...

O4 - HKLM\..\Run: [preload] C:\Windows\RUNXMLPL.exe

Read other 1 answers
RELEVANCY SCORE 40.4

We tried to launch Windows on Safe Mode without success, we're still getting the Sacem Police Security windows.
The Virus is operating in our Windows XP computer and called Sacem.
Please if you could advice us on what to do?
Kindly

A:Sacem Virus on Windows XP Impossible to Start Windows even in Safe Mode

Hi sony12,Do you have a Windows XP CD available?If you do, let's try to boot your computer using the Ultimate Boot CD for Windows (UBCD4win).Please print this guide for future reference!You will need a blank CD, a clean computer and a flash drive.Please follow the steps below and let me know if you were successful. If you were unable to create the UBCD4win, please tell me what error messages you got and/or what steps you got hung up on. 1. Download and Run Ultimate Boot CD for WindowsSave it to your Desktop.Double-Click on the UBCD4Win.EXE that you just downloaded to your desktop.Follow all of the instructions/prompts that come up.
NOTES:Do not install to a folder with spaces in it's name.Your Anti-Virus may report viruses or trojans when you extract UBCD4Win, these are "False-Positives." Read HERE for information regarding the files that normally trigger AV software.2. Insert your XP CD with SP1/SP2/SP3 into a CD Rom driveDouble-Click on UBCD4WinBuilder.exe located in your C:\ubcd4win folder.Click "I agree" to the Builders License.Click NO to Search for Windows Installation FilesMake the following selections from the Main Screen that pops up:BuilderSource:(path to Windows installation files)Enter the path to the drive where your XP CD is located.You can click on the "..." button on the right to navigate to the path as well.Custom: (include files and folders from this directory)No information is necessary, leave blank.Output: (... Read more

Read other 4 answers
RELEVANCY SCORE 32.8

I have a relatively new Dell XPS 410 running Windows XP Media Center Edition. I am extremely exasperated over a problem that seems unfixable. Every time I start the computer, I get a pop-up appearing right before the user log on screen. It says "Fixed" and will not let me exit out, so I can only perss "OK" to bypass it. The log on screen is normal and any user can be selected to log on. But, when selcted to log on, it loads personal settings, flashes the desktop and immediately logs off and saves the settings. I can not get to the desktop, so I can not scan for viruses or delete files. I really don't want to hear the computer is forever inoperable. Any advice would be appreciated!
 

A:Please Help-log On Impossible!

Read other 7 answers
RELEVANCY SCORE 32.8

Ok XP PRO...but I ain't no pro and my grammar sucks!

I was messing with the file associations...

Now I can't open folders in the same window anymore.
Nor can I delete the associations I had made.

My Computer -> C: -> same tree

after that

XYZ folder and its subs all open independently

DESPITE FOLDER OPTIONS BEING RESET AND RECONFIGURED!

Is there any way to fix this? Other than a reinstall?
 

A:Maybe impossible to help me...

If you have a recent restore point you can go that route and restore your computer to a point before you changed this.Any other programs or settings will revert back to that time.
 

Read other 2 answers
RELEVANCY SCORE 32.8

I have a relatively new Dell XPS 410 running Windows XP Media Center Edition. I am extremely exasperated over a problem that seems unfixable. Every time I start the computer, I get a pop-up appearing right before the user log on screen. It says "Fixed" and will not let me exit out, so I can only perss "OK" to bypass it. The log on screen is normal and any user can be selected to log on. But, when selcted to log on, it loads personal settings, flashes the desktop and immediately logs off and saves the settings. I can not get to the desktop, so I can not scan for viruses or delete files. I really don't want to hear the computer is forever inoperable. Any advice would be appreciated!
 

A:Please Help Me...log On Impossible!

Read other 10 answers
RELEVANCY SCORE 32.8

I have installed on my computer a new PC only version of Windows 8. I've not purchased a new PC for about 8 years so its impossible it came with the computer, I built the computer myself.

I remember I brought an upgrade copy of Win8 in error, I got it from PC world. I still have those disk but now I also have this new PC version. I remember going back to PC to tell them I brought it in error I also remember calling the MS helpline.

Can anyone make sense of this? How did this copy come to be working on this computer?

I'm currently wanting to do a clean install but I can't because I can't workout what happened in the past

HELP

Cheers
 

A:How is this even impossible?

Sounds like you may have an OEM System Builder versions of Windows 8. It is intended to be installed by someone or a company building a new computer that is to be resold. That particular version includes a personal use license which allows anyone to buy an OEM System Builder copy of the software and install it on a (new or old) PC that is intended for personal use. It should have come with an installation key.

Here is some more information on the ZDnet web site.

http://www.zdnet.com/everything-you-need-to-know-about-your-windows-8-1-upgrade-options-7000021554/
http://www.zdnet.com/microsoft-radically-overhauls-license-agreements-for-windows-8-7000002866/
 

Read other 3 answers
RELEVANCY SCORE 32.8

I have five computer equipped whit Win 2000 french edition. And some Win 2000 dont want to load the profil of the user ??? It take 2 or 3 reboot after it works ??? Whath I do wrong during the installation ??? The user are not defind on the machine but on the domaine ...help !!! Sorry for my english
 

A:Win 2k bug ????? Impossible =)))

Greetings

What errors are you getting? What happens when a user logs on? Are the profiles on the server or are they all on the local machine?

Cheers
------------------
Reuel Miller
Windows NT Moderator (yes, that does make me biased )

[email protected]

Website: www.xperts.co.za/reuel/multiboot

Every morning is the dawn of a new error...
 

Read other 3 answers
RELEVANCY SCORE 32.8

I have a folder in my external terabyte that appeared some time ago. I can not delete it with any software. I tried to delete with DOS and it says all the same. The problem is that it will not let me downgrade it to a write-able format. It seems to be locked in READ ONLY status. I have attempted to take ownership of the drive and the files, but I can not get rid of it. When I first noticed it, it was random letters. When I tried to delete the file it turned into many many "Z's". When I ran the DOS delete protocol it changed into 6 "Z's"; with in that folder is a empty folder called "Update". Since then I have not been able to do anything about it. I don't know what to do. I even downloaded a program called Delete on Boot, and still no success. I have been coming here for about a year when I caught the Rogue Internet Security 2010. It was since then, 12/30/09 the day that i reformatted to yield to the virus's victory that the file first appeared in the external hard drive. I am wits end and I know someone out there can help me. Please tell me what to do. I was told that it was very complex and destructive hack file. Am I infected again?

Read other answers
RELEVANCY SCORE 32.8

I'll start my request with a copy of my original question posted elsewhere on this site, where I was then referred here.

Is this impossible?

--------------------------------------------------------------------------------

Is there any way to stop Virtu Monde popups? Somehow, I have become infected. Nothing seems to stop this creature. I have NIS installed. It doesn't help. I have Windows Defender installed. It doesn't help. My settings are set to block all popups. It doesn't help. Spyware Doctor will remove Virtu Monde a hundred times a day, but it always keeps comming back. I don't want to remove Virtu Monde a hundred times a day. I want to stop it from placing popups on my computer in the first place. Is this possible. If so, how do I do it?

Thank you in advance,

Likekinds


Hello likekinds

Spyware Doctor is not cleaning it all out.

The only way to totally get rid of it is by using HijackThis

You should post a HijackThis log. The experts on the forum there will clean it all up for you

http://www.techsupportforum.com/secu...this-log-help/

Read the Red sticky at the top first
IMPORTANT - Read This Before Posting For Malware Removal Help

Do all you can from the instructions. If you can`t run something just miss it out and post the log anyway with a brief description of your problem
__________________

-----------------------------------------------------------------------------------------------------
I followed all instructions as be... Read more

A:Is This Impossible #2

It appears as though you stopped at Step 2

Download Deckard's System Scanner (DSS) to your Desktop. Note: You must be logged onto an account with administrator privileges.

Note:

DSS automatically runs HijackThis for you, but it will also install and place a shortcut to HijackThis on your desktop if you do not already have HijackThis installed.

Close all applications and windows.
Double-click on dss.exe to run it, and follow the prompts


If the following message from DSS appears, please click on "Yes" to allow it to download HijackThis, if you don't already have it.



Allow DSS through your firewall to download HijackThis by clicking "OK"




DSS has installed HijackThis, and placed a shortcut on your desktop. Click "OK" to allow the scan to continue.




.
When the scan is complete, two text files will open - main.txt <- this one will be maximized and extra.txt <-this one will be minimized
Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt here.
Please attach extra.txt to your post.
To attach a file to a new post, simplyClick the[Manage Attachments] button under Additional Options > Attach Files on the post composition page, and
copy and paste the following into the "Upload File from your Computer" box:C:\Deckard\System Scanner\extra.tx... Read more

Read other 19 answers
RELEVANCY SCORE 32.8

i want to get email to cycle through signatures.

1st email sig would be 'abc', second email sig, 'def', third 'hij' and so on, is there any way to do this short of manually entering the sig?

using commonly available hotmail and Yahoo controls?

Read other answers
RELEVANCY SCORE 32.8

In Outlook 98, if you permanently delete messages from your deleted folder, how can you get that data back? I know it can be done because our former IT person used to do it. Our back-up pst file does not have the lost data either. Is there help out there?
 

A:Is this impossible?

I have heard that on the Microsoft website they have the info for this.
Sorry that I don't have the time now to find it for you.
 

Read other 2 answers
RELEVANCY SCORE 32.8

Is there any way to stop Virtu Monde popups? Somehow, I have become infected. Nothing seems to stop this creature. I have NIS installed. It doesn't help. I have Windows Defender installed. It doesn't help. My settings are set to block all popups. It doesn't help. Spyware Doctor will remove Virtu Monde a hundred times a day, but it always keeps comming back. I don't want to remove Virtu Monde a hundred times a day. I want to stop it from placing popups on my computer in the first place. Is this possible. If so, how do I do it?

Thank you in advance,

Likekinds

A:Is this impossible?

Hello likekinds

Spyware Doctor is not cleaning it all out.

The only way to totally get rid of it is by using HijackThis

You should post a HijackThis log. The experts on the forum there will clean it all up for you

http://www.techsupportforum.com/secu...this-log-help/

Read the Red sticky at the top first
http://www.techsupportforum.com/secu...oval-help.html

Do all you can from the instructions. If you can`t run something just miss it out and post the log anyway with a brief description of your problem

Read other 1 answers
RELEVANCY SCORE 32.8

Hi! I'm new here -- noticed that a few people had the same problem I'm having with IE Pop-Ups, so I thought I'd look for some help. Spyware scans and pop-up stoppers couldn't cut it and my virus scanner finds nothing wrong.

Though I can only check back here every now and then, and not on the weekends (I apologize in advanced for slow replies), I was hoping that someone might have some ideas on where to go to fix this!

Thanks for your time!

Logfile of HijackThis v1.99.1
Scan saved at 8:58:20 AM, on 6/16/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\BELARC\BELMON~1\BANTMonitorSvc.exe
C:\WINDOWS\system32\LckFldService.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\thiselt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFREE.EXE
C:\WINDOWS... Read more

A:Impossible IE Pop-Ups!

Read other 16 answers
RELEVANCY SCORE 32.8

Hey guys it's me again with my annoying and those that seem to be impossible-to-fix-problems.

Well 3 months ago i bought an AMD 5600+ Dual Core and i had lots of problems since then, believing it was defective, i wrote to AMD support and requested an RMA. My replacement arrived today. It fixed LOTS of random crashes and my computer was able to boot up properly with both rams placed on in dual channel. I went to play on Soulstorm, it crashed, sometimes half way through a game or sometimes about 5 minutes into the game. I went on another game which is Company of Heroes, it crashed too.

The only reason i tested these 2 games was because they crashed most of the times when i had the defective processor.I thought it was the RAM but i thought it wouldn't make any sense because while waiting for my replacement to arrive, i put in my old AMD Athlon 3500+ and it worked fine with EVERY SINGLE games so it couldn't be the RAM and it can't be the replacement either. Not knowing what else to do, i took one stick of ram out, and guess what? It worked like a charm ! I really have no idea what's going on inside but if anyone had been through this or anyone who knows how to fix please help and....ermm if it works you'll be able to rest assured that a person on earth is grateful and just wants to kill you with hugs XD

BTW this is my spec:
Abit AN52
OCZ PC26400 platinum edition
Radeon Sapphire 1950x Pro
AMD 5600+ Dual Core
Arctic Cooler 64 Pro
Late... Read more

A:Impossible! I need some serious help

Have you switched the ram modules around to see if it is stable with either one installed?
 

Read other 6 answers
RELEVANCY SCORE 32.8

There are some files on my flash drive that are no longer visible, i know they werent deleted because the data still shows up in the properties...I tried allowing it to to show hidden and system files in folder options, nothin. i even tried running a command to show hidden files to no avail...please help

xp asus notebook and vista acer desktop, same thing on both... i also tried a file recovery program and all it would come up with is previously deleted files

Read other answers
RELEVANCY SCORE 32.8

i want to get email to cycle through signatures.

1st email sig would be 'abc', second email sig, 'def', third 'hij' and so on, is there any way to do this short of manually entering the sig?

using commonly available hotmail and Yahoo controls?

Read other answers
RELEVANCY SCORE 32.8

ok so i had just got one of my old laptops to work again and i was very happy. Then one of my sisters wanted to use it so i let her use it. I got it back, but when it was returned it had two viruses on it. One was Windows police pro and the other was Protection System. I am sure i got rid of Police pro but i cant get rid of protection system. I tried to download Malware and Combo Fix ,but everytime i go to launch a program it brings up some command prompt thing saying C\\Windows\system32\desote. It is beinging to frustrate me and i dont know what to do. Please someone help D: [(Note for all)(i started firefox by right clicking and using the run as command)]

A:Impossible to fix?

Hi TunaFishyFish and to Bleeping Computer!Please note: ComboFix is an extremely powerful tool which should only be used when instructed to do so by someone who has been properly trained. ComboFix is intended by its creator to be "used under the guidance and supervision of an expert." It is NOT for private use. Please read Combofix's Disclaimer. Using this tool incorrectly could lead to disastrous problems with your operating system such as preventing it from ever starting again.ROOTREPEAL-------------We need to check for rootkits with RootRepealDownload RootRepeal from the following location and save it to your desktop.Zip Mirrors (Recommended)
Primary MirrorSecondary MirrorSecondary MirrorRar Mirrors - Only if you know what a RAR is and can extract it.
Primary MirrorSecondary MirrorSecondary MirrorExtract RootRepeal.exe from the archive.Open on your desktop.Click the tab.Click the button.Check all seven boxes: Push OkCheck the box for your main system drive (Usually C:), and press Ok.Allow RootRepeal to run a scan of your system. This may take some time.Once the scan completes, push the button. Save the log to your desktop, using a distinctive name, such as RootRepeal.txt. Include this report in your next reply, please.

Read other 3 answers
RELEVANCY SCORE 32.4

Hi!
A few months ago (April 2000), I ENCRYPTED a *.zip-file with the PGP-freeware (hope u heard of it). I wrote down my pass-phrase and de-installed the PGP-software a few weeks later, but let the file (xxx.zip.pgp) encrypted. Now I am in urgent need of this file I encrypted with the PGP software, but I CAN NOT DECRYPT IT with the current PGP software!!!! WHY?!?! I installed PGP-freeware 6.58, which is the latest one, and made EXACTLY the same passphrase like I did, to encrypt the data, but everytime I try to double-click the "xxx.zip.pgp"-file, PGP opens up a little window, telling me that my no pass sentence or something like that could be found! And when I click on the "unknown"-line in this window, the program tries to connect to a server, but everytime I get a "Server-error"! THIS SUCKS!
How do I DECRYPT a file which has been ENCRYPTED a few months ago, when another version of PGP was used?
HELP!
 

Read other answers
RELEVANCY SCORE 32.4

I've been trying out various clipboard replacements/boosters, but so far have not been able to find something that will let me copy from various dialogs and program windows. Is there a "Universal" copy tool that will let me copy from Event logs, command windows, and program interfaces to paste elsewhere? Free or commercial-I'm interested.
 

A:Copy the impossible?

Read other 14 answers
RELEVANCY SCORE 32.4

Not sure if this is the place to post. If not maybe someone can suggest someplace to post.
I'm looking at the mac interface and man it looks nice. I know for Mac users they can use virtual pc for Macs to use windows but I don't think that you can use virtual pc for windows to use a Mac OS. I prob would never actually buy a Mac (unless PCs or windows become obsolete).
Window blinds prob has it so windows can look like the mac but window blinds for some reason do not work on my comp.
Any suggestions anybody?
 

A:is it absolutely impossible to run a mac os on a pc??

Read other 7 answers