| | |
Need Help!! (HJT LOG INCLUDED)
Thread Solved |
•
•
Join Date: Apr 2004
Posts: 121
Reputation:
Solved Threads: 1
As I was playing a game on Pogo using Firefox the game suddenly crashed and everything was suddenly frozen. So I rebooted the computer and now my Avast antivirus program isn't operating properly and I have no sound plus it took about 3 minutes for Windows to finish loading all my startup programs which is only Avast Spybot S&D Teatimer and Yahoo Messenger. And for a while now Windows explorer crashes everytime I try to open a folder or my computer which forces me to reboot. I ran Spybot S&D and it didn't help at all. What do I do?
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:58:33 PM, on 3/2/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\My Backup -- 09-02-14 0314PM\Program Files\Mozilla Firefox\firefox.exe
C:\My Backup -- 09-02-14 0314PM\Program Files\Trend Micro\HijackThis\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{B526CB30-5E73-423F-A74B-4B1DA2F7F0E6}: NameServer = 151.164.8.201 204.60.203.179
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 2494 bytes
The 017 entry does concern me. What is that?
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:58:33 PM, on 3/2/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\My Backup -- 09-02-14 0314PM\Program Files\Mozilla Firefox\firefox.exe
C:\My Backup -- 09-02-14 0314PM\Program Files\Trend Micro\HijackThis\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{B526CB30-5E73-423F-A74B-4B1DA2F7F0E6}: NameServer = 151.164.8.201 204.60.203.179
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 2494 bytes
The 017 entry does concern me. What is that?
Turn Off TeaTimer, it can interfere with fixes done.
* Run Spybot-S&D in Advanced Mode
* If it is not already set to do this, go to the Mode menu
select
Advanced Mode
* On the left hand side, click on Tools
* Then click on the Resident icon in the list
* Uncheck
Resident TeaTimer
and OK any prompts.
* Restart your computer
Now, can I ask, what all do you have disabled from auto start? Go back into msconfig and put a check mark in Normal Start and then reboot.
Can you go back into msconfig and re-enable everything? We need to know what's on there.
* Run Spybot-S&D in Advanced Mode
* If it is not already set to do this, go to the Mode menu
select
Advanced Mode
* On the left hand side, click on Tools
* Then click on the Resident icon in the list
* Uncheck
Resident TeaTimer
and OK any prompts.
* Restart your computer
Now, can I ask, what all do you have disabled from auto start? Go back into msconfig and put a check mark in Normal Start and then reboot.
Can you go back into msconfig and re-enable everything? We need to know what's on there.
Last edited by jholland1964; Mar 2nd, 2009 at 4:29 pm.
•
•
Join Date: Apr 2004
Posts: 121
Reputation:
Solved Threads: 1
Yes my ISP is SBC Yahoo!
These are all of the services I have checkmarked at the moment.
Application Layer Gatewat Service
Application Management
ASP.NET State Service
avast! iAVS4 Control Service
Windows Audio
avast! Antivirus
avast! Mail Scanner
avast! Web Scanner
Background Intelligent Transfer Service
Computer Browser
Indexing Service
.NET Runtime Optimization Service v2.0.50727_X86
COM+System Application
Cryptographic Services
DCOM Server Process Launcher
DHCP Client
Logical Disk Manager Administrative Service
Logical Disk Manager
DNS Client
Error Reporting Service
Event Log
COM+ Event System
Fast User Switching Compatibility
Help and Support
HTTP SSL
IMAPI CD-Burning COM Service
Java Quick Starter
Server
Workstation
TCP/IP NetBIOS Helper
NetMeeting Remote Desktop Sharing
Distributed Transaction Coordinator
Windows Installer
MSSQL$SONY_MEDIAMGR
MSSQLServerADHelper
Net Logon
Network Connections
Network Location Awareness (NLA)
NT LM Security Support Provider
Removable Storage
Plug and Play
IPSEC Services
Protected Storage
Remote Access Auto Connection Manager
Remote Access Connection Manager
Remote Desktop Help Session Manager
Remote Procedure (RPC) Locator
Remote Procedure (RPC)
QoS RSVP
Security Accounts Manager
Smart Card
Task Scheduler
Secondary Logon
System Event Notification
Windows Firewall/Internet Connection Sharing (ICS)
Shell Hardware Detection
Print Spooler
SOLAgent$SONY_MEDIAMGR
System Restore Service
SSDP Discovery Service
Windows Image Acquisition (WIA)
MS Software Shadow Copy Provider
Performance Logs and Alerts
Telephony
Terminal Services
Themes
Distributed Link Tracking Client
Universal Plug and Play Device Host
Uninterruptible Power Supply
Volume Shadow Copy
Windows Time
WebClient
Windows Management Instrumentation
Portable Media Serial Number Service
WMI Performance Adapter
Windows Media Player Network Sharing Service
Security Center
Automatic Updates
Windows Driver Foundation - User-mode Driver Framework
Wireless Zero Configuration
Network Provisioning Service
These are all of the services I have checkmarked at the moment.
Application Layer Gatewat Service
Application Management
ASP.NET State Service
avast! iAVS4 Control Service
Windows Audio
avast! Antivirus
avast! Mail Scanner
avast! Web Scanner
Background Intelligent Transfer Service
Computer Browser
Indexing Service
.NET Runtime Optimization Service v2.0.50727_X86
COM+System Application
Cryptographic Services
DCOM Server Process Launcher
DHCP Client
Logical Disk Manager Administrative Service
Logical Disk Manager
DNS Client
Error Reporting Service
Event Log
COM+ Event System
Fast User Switching Compatibility
Help and Support
HTTP SSL
IMAPI CD-Burning COM Service
Java Quick Starter
Server
Workstation
TCP/IP NetBIOS Helper
NetMeeting Remote Desktop Sharing
Distributed Transaction Coordinator
Windows Installer
MSSQL$SONY_MEDIAMGR
MSSQLServerADHelper
Net Logon
Network Connections
Network Location Awareness (NLA)
NT LM Security Support Provider
Removable Storage
Plug and Play
IPSEC Services
Protected Storage
Remote Access Auto Connection Manager
Remote Access Connection Manager
Remote Desktop Help Session Manager
Remote Procedure (RPC) Locator
Remote Procedure (RPC)
QoS RSVP
Security Accounts Manager
Smart Card
Task Scheduler
Secondary Logon
System Event Notification
Windows Firewall/Internet Connection Sharing (ICS)
Shell Hardware Detection
Print Spooler
SOLAgent$SONY_MEDIAMGR
System Restore Service
SSDP Discovery Service
Windows Image Acquisition (WIA)
MS Software Shadow Copy Provider
Performance Logs and Alerts
Telephony
Terminal Services
Themes
Distributed Link Tracking Client
Universal Plug and Play Device Host
Uninterruptible Power Supply
Volume Shadow Copy
Windows Time
WebClient
Windows Management Instrumentation
Portable Media Serial Number Service
WMI Performance Adapter
Windows Media Player Network Sharing Service
Security Center
Automatic Updates
Windows Driver Foundation - User-mode Driver Framework
Wireless Zero Configuration
Network Provisioning Service
Ok. Just wondered as I seldom see so few auto starts unless the scan is run in safe mode...
Really don't see much out of the ordinary in the log other than the small number of auto starts. Is there a reason you have never updated your browser to IE7?
How much RAM do you have on the system?
You say you ran Spybot, did it find anything and if so, what?
Do the following;
Please download Malwarebytes' Anti-Malware (MBA-M) to your Desktop.
* DoubleClick mbam-setup.exe and follow the prompts to install MBA-M.
* Be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform full scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When MBA-M finishes, Notepad will open with the log. Please save it where you can find it easily. The log can also be opened by going to Start > All Programs > Malwarebytes' Anti-Malware > Logs > log-date.txt.
Reboot the computer.
Run a new scan with HJT after the reboot and save the log.
Post back here with both of those logs.
Really don't see much out of the ordinary in the log other than the small number of auto starts. Is there a reason you have never updated your browser to IE7?
How much RAM do you have on the system?
You say you ran Spybot, did it find anything and if so, what?
Do the following;
Please download Malwarebytes' Anti-Malware (MBA-M) to your Desktop.
* DoubleClick mbam-setup.exe and follow the prompts to install MBA-M.
* Be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform full scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When MBA-M finishes, Notepad will open with the log. Please save it where you can find it easily. The log can also be opened by going to Start > All Programs > Malwarebytes' Anti-Malware > Logs > log-date.txt.
Reboot the computer.
Run a new scan with HJT after the reboot and save the log.
Post back here with both of those logs.
•
•
Join Date: Apr 2004
Posts: 121
Reputation:
Solved Threads: 1
What did spybot find?
I don't remember now, but here are the results of the scan and the new log. Every problem seems to be resolved now but the WE one, I doubled clicked Recycle Bin and still get the error message.
Malwarebytes' Anti-Malware 1.34
Database version: 1815
Windows 5.1.2600 Service Pack 2
3/3/2009 7:19:21 PM
mbam-log-2009-03-03 (19-19-21).txt
Scan type: Full Scan (C:\|D:\|)
Objects scanned: 162930
Time elapsed: 1 hour(s), 50 minute(s), 36 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\My Backup -- 09-02-14 0314PM\WINDOWS\system32\rqRKBqpo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-2548852145-676069781-287698876-1006\Dc20.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-2548852145-676069781-287698876-1006\Dc24.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:27:29 PM, on 3/3/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\My Backup -- 09-02-14 0314PM\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{B526CB30-5E73-423F-A74B-4B1DA2F7F0E6}: NameServer = 151.164.8.201 204.60.203.179
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 2550 bytes
I don't remember now, but here are the results of the scan and the new log. Every problem seems to be resolved now but the WE one, I doubled clicked Recycle Bin and still get the error message.
Malwarebytes' Anti-Malware 1.34
Database version: 1815
Windows 5.1.2600 Service Pack 2
3/3/2009 7:19:21 PM
mbam-log-2009-03-03 (19-19-21).txt
Scan type: Full Scan (C:\|D:\|)
Objects scanned: 162930
Time elapsed: 1 hour(s), 50 minute(s), 36 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\My Backup -- 09-02-14 0314PM\WINDOWS\system32\rqRKBqpo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-2548852145-676069781-287698876-1006\Dc20.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-2548852145-676069781-287698876-1006\Dc24.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:27:29 PM, on 3/3/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\My Backup -- 09-02-14 0314PM\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{B526CB30-5E73-423F-A74B-4B1DA2F7F0E6}: NameServer = 151.164.8.201 204.60.203.179
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 2550 bytes
•
•
•
•
I doubled clicked Recycle Bin and still get the error message.
![]() |
Similar Threads
- Slow IE7 startup HJT log included (Viruses, Spyware and other Nasties)
- hjt log included. (Viruses, Spyware and other Nasties)
- Please help HJT log included (Viruses, Spyware and other Nasties)
- Fear of some malware or other nasties. HJT log included. (Viruses, Spyware and other Nasties)
- Checking Computer (HJT log included) (Viruses, Spyware and other Nasties)
- Persistent spyware problems, HJT log included. (Viruses, Spyware and other Nasties)
- Persistent spyware problems, HJT log included. (Viruses, Spyware and other Nasties)
- backdoor.prorat please help, HJT log is included? (Viruses, Spyware and other Nasties)
Other Threads in the Viruses, Spyware and other Nasties Forum
- Previous Thread: Virantix Trojan Virus
- Next Thread: Desktop Wallpaper Blocked
| Thread Tools | Search this Thread |
adware anti-malware anti-virussitesaccessissue antivirus apple attack audio avg backtoschoolspeech bar blackhat botnet censorship china commercials conficker connect control crosssitescripting cyber cyberwarfare ddos domains e-mafia education email europe facebook fake fancheckvirus gaming gtaiv gumblar halloween herss.exe hijack internet iphone kaspersky legal logfiles mail malware mcafee mega-d messagelabs microsoft mobile msn nazi news obama onlinethreats paedophile panel parents patch phishing police president privacy pro problem redirect redirecting reliability report research risk rogueantivirus samhain sans scareware school search security seopoisoning sites software spam spyware spywareexternalwindows7adminstratortrojans sqlinjection symantec system teen translate trojan unabletoaccessanti-virussites unwanted update usa virus viruses war warning windows worm yahoo zeroday






