818 Posted Topics
Re: Great site Dani! And you doing a wonderful job :D. | |
Re: Hi, try this. Go to [b]Start>Run>Type "control userpasswords2"[/b] Without the quotes. Make sure that the [b] "Users must enter a user name and password to use this computer"[/b] check box is checked. Then click [b]Ok[/b] | |
Re: You might want to add that there appears to be an issue with 64bit AMD Athlon processors, particularly with some older drivers, (like the Sigma Realvision Mpeg decoder card's drivers, for example). It, apparently, has something to do with the new DEP (Data Execute Protection), which so far only AMD's … | |
Hi I think an option to delete your own thread, would be great. Like in edit mode there be an option to delete it. That way if you accedently double post you can remove one. | |
Re: Hi, and welcome. Run HJT again and check off hte following. [b] O1 - Hosts: 127.0.0.5 makethemcry.com O1 - Hosts: 127.0.0.5 loudcash.com O1 - Hosts: 127.0.0.5 iframestat.com O1 - Hosts: 127.0.0.5 toolbarpartner.com O1 - Hosts: 127.0.0.5 hqcash.com O1 - Hosts: 127.0.0.5 verybigcash.com O1 - Hosts: 127.0.0.5 makethemcry.com O1 - Hosts: … | |
Re: Hi, well lets get you all cleaned up :). Boot into safe mode, and configure windows to show hidden files.To do this do the following. [b] file 1 Click the Start Button 2 In the Start menu click Control Panel 3 In the Control panel Window click the Folder Options … | |
Re: Dang thats crazy...I wonder how they do that. Mind bowing i tell ya. Mind blowing. :idea: | |
Re: Hi, and welcome; This line shows that you did not not extract HJT to its own folder, you just ran it. For best results HJT needs to be run form its own folder. [b] C:\Documents and Settings\Mom\Local Settings\Temporary Internet Files\Content.IE5\O3Y1E5G3\hijackthis[1]\HijackThis.exe [/b] Do that and post a new log. :). | |
Re: Yes, try ewido, or spysweeper, and if you want to; even though you said you didnt want to use HJT if you post a log, im sure we can get you all cleaned up :). More programs- [url]http://www.toughadmin.com/forum/viewtopic.php?t=23[/url] | |
Re: I would try to reinstall it first. Try that and if it doesnt work post back. | |
Re: Hi, and welcome to DaniWeb, but you have posted in the wrong forum ;). Post your HJT log [url=http://www.daniweb.com/techtalkforums/forum64.html]here[/url] and we will have a look at it. | |
Re: Your HJT this verion is outdated, it would be best to download the newest version. Scan again, then post a new log. Newest Version-http://www.merijn.org/files/hijackthis.zip EDIT: We all post at the same time, all the time :). | |
Re: Hi, Fisrt this shows that you windows is really out of date. After we clean, it would be best to upgrade to SP2. Run windows update to do this. Fix the following [quote][b] O2 - BHO: (no name) - {FDF30958-2E0E-496C-AE8D-D5F09B4D826E} - C:\WINDOWS\System32\ofek.dll (file missing) O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Besturing) … | |
Re: Hi, and welcome to DaniWeb! Well first haveHJT fix the following (Scan then check them, then click Fix Checked) [b] O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_14.dll R3 - URLSearchHook: (no name) - ~4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file) R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 … | |
Re: Did you recently update the drivers, or make any changes at all to them? Also what brand are they? | |
Re: You need to post your HJT log. We will take a look at it. | |
Re: Hi start by having HJT fix these. (Check them then click fix checked) [b] R3 - URLSearchHook: (no name) - - (no file) R3 - URLSearchHook: ScriptInocUI Class - - (no file) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = O17 - HKLM\System\CCS\Services\Tcpip\..\{DBB56F14-3CB2-4DC2-A999-CEDDEC55FD1E}: NameServer = 195.92.195.94 195.92.195.95 O17 - HKLM\Software\..\Telephony: DomainName = O17 … | |
Re: First off, changing your os (Operating system (ie Windows xp)) has nothing to do with your web browser (ie firefox). Changing your operating system, would be going from windows XP to OSX etc. Changing browsers is just changing the software you use to browse the internet. As for deleteing that … | |
Re: Hi, boot into [URL=http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406]safe mode[/URL] and have HJT fix the following. [quote] C:\Program Files\SpyFalcon\SpyFalcon.exe C:\Program Files\SpyFalcon\SpyFalcon.exe O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll (file missing) O2 - BHO: (no name) - {FA93E44F-B026-4E28-89BF-33986035EFAD} - (no file) [/quote] Then while your still in safe mode. Browse and delete these files … | |
Re: What stuff are you refrerring to? Your documents, or somthing from dell like dell programs, dell support? Or what? If you formated your harddirve. Then it is pretty much impossible to recover anything. | |
Re: EDIT: Beat me to it. Still though do the following. Yea your pretty infected. You have a Spyaxe i belive. First lets see if this fixes any thing. Follow the instructions on this page, then post a new log. [url]http://www.infopackets.com/channels/en/windows/nicks_computer_security/2005/20051220_remove_spyaxe_removal_instructions.htm[/url] This is the file I am reffering to. C:\WINDOWS\System32\nvctrl.exe | |
Re: May I suggest getting firefox. ([url]www.getfirefox.com)[/url]. It is better, more features, and alot better security, switching may very well fix your problem. If you think it is a virus you could post a hijackthis! log in the Virus spyware and other nasties forum, and somebody will take a look at … | |
Re: Hi, Try this; [b] 1. Click Start, and then click Run. 2. In the Open box, type regsvr32 jscript.dll, and then click OK. 3. Click OK. 4. Click Start, and then click Run. 5. In the Open box, type regsvr32 vbscript.dll, and then click OK. 6. Click OK. [/b] Let … | |
Re: [QUOTE=Narue]>Can someone please suggest how we can condense the Tech Talk forums? Personally, I think that you could merge all of the subforums into the appropriate top level forum and call it a day. The one thing I think that is a subforum but should be a top level forum … | |
Re: Have HJT fix this. [b] O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm[/b] Besides that your all clean. Your should Upgrade to SP2. Better performace and security, upgrading might help you. More Info - [url]http://www.daniweb.com/techtalkforums/thread10031.html[/url] SP2 Download - Run windows update [b]Start>All programs>Windows update[/b] | |
Re: Hi, lets have HJT remove the following [b] R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) [/b] Thats really all I see as far as your HJT log goes; You said you cleared cookies and all that good stuff; thats good, but lets give [URL=http://www.ccleaner.com/]CCLeaner[/URL] a whirls, it … | |
Re: Hi, and welcome, make backups if you wish, then have HJT fix the following(by cheking them and clicking "Fix checked items"). [quote] O14 - IERESET.INF: START_PAGE_URL=http://www.bdigital.com.au O17 - HKLM\System\CCS\Services\Tcpip\..\{59C2B385-A0DA-409B-9F3F-84BDD804F05B}: Domain = wa.bigpond.net.au O17 - HKLM\System\CCS\Services\Tcpip\..\{C771C0EC-779C-45A7-B3D2-52022C6B1465}: Domain = wa.bigpond.net.au O20 - Winlogon Notify: WebCheck - C:\WINDOWS\system32\e4020edoeh0c0.dll - Not to sure about … | |
Re: Foolow these instructions. THen post a new log. [url]http://help.lockergnome.com/lofiversion/index.php/t40356.html[/url] | |
Re: what do you mean cancel the standby button? Do you mean stop the computer from going into standby by itself? I personally dont understand the question ;). | |
Re: Your log looks clean to me. I am sure [b]jhay116[/b] will verify. Are you still getting popups? | |
Re: Souldnt 4 be Apple not Steve Jobs. He ask for the company, not the creator of the company ;). Or am I missing somthing :cool: | |
Re: [QUOTE=Comatose]nice, but I still suggest grisoft's avg.[/QUOTE] Agreed. But for a complete list of programs. Both free and not. Take a look here. [url]http://www.toughadmin.com/forum/viewtopic.php?t=23[/url] | |
Re: Hi, well first right click your desktop. Then select arrange by, and assure that "Show desktop icons" is selected. If it is, have HJT remove this (Well have it remove this anyways) [quote] O4 - Global Startup: Digital Line Detect.lnk = ? [/quote] Then you look clean after that. if … | |
Re: Hi, first lets have HJT clean a few things [quote][b] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\Paula\LOCALS~1\Temp\se.dll/space.html R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL O2 … | |
Re: Hi, the log indicates that your HJT version is out of date. Please download the newest version [URL=http://www.merijn.org/files/hijackthis.zip]here[/URL] scan, and post a new log. | |
Re: Here is a small windows application that I threw together. It is just a modification of your code. It saves each value into the text file. Then opens it in notepad. [code] using System; using System.Collections.Generic; using System.ComponentModel; using System.Data; using System.Drawing; using System.Text; using System.Windows.Forms; using System.Diagnostics; using System.IO; … | |
Re: Download [URL=http://www.merijn.org/files/hijackthis.zip]hijackthis[/URL] do a scan and save a log. Then post the log. | |
Re: Hi, The log indicates that you are running Service pack 1 (SP1). After the cleaning process it is highy recommended you download and install Service pack 2(SP2).Now boot into [URL=http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406]safe mode[/URL] start HJT and have it fix the following. [quote][b] O2 - BHO: XMLDP Class - {60371670-81B9-4d06-9C42-4DEC1AABE62B} - C:\WINDOWS\xml2lib.dll (file … | |
Re: Hi, ou have quite a bit of nasties in there ;). Boot into [URL=http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406]safe mode[/URL] run HJT and have it fix the following. [quote] C:\WINNT\SYSC00.exe C:\WINNT\sys011134565166-.exe C:\WINNT\slupiww.exe R3 - URLSearchHook: (no name) - _{02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file) R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file) F3 - REG:win.ini: … | |
Re: Nothing looks to serious, you can have HJT fix the following. [quote][b] O23 - Service: ewido security suite control - Unknown owner - C:\Program Files\Spyware Tools\security suite\ewidoctrl.exe (file missing) O23 - Service: ewido security suite guard - Unknown owner - C:\Program Files\Spyware Tools\security suite\ewidoguard.exe (file missing) [/quote][/b] To continue keeping … | |
Re: Log looks clean to me... EDIT: Unless you dont know what this is. [quote] O9 - Extra 'Tools' menuitem: &Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe [/quote] If you dont have HJT fix it. But im pretty sure its legit. | |
Re: It sounds like your files are corrupt. Are you getting a specific error? In all honesty your question isnt that clear ;). | |
Re: Hi, Have HJT remove the following. [B][quote] c:\documents and settings\all users\start menu\programs\startup\svchost.exe [/quote][/B] That file is supposed to be in the System32 folder, it not being there shows that it is a nasty. Also have HJT fix this. [B][quote] O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto [/quote][/B] That is the … | |
Re: Hi, and welcome, have HJT fix the following, but please do it in [B]safe mode.[/B] - Inof on how ot boot into safe mode here - [url]http://www.pchell.com/support/safemode.shtml[/url] [B][quote] R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 - BHO: bitlocker - {01EB5130-FC0C-4d75-B9CE-4801B1B854F5} - C:\WINDOWS\system32\nsd316.dll O2 - BHO: (no … | |
Re: Besides this. [quote] O4 - Global Startup: Digital Line Detect.lnk = ? [/quote] Your log looks clean. So im not sure what the problem could be, maybe contact adobe support? | |
Re: Try this, go to [b]Start>Run>type msconfig>>Then go to the boot.ini tab.>>Click Check all boot paths[/b] That should see if all the boot paths are correct. | |
Re: Hi,have a look here. [url]http://www.daniweb.com/techtalkforums/showthread.php?t=25213&highlight=forgot+password[/url] just a quick search :D. -T | |
Re: Folder options is under [b]Tools>Folder options[/b] Not [b]File>Tools>Folder options[/b] Thats how it is on XP home. |
The End.