PLEASE HELP ASAP!!!!!!!
My PC Hell Forum
December 03, 2008, 05:06:40 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Moving to New Location Soon! Watch out for notification. 14th Dec 2007.
 
   Home   Help Search Calendar Login Register  
Pages: 1 2 [3] 4
  Print  
Author Topic: PLEASE HELP ASAP!!!!!!!  (Read 3473 times)
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #30 on: January 19, 2008, 03:07:31 PM »

Yep you got the lot, a last few bits to remove.  All of Norton had gone..

Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

Quote
[Unregister Dlls]
[Registry - Non-Microsoft Only]
< Internet Explorer Settings > ->
YN -> HKLM: URLSearchHooks\\{EA756889-2338-43DB-8F07-D1CA6FB9C90D} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found]
< Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\
YN -> {32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found]
[Files/Folders - Modified Within 30 days]
NY -> as_affiliate.ini -> %SystemRoot%\as_affiliate.ini
NY -> av_affiliate.ini -> %SystemRoot%\av_affiliate.ini
[File String Scan - Non-Microsoft Only]
NY -> @Alternate Data Stream - 26 bytes -> %SystemDrive%\ts2_client_rc2_2032.exe:Zone.Identifier
NY -> @Alternate Data Stream - 0 bytes -> %System32%\Thumbs.db:encryptable
[Empty Temp Folders]


The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. CLick the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here along with a new Hijackthis log
I will review the information when it comes back in.

Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer.

Now for a free antispyware programme - this is the one I use and it is good

Download and then run SuperAntispyware
  • On the first page select Check for Updates
  • On completion select SCAN YOUR COMPUTER
  • On the next page select COMPLETE SCAN and tick ALL your drives
  • The next stage will take a while as your entire drive(s), memory and registry are scanned
  • When it has completed click NEXT
  • The next screen shows the problems found click OK
  • On the next screen place a tick against all items and select NEXT
  • Now to get the log Go to the PREFERENCES button on the right bottom
  • Select the STATISTICS/LOG tab
  • Highlight the scan just completed and click VIEW LOG
  • This will open a notepad text file copy and paste this to your next reply

After this you should be clean I will then finish of securing your computer so that this doess not happen again 
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #31 on: January 20, 2008, 05:34:40 PM »

it keeps saying not responding and it takes a long time, and a popup never comes  yworried
Logged
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #32 on: January 20, 2008, 05:45:05 PM »

If that is winpfind then continue on with the superantispyware run
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #33 on: January 21, 2008, 12:39:59 PM »

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 01/21/2008 at 12:09 PM

Application Version : 3.9.1008

Core Rules Database Version : 3259
Trace Rules Database Version: 1270

Scan type       : Complete Scan
Total Scan Time : 02:11:38

Memory items scanned      : 610
Memory threats detected   : 0
Registry items scanned    : 5271
Registry threats detected : 2
File items scanned        : 45732
File threats detected     : 244

Adware.Tracking Cookie
   C:\Documents and Settings\Owner\cookies\owner@shopping.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@efashionsolutions.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@wildpornreview[1].txt
   C:\Documents and Settings\Owner\cookies\owner@tdstats[2].txt
   C:\Documents and Settings\Owner\cookies\owner@edge.ru4[1].txt
   C:\Documents and Settings\Owner\cookies\owner@web-stat[2].txt
   C:\Documents and Settings\Owner\cookies\owner@advertising[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.orgysexparties[2].txt
   C:\Documents and Settings\Owner\cookies\owner@roiservice[1].txt
   C:\Documents and Settings\Owner\cookies\owner@cgi-bin[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ge.bridgetrack[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.cnn[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.hi5[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adecn[1].txt
   C:\Documents and Settings\Owner\cookies\owner@azjmp[1].txt
   C:\Documents and Settings\Owner\cookies\owner@image.masterstats[1].txt
   C:\Documents and Settings\Owner\cookies\owner@server.iad.liveperson[1].txt
   C:\Documents and Settings\Owner\cookies\owner@valueclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@dist.belnk[2].txt
   C:\Documents and Settings\Owner\cookies\owner@questionmarket[2].txt
   C:\Documents and Settings\Owner\cookies\owner@keywordmax[1].txt
   C:\Documents and Settings\Owner\cookies\owner@microsofteup.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@msninvite.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@data3.perf.overture[1].txt
   C:\Documents and Settings\Owner\cookies\owner@porn613[3].txt
   C:\Documents and Settings\Owner\cookies\owner@banner.32vegas[2].txt
   C:\Documents and Settings\Owner\cookies\owner@login.tracking101[1].txt
   C:\Documents and Settings\Owner\cookies\owner@educationsuccess.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@tacoda[2].txt
   C:\Documents and Settings\Owner\cookies\owner@realmedia[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver.easyad[1].txt
   C:\Documents and Settings\Owner\cookies\owner@qksrv[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.revsci[2].txt
   C:\Documents and Settings\Owner\cookies\owner@tribalfusion[1].txt
   C:\Documents and Settings\Owner\cookies\owner@bluestreak[2].txt
   C:\Documents and Settings\Owner\cookies\owner@msnclassifieds.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.monster[1].txt
   C:\Documents and Settings\Owner\cookies\owner@statcounter[1].txt
   C:\Documents and Settings\Owner\cookies\owner@clickbank[3].txt
   C:\Documents and Settings\Owner\cookies\owner@2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@apmebf[1].txt
   C:\Documents and Settings\Owner\cookies\owner@commission-junction[1].txt
   C:\Documents and Settings\Owner\cookies\owner@paypal.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@e-2dj6wjlygiazwgo.stats.esomniture[2].txt
   C:\Documents and Settings\Owner\cookies\owner@qnsr[2].txt
   C:\Documents and Settings\Owner\cookies\owner@usatoday1.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@fastclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@webpower[1].txt
   C:\Documents and Settings\Owner\cookies\owner@stat.dealtime[1].txt
   C:\Documents and Settings\Owner\cookies\owner@24293[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adtech[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.addynamix[1].txt
   C:\Documents and Settings\Owner\cookies\owner@revsci[2].txt
   C:\Documents and Settings\Owner\cookies\owner@as-us.falkag[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.burstbeacon[1].txt
   C:\Documents and Settings\Owner\cookies\owner@banner.prestigecasino[1].txt
   C:\Documents and Settings\Owner\cookies\owner@atdmt[2].txt
   C:\Documents and Settings\Owner\cookies\owner@adv.webmd[1].txt
   C:\Documents and Settings\Owner\cookies\owner@maxserving[1].txt
   C:\Documents and Settings\Owner\cookies\owner@smileycentral[2].txt
   C:\Documents and Settings\Owner\cookies\owner@nextag[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ar.atwola[2].txt
   C:\Documents and Settings\Owner\cookies\owner@msnportal.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@enjoycasualsex[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ad.tradingcharts[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adopt.specificclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@4.adbrite[2].txt
   C:\Documents and Settings\Owner\cookies\owner@adopt.euroclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@data1.perf.overture[1].txt
   C:\Documents and Settings\Owner\cookies\owner@media.adrevolver[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adrevolver[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.pointroll[1].txt
   C:\Documents and Settings\Owner\cookies\owner@mediaplex[2].txt
   C:\Documents and Settings\Owner\cookies\owner@casalemedia[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.burstnet[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adknowledge[2].txt
   C:\Documents and Settings\Owner\cookies\owner@atwola[1].txt
   C:\Documents and Settings\Owner\cookies\owner@counter.hitslink[1].txt
   C:\Documents and Settings\Owner\cookies\owner@counter.surfcounters[2].txt
   C:\Documents and Settings\Owner\cookies\owner@tradedoubler[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.blubster[1].txt
   C:\Documents and Settings\Owner\cookies\owner@brightcove.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@doubleclickd[1].txt
   C:\Documents and Settings\Owner\cookies\owner@citi.bridgetrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@stat.onestat[2].txt
   C:\Documents and Settings\Owner\cookies\owner@24216[1].txt
   C:\Documents and Settings\Owner\cookies\owner@24292[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ad.yieldmanager[1].txt
   C:\Documents and Settings\Owner\cookies\owner@data4.perf.overture[1].txt
   C:\Documents and Settings\Owner\cookies\owner@anad.tacoda[1].txt
   C:\Documents and Settings\Owner\cookies\owner@reduxads.valuead[2].txt
   C:\Documents and Settings\Owner\cookies\owner@counter13.sextracker[1].txt
   C:\Documents and Settings\Owner\cookies\owner@serving-sys[1].txt
   C:\Documents and Settings\Owner\cookies\owner@clickaider[2].txt
   C:\Documents and Settings\Owner\cookies\owner@windowsmedia[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-eset.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@host-d.oddcast[1].txt
   C:\Documents and Settings\Owner\cookies\owner@sexiluv[1].txt
   C:\Documents and Settings\Owner\cookies\owner@kiplinger.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.addesktop[1].txt
   C:\Documents and Settings\Owner\cookies\owner@perfectpaycheck.directtrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@enhance[2].txt
   C:\Documents and Settings\Owner\cookies\owner@bs.serving-sys[2].txt
   C:\Documents and Settings\Owner\cookies\owner@client.roiadtracker[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.adbrite[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ad.m5prod[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-youtube.hitbox[1].txt
   C:\Documents and Settings\Owner\cookies\owner@3dsexclub[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver6.teracent[1].txt
   C:\Documents and Settings\Owner\cookies\owner@hotnsexxy[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adultfriendfinder[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.ticketsnow[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserving.autotrader[2].txt
   C:\Documents and Settings\Owner\cookies\owner@icc.intellisrv[2].txt
   C:\Documents and Settings\Owner\cookies\owner@sales.liveperson[2].txt
   C:\Documents and Settings\Owner\cookies\owner@porn613[1].txt
   C:\Documents and Settings\Owner\cookies\owner@server2.bkvtrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ads3.blastro[2].txt
   C:\Documents and Settings\Owner\cookies\owner@leadgenetwork[2].txt
   C:\Documents and Settings\Owner\cookies\owner@data2.perf.overture[2].txt
   C:\Documents and Settings\Owner\cookies\owner@clicksor[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-bizjournals.hitbox[1].txt
   C:\Documents and Settings\Owner\cookies\owner@rapidresponse.directtrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@la.private.amsterdamlivexxx[2].txt
   C:\Documents and Settings\Owner\cookies\owner@banner.porn613[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.rowise[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www3.addfreestats[1].txt
   C:\Documents and Settings\Owner\cookies\owner@screensavers[2].txt
   C:\Documents and Settings\Owner\cookies\owner@marketlive.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adlegend[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver.adreactor[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads1.vanishingtattoo[1].txt
   C:\Documents and Settings\Owner\cookies\owner@count.exitexchange[2].txt
   C:\Documents and Settings\Owner\cookies\owner@eyewonder[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.pornhub[2].txt
   C:\Documents and Settings\Owner\cookies\owner@richmedia.yahoo[1].txt
   C:\Documents and Settings\Owner\cookies\owner@screensavers.us.intellitxt[1].txt
   C:\Documents and Settings\Owner\cookies\owner@indextools[2].txt
   C:\Documents and Settings\Owner\cookies\owner@buycom.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@xiti[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.screensavers[1].txt
   C:\Documents and Settings\Owner\cookies\owner@i.screensavers[1].txt
   C:\Documents and Settings\Owner\cookies\owner@rotator.adjuggler[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www1.addfreestats[1].txt
   C:\Documents and Settings\Owner\cookies\owner@lynxtrack[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adbrite[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adinterax[1].txt
   C:\Documents and Settings\Owner\cookies\owner@wt.sexsearch[1].txt
   C:\Documents and Settings\Owner\cookies\owner@microsoftwlmessengermkt.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@hitbox[1].txt
   C:\Documents and Settings\Owner\cookies\owner@cnn.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@belnk[1].txt
   C:\Documents and Settings\Owner\cookies\owner@precisionclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-xpresstradellc.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.sexy-celebs[1].txt
   C:\Documents and Settings\Owner\cookies\owner@5.go.globaladsales[1].txt
   C:\Documents and Settings\Owner\cookies\owner@e-2dj6wjnywocpodo.stats.esomniture[1].txt
   C:\Documents and Settings\Owner\cookies\owner@path.pureadstracking[2].txt
   C:\Documents and Settings\Owner\cookies\owner@maxis.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-myspaceinc.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@host-d.oddcast[2].txt
   C:\Documents and Settings\Owner\cookies\owner@pro-market[2].txt
   C:\Documents and Settings\Owner\cookies\owner@a.websponsors[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.sexsearchcom[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.keepmedia[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www8.addfreestats[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ad1.clickhype[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver.softwareonline[2].txt
   C:\Documents and Settings\Owner\cookies\owner@media.adrevolver[2].txt
   C:\Documents and Settings\Owner\cookies\owner@bdirectonline.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.orgysexparties[3].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-wachovia.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@spylog[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.dealtime[1].txt
   C:\Documents and Settings\Owner\cookies\owner@tremor.adbureau[2].txt
   C:\Documents and Settings\Owner\cookies\owner@nuttinbuttsexxy[2].txt
   C:\Documents and Settings\Owner\cookies\owner@media6degrees[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.googleadservices[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads4.blastro[2].txt
   C:\Documents and Settings\Owner\cookies\owner@stats2.reliablestats[1].txt
   C:\Documents and Settings\Owner\cookies\owner@fortunecity[1].txt
   C:\Documents and Settings\Owner\cookies\owner@2click[1].txt
   C:\Documents and Settings\Owner\cookies\owner@specificclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@eas.apm.emediate[2].txt
   C:\Documents and Settings\Owner\cookies\owner@yadro[2].txt
   C:\Documents and Settings\Owner\cookies\owner@stats.manticoretechnology[1].txt
   C:\Documents and Settings\Owner\cookies\owner@sexiscraps[2].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver4.teracent[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.realtechnetwork[3].txt
   C:\Documents and Settings\Owner\cookies\owner@sextracker[1].txt
   C:\Documents and Settings\Owner\cookies\owner@sales.liveperson[3].txt
   C:\Documents and Settings\Owner\cookies\owner@indexstats[2].txt
   C:\Documents and Settings\Owner\cookies\owner@interclick[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.halstats[2].txt
   C:\Documents and Settings\Owner\cookies\owner@anat.tacoda[2].txt
   C:\Documents and Settings\Owner\cookies\owner@counter16.sextracker[1].txt
   C:\Documents and Settings\Owner\cookies\owner@fliptrack[1].txt
   C:\Documents and Settings\Owner\cookies\owner@multiply.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@statse.webtrendslive[2].txt
   C:\Documents and Settings\Owner\cookies\owner@hypertracker[1].txt
   C:\Documents and Settings\Owner\cookies\owner@orgysexparties[2].txt
   C:\Documents and Settings\Owner\cookies\owner@msnaccountservices.112.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@trafficmp[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.joinaxxess[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver.toptenreviews[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-equifax.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@www.incentaclick[2].txt
   C:\Documents and Settings\Owner\cookies\owner@wetrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@youporn[3].txt
   C:\Documents and Settings\Owner\cookies\owner@equifax.adbureau[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ehg-chrysler.hitbox[2].txt
   C:\Documents and Settings\Owner\cookies\owner@exitexchange[1].txt
   C:\Documents and Settings\Owner\cookies\owner@amsterdamlivexxx[1].txt
   C:\Documents and Settings\Owner\cookies\owner@americasnotenetwork.122.2o7[1].txt
   C:\Documents and Settings\Owner\cookies\owner@sexsearchcom[1].txt
   C:\Documents and Settings\Owner\cookies\owner@directtrack[1].txt
   C:\Documents and Settings\Owner\cookies\owner@www.sexsearchcom[3].txt
   C:\Documents and Settings\Owner\cookies\owner@essexboymkn.spaces.live[2].txt
   C:\Documents and Settings\Owner\cookies\owner@publishers.clickbooth[2].txt
   C:\Documents and Settings\Owner\cookies\owner@phg.hitbox[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver5.teracent[1].txt
   C:\Documents and Settings\Owner\cookies\owner@freecodesource.advertserve[1].txt
   C:\Documents and Settings\Owner\cookies\owner@adultadworld[1].txt
   C:\Documents and Settings\Owner\cookies\owner@clickbooth[1].txt
   C:\Documents and Settings\Owner\cookies\owner@optimize.indieclick[2].txt
   C:\Documents and Settings\Owner\cookies\owner@clickbank[2].txt
   C:\Documents and Settings\Owner\cookies\owner@adserver.mpogonline[2].txt
   C:\Documents and Settings\Owner\cookies\owner@sexsearchcom[3].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.bridgetrack[2].txt
   C:\Documents and Settings\Owner\cookies\owner@ads.realtechnetwork[1].txt
   C:\Documents and Settings\Owner\cookies\owner@server.iad.liveperson[3].txt
   C:\Documents and Settings\Owner\cookies\owner@nextgenstats[2].txt
   C:\Documents and Settings\Owner\cookies\owner@partner2profit[1].txt
   C:\Documents and Settings\Owner\cookies\owner@overture[1].txt
   C:\Documents and Settings\Owner\cookies\owner@doubleclick[1].txt
   C:\Documents and Settings\Owner\cookies\owner@ssl.clickfacts[1].txt
   C:\Documents and Settings\Owner\cookies\owner@sexigraphics[1].txt
   C:\Documents and Settings\Owner\cookies\owner@toplist[1].txt
   C:\Documents and Settings\LocalService\Cookies\owner@2o7[2].txt
   C:\Documents and Settings\LocalService\Cookies\owner@advertising[2].txt
   C:\Documents and Settings\LocalService\Cookies\owner@atdmt[2].txt
   C:\Documents and Settings\LocalService\Cookies\owner@atwola[1].txt
   C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt
   C:\Documents and Settings\Owner\Cookies\owner@stats[1].txt

Trojan.NewDotNet
   HKU\.DEFAULT\Software\New.net
   HKU\S-1-5-18\Software\New.net
Logged
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #34 on: January 21, 2008, 04:25:16 PM »

OK shedloads of Cookies and the registry entries I did not find.

To continue on in the super securing and speeding up of your system

Download and instal Zone Alarm free from here http://majorgeeks.com/downloadget.php?id=388&file=1&evp=0de4296c9421aa33a25560d26c0fb124
When you install it Avast will pop up a compatibility warning (this only applies to the pro version) so click NO

THEN

Please download ATF Cleaner by Atribune.
This program is for XP and Windows 2000 only

Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.

If you use Firefox browser
    Click
Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browser
    Click
Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.

Click Exit on the Main menu to close the program.
For Technical Support, double-click the e-mail address located at the bottom of each menu.
 
THEN

Prefetch is clickable for more information

Click start then run, type prefetch then press enter, click edit then select all, (all files will highlight), right click any file, click delete, confirm

Click start then all programmes, accessories, system tools to run disc clean up

Reboot

Click start then all programmes, accessories, system tools to run defragmenter

Download, install and run
Tune Up 2007 Trial

Run Tune Up disc clean up

Run Tune Up registry clean up

Then click Optimize and Improve to run Reg Defrag, the screen will lose colour during the process which can take a few minutes and then needs a reboot

Those will have cleared the drive of obsolete software errors

These are suggestions for making the most of the free trial

Click optimize and improve then system optimizer to optimize the computer, select computer with an internet connection from the drop down menu, this also requires a reboot

After the reboot, click optimize then system optimizer to accelerate downloads, select the speed just above your actual connection speed, this requires a reboot.

After the reboot, click optimize then system optimizer to run system advisor



Then come back and let me know how you are getting on 
[/list][/list]
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #35 on: January 22, 2008, 03:33:01 PM »

i didn't know what speed my internet connection was and it's still the same speed, also i had trouble running the system advisor it wouldn't run
Logged
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #36 on: January 22, 2008, 03:35:00 PM »

also how do i get the zone alarm to quit popping up!!!!????
Logged
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #37 on: January 22, 2008, 04:04:28 PM »

Re Zone alarm on the bottom left of the popup is a tick box saying remember this answer.  Put a tck in there and it will remember it for that programme.  For an intrusion alert there is a tickbox saying don't show this again tick that
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #38 on: January 22, 2008, 04:06:39 PM »

Ooops hit the wrong button

 
Quote
also i had trouble running the system advisor it wouldn't run
what happened ?
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #39 on: January 22, 2008, 07:57:40 PM »

something came up but it didn't have any run button or any button for that matter
Logged
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #40 on: January 23, 2008, 04:17:52 PM »

Ahh I see no ther is not a run button, on the right it will give a list of problems which you the select and it will either repair or tell you what to do

How is you computer running now ?
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #41 on: January 24, 2008, 12:46:16 AM »

it's running better but i had to switch it to a different spot because we have 3 computers hooked up and had to get a dell tech to help and now i dont know if advast or anything is running because no icons are at the bottom
Logged
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #42 on: January 24, 2008, 04:14:40 PM »

plus aol is keep popping up when i go to a website on internet exploror
Logged
Essexboy
Administrator
*****
Posts: 899



View Profile WWW
« Reply #43 on: January 24, 2008, 04:22:24 PM »

Quote
plus aol is keep popping up when i go to a website on internet exploror
Can you expand on that please

Quote
i dont know if advast or anything is running because no icons are at the bottom
Post a Hijackthis log and I will see if they are running - if not we will carry out a repair 
Logged

VISTA
XPsp2
Avast (of course)



http://spaces.msn.com/members/essexboymkn/

 If ignorance is bliss  why aren't more people happy?
mandy123
Contributor
**
Posts: 39


View Profile
« Reply #44 on: January 24, 2008, 10:29:58 PM »

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:25:56 PM, on 1/24/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Common Files\AOL\1152234957\ee\aolsoftware.exe
c:\program files\common files\aol\1152234957\ee\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe
C:\Program Files\Common Files\AOL\1152234957\ee\aolsoftware.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.att.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = C:\Program Files\AOL Toolbar\welcome.html
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell.com/
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn6\yt.dll
O2 - BHO: BellSouth Toolbar - {4E7BD74F-2B8D-469E-8CBD-FD60BB9AAE2E} - C:\PROGRA~1\BLSTOO~1\BLSTOO~1.DLL
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CyberDefender safeSEARCH - {F35CE83E-9EBF-40d5-AE87-53F982389740} - C:\Documents and Settings\Owner\Local Settings\Application Data\CyberDefender\sssTbar.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn6\yt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: BellSouth Toolbar - {4E7BD74F-2B8D-469E-8CBD-FD60BB9AAE2E} - C:\PROGRA~1\BLSTOO~1\BLSTOO~1.DLL
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Symantec NetDriver Warning] C:\PROGRA~1\SYMNET~1\SNDWarn.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'Default user')
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 5.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZCxdm492YYUS
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.cervo.net
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {4D7F48C0-CB49-4EA6-97D4-04F4EACC2F3B} (InstallShield Setup Player 2K2) - http://www.vectorvest.com/vvonline/ca/install/setup.exe
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - http://www.eset.eu/buxus/docs/OnlineScanner.cab
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {89D75D39-5531-47BA-9E4F-B346BA9C362C} (CWDL_DownLoadControl Class) - http://www.callwave.com/include/cab/CW_CWDL_DownLoad.CAB
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\480\G2AWinLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\480\g2aservice.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 9060 bytes
and aol keeps signing on everytime i visit a website on ie
Logged
Pages: 1 2 [3] 4
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.2 | SMF © 2006-2007, Simple Machines LLC Valid XHTML 1.0! Valid CSS!