Home > I Ve Got > I've Got A JS/Psyme And HJT Log Files Here

I've Got A JS/Psyme And HJT Log Files Here

Quick Links HelpWithWindows.com RoseCitySoftware.com Recommended Links Menu Log in or Sign up Search Search titles only Posted by Member: Separate names with a comma. to help speed up your system. Click OK to delete the files from these locations. 6. It ran for over 19 hours before I finally decided that it was stuck in some sort of loop and was scanning the same things over and over. check over here

Administrators permissions are needed... Then select the items you wish to clean up. Reason: redone bird View Public Profile Find all posts by bird #16 07-13-2009, 12:01 AM MikeN. Welcome to WindowsBBS wolfy810 You may want to print this out, or save it to text where you can access it in safe mode.

Action Taken: No Action Taken.File C:\System Volume Information\_restore{61B93737-3A54-4877-B169-B2CDC08DE89C}\RP82\A0020165.exe infected by "Trojan.Win32.Dialer.gx" Virus. C:\Users\Neil\AppData\Local\Microsoft\Temporary Internet Files\Low\Content.IE5\ * Go to Control Panel > Internet Options. Check all boxes except compress old files and OK. Once it's updated, click on mwavscan to launch the programme.

regards 0 #8 g2i2r4 Posted 16 April 2005 - 02:35 AM g2i2r4 retired HiJack Helper Retired Staff 5,080 posts Looks good.To be on the save site, let's have Panda clean that So clean your computer 1st and then try again. You should do this weekly to clena out the junk temp files and run atf also! If, so how can I correct it?

A red dot shows which drives have been chosen. * Click the green arrow at the right, and the scan will start. * Click 'Yes to all' if it asks if Windows XP = C:\WINDOWS\SYSTEM32\DRIVERS\ETC Windows 2K = C:\WINNT\SYSTEM32\DRIVERS\ETC Win 98\ME = C:\WINDOWS ie-spyad.Puts over 5000 sites in your restricted zone so you'll be protected when you visit innocent-looking sites that aren't http://www.mozilla.org/ Another good and free browser is Opera! Action Taken: No Action Taken.File C:\Program Files\AOL 9.0\Jiti\Jiti_mm.exe tagged as not-a-virus:Tool.Win32.Reboot.

By continuing to use this site, you are agreeing to our use of cookies. c:\system volume information\_restore{eeb1894c-121b-4525-8b10-95b9d6b6afd8}\RP1952\A0285098.EXE (Adware.MyWeb) -> Quarantined and deleted successfully. Open C:\Program Files and delete the folders MySearch, Ebates_MoeMoneyMaker, WhenUSearch, WildTangent,Hotbar and HomelandNetwork. Yes, always quarantine or delete malware when its found by those scans.

Double-click that icon to launch the program. * If asked to update the program definitions, click "Yes". https://forums.pcpitstop.com/index.php?/topic/144825-help-me-remove-runtime2sys/ Yes to restart. I know you stressed the importance of doing everything in order. Uninstall list from HiJackThis http://www.download.com/Trend-Micro-...html?tag=mncol 1.

Dave Microsoft MVP - Internet Explorer 2006-2007-2008-2009 noahdfear, #16 2004/11/23 wolfy810 Inactive Thread Starter Joined: 2004/11/18 Messages: 23 Likes Received: 0 Trophy Points: 76 Computer Experience: Beginner Can I just delete If, so how can I correct it? Page 1 of 2 1 2 Next > 2004/11/17 wolfy810 Inactive Thread Starter Joined: 2004/11/18 Messages: 23 Likes Received: 0 Trophy Points: 76 Computer Experience: Beginner I've noticed a few others Neil SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 02/14/2008 at 05:11 PM Application Version : 3.9.1008 Core Rules Database Version : 3401 Trace Rules Database Version: 1393 Scan type : Complete Scan Total

Action Taken: No Action Taken.File C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\Quarantine\77702FDD.exe infected by "Trojan-Downloader.Win32.Small.vq" Virus. Computer Experience: [email protected]<*+ You should print this out and/or save it to text where you can access it in safe mode. Everyone has to start somewhere, just as I did. A lot of my desktop items are missing.Click to expand...

Again, empty ALL Temp folders. Reboot to Safe mode: Restart your computer and begin tapping the F8 key on your keyboard just before Windows starts to load. Click on the Config button 3.

Let's see what's left. 0 #7 Chris J Posted 16 April 2005 - 02:26 AM Chris J New Member Topic Starter Member 8 posts New Mwav results (slight difference from first

c:\program files\screensavers.com\ActiveDesktop (Adware.Comet) -> Quarantined and deleted successfully. Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy Cheers Neil youngs3633, Feb 14, 2008 #11 khazars Joined: Feb 15, 2004 Messages: 12,302 go here and empty outt his folder! The time now is 03:20 AM. -- WorldStart Message Boards vBulletin 3 Style ---- Worldstart wide format Contact Us - WorldStart.com - Archive - Privacy Statement - Top Powered by vBulletin

I checked afterwwards and the settings are exactly as you instructed. C:\Documents and Settings\Administrator\Application Data\inst.exe C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat ----- BITS: Possible infected sites ----- hxxp://au.download.windowsupda . ((((((((((((((((((((((((( Files Created from 2008-01-20 to 2008-02-20 ))))))))))))))))))))))))))))))) . There is a lot of stuff there and I can't find the Content.IE5 folder. I am able to change my homepage at this point but I want to make sure that I'm totally clean.

If done right a Windows Advanced Options menu will appear. Malwarebytes' Anti-Malware 1.38 Database version: 2407 Windows 5.1.2600 Service Pack 3 7/11/2009 3:31:46 PM mbam-log-2009-07-11 (15-31-46).txt Scan type: Full Scan (C:\|) Objects scanned: 301973 Time elapsed: 4 hour(s), 6 minute(s), 43 Action Taken: No Action Taken.File C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\Quarantine\1CA46D6B.exe infected by "Trojan-Downloader.Win32.Small.aiq" Virus. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.

Check out the forums and get free advice from the experts. The filename and path should show up in the window. Stay logged in Sign up now! Posted it anyway, just because.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5b4c3b43-49b6-42a7-a602-f7acdca0d409} (Adware.OneStepSearch) -> Quarantined and deleted successfully. Open Ad-aware and run in full scan mode. Reports coming soon. Click Start, and then click Control Panel. 2.

Your Java is way out of date.