Hijackthis Log - Virus Is Blocking Explorer.exe And Other Programs

Luckily the programs that these files were for were not installed. Back to top #3 Frustrated Updater Frustrated Updater Topic Starter Members 10 posts OFFLINE Local time:06:17 AM Posted 29 December 2012 - 02:55 PM Hi nasdaq,Great to here from you! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dllO2 - BHO: Yahoo!

Nevertheless, this utility is constantly being improved, and I plan to implement such functions.2. Download and install the latest version. When finished, it will produce a report for you. I've already checked the host file, blocked sites and even my router for blocked no avail.Logfile of Trend Micro HijackThis v2.0.0 (BETA)Scan saved at 12:16:07 PM, on 4/11/2007Platform: Windows XP

Close any open browsers.2. P.S. : My PC is affected by virus called .ODIN which encrypts the documents & changes the extension to .ODIN. Please re-enable javascript to access full functionality. http://www.ccleaner.comIts a good tool to clean out the Temp Folders and should be run every month to clean out the junk.Reboot into Safe Mode Run CCleaner then defrag to speed up

Thanks a ton for your help.ComboFixComboFix 12-12-29.02 - Sangeet Kendra 30-12-2012 1:10.1.4 - x64Microsoft Windows 7 Professional 6.1.7601.1.1252.91.1033.18.4011.2989 [GMT 5.5:30]Running from: c:\users\Sangeet Kendra\Desktop\ComboFix.exeAV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}SP: Microsoft Security Essentials Save ComboFix.exe to your DesktopIMPORTANT....1. Because the utility is mainly intended for eliminating Adware and Spyware modules, it currently does not support check of several types of archives, PE packers and documents. Back to top #5 Frustrated Updater Frustrated Updater Topic Starter Members 10 posts OFFLINE Local time:06:17 AM Posted 04 January 2013 - 02:11 PM Hi nasdaq,Sorry for taking so long

Yes try and Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy This considerably reduces the log size. Don't worry, this topic will help you in removing all malicious software from your PC.

Sjoeii 12.04.2007 08:34 Sometimes it will help installing KAV first and ZA later. These include searching for rootkits, keyloggers, and various backdoors based on typical TCP/UDP ports. It allows for diagnosing malware programs known to AVZ and deleting them. Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet (User 'Default user')O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exeO4 - Global Startup: Event Reminder.lnk = C:\Program Files\PrintMaster 16\pmremind.exeO4 - Global Startup: Microsoft

Logfile of HijackThis v1.99.1Scan saved at 12:04:44 PM, on 8/27/2006Platform: Windows XP (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 (6.00.2600.0000)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\Explorer.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeF:\AVGANT~1\avgcc.exeF:\Nokia\NOKIAP~1\LAUNCH~1.EXEF:\Kaspersky AV\avp.exeF:\Counterspy\sunserver.exeC:\Program Files\Creative\MediaSource\Detector\CTDetect.exeF:\Nokia\Nokia PC Suite 6\PcSync2.exeC:\WINDOWS\System32\devldr32.exeF:\AVGANT~1\avgamsvr.exeF:\AVGANT~1\avgupsvc.exeC:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXEF:\Kaspersky AV\avp.exeC:\WINDOWS\System32\CTsvcCDA.EXEC:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exeC:\WINDOWS\System32\nvsvc32.exeC:\Program Files\Common Files\Symantec Shared\SNDSrvc.exeF:\Counterspy\sunThreatEngine.exeF:\Counterspy\SunProtectionServer.exeC:\Program Files\MSN I am not even able to use any cleanup programs as PC has become too slow.

However, when I attempted to visit websites to download certain files (IE 7.0, Yahoo msgr, Aim, even KAS downloads) I am blocked with a 303 error.Now, when running KAS, it shows There's a sticky at the top of this forum, and a Quote: Having problems with spyware and pop-ups? I then got the Farbar Service Scanner from another computer as it wouldn't download either and ran it.

Once you boot into Safe Mode, run HijackThis again, select all suggested entries and click on "Fix checked" button. That may cause it to stallNote 2: If you recieve an error "Illegal operation attempted on a registery key that has been marked for deletion." Please restart the computer"information and logs"In Back to top #11 Frustrated Updater Frustrated Updater Topic Starter Members 10 posts OFFLINE Local time:06:17 AM Posted 06 January 2013 - 10:31 AM I disabled Windows Defender from the find this press scan, and afterwards "save log".

can you download HijackThis now? could you try with zone alarm exited, kav exited or even zone alarm uninstalled to see if you still get those (if you have a router you should be safe to He had suggested Oleg's utility in another thread.Ron YoKenny 27.08.2006 21:40 Onca, welcome to the Kasperski HijackThis help forum.Use a pencil and check off each item when completed.Disable System Restore as

HijackThis log.

Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Usually, it's in the C://Windows directory, but it has been in the Temp folder and also I've seen some in other folders according to the AVG alert. Register a free account to unlock additional features at Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Close ewido and reboot your system back into Normal Mode and post the results of the ewido report scan.

I have previously run ComboFix about a week ago - do you want me to do that again? Bluetooth... - c:\program files\thinkpad\bluetooth software\btsendto_ie_ctx.htm IE: ??? ?-Bluetooth - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm IE: {53F6FCCD-9E22-4d71-86EA-6E43136192AB} IE: {925DAB62-F9AC-4221-806A-057BFB1014AA} IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program In particular, this mechanism allows for excluding the files recognized as trusted by AVZ or digitally signed by Microsoft from the list of files found. It'll generate a log file, copy the content of the log file and post in your comment.

This doesn't seem to have fixed anything as Windows Update and various installers still won't download. In the case of Reader, it will not progress beyond 189 KB of the 977 KB total and my download speed will slow down to zero. Dipak Thank you for your prompt reply VG Sir.


