1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

I have tried everything and it still wont work right.

Discussion in 'Virus & Other Malware Removal' started by Lori 1, Oct 18, 2003.

Thread Status:
Not open for further replies.
Advertisement
  1. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    Logfile of HijackThis v1.97.2
    Scan saved at 5:09:38 AM, on 10/18/03
    Platform: Windows 98 SE (Win9x 4.10.2222A)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGSERV9.EXE
    C:\PROGRAM FILES\WILD FILE\GOBACK\GBPOLL.EXE
    C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGCC32.EXE
    C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZONEALARM.EXE
    C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WORKS SHARED\WKCALREM.EXE
    C:\PROGRAM FILES\WILD FILE\GOBACK\GBMENU.EXE
    C:\PROGRAM FILES\SPYWAREGUARD\SGMAIN.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\PROGRAM FILES\SPYWAREGUARD\SGBHP.EXE
    C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
    C:\WINDOWS\SYSTEM\DDHELP.EXE
    C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
    C:\UNZIPPED\HIJACKTHIS\HIJACKTHIS.EXE

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www07.pogo.com/index.jsp?sls=2&lkey=3f8e6b307a0566250a66fd370000283c
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL
    O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\PROGRAM FILES\SPYWAREGUARD\DLPROTECT.DLL
    O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG_CC] C:\PROGRAM FILES\GRISOFT\AVG6\avgcc32.exe /startup
    O4 - HKLM\..\RunServices: [Avgserv9.exe] C:\PROGRA~1\GRISOFT\AVG6\Avgserv9.exe
    O4 - HKLM\..\RunServices: [GoBack Polling Service] C:\Program Files\Wild File\GoBack\GBPoll.exe
    O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service
    O4 - Startup: Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    O4 - Startup: GoBack.lnk = C:\Program Files\Wild File\GoBack\GBMenu.exe
    O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
    O4 - Global Startup: ZoneAlarm.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
    O8 - Extra context menu item: Search Using Copernic Agent - C:\Program Files\Copernic Agent\Web\SearchExt.htm
    O9 - Extra button: AIM (HKLM)
    O9 - Extra 'Tools' menuitem: Launch Copernic Agent (HKLM)
    O9 - Extra button: Copernic Agent (HKLM)
    O9 - Extra button: ICQ Pro (HKLM)
    O9 - Extra 'Tools' menuitem: ICQ (HKLM)
    O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
    O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37867.3947337963
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {9A57B18E-2F5D-11D5-8997-00104BD12D94} (compid Class) - http://support.gateway.com/support/serialharvest/gwCID.CAB
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
    O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
    O16 - DPF: {CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_03) -
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/bcd48c18cb7498/housecall.antivirus.com/housecall/xscan53.cab
    O16 - DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_02) -
    O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_01) -
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
    O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) - http://games-dl.real.com/gameconsole/Bundler/CAB/RealArcadeRdxIE.cab
     
  2. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    Here is my highjack results, I started out in win 98 , my post is {my start up page.} I have tried everything and my start up page wont stay where I put it. could someone read this and see if they have any ideas what I should do? Thank you in advance. I was told to post this here,where someone knows more about the reading of highjack. And may be able to help me with this frustrating problems.
     
  3. dvk01

    dvk01 Moderator Malware Specialist

    Joined:
    Dec 14, 2002
    Messages:
    56,181
    First Name:
    Derek
    what do you want to be your start page
     
  4. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    My Start up page is Pogo and at the top of the page it has my nickname there Doodles19601
     
  5. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    I have got rid of alot of programs to no avail
     
  6. IMM

    IMM Malware Specialist

    Joined:
    Feb 1, 2002
    Messages:
    3,257
    Is there a setting in SpywareGuard which locks the homepage ?
     
  7. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    I don't think so how, do I lock in my home page with spyguard?
     
  8. dvk01

    dvk01 Moderator Malware Specialist

    Joined:
    Dec 14, 2002
    Messages:
    56,181
    First Name:
    Derek
    after looking at your other thread, it's not a security issue it's all to do with cookie handling, for some reason something is dleting your cookies taht need to stay on the computer to remain logged in to the page yopu want, without them you will always be redirected to the index page to log in each time


    check your settings on IE/tools/options/privacy and set it to low or medium see if that helps and make sure no other anti spyware have it set to delete cookies at shutdown or similar
     
  9. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    Hi Derek, I had my settings at medium, and changed it to low and as far as I know, my cookies are not deleted by any programs at shut down.
     
  10. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    IMM, I didn't see anywhere on SpyGuard to lock in my home page.
     
  11. NiteHawk

    NiteHawk

    Joined:
    Mar 9, 2003
    Messages:
    4,699
    Another place to check would be your Zone Alarm > Privacy > Main > Cookie Control and click on the Custom button there is an option there to Expire cookies Immediately upon receipt or after X number of days.
     
  12. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    Lavasoft Ad-aware Personal Build 6.181
    Logfile created on :Saturday, October 18, 2003 1:18:02 PM
    Created with Ad-aware Personal, free for private use.
    Using reference-file :01R225 13.10.2003
    ______________________________________________________

    Ad-aware Settings
    =========================
    Set : Activate in-depth scan (Recommended)
    Set : Safe mode (always request confirmation)
    Set : Scan active processes
    Set : Scan registry
    Set : Deep scan registry
    Set : Scan my Hosts file


    10-18-03 1:18:02 PM - Scan started. (Custom mode)

    Listing running processes
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    #:1 [kernel32.dll]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4291810249
    Threads : 4
    Priority : High
    FileSize : 460 KB
    FileVersion : 4.10.2222
    ProductVersion : 4.10.2222
    Copyright : Copyright (C) Microsoft Corp. 1991-1999
    CompanyName : Microsoft Corporation
    FileDescription : Win32 Kernel core component
    InternalName : KERNEL32
    OriginalFilename : KERNEL32.DLL
    ProductName : Microsoft(R) Windows(R) Operating System
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:2 [msgsrv32.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294936881
    Threads : 1
    Priority : Normal
    FileSize : 11 KB
    FileVersion : 4.10.2222
    ProductVersion : 4.10.2222
    Copyright : Copyright (C) Microsoft Corp. 1992-1998
    CompanyName : Microsoft Corporation
    FileDescription : Windows 32-bit VxD Message Server
    InternalName : MSGSRV32
    OriginalFilename : MSGSRV32.EXE
    ProductName : Microsoft(R) Windows(R) Operating System
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:3 [mprexe.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294940577
    Threads : 1
    Priority : Normal
    FileSize : 28 KB
    FileVersion : 4.10.1998
    ProductVersion : 4.10.1998
    Copyright : Copyright (C) Microsoft Corp. 1993-1998
    CompanyName : Microsoft Corporation
    FileDescription : WIN32 Network Interface Service Process
    InternalName : MPREXE
    OriginalFilename : MPREXE.EXE
    ProductName : Microsoft(R) Windows(R) Operating System
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:4 [mmtask.tsk]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4290803889
    Threads : 1
    Priority : Normal
    FileSize : 1 KB
    FileVersion : 4.03.1998
    ProductVersion : 4.03.1998
    Copyright : Copyright
    CompanyName : Microsoft Corporation
    FileDescription : Multimedia background task support module
    InternalName : mmtask.tsk
    OriginalFilename : mmtask.tsk
    ProductName : Microsoft Windows
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:5 [avgserv9.exe]
    FilePath : C:\PROGRAM FILES\GRISOFT\AVG6\
    ProcessID : 4290789917
    Threads : 2
    Priority : Normal
    FileSize : 20 KB
    FileVersion : 6.0.1.374
    ProductVersion : 6.0.1.374
    Copyright : Copyright (c) GRISOFT, s.r.o. 1998-2002
    CompanyName : GRISOFT, s.r.o
    FileDescription : AvgServ - displays notification message
    InternalName : AvgServ
    OriginalFilename : AvgServ
    ProductName : AVG6
    Created on : 4/18/03 1:10:27 AM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/10/03 11:00:00 AM

    #:6 [gbpoll.exe]
    FilePath : C:\PROGRAM FILES\WILD FILE\GOBACK\
    ProcessID : 4290790085
    Threads : 1
    Priority : Normal
    FileSize : 88 KB
    FileVersion : 2.1d
    ProductVersion : 2.1d
    Copyright : Copyright
    CompanyName : Wild File, Inc.
    FileDescription : GoBack Polling Service
    InternalName : GoBack Polling Service
    OriginalFilename : GBPoll.exe
    ProductName : GoBack
    Created on : 4/10/03 3:40:25 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/28/99 7:14:00 AM

    #:7 [vsmon.exe]
    FilePath : C:\WINDOWS\SYSTEM\ZONELABS\
    ProcessID : 4290781421
    Threads : 15
    Priority : Normal
    FileSize : 901 KB
    FileVersion : 3.7.211
    ProductVersion : 3.7.211
    Copyright : Copyright
    CompanyName : Zone Labs Inc.
    FileDescription : TrueVector Service
    InternalName : vsmon
    OriginalFilename : vsmon.exe
    ProductName : TrueVector Service
    Created on : 9/20/03 12:19:28 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/5/03 12:37:06 AM

    #:8 [explorer.exe]
    FilePath : C:\WINDOWS\
    ProcessID : 4290856389
    Threads : 6
    Priority : Normal
    FileSize : 176 KB
    FileVersion : 4.72.3110.1
    ProductVersion : 4.72.3110.1
    Copyright : Copyright (C) Microsoft Corp. 1981-1997
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    OriginalFilename : EXPLORER.EXE
    ProductName : Microsoft(R) Windows NT(R) Operating System
    Created on : 4/24/99 3:22:00 AM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:9 [systray.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4290936209
    Threads : 2
    Priority : Normal
    FileSize : 32 KB
    FileVersion : 4.10.2222
    ProductVersion : 4.10.2222
    Copyright : Copyright (C) Microsoft Corp. 1993-1998
    CompanyName : Microsoft Corporation
    FileDescription : System Tray Applet
    InternalName : SYSTRAY
    OriginalFilename : SYSTRAY.EXE
    ProductName : Microsoft(R) Windows(R) Operating System
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:10 [avgcc32.exe]
    FilePath : C:\PROGRAM FILES\GRISOFT\AVG6\
    ProcessID : 4290914057
    Threads : 1
    Priority : Normal
    FileSize : 337 KB
    FileVersion : 6, 0, 0, 515
    ProductVersion : 6, 0, 0, 0
    Copyright : Copyright
    CompanyName : GRISOFT s.r.o.
    FileDescription : AVG Control Center
    InternalName : AvgCC32
    OriginalFilename : AvgCC32.EXE
    ProductName : AVG Anti-Virus System
    Created on : 9/9/03 10:00:59 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/9/03 10:01:00 PM

    #:11 [zonealarm.exe]
    FilePath : C:\PROGRAM FILES\ZONE LABS\ZONEALARM\
    ProcessID : 4290907001
    Threads : 6
    Priority : Normal
    FileSize : 609 KB
    FileVersion : 3.7.211
    ProductVersion : 3.7.211
    Copyright : Copyright
    CompanyName : Zone Labs Inc.
    FileDescription : ZoneAlarm
    InternalName : zonealarm
    OriginalFilename : zonealarm.exe
    ProductName : ZoneAlarm
    Created on : 9/20/03 12:19:34 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/5/03 12:38:08 AM

    #:12 [wkcalrem.exe]
    FilePath : C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WORKS SHARED\
    ProcessID : 4290968593
    Threads : 2
    Priority : Normal
    FileSize : 52 KB
    FileVersion : 5.00.1928.1
    ProductVersion : 5.00.1928.1
    CompanyName : Microsoft
    FileDescription : Microsoft
    InternalName : WkCalRem
    OriginalFilename : WKCALREM.EXE
    ProductName : Microsoft
    Created on : 6/8/00 11:47:55 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/5/99 3:23:00 AM

    #:13 [gbmenu.exe]
    FilePath : C:\PROGRAM FILES\WILD FILE\GOBACK\
    ProcessID : 4290959049
    Threads : 3
    Priority : Normal
    FileSize : 140 KB
    FileVersion : 2.1d
    ProductVersion : 2.1d
    Copyright : Copyright
    CompanyName : Wild File, Inc.
    FileDescription : GoBack Main Menu
    InternalName : GoBack Main Menu
    OriginalFilename : GBMenu.exe
    ProductName : GoBack
    Created on : 4/10/03 3:40:25 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/28/99 7:14:00 AM

    #:14 [sgmain.exe]
    FilePath : C:\PROGRAM FILES\SPYWAREGUARD\
    ProcessID : 4290951729
    Threads : 1
    Priority : Normal
    FileSize : 352 KB
    FileVersion : 2.02.0001
    ProductVersion : 2.02.0001
    Copyright : Copyright (C) 2002-2003 Javacool Software LLC
    CompanyName : Copyright (C) 2002-2003 Javacool Software LLC
    FileDescription : SpywareGuard
    InternalName : sgmain
    OriginalFilename : sgmain.exe
    ProductName : SpywareGuard
    Created on : 8/30/03 12:05:35 AM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 8/30/03 12:05:36 AM

    #:15 [wmiexe.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4290971977
    Threads : 3
    Priority : Normal
    FileSize : 16 KB
    FileVersion : 5.00.1755.1
    ProductVersion : 5.00.1755.1
    Copyright : Copyright (C) Microsoft Corp. 1981-1998
    CompanyName : Microsoft Corporation
    FileDescription : WMI service exe housing
    InternalName : wmiexe
    OriginalFilename : wmiexe.exe
    ProductName : Microsoft(R) Windows NT(R) Operating System
    Created on : 1/1/01
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/24/99 3:22:00 AM

    #:16 [sgbhp.exe]
    FilePath : C:\PROGRAM FILES\SPYWAREGUARD\
    ProcessID : 4291064289
    Threads : 2
    Priority : Normal
    FileSize : 228 KB
    FileVersion : 2.02.0001
    ProductVersion : 2.02.0001
    Copyright : Copyright (C) 2002-2003 Javacool Software LLC.
    CompanyName : Copyright (C) 2002-2003 Javacool Software LLC.
    FileDescription : SG Browser Hijacking Protection
    InternalName : sgbhp
    OriginalFilename : sgbhp.exe
    ProductName : SG Browser Hijacking Protection
    Created on : 8/29/03 4:14:56 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 8/29/03 4:14:58 PM

    #:17 [iexplore.exe]
    FilePath : C:\PROGRAM FILES\INTERNET EXPLORER\
    ProcessID : 4290903837
    Threads : 9
    Priority : Normal
    FileSize : 89 KB
    FileVersion : 6.00.2800.1106
    ProductVersion : 6.00.2800.1106
    CompanyName : Microsoft Corporation
    FileDescription : Internet Explorer
    InternalName : iexplore
    OriginalFilename : IEXPLORE.EXE
    ProductName : Microsoft
    Created on : 7/20/03 2:18:18 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 8/29/02 5:00:00 AM

    #:18 [ddhelp.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4291082685
    Threads : 5
    Priority : Realtime
    FileSize : 32 KB
    FileVersion : 4.09.00.0900
    ProductVersion : 4.09.00.0900
    Copyright : Copyright
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft DirectX Helper
    InternalName : DDHelp.exe
    OriginalFilename : DDHelp.exe
    ProductName : Microsoft
    Created on : 4/3/03 5:00:24 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 12/12/02 5:14:32 AM

    #:19 [ad-aware.exe]
    FilePath : C:\PROGRAM FILES\LAVASOFT\AD-AWARE 6\
    ProcessID : 4291047313
    Threads : 3
    Priority : Normal
    FileSize : 668 KB
    FileVersion : 6.0.1.181
    ProductVersion : 6.0.0.0
    Copyright : Copyright
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-aware 6 core application
    InternalName : Ad-aware.exe
    OriginalFilename : Ad-aware.exe
    ProductName : Lavasoft Ad-aware Plus
    Created on : 10/3/03 11:53:27 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 7/13/03 3:00:20 AM

    Memory scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started deep registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Deep registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Deep scanning and examining files (C:)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Other Object recognized!
    Type : Folder
    Object : C:\Program Files\MedCh



    IGetNet Object recognized!
    Type : File
    Data : nlnp38.exe
    Object : C:\Program Files\FileSubmit\Aussie Koala Bears\
    FileSize : 110 KB
    FileVersion : 5, 0, 0, 4
    ProductVersion : 5, 0, 0, 4
    Copyright : Copyright
    CompanyName : iGetNet, LLC
    FileDescription : NLNinstall
    InternalName : NLNinstall
    OriginalFilename : NLNinstall.exe
    ProductName : iGetNet, LLC - NLNinstall
    Created on : 8/2/03 3:48:12 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 1/10/03 12:05:16 AM



    New.Net Object recognized!
    Type : File
    Data : nnez_388.exe
    Object : C:\Program Files\FileSubmit\Angel Lake\
    FileSize : 192 KB
    Created on : 8/17/03 5:47:23 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 12/16/02 9:46:02 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : [email protected][1].txt
    Object : C:\WINDOWS\TEMP\Cookies\

    Created on : 6/6/03 7:16:22 PM
    Last accessed : 10/14/03 5:00:00 AM
    Last modified : 6/6/03 7:16:24 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : [email protected]rtising[1].txt
    Object : C:\WINDOWS\TEMP\Cookies\

    Created on : 6/6/03 9:07:30 PM
    Last accessed : 10/14/03 5:00:00 AM
    Last modified : 6/6/03 9:07:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : [email protected][1].txt
    Object : C:\WINDOWS\TEMP\Cookies\

    Created on : 6/6/03 9:07:30 PM
    Last accessed : 10/14/03 5:00:00 AM
    Last modified : 6/6/03 9:07:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : [email protected][1].txt
    Object : C:\WINDOWS\TEMP\Cookies\

    Created on : 6/6/03 9:36:29 PM
    Last accessed : 10/14/03 5:00:00 AM
    Last modified : 6/6/03 9:36:30 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : [email protected][2].txt
    Object : C:\WINDOWS\TEMP\Cookies\

    Created on : 6/6/03 10:23:09 PM
    Last accessed : 10/14/03 5:00:00 AM
    Last modified : 6/6/03 10:23:10 PM



    EzuLa Object recognized!
    Type : File
    Data : ttil.exe
    Object : C:\WINDOWS\iLookup\
    FileSize : 56 KB
    FileVersion : 2, 0, 69, 13
    ProductVersion : 1, 0, 0, 1
    Copyright : Copyright 2000
    CompanyName : WebDevAZ2
    FileDescription : eZstub Module
    InternalName : eZstub
    OriginalFilename : eZstub.EXE
    ProductName : eZstub Module
    Created on : 8/2/03 3:48:11 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 4/4/03 10:53:34 PM



    EzuLa Object recognized!
    Type : Folder
    Object : C:\WINDOWS\iLookup



    New.Net Object recognized!
    Type : File
    Data : ndnuninstall5_40.exe
    Object : C:\WINDOWS\
    FileSize : 48 KB
    Created on : 9/16/03 2:09:57 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 9/16/03 2:09:58 PM



    MyWebSearch Toolbar Object recognized!
    Type : File
    Data : backup-20031007-091811-342.dll
    Object : C:\unzipped\hijackthis\
    FileSize : 100 KB
    FileVersion : 1, 0, 0, 2
    ProductVersion : 1, 0, 0, 2
    Copyright : Copyright
    CompanyName : MyWebSearch.com
    FileDescription : MyWebSearch Search Assistant
    InternalName : mwsSrcAs
    OriginalFilename : mwsSrcAs.DLL
    ProductName : MyWebSearch Search Assistant for Internet Explorer
    Created on : 8/30/03 4:40:38 PM
    Last accessed : 10/18/03 5:00:00 AM
    Last modified : 8/30/03 4:40:40 PM



    Disk scan result for C:\
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 12


    Scanning Hosts file(C:\WINDOWS\hosts)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Hosts file scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    1 entries scanned.
    New objects :0
    Objects found so far: 12




    Performing conditional scans..
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    IGetNet Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\URLSearchHooks
    Value : {CFBFAE00-17A6-11D0-99CB-00C04FD64497}


    Conditional scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 1
    Objects found so far: 13


    1:28:40 PM Scan complete

    Summary of this scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Total scanning time :00:10:36:140
    Objects scanned :109003
    Objects identified :13
    Objects ignored :0
    New objects :13
     
  13. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    adware results
     

    Attached Files:

  14. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    Everything is working fine now, what I did was I uninstalled ZoneAlarm, and removed the settings also along with the program.Then I re-downloaded it, and am resetting it ZoneAlarm, but something I am wandering is should I let Yahoo messanger updater through or not. If I don't need it I will set it not to except it. Why I did this all is because I beleived there was a corrupt file or possibly missing file in ZoneAlarm.
     
  15. Lori 1

    Lori 1 Thread Starter

    Joined:
    Jul 25, 2002
    Messages:
    1,505
    I want to Thank you all,and I also want to Thank NiteHawk for his help, on the zonealarm.
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/172802

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice