1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Please help! net.exe & net1.exe - multiple instances running, increasing CPU usage

Discussion in 'Virus & Other Malware Removal' started by jemkins, Mar 30, 2008.

Thread Status:
Not open for further replies.
  1. jemkins

    jemkins Thread Starter

    Joined:
    Mar 30, 2008
    Messages:
    1
    Hi all,
    I'm hoping you can help! My CPU usage is constantly at 97-100% usage - this seems to be caused by multiple instances of net.exe and net1.exe running. We've tried stopping them, renaming them, deleting them - nothing seems to work! Virus scans (AVG) show nothing.
    All information we can find on the net is from 2003, and seems to be specific to different people's Hijack This results...

    So. Here are our Hijack this results if this helps!

    Any assistance with this would be greatly appreciated!!!

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 10:58:08 AM, on 31/03/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16608)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\CameraAssistant.exe
    C:\WINDOWS\system32\ElkCtrl.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe
    C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    C:\Program Files\Lotus\org6\organize\EASYCLIP6.EXE
    C:\Program Files\802.11 Wireless LAN\802.11g Wireless Cardbus & PCI Adapter HW.51 V1.00\WlanCU.exe
    C:\Program Files\WordWeb\wweb32.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\WISPTIS.EXE
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\WINDOWS\system32\net.exe
    C:\WINDOWS\system32\net1.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\f\Local Settings\Temporary Internet Files\Content.IE5\O20FTLCC\HiJackThis[1].exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
    O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
    O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
    O4 - Startup: WordWeb.lnk = C:\Program Files\WordWeb\wweb32.exe
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    O4 - Global Startup: AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe
    O4 - Global Startup: Lotus Organizer EasyClip.lnk = ?
    O4 - Global Startup: Wireless Configuration Utility HW.51.lnk = C:\Program Files\802.11 Wireless LAN\802.11g Wireless Cardbus & PCI Adapter HW.51 V1.00\WlanCU.exe
    O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
    O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
    O8 - Extra context menu item: &WordWeb... - res://C:\WINDOWS\wweb32.dll/lookup.html
    O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\PROGRA~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Web Entry - {B4E30F61-16D9-11D3-85D1-005004229569} - C:\Program Files\Lotus\org6\organize\bandobjs.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (AcDcToday Control) - file:///C:/Program%20Files/Autodesk%20Architectural%20Desktop%203/AcDcToday.ocx
    O16 - DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file:///C:/Program%20Files/Autodesk%20Architectural%20Desktop%203/InstBanr.ocx
    O16 - DPF: {C6637286-300D-11D4-AE0A-0010830243BD} (InstaFred) - file:///C:/Program%20Files/Autodesk%20Architectural%20Desktop%203/InstFred.ocx
    O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview Control) - file:///C:/Program%20Files/Autodesk%20Architectural%20Desktop%203/AcPreview.ocx
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O24 - Desktop Component 0: (no name) - http://www.google.com/ig/modules/datetime_content/b-blue.png

    --
    End of file - 15365 bytes
     
  2. OldTimer

    OldTimer Malware Specialist

    Joined:
    Mar 28, 2008
    Messages:
    237
    Hello jemkins and welcome to the TSG Malware Removal forum. Let's see if we can find what is causing this.

    Before running a new scan let's clean out the temporoary folders.

    Download ATF Cleaner to your Desktop.
    • Double-click ATF-Cleaner.exe to run the program.
    • Click Select All found at the bottom of the list.
    • Click the Empty Selected button.
    If you use Firefox browser, do this also:
    • Click Firefox at the top and choose Select All from the list.
    • Click the Empty Selected button.
    • NOTE : If you would like to keep your saved passwords, please click No at the prompt.
    If you use Opera browser, do this also:
    • Click Opera at the top and choose Select All from the list.
    • Close ALL Internet browsers (very important).
    • Click the Empty Selected button.
    • NOTE : If you would like to keep your saved passwords, please click No at the prompt.
    Click Exit on the Main menu to close the program.

    Now download OTScanIt.exe to your Desktop and double-click on it to extract the files. It will create a folder named OTScanIt on your desktop.

    Note: You must be logged on to the system with an account that has Administrator privileges to run this program.

    • Close ALL OTHER PROGRAMS.
    • Open the OTScanIt folder and double-click on OTScanIt.exe to start the program (if you are running on Vista then right-click the program and choose Run as Administrator).
    • In the Drivers section click on Non-Microsoft.
    • Under Additional Scans click the checkboxes in front of the following items to select them:
      • Reg - BotCheck
        File - Additional Folder Scans
    • Do not change any other settings.
    • Now click the Run Scan button on the toolbar.
    • Let it run unhindered until it finishes.
    • When the scan is complete Notepad will open with the report file loaded in it.
    • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
    • Save the file to your desktop or other location where you can find it back.
    Use the Add Reply button and attach the file in your next post.

    Cheers.

    OT
     
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/698767

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice