Spybot S&D problem

Discussion in 'Computer Support' started by AD, Aug 11, 2004.

  1. AD

    AD Guest

    Every time I try to run a scan with Spybot the computer just turns itself
    off!
    I have tried in various modes, various settings etc.... I have even removed
    the programme and downloaded fresh version ....no matter what, within a very
    short time of starting the scan the computer turns itself off!
    No such problem with Ad-aware SE
    Any suggestion as to what might be the cause?
    Thanks
    AD
     
    AD, Aug 11, 2004
    #1
    1. Advertising

  2. AD

    °Mike° Guest

    Start here:
    http://uk.geocities.com/personel44/maintenance.html

    If that doesn't help, install HijackThis and post the
    contents of your log here.

    HijackThis
    http://mjc1.com/mirror/hjt/
    http://www.spywareinfo.com/~merijn/files/hijackthis.zip
    http://209.133.47.12/~merijn/files/HijackThis.exe
    http://aumha.org/downloads/hijackthis.zip
    http://aumha.org/downloads/hijackthis.exe


    On Wed, 11 Aug 2004 15:31:48 GMT, in
    <EZqSc.117071$>
    AD scrawled:

    >Every time I try to run a scan with Spybot the computer just turns itself
    >off!
    >I have tried in various modes, various settings etc.... I have even removed
    >the programme and downloaded fresh version ....no matter what, within a very
    >short time of starting the scan the computer turns itself off!
    >No such problem with Ad-aware SE
    >Any suggestion as to what might be the cause?
    >Thanks
    >AD
    >
    >


    --
    Basic computer maintenance
    http://uk.geocities.com/personel44/maintenance.html
     
    °Mike°, Aug 11, 2004
    #2
    1. Advertising

  3. AD

    AD Guest

    Hi,
    Here is the Hijack log:
    Logfile of HijackThis v1.98.2
    Scan saved at 19:19:31, on 11/08/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\SYSTEM32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Citrix\ICA Client\ssonsvr.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\Program Files\Executive Software\Diskeeper\DkService.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\tcpsvcs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\VetMsgNT.exe
    C:\WINDOWS\system32\ZONELABS\vsmon.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\CA\ETRUST~1\ETRUST~1\VetTray.exe
    C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe
    C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
    C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
    C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\PROGRA~1\MAILWA~1\MAILWA~1.EXE
    C:\Program Files\Zone Labs\ZoneAlarm\zapro.exe
    C:\Program Files\Lexmark X74-X75\lxbbbmon.exe
    C:\Program Files\Outlook Express\MSIMN.EXE
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Antoine & Luis\Desktop\downoads\hijackthis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
    http://www.google.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    http://www.pcadvisor.co.uk
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    O1 - Hosts: 203.161.127.141 www.dcsresearch.com
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
    C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
    C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Merriam-Webster Online BHO -
    {5ADA9CAC-04F9-4DD2-ABFD-74D673BE8624} - C:\WINDOWS\_MWOLTB.DLL
    O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no file)
    O2 - BHO: AcroIEToolbarHelper Class -
    {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat
    6.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: (no name) - {B3199150-33FF-4DB1-90F9-F4C923C06E34} - (no file)
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -
    C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Merriam-Webster Online -
    {B7B76DD6-B6F0-4443-AF81-6A3ECF12A57D} - C:\WINDOWS\_MWOLTB.DLL
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
    O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~1\VetTray.exe
    O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe
    O4 - HKLM\..\Run: [Lexmark X74-X75] "C:\Program Files\Lexmark
    X74-X75\lxbbbmgr.exe"
    O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
    O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
    O4 - HKLM\..\Run: [PCDRealtime] C:\WINDOWS\realtime.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
    Files\Java\j2re1.4.2_05\bin\jusched.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [MailWasher] C:\PROGRA~1\MAILWA~1\MAILWA~1.EXE
    O4 - HKCU\..\RunServicesOnce: [washindex] C:\Program
    Files\Washer\washidx.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
    Office\Office10\OSA.EXE
    O4 - Global Startup: ZoneAlarm Pro.lnk = C:\Program Files\Zone
    Labs\ZoneAlarm\zapro.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O8 - Extra context menu item: E&xport to Microsoft Excel -
    res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: MWOL &Dictionary -
    res://C:\WINDOWS\_MWOLTB.DLL/23/219
    O8 - Extra context menu item: MWOL &Thesaurus -
    res://C:\WINDOWS\_MWOLTB.DLL/23/220
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console -
    {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: TREND MICRO HouseCall -
    {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} -
    http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php (file
    missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
    C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Windows Messenger -
    {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
    Files\Messenger\MSMSGS.EXE
    O14 - IERESET.INF: START_PAGE_URL=http://www.pcadvisor.co.uk
    O16 - DPF: {3CF32649-D1C0-4F42-AB44-ED284748920B} (Merriam-Webster Online
    Toolbar) - http://www.merriam-webster.com/toolbar/webinstall.cab
    O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime Environment
    1.4.0_03) -
    O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime Environment
    1.4.1_01) -


    Thanks
    AD

    "°Mike°" <> wrote in message
    news:...
    > Start here:
    > http://uk.geocities.com/personel44/maintenance.html
    >
    > If that doesn't help, install HijackThis and post the
    > contents of your log here.
    >
    > HijackThis
    > http://mjc1.com/mirror/hjt/
    > http://www.spywareinfo.com/~merijn/files/hijackthis.zip
    > http://209.133.47.12/~merijn/files/HijackThis.exe
    > http://aumha.org/downloads/hijackthis.zip
    > http://aumha.org/downloads/hijackthis.exe
    >
    >
    > On Wed, 11 Aug 2004 15:31:48 GMT, in
    > <EZqSc.117071$>
    > AD scrawled:
    >
    > >Every time I try to run a scan with Spybot the computer just turns itself
    > >off!
    > >I have tried in various modes, various settings etc.... I have even

    removed
    > >the programme and downloaded fresh version ....no matter what, within a

    very
    > >short time of starting the scan the computer turns itself off!
    > >No such problem with Ad-aware SE
    > >Any suggestion as to what might be the cause?
    > >Thanks
    > >AD
    > >
    > >

    >
    > --
    > Basic computer maintenance
    > http://uk.geocities.com/personel44/maintenance.html
     
    AD, Aug 11, 2004
    #3
  4. AD

    Guest

    Are you running any other adware/spyware programs at the same time, or are
    any installed? I don't have many problems with S:SAD and Adaware, but I've
    heard that S:SAD and some other similar programs can conflict with each
    other, and while the result isn't usually as bad as the computer turning
    itself off, it might be the reason behind this problem...

    "AD" <> wrote in message
    news:EZqSc.117071$...
    > Every time I try to run a scan with Spybot the computer just turns itself
    > off!
    > I have tried in various modes, various settings etc.... I have even

    removed
    > the programme and downloaded fresh version ....no matter what, within a

    very
    > short time of starting the scan the computer turns itself off!
    > No such problem with Ad-aware SE
    > Any suggestion as to what might be the cause?
    > Thanks
    > AD
    >
    >
    >
     
    , Aug 11, 2004
    #4
  5. AD

    spiceman Guest

    "AD" <> wrote in message
    news:EZqSc.117071$...
    > Every time I try to run a scan with Spybot the computer just turns itself
    > off!
    > I have tried in various modes, various settings etc.... I have even

    removed
    > the programme and downloaded fresh version ....no matter what, within a

    very
    > short time of starting the scan the computer turns itself off!
    > No such problem with Ad-aware SE
    > Any suggestion as to what might be the cause?
    > Thanks
    > AD


    No, but you could try here:
    http://www.spybot.info/en/contact/bugs.html

    All the best, spiceman
     
    spiceman, Aug 11, 2004
    #5
  6. AD

    °Mike° Guest

    I said, if THIS doesn't help:
    http://uk.geocities.com/personel44/maintenance.html


    On Wed, 11 Aug 2004 18:21:47 GMT, in
    <%stSc.117114$>
    AD scrawled:

    >Hi,
    >Here is the Hijack log:
    >Logfile of HijackThis v1.98.2
    >Scan saved at 19:19:31, on 11/08/2004
    >Platform: Windows XP SP1 (WinNT 5.01.2600)
    >MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)


    >R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    >http://www.pcadvisor.co.uk


    Unless the above is your preferred start page, have
    HijackThis fix it.


    >O1 - Hosts: 203.161.127.141 www.dcsresearch.com


    Have HijackThis fix the above.


    >O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no file)


    Have HijackThis fix the above.


    >O3 - Toolbar: (no name) - {B3199150-33FF-4DB1-90F9-F4C923C06E34} - (no file)


    Have HijackThis fix the above.


    >O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe


    >O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe


    >O4 - HKLM\..\Run: [PCDRealtime] C:\WINDOWS\realtime.exe


    >O4 - HKCU\..\RunServicesOnce: [washindex] C:\Program
    >Files\Washer\washidx.exe


    >O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
    >Office\Office10\OSA.EXE


    Turn off this Office resource hog.


    >O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present


    Have HijackThis fix the above.


    >O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    >C:\WINDOWS\System32\msjava.dll


    Have HijackThis fix the above.


    >O9 - Extra 'Tools' menuitem: Sun Java Console -
    >{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll


    Have HijackThis fix the above.


    >O9 - Extra button: TREND MICRO HouseCall - {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} -
    >http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php (file missing)


    Have HijackThis fix the above.


    >O14 - IERESET.INF: START_PAGE_URL=http://www.pcadvisor.co.uk


    Unless your computer was provided by PCAdvisor, have HijackThis
    fix the above.


    >O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime Environment
    >1.4.0_03) -


    Have HijackThis fix the above.


    >O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime Environment
    >1.4.1_01) -


    Have HijackThis fix the above.


    If you still have problems after this, go back and follow
    the recommendations in my signature. If, and ONLY if,
    you follow the guide to the letter, rescan and post
    a revised log.


    --
    Basic computer maintenance
    http://uk.geocities.com/personel44/maintenance.html
     
    °Mike°, Aug 11, 2004
    #6
  7. AD

    AD Guest

    ?
    "°Mike°" <> wrote in message
    news:...
    > I said, if THIS doesn't help:
    > http://uk.geocities.com/personel44/maintenance.html
    >
    >
    > On Wed, 11 Aug 2004 18:21:47 GMT, in
    > <%stSc.117114$>
    > AD scrawled:
    >
    > >Hi,
    > >Here is the Hijack log:
    > >Logfile of HijackThis v1.98.2
    > >Scan saved at 19:19:31, on 11/08/2004
    > >Platform: Windows XP SP1 (WinNT 5.01.2600)
    > >MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    >
    > >R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    > >http://www.pcadvisor.co.uk

    >
    > Unless the above is your preferred start page, have
    > HijackThis fix it.
    >
    >
    > >O1 - Hosts: 203.161.127.141 www.dcsresearch.com

    >
    > Have HijackThis fix the above.
    >
    >
    > >O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no file)

    >
    > Have HijackThis fix the above.
    >
    >
    > >O3 - Toolbar: (no name) - {B3199150-33FF-4DB1-90F9-F4C923C06E34} - (no

    file)
    >
    > Have HijackThis fix the above.
    >
    >
    > >O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe

    >
    > >O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe

    >
    > >O4 - HKLM\..\Run: [PCDRealtime] C:\WINDOWS\realtime.exe

    >
    > >O4 - HKCU\..\RunServicesOnce: [washindex] C:\Program
    > >Files\Washer\washidx.exe

    >
    > >O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
    > >Office\Office10\OSA.EXE

    >
    > Turn off this Office resource hog.
    >
    >
    > >O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions

    present
    >
    > Have HijackThis fix the above.
    >
    >
    > >O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    > >C:\WINDOWS\System32\msjava.dll

    >
    > Have HijackThis fix the above.
    >
    >
    > >O9 - Extra 'Tools' menuitem: Sun Java Console -
    > >{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

    >
    > Have HijackThis fix the above.
    >
    >
    > >O9 - Extra button: TREND MICRO HouseCall -

    {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} -
    > >http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php

    (file missing)
    >
    > Have HijackThis fix the above.
    >
    >
    > >O14 - IERESET.INF: START_PAGE_URL=http://www.pcadvisor.co.uk

    >
    > Unless your computer was provided by PCAdvisor, have HijackThis
    > fix the above.
    >
    >
    > >O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime

    Environment
    > >1.4.0_03) -

    >
    > Have HijackThis fix the above.
    >
    >
    > >O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime

    Environment
    > >1.4.1_01) -

    >
    > Have HijackThis fix the above.
    >
    >
    > If you still have problems after this, go back and follow
    > the recommendations in my signature. If, and ONLY if,
    > you follow the guide to the letter, rescan and post
    > a revised log.
    >
    >
    > --
    > Basic computer maintenance
    > http://uk.geocities.com/personel44/maintenance.html
     
    AD, Aug 11, 2004
    #7
  8. AD

    darren Guest

    X-No-archive: yes'
    "AD" <> wrote in message
    news:BwvSc.117325$...

    > ?


    ??

    > "°Mike°" <> wrote in message
    > news:...
    > > I said, if THIS doesn't help:
    > > http://uk.geocities.com/personel44/maintenance.html
    > >
    > >
    > > On Wed, 11 Aug 2004 18:21:47 GMT, in
    > > <%stSc.117114$>
    > > AD scrawled:
    > >
    > > >Hi,
    > > >Here is the Hijack log:
    > > >Logfile of HijackThis v1.98.2
    > > >Scan saved at 19:19:31, on 11/08/2004
    > > >Platform: Windows XP SP1 (WinNT 5.01.2600)
    > > >MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    > >
    > > >R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    > > >http://www.pcadvisor.co.uk

    > >
    > > Unless the above is your preferred start page, have
    > > HijackThis fix it.
    > >
    > >
    > > >O1 - Hosts: 203.161.127.141 www.dcsresearch.com

    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no

    file)
    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O3 - Toolbar: (no name) - {B3199150-33FF-4DB1-90F9-F4C923C06E34} - (no

    > file)
    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe

    > >
    > > >O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe

    > >
    > > >O4 - HKLM\..\Run: [PCDRealtime] C:\WINDOWS\realtime.exe

    > >
    > > >O4 - HKCU\..\RunServicesOnce: [washindex] C:\Program
    > > >Files\Washer\washidx.exe

    > >
    > > >O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
    > > >Office\Office10\OSA.EXE

    > >
    > > Turn off this Office resource hog.
    > >
    > >
    > > >O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions

    > present
    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    > > >C:\WINDOWS\System32\msjava.dll

    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O9 - Extra 'Tools' menuitem: Sun Java Console -
    > > >{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O9 - Extra button: TREND MICRO HouseCall -

    > {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} -
    > > >http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php

    > (file missing)
    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O14 - IERESET.INF: START_PAGE_URL=http://www.pcadvisor.co.uk

    > >
    > > Unless your computer was provided by PCAdvisor, have HijackThis
    > > fix the above.
    > >
    > >
    > > >O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime

    > Environment
    > > >1.4.0_03) -

    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > >O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime

    > Environment
    > > >1.4.1_01) -

    > >
    > > Have HijackThis fix the above.
    > >
    > >
    > > If you still have problems after this, go back and follow
    > > the recommendations in my signature. If, and ONLY if,
    > > you follow the guide to the letter, rescan and post
    > > a revised log.
    > >
    > >
    > > --
    > > Basic computer maintenance
    > > http://uk.geocities.com/personel44/maintenance.html

    >
    >
     
    darren, Aug 11, 2004
    #8
  9. AD

    nota chance Guest

    darren wrote:

    > X-No-archive: yes'
    > "AD" <> wrote in message
    > news:BwvSc.117325$...
    >
    >
    >>?

    >
    >
    > ??
    >
    >
    >>"°Mike°" <> wrote in message
    >>news:...
    >>
    >>>I said, if THIS doesn't help:
    >>>http://uk.geocities.com/personel44/maintenance.html
    >>>
    >>>
    >>>On Wed, 11 Aug 2004 18:21:47 GMT, in
    >>> <%stSc.117114$>
    >>> AD scrawled:
    >>>
    >>>
    >>>>Hi,
    >>>>Here is the Hijack log:
    >>>>Logfile of HijackThis v1.98.2
    >>>>Scan saved at 19:19:31, on 11/08/2004
    >>>>Platform: Windows XP SP1 (WinNT 5.01.2600)
    >>>>MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
    >>>
    >>>>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    >>>>http://www.pcadvisor.co.uk
    >>>
    >>>Unless the above is your preferred start page, have
    >>>HijackThis fix it.
    >>>
    >>>
    >>>
    >>>>O1 - Hosts: 203.161.127.141 www.dcsresearch.com
    >>>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no

    >
    > file)
    >
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O3 - Toolbar: (no name) - {B3199150-33FF-4DB1-90F9-F4C923C06E34} - (no

    >>
    >>file)
    >>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
    >>>
    >>>>O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe
    >>>
    >>>>O4 - HKLM\..\Run: [PCDRealtime] C:\WINDOWS\realtime.exe
    >>>
    >>>>O4 - HKCU\..\RunServicesOnce: [washindex] C:\Program
    >>>>Files\Washer\washidx.exe
    >>>
    >>>>O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
    >>>>Office\Office10\OSA.EXE
    >>>
    >>>Turn off this Office resource hog.
    >>>
    >>>
    >>>
    >>>>O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions

    >>
    >>present
    >>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}-
    >>>>C:\WINDOWS\System32\msjava.dll
    >>>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O9 - Extra 'Tools' menuitem: Sun Java Console -
    >>>>{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    >>>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O9 - Extra button: TREND MICRO HouseCall -

    >>
    >>{2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} -
    >>
    >>>>http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php

    >>
    >>(file missing)
    >>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O14 - IERESET.INF: START_PAGE_URL=http://www.pcadvisor.co.uk
    >>>
    >>>Unless your computer was provided by PCAdvisor, have HijackThis
    >>>fix the above.
    >>>
    >>>
    >>>
    >>>>O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} (Java Runtime

    >>
    >>Environment
    >>
    >>>>1.4.0_03) -
    >>>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>
    >>>>O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime

    >>
    >>Environment
    >>
    >>>>1.4.1_01) -
    >>>
    >>>Have HijackThis fix the above.
    >>>
    >>>
    >>>If you still have problems after this, go back and follow
    >>>the recommendations in my signature. If, and ONLY if,
    >>>you follow the guide to the letter, rescan and post
    >>>a revised log.
    >>>
    >>>
    >>>--
    >>>Basic computer maintenance
    >>>http://uk.geocities.com/personel44/maintenance.html

    >>
    >>

    >
    >

    wow a lot in that one from what I see too def waste the no file ones for
    sure in hijack. I love that tool one of my favs here too.
     
    nota chance, Aug 11, 2004
    #9
  10. AD

    °Mike° Guest

    Huh? Translation?


    On Wed, 11 Aug 2004 22:28:40 GMT, in
    <s4xSc.3206$>
    nota chance scrawled:

    <snip>

    >wow a lot in that one from what I see too def waste the no file ones for
    >sure in hijack. I love that tool one of my favs here too.


    --
    Basic computer maintenance
    http://uk.geocities.com/personel44/maintenance.html
     
    °Mike°, Aug 12, 2004
    #10
  11. AD

    AD Guest

    ?
    "°Mike°" <> wrote in message
    news:...
    > Huh? Translation?
    >
    >
    > On Wed, 11 Aug 2004 22:28:40 GMT, in
    > <s4xSc.3206$>
    > nota chance scrawled:
    >
    > <snip>
    >
    > >wow a lot in that one from what I see too def waste the no file ones for
    > >sure in hijack. I love that tool one of my favs here too.

    >
    > --
    > Basic computer maintenance
    > http://uk.geocities.com/personel44/maintenance.html
     
    AD, Aug 12, 2004
    #11
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. this sucks

    Re: spybot download problem

    this sucks, Aug 2, 2003, in forum: Computer Support
    Replies:
    0
    Views:
    476
    this sucks
    Aug 2, 2003
  2. °Mike°

    Re: spybot download problem

    °Mike°, Aug 2, 2003, in forum: Computer Support
    Replies:
    4
    Views:
    552
    °Mike°
    Aug 3, 2003
  3. Sharon

    Spybot Update Problem

    Sharon, Nov 6, 2003, in forum: Computer Support
    Replies:
    3
    Views:
    559
    trout
    Nov 6, 2003
  4. code_wrong

    worm/spybot.17.t (worm spybot 17t) detected by AVG

    code_wrong, May 15, 2004, in forum: Computer Security
    Replies:
    0
    Views:
    742
    code_wrong
    May 15, 2004
  5. Danny

    Worm\Spybot (P2P-Worm.Win32.SpyBot.a)

    Danny, Aug 14, 2005, in forum: Computer Information
    Replies:
    0
    Views:
    529
    Danny
    Aug 14, 2005
Loading...

Share This Page