Jump to content

sstaarzz

Experienced Members
  • Posts

    11
  • Joined

  • Last visited

Everything posted by sstaarzz

  1. just tried again in safe mode...and they just reappear. i think its time to either reinstall windows or just reformat. have to see how adventureous i am feeling
  2. yes, i believe i have tried to delete the BHO files in safe mode, but I will try again. as i have nothing to lose. I also called the tech support people for panda software and they cant figure out why it wont load or run. They seem to think i have a pop up blocker or something else that is loading that is interefereing with panda. i have panda running on 3 other pcs with no problem.
  3. hi i am still having no luck. i ran a few other programs such as kill box, crap cleaner and cwsserviceremove.reg but the entries are still in my hijack this file and i still cant run panda software. when i ran hijack this i chose to fix those 4 BHO entries but they always reappear. here is my newest hijack this results: Logfile of HijackThis v1.99.1 Scan saved at 6:33:57 PM, on 7/5/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\PROGRA~1\AIM\aim.exe C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\Program Files\ewido\security suite\ewidoctrl.exe C:\Program Files\ewido\security suite\ewidoguard.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\System32\ScsiAccess.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Documents and Settings\Jenn\Desktop\HijackThis.exe O2 - BHO: (no name) - {1FA9A8D8-7FF4-5E77-56F0-0D84C3AC0EB0} - (no file) O2 - BHO: (no name) - {311C6FF0-9786-319E-D429-A17987DFD906} - (no file) O2 - BHO: (no name) - {AC5B134F-9B59-86A7-7B86-0DFB0CE03A2A} - (no file) O2 - BHO: (no name) - {B60D0423-96FE-2D27-4722-ED9740243607} - (no file) O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe (file missing) O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: pocdikdjairv (pspuxrsw6) - Unknown owner - C:\WINDOWS\System32\gpmanokt6.exe (file missing) O23 - Service: ScsiAccess - Unknown owner - C:\WINDOWS\System32\ScsiAccess.EXE O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
  4. Good Morning I have tried to remove those 4 BHO entires...but when i rerun hijack this they are still there. i have also gone into the regestry thru regedit to delete them but it says i am unable to. pc is working faster, can get to IE but still cant run panda software active scan which i would really like to as it cleaned off 3 other pcs that i have. thanks again
  5. ok, here goes. i will post the most recent hijack this log as well as ewido text. pc seems to be doing better but i still cannot run active scan from panda software. i get a little yellow exclamation point ewido_Scan_report_20050704.txt hijackthis4.TXT ewido_Scan_report_20050704.txt hijackthis4.TXT
  6. that is so odd that noadware can do more harm than good. i do have lavasoft adware. which microsoft anti-spyware is decent? Ewido is still scanning the pc (its taking a very long time) and has found some items which i have deleted. when it is done, i will rerun hijack this (i did update) and will post it here. everyone here is so helpful and knowledgeable. thank you all
  7. to be honest, i did attempt to remove all 4 but when i rerun hijack this, they reappear. i went to regedit and tried to remove them in the registry but it said it was denied and would not allow me to do so.
  8. i use noadware, search and destroy, in addition to AVG antivirus and online virus checker Trend micro. I am presently running ewido and i will also download the newest hijack this. thanks again
  9. hi i can now log onto IE and use AIM (pc still a bit sluggish tho) but i cannot use panda software. i get to the part to scan all computer and it just sits there. here is my hijack this log: Logfile of HijackThis v1.98.2 Scan saved at 5:43:06 PM, on 7/4/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\AIM\aim.exe C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\System32\ScsiAccess.EXE C:\WINDOWS\System32\svchost.exe C:\Hijack This\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.food.com/ O2 - BHO: (no name) - {1FA9A8D8-7FF4-5E77-56F0-0D84C3AC0EB0} - (no file) O2 - BHO: (no name) - {311C6FF0-9786-319E-D429-A17987DFD906} - (no file) O2 - BHO: (no name) - {AC5B134F-9B59-86A7-7B86-0DFB0CE03A2A} - (no file) O2 - BHO: (no name) - {B60D0423-96FE-2D27-4722-ED9740243607} - (no file) O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab thanks for any help.
  10. thanks for the reply.. i am in the process of running it now..is taking a long time but there were lots and lots of files to be deleted. hope it will allow us to get back to using interent explorer, AIM and other applications. otherwise, its time to reformat or reinstall windows. not sure which route i want to go at this point.
  11. hi i am a brand new user of CCleaner. I just ran CCleaner on a pc that is no longer able to access interent explorer, use AOL instant messenger and some other programs. we can get to the internet using firefox. i ran hijack this and was told then to run CCleaner. it found tons and tons of files, seems to be mostly temporary files. is it safe just to delete all the files? i notice there is some reference to microsoft office...will CCleaner delete any important files such as text files, etc? i will attach my hijack this and CCleaner text files just in case it might prove useful to someone. thanks ps...not sure i attached the text files correctly as i dont see them!!!!!!!!!!!!!
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.