Computer Forums

Member Login

Remember Me? Sign Up! | Forgot Password
 
Slogan
 
 
Old 03-06-2008, 01:46 AM   #1 (permalink)
Wildside's Avatar
 
Win7 + Zune HD = ♥

Join Date: Jan 2007

Location: Riverside, CA

Posts: 2,730

Wildside is on a distinguished road

Send a message via MSN to Wildside
Exclamation my Hijackthis log, a virus keeps closing programs

idk what is going on, but ever since i tried updating my driver for my sound card, i accidently let some viruses in. Now my Windows Explorer, Internet, sidebar, etc keep quitting or restarting over n over n it's driving me crazy! I have Kaspersky Internet Security 7.0 n Spybot 1.5.2, but they cant find the exact problems.

here is my hijackthis log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:38:01 AM, on 3/5/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Fraps\fraps.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Saitek\SD6\Software\ProfilerU.exe
C:\Program Files\Saitek\SD6\Software\SaiMfd.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Windows\System32\CTHELPER.EXE
C:\Windows\System32\CTXFIHLP.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Windows\System32\CTXFISPI.EXE
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\explorer.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program
Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot
- Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program
files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program
files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RevoTaskbarApp] C:\Windows\system32\RevoTask.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ProfilerU] C:\Program Files\Saitek\SD6\Software\ProfilerU.exe
O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\SD6\Software\SaiMfd.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0
\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User
'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User
'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User
'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11
\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program
Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11
\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot -
Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-
58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) -
http://www.systemrequirementslab.com/sysreqlab2.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl-
esd.sun.com/update/1.6.0/jinstall-6u3-windows-i586-jc.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~2.0\r3hook.dll,C:\PROG RA~1\KASPER~1\KASPER~2.0
\adialhk.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} -
C:\Windows\System32\DreamScene.dll
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky
Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google
Updater\GoogleUpdaterService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program
Files\Spybot - Search & Destroy\SDWinSec.exe
--
End of file - 6494 bytes

i need help badly! I dont want to pay some Geek Squad to fix it! Help me guys, plz!
__________________
--Windows 7 64-bit Home Premium - OEM (10/22/09)
--AMD Phenom II 940 w/ MX-2 and Tuniq @ 3.589GHz
--OCZ Reaper HPC Edition 4GB DDR2 800 @ 872 4-4-4-12-24 2.2v
--SAPPHIRE Radeon HD 3870 X2 PCI-E x16 w/ MX-2
--MSI K9A2 Platinum 790FX SB600 AM2+
--Seagate 3.5" 1TB SATA II 3.0Gb/s 7200.12 7200 RPM 32MB Cache
--COOLER MASTER HAF 932
--Creative Sound Blaster X-Fi XtremeGamer 7.1 Channels 24-bit 96KHz
--Xclio Greatpower series 700w X14 Silent 120mm Fan Series

Steam - xWildsidex, Crysis/Crysis Wars - Wildside, Games for Windows - LIVE - xWildsidex, Diablo 2/LoD - Wildside-1, Quake Live - Wildside, Wii Friends Code - 4206-7308-6394-7531

Last edited by Wildside; 03-06-2008 at 02:46 PM.
Wildside is offline  
Old 03-06-2008, 04:52 AM   #2 (permalink)
Redmo0n's Avatar
 
Techalicious

Join Date: Aug 2007

Location: Perth, Australia

Posts: 1,573

Redmo0n is on a distinguished road

Send a message via MSN to Redmo0n
Default Re: my Hijackthis log, a virus keeps closing programs

Can you fix the spaces in the log its hard to read :/
__________________
Back to stay?
Redmo0n is offline  
Old 03-06-2008, 05:01 AM   #3 (permalink)
Ewc1307's Avatar
 
Formerly known as BuggyVeyron

Join Date: Feb 2008

Location: England

Posts: 423

Ewc1307 is on a distinguished road

Send a message via MSN to Ewc1307
Default Re: my Hijackthis log, a virus keeps closing programs

Hi Wildside, please re-run HJT and "Do a system scan and save a logfile".

When the Notepad window opens, do Ctrl-A to Select All, and copy its contents here. Most of what it lists will be harmless or even essential, don't fix anything yet.
__________________
Ewc1307 is offline  
Old 03-06-2008, 02:45 PM   #4 (permalink)
Wildside's Avatar
 
Win7 + Zune HD = ♥

Join Date: Jan 2007

Location: Riverside, CA

Posts: 2,730

Wildside is on a distinguished road

Send a message via MSN to Wildside
Default Re: my Hijackthis log, a virus keeps closing programs

Quote:
Originally Posted by BuggVeyron View Post
Hi Wildside, please re-run HJT and "Do a system scan and save a logfile".

When the Notepad window opens, do Ctrl-A to Select All, and copy its contents here. Most of what it lists will be harmless or even essential, don't fix anything yet.
ok, ill redo it. I have like a Trojen.generic, which is a pack of Trojens, n 3 others that Kaspersky cant get rid of but claims to nuetralized. I just got an AVG trial version to see if that can find it.

EDIT:

here is a new hijackthis log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:01:43 AM, on 3/6/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Fraps\fraps.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Saitek\SD6\Software\ProfilerU.exe
C:\Program Files\Saitek\SD6\Software\SaiMfd.exe
C:\Windows\System32\CTHELPER.EXE
C:\Windows\System32\CTXFIHLP.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\CTXFISPI.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\DllHost.exe
C:\Windows\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program
Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot
- Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program
files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program
files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RevoTaskbarApp] C:\Windows\system32\RevoTask.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ProfilerU] C:\Program Files\Saitek\SD6\Software\ProfilerU.exe
O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\SD6\Software\SaiMfd.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0
\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User
'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User
'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User
'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11
\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program
Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11
\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot -
Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-
58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) -
http://www.systemrequirementslab.com/sysreqlab2.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl-
esd.sun.com/update/1.6.0/jinstall-6u3-windows-i586-jc.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~2.0\r3hook.dll,C:\PROG RA~1\KASPER~1\KASPER~2.0
\adialhk.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} -
C:\Windows\System32\DreamScene.dll
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky
Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google
Updater\GoogleUpdaterService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program
Files\Spybot - Search & Destroy\SDWinSec.exe
--
End of file - 6359 bytes

this is all i got. Oh, i just discovered im connected to the internet not on my network. I cant create, find any networks. Everything is off in network center n Kaspersky cant scan the network if Network Discovery isnt on, n i cant turn it on!

THIS IS DRIVING ME CRAZY!
__________________
--Windows 7 64-bit Home Premium - OEM (10/22/09)
--AMD Phenom II 940 w/ MX-2 and Tuniq @ 3.589GHz
--OCZ Reaper HPC Edition 4GB DDR2 800 @ 872 4-4-4-12-24 2.2v
--SAPPHIRE Radeon HD 3870 X2 PCI-E x16 w/ MX-2
--MSI K9A2 Platinum 790FX SB600 AM2+
--Seagate 3.5" 1TB SATA II 3.0Gb/s 7200.12 7200 RPM 32MB Cache
--COOLER MASTER HAF 932
--Creative Sound Blaster X-Fi XtremeGamer 7.1 Channels 24-bit 96KHz
--Xclio Greatpower series 700w X14 Silent 120mm Fan Series

Steam - xWildsidex, Crysis/Crysis Wars - Wildside, Games for Windows - LIVE - xWildsidex, Diablo 2/LoD - Wildside-1, Quake Live - Wildside, Wii Friends Code - 4206-7308-6394-7531

Last edited by Wildside; 03-06-2008 at 03:08 PM.
Wildside is offline  
Old 03-06-2008, 04:40 PM   #5 (permalink)
Wildside's Avatar
 
Win7 + Zune HD = ♥

Join Date: Jan 2007

Location: Riverside, CA

Posts: 2,730

Wildside is on a distinguished road

Send a message via MSN to Wildside
Default Re: my Hijackthis log, a virus keeps closing programs

omg i cant stand it! I need to reinstall Windows Vista Ultimate to fix this problem.

im gonna get a new activation number right now.
__________________
--Windows 7 64-bit Home Premium - OEM (10/22/09)
--AMD Phenom II 940 w/ MX-2 and Tuniq @ 3.589GHz
--OCZ Reaper HPC Edition 4GB DDR2 800 @ 872 4-4-4-12-24 2.2v
--SAPPHIRE Radeon HD 3870 X2 PCI-E x16 w/ MX-2
--MSI K9A2 Platinum 790FX SB600 AM2+
--Seagate 3.5" 1TB SATA II 3.0Gb/s 7200.12 7200 RPM 32MB Cache
--COOLER MASTER HAF 932
--Creative Sound Blaster X-Fi XtremeGamer 7.1 Channels 24-bit 96KHz
--Xclio Greatpower series 700w X14 Silent 120mm Fan Series

Steam - xWildsidex, Crysis/Crysis Wars - Wildside, Games for Windows - LIVE - xWildsidex, Diablo 2/LoD - Wildside-1, Quake Live - Wildside, Wii Friends Code - 4206-7308-6394-7531
Wildside is offline  
Old 03-06-2008, 05:40 PM   #6 (permalink)
Ewc1307's Avatar
 
Formerly known as BuggyVeyron

Join Date: Feb 2008

Location: England

Posts: 423

Ewc1307 is on a distinguished road

Send a message via MSN to Ewc1307
Default Re: my Hijackthis log, a virus keeps closing programs

Hi Wildside, i am currently analysing this log.

Please be patient and i will be back shortly.
__________________

Last edited by Ewc1307; 03-06-2008 at 06:08 PM.
Ewc1307 is offline  
Old 03-06-2008, 06:20 PM   #7 (permalink)
Ewc1307's Avatar
 
Formerly known as BuggyVeyron

Join Date: Feb 2008

Location: England

Posts: 423

Ewc1307 is on a distinguished road

Send a message via MSN to Ewc1307
Default Re: my Hijackthis log, a virus keeps closing programs

Wildside, please mark the boxes next to these entries,


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O13 - Gopher Prefix:


Close all other windows, then click Fix Checked.

After that, Reboot and post a new HJT log.
__________________
Ewc1307 is offline  
Old 03-06-2008, 10:11 PM   #8 (permalink)
Wildside's Avatar
 
Win7 + Zune HD = ♥

Join Date: Jan 2007

Location: Riverside, CA

Posts: 2,730

Wildside is on a distinguished road

Send a message via MSN to Wildside
Default Re: my Hijackthis log, a virus keeps closing programs

Quote:
Originally Posted by BuggVeyron View Post
Wildside, please mark the boxes next to these entries,


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O13 - Gopher Prefix:


Close all other windows, then click Fix Checked.

After that, Reboot and post a new HJT log.
too late man, i already formatted my HDD n trying to reinstall Windows Vista again. However, i have having trouble installing it. I believe i am missing a boot file i wasnt suppose to delete or something. Trying to reinstall as we speak n right now im on my Wii.

i was just, so mad n angry at myself i didnt want to mess with it anymore. Sry dude. Thx for the help though.
__________________
--Windows 7 64-bit Home Premium - OEM (10/22/09)
--AMD Phenom II 940 w/ MX-2 and Tuniq @ 3.589GHz
--OCZ Reaper HPC Edition 4GB DDR2 800 @ 872 4-4-4-12-24 2.2v
--SAPPHIRE Radeon HD 3870 X2 PCI-E x16 w/ MX-2
--MSI K9A2 Platinum 790FX SB600 AM2+
--Seagate 3.5" 1TB SATA II 3.0Gb/s 7200.12 7200 RPM 32MB Cache
--COOLER MASTER HAF 932
--Creative Sound Blaster X-Fi XtremeGamer 7.1 Channels 24-bit 96KHz
--Xclio Greatpower series 700w X14 Silent 120mm Fan Series

Steam - xWildsidex, Crysis/Crysis Wars - Wildside, Games for Windows - LIVE - xWildsidex, Diablo 2/LoD - Wildside-1, Quake Live - Wildside, Wii Friends Code - 4206-7308-6394-7531
Wildside is offline  
Old 03-07-2008, 08:11 AM   #9 (permalink)
Osiris's Avatar
 

Join Date: Jan 2005

Location: Kentucky

Posts: 32,170

Osiris is a jewel in the roughOsiris is a jewel in the roughOsiris is a jewel in the rough

Send a message via ICQ to Osiris Send a message via AIM to Osiris Send a message via MSN to Osiris Send a message via Yahoo to Osiris Send a message via Skype™ to Osiris
Default Re: my Hijackthis log, a virus keeps closing programs

Quote:
Originally Posted by BuggVeyron View Post
Wildside, please mark the boxes next to these entries,


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O13 - Gopher Prefix:


Close all other windows, then click Fix Checked.

After that, Reboot and post a new HJT log.


so tell me, what is wrong with the entries above? Im curious......
__________________
Osiris is offline  
Old 03-08-2008, 11:47 AM   #10 (permalink)
Redmo0n's Avatar
 
Techalicious

Join Date: Aug 2007

Location: Perth, Australia

Posts: 1,573

Redmo0n is on a distinguished road

Send a message via MSN to Redmo0n
Default Re: my Hijackthis log, a virus keeps closing programs

Quote:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com
LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O13 - Gopher Prefix:
These are just default entries, not harmful at all, and i wouldn't attempt to remove them.
__________________
Back to stay?
Redmo0n is offline  
 
 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
HijackThis log file oobern HijackThis Logs (finished) 13 03-03-2008 09:20 PM
My HijackThis Log aetherh4cker HijackThis Logs (finished) 10 11-28-2007 08:58 AM