Results 1 to 6 of 6

Thread: Spyware Quake and other malware needs removing

  1. #1
    Junior Member
    Join Date
    Jun 2006
    Location
    Wiltshire
    Posts
    4

    Default Spyware Quake and other malware needs removing

    Hi There. I'm new to this so excuse any protocol mistakes! I'm fed up with the pop-ups for Golden Casino and the spurious "Virus Alert" that lives in the bottom rt hand corner of my machine and the square red lined pop-up that states my computer is infected - and takes me straight to the Spyware Quake site if I click on it! I'm sure there's more to be removed as well, tho' Spybot did find and remove a load! Any and all help in removing this annoyance is appreciated! I have no doubt you've heard this one before, but I've followed the instructions to the letter, so the logs follow in 2 separate chunks (I hope!!):-


    Hope that's all you guys need!
    Thanks & regards,

    Mike

    PS. If you can, please copy me in on your post to my email address, ta. [email]Removed.
    Last edited by tashi; 2006-06-21 at 22:10. Reason: Removed email address for your own protection against spambots

  2. #2
    Junior Member
    Join Date
    Jun 2006
    Location
    Wiltshire
    Posts
    4

    Default Re previous Post - Panda Scan attached pt.1

    The Panda Scan =
    Incident Status Location

    Adware:Adware/EMediaCodec Not disinfected C:\WINDOWS\system32\atmclk.exe
    Adware:Adware/SpywareQuake Not disinfected C:\WINDOWS\system32\guxxa.dll
    Adware:adware/emediacodec Not disinfected c:\windows\system32\atmclk.exe
    Adware:adware/xpasswordmanager Not disinfected c:\windows\system32\ld101.tmp
    Adware:adware/securityerror Not disinfected c:\windows\system32\ot.ico
    Potentially unwanted tool:application/seekmo Not disinfected c:\program files\mozilla.org\mozilla\plugins\npclntax.dll
    Adware:adware/spywarequake Not disinfected c:\windows\system32\1024\ld22F5.tmp
    Adware:adware/spywarestrike Not disinfected Windows Registry
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.2o7.net/]
    Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.atwola.com/]
    Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.advertising.com/]
    Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.doubleclick.net/]
    Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.atdmt.com/]
    Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.247realmedia.com/]
    Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.adultfriendfinder.com/]
    Spyware:Cookie/Ccbill Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.ccbill.com/]
    Spyware:Cookie/Clickbank Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.clickbank.net/]
    Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.com.com/]
    Spyware:Cookie/cs.sexcounter Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.cs.sexcounter.com/]
    Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.questionmarket.com/]
    Spyware:Cookie/Yadro Not disinfected C:\Documents and Settings\MikeBooton\Application Data\Mozilla\Profiles\default\7h0jwewv.slt\cookies.txt[.yadro.ru/]
    Spyware:Cookie/888 Not disinfected C:\Documents and Settings\MikeBooton\Cookies\mikebooton@888[1].txt
    Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\MikeBooton\Cookies\mikebooton@atwola[1].txt
    Spyware:Cookie/Cassava Not disinfected C:\Documents and Settings\MikeBooton\Cookies\mikebooton@cassava[1].txt
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\MikeBooton\Cookies\mikebooton@microsoftwga.112.2o7[1].txt
    Potentially unwanted tool:Application/SpywareStrike Not disinfected C:\Documents and Settings\MikeBooton\Local Settings\Temp\saD3.exe
    Potentially unwanted tool:Application/SpywareStrike Not disinfected C:\Documents and Settings\MikeBooton\Local Settings\Temp\saE2.exe
    Adware:Adware/SpywareQuake Not disinfected C:\Documents and Settings\MikeBooton\Local Settings\Temp\temp.fr4AC6
    Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.atdmt.com/]
    Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.doubleclick.net/]
    Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.advertising.com/]
    Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.serving-sys.com/]
    Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.tradedoubler.com/]
    Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.mediaplex.com/]
    Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.adviva.net/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.2o7.net/]

  3. #3
    Junior Member
    Join Date
    Jun 2006
    Location
    Wiltshire
    Posts
    4

    Default Panda Scan pt2

    Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.atwola.com/]
    Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.questionmarket.com/]
    Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.apmebf.com/]
    Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.hitbox.com/]
    Spyware:Cookie/onestat.com Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[stat.onestat.com/]
    Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.xmts.net/]
    Spyware:Cookie/Itrack Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[ilead.itrack.it/]
    Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.overture.com/]
    Spyware:Cookie/Coremetrics Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[data.coremetrics.com/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.112.2o7.net/]
    Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[statse.webtrendslive.com/]
    Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.bluestreak.com/]
    Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.zedo.com/]
    Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.ads.pointroll.com/]
    Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.perf.overture.com/]
    Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.247realmedia.com/]
    Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[server.iad.liveperson.net/hc/42435556]
    Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[server.iad.liveperson.net/]
    Spyware:Cookie/Adtech Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.adtech.de/]
    Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Morcia Booton\Application Data\Mozilla\Profiles\default\q4z759g4.slt\cookies.txt[.bfast.com/]
    Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Morcia Booton\Cookies\morxia booton@belnk[1].txt
    Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Morcia Booton\Cookies\morxia booton@dist.belnk[2].txt
    Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.atdmt.com/]
    Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.doubleclick.net/]
    Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.xmts.net/]
    Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.advertising.com/]
    Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.mediaplex.com/]
    Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.apmebf.com/]
    Spyware:Cookie/QkSrv Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.qksrv.net/]
    Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.apmebf.com/]
    Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.mediaplex.com/]
    Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.questionmarket.com/]
    Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.bluestreak.com/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.112.2o7.net/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.2o7.net/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.112.2o7.net/]
    Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.2o7.net/]
    Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.adviva.net/]
    Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.as-us.falkag.net/]
    Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.realmedia.com/]
    Spyware:Cookie/Linksynergy Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.linksynergy.com/]
    Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.atwola.com/]
    Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.bravenet.com/]
    Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.overture.com/]
    Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.statcounter.com/]
    Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Morxia Booton\Application Data\Mozilla\Profiles\default\7hebsybs.slt\cookies.txt[.247realmedia.com/]
    Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Morxia Booton\Cookies\morxia booton@serving-sys[1].txt
    Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Morxia Booton\Cookies\morxia booton@xmts[2].txt

  4. #4
    Junior Member
    Join Date
    Jun 2006
    Location
    Wiltshire
    Posts
    4

    Default Re. prev.post - The HJT Log

    The HJT details =
    Logfile of HijackThis v1.99.1
    Scan saved at 19:49:57, on 21/06/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\Executive Software\Diskeeper\DkService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Lexmark X1100 Series\lxbkbmon.exe
    C:\Program Files\BT Voyager 105 ADSL Modem\dslstat.exe
    C:\Program Files\BT Voyager 105 ADSL Modem\dslagent.exe
    C:\PROGRA~1\BTBROA~2\SMARTB~1\BTHelpNotifier.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\mozilla.org\Mozilla\mozilla.exe
    C:\Program Files\WinRAR\WinRAR.exe
    C:\DOCUME~1\MIKEBO~1\LOCALS~1\Temp\Rar$EX02.375\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Nothing - {686a161d-5bd1-4999-8832-6393f41e564c} - C:\WINDOWS\system32\hp100.tmp
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O3 - Toolbar: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Program Files\Advanced Searchbar\Toolbar.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [Lexmark X1100 Series] "C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
    O4 - HKLM\..\Run: [DSLSTATEXE] C:\Program Files\BT Voyager 105 ADSL Modem\dslstat.exe icon
    O4 - HKLM\..\Run: [DSLAGENTEXE] C:\Program Files\BT Voyager 105 ADSL Modem\dslagent.exe
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\BTBROA~2\SMARTB~1\BTHelpNotifier.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Program Files\Advanced Searchbar\Toolbar.dll
    O9 - Extra 'Tools' menuitem: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Program Files\Advanced Searchbar\Toolbar.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{80F13760-7ED2-4636-B699-9E0AD717F757}: NameServer = 194.72.9.38 62.6.40.162
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

  5. #5
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    Hello and welcome to the forum If you still need some help and are not receiving it elsewhere, please do this:

    1) Move HJT from that Temp folder to C:\HJT\HijackThis.exe. If you need more information, use this:
    http://russelltexas.com/malware/createhjtfolder.htm
    http://www.bleepingcomputer.com/forums/tutorial94.html


    2) Follow these directions: http://forums.spybot.info/showthread.php?t=4015
    Post those logs here in this same topic, I will be notified and see if anything is left to do as soon as possible after that. Let me have any comments you think will help and tell me how the computer is running.

    Thanks...pskelley
    Safer Networking Forums

  6. #6
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,967

    Default

    This topic is closed due to lack of a response to helper.

    If you need it re-opened please send me a pm and provide a link to the thread.

    Applies only to the original topic starter.
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •