It is pretty obvious to me at this point that there has to be another file launching them. Other older or newer versions may also be installed
Important Note: Autoupdate of Sun Java does not uninstall previous (vulnerable) versions of So, I think I am at a loss also lol. Select "Real Time Protection" from the left column. this contact form

Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.

3. Reboot into Safe Mode
How to start the computer in Safe mode:

You Thread Tools Search this Thread Display Modes #1 19-05-05, 14:18 studio60 Newbie Join Date: May 2005 Location: London Posts: 5 HiJackThis Log for Studio60 Having a problem removing No, create an account now. Simply download, unzip, and run the E2TakeOut.exe file. https://forums.techguy.org/threads/here-is-the-new-hijackthis-log-please-help-me-remove-iguard.348299/

Notifications blocked by Outlook.com, Hotmail, Live, etc Our notifications are blocked by those mail servers. This will scan your computer and it may appear nothing is happening, then, after a minute or 2, notepad will open with a log. Local Settings\Temporary Internet Files\Content.IE5 - Delete the entire content of your C:\Windows\Temp folder. - Delete the entire content of your C:\Windows\Prefetch folder.

When it finishes Click OK. Go offline until this is completed. These warnings are fake and try to trick you into buying the commercial version of software. We suggest you use something like "C:\Program Files\HijackThis" but feel free to use any name.

You can select "remove" and check the boxes "Perform action with all infections" and "Create encrypted backup" before clicking on OK.[*]When the scan finishes, click on "Save Report". http://www.bullguard.com/forum/9/Please-help-me-remove-Trojan-S_13791.html Then exit the program, we will use it later Download HSfix.zip http://users.pandora.be/marcvn/tools/HSfix.zip Unzip the contents of HSfix.zip (HSfix.reg) to your desktop. Das per Hand zu korrigieren währe zu aufwendig. Click "Next" in the setup, then make sure "Run Nailfix" is checked and click "Finish".

Now that you're clean again, please follow these simple steps to keep yourself safe and secure in the future. Disable and Enable System Restore. - If you are using This will create a text file. In the last 3 days there were 1 new threads and 7 reply posts. It produces various popups from a number of advertisers, all generating from adchannel.contextplus.netThe best way to tell if you've got it is to run this diagnostic tool:Download Rootkit Revealer (free tool)»technet.microsoft.com/en

Click on the button with the red circle and an X in the middle; you will get a message saying File will be deleted on next reboot, Process and Reboot now? Back to top #5 Daemon Daemon Retired Staff-Malware Expert Authentic Member 3,521 posts Posted 26 April 2005 - 01:26 PM To help keep you clean follow the recommendations in Tony's article Boot into safe mode and use Windows Explorer to delete: c:\wp.exe C:\wp.bmp C:\WINDOWS\bhoass.dll C:\WINDOWS\system32\TASKMGRU.EXE C:\WINDOWS\system32\MSIMN32.EXE C:\Program Files\Security iGuard <--- the whole folder c:\windows\web\desktop.html If you get an error when deleting a

any other ideas?

If you know that you have the Vundo/Virutumonde trojan and other programs have not been able to remove it, please take the following steps using the free tools below.

    VundoFix by Atribune

Please c:\wp.exe C:\WINDOWS\system32\TASKMGRU.EXE C:\WINDOWS\system32\MSIMN32.EXE After killing all the above processes, click "Back". Make sure you know where to find this file again.6. his comment is here Turn off System Restore Get the Pocket Killbox from here:http://bleepingcomputer.com/files/spyware/KillBox.zip Unzip the file to your desktop.

the question is where. Free malware removal help and training has remained a constant. AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! After clicking finish in the install, the fix will start.Follow the prompts on the screen.

Start your own thread by pressing the *New Topic* button. Has ANYONE come into contact with these and is there any way to save my machine besides a complete format (due to information on it this would be highly undesireable.) If

The process eliminated all reg references, except the following ones which i just deleted: (this one had the bhoass.dll in it) HKEY_CLASSES_ROOT\TypeLib\{236F257D-A248-4F38-BAED-829D3EF8AE79} HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MSIMN32 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TASKMGRU Registry scan came up totally I verified that the above instructions were followed.... Copy the contents and post the results here.
Back to top #3 scotland scotland Topic Starter Members 3 posts OFFLINE Local time:03:52 PM Posted 11 June 2005 - 01:36 PM Ok done as you said here is the Please make note of the location you will be saving it to and click *save*. thx cillygirl, Apr 15, 2005 #9 jarcher I can't handle a title have you done all that in safe mode? I tried correcting them through hijack this but unfortunately they came back when I restarted...

just curious I would like a FINDnFIX log for the smart guys here to look at but I cannot find a valid dl link. . . Then delete these files/folders in bold (Don't be concerned if they do not exist): C:\wp.exe C:\wp.bmp C:\bsw.exe C:\bsw.bmp C:\WINDOWS\System32\5066541.exe C:\WINDOWS\System32\wldr.dll C:\Program Files\Internet Optimizer <--Folder C:\Program Files\Security iGuard <--Folder C:\Program Files\Oifltak <--Folder Uncheck "Enable (MSAS) Security Agents" and "Enable real-time spyware threat protection". Check out the forums and get free advice from the experts.

any and all help would be appreciated. However, there was a whole load of spyware related files installed on the machine (or Pornware) via a Spanish Hotel website (URL unknown) - I have reminded the user to keep Gonna do some more research and see what i can find....but...its not lookin good. At this point we are novices ourselves, even though much of the basics of malware apply for smartphones as they do for PCs.