Home > Hijack This > Hijack This Log -- Annoying Pop-ups

Hijack This Log -- Annoying Pop-ups

Nothing where it shouldn't be. C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.11:C:\Documents and Settings\Ray\Application Data\Mozilla\Firefox\Profiles\3vnrabc6.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined). :mozilla.8:C:\Documents and Settings\Ray\Application Data\Mozilla\Firefox\Profiles\3vnrabc6.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup This is perfectly normal NOTE:- This scan is best done from IE (Internet Explorer) NOTE:- Vista users should start IE by Start(Vista Orb) >> Internet Explorer >> Right-Click Run As Admin Close any programs you may have running, ESPECIALLY your web browser Click Start > Control Panel. weblink

Logfile of HijackThis v1.99.1 Scan saved at 12:30:56 PM, on 7/15/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\SYSTEM32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe Back to top Back to Solved Malware Logs 3 user(s) are reading this topic 0 members, 3 guests, 0 anonymous users Reply to quoted postsClear PC Pitstop Forums → Community C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dllO2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -

Preview post Submit post Cancel post You are reporting the following post: How can I stop these annoying pop-ups?? It is likely that everyone who visits after the upgrade will need to log in again, so please keep this in mind.   Update again - Feb 7 - We have I could really use some help as the computer is running very slow and it is very annoying to have these pop-ups.

How are things now? C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined). Click Add/Remove Programs.

Please remove all lines with the following file names. Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. The scans did pick up more than 3000 traces of an adware called AP Hosting. http://www.spywareinfoforum.com/topic/52678-hijackthis-log-annoying-pop-ups/ alyoob: Can anyone give me any feedback on the combofix text file.

Yes, my password is: Forgot your password? Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove ads #2 -David- -David- Members 10,603 posts OFFLINE Gender:Male Location:London Local time:10:56 PM Posted 19 August 2007 C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).

C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). http://www.lavasoftsupport.com/index.php?/topic/8608-cpvfeed-amaena-and-other-annoying-popups/ After you uncheck these, click on the Save button and close Microsoft AntiSpyware. Post a new HijackThis log and I'll be glad to assist you. (My wife is going in for neck surgery tomorrow, so you may not get a reply from me for C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).

Click on it. 2. http://splodgy.org/hijack-this/hijack-this-log-hello-can-u-help-me.php Make sure you choose the option without networking support.Using Windows Explorer, please locate the following folders, and delete them if still present:C:\Documents and Settings\All Users\Application Data\Loud spam else toolC:\Documents and Settings\All Click Create and you're done. C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe O4 - Cpvfeed, Amaena And Other Annoying Popups Started by Camperwell , Apr 20 2007 03:06 PM Please log in to reply 6 replies to this topic #1 Camperwell Camperwell Newbie Members 3 Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Wallpaper - {c23dd370-cb79-11d2-898a-00c04f80a47f} - C:\Program Files\Internet Explorer\Toolbar\toolbar.hta (file missing) O9 - check over here Stefahknee, Oct 4, 2016, in forum: Virus & Other Malware Removal Replies: 0 Views: 218 Stefahknee Oct 4, 2016 In Progress Help diagnosing Hijackthis log, thanks!

I did a scan and i think there are problems. C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). HiJackthis log.

Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files View New Content Members Forums More Lavasoft Support Forums → Archived Topics

uStart Page = hxxp://www.google.com.au/ig/dell?hl=en&client=dell-row&channel=au&ibd=2070807 uInternet Settings,ProxyOverride = *.local IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 IE: Search Using Copernic Agent - c:\program files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT Handler: copernicagent - {A979B6BD-E40B-4A07-ABDD-A62C64A4EBF6} - c:\progra~1\COPERN~1\COPERN~1.DLL Handler: In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button." when VundoFix appears at reboot. C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn6\yt.dllO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dllO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dllO2 - BHO: Yahoo!

Thread Status: Not open for further replies. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules BleepingComputer.com Forums Members Tutorials Startup List Files can be uploaded by anybody but not downloaded at all except for those users that have been given special permissions. this content Please re-enable javascript to access full functionality.

Place a check mark beside each one of the following entries:     R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). Be sure to keep Java updated and remove older versions after updating. Right click on the Microsoft AntiSpyware icon on the taskbar and select Shutdown Microsoft AntiSpyware.

Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll O9 - Extra 'Tools' menuitem: Yahoo! Use your up arrow key to highlight Safe Mode then hit enter. Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll O9 - Extra 'Tools' menuitem: Yahoo! Click the System Restore tab.

Edited by Katana, 18 February 2009 - 05:27 AM. C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).

After initialization is complete uncheck\untick "Remove found threats" 6. If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. C:\Documents and Settings\Ray\Cookies\[email protected][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). Please re-enable javascript to access full functionality.

Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess C:\Documents and Settings\Ray\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). Short URL to this thread: https://techguy.org/48 Software > Computer viruses and spyware advertisment by adssite annoying pop ups analyse hijack log (1/2) > >> alyoob: I have been experiencing By continuing to use this site, you are agreeing to our use of cookies.

Thanks again for all your help. Please do NOT send Private Messages to Staff or helpers to request assistance! Back to top #3 Nick351 Nick351 Topic Starter Members 4 posts OFFLINE Local time:07:56 AM Posted 19 August 2007 - 06:54 PM Hi David and thanks for the helpI have Username Forum Password I've forgotten my password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Privacy Policy Log in