Home > Hijack This > Hijack This Log - Anything Amiss?

Hijack This Log - Anything Amiss?

Dashboard for XFINITY TV on the X1 Platform Get details on weather, traffic, sports and more all from your XFINITY TV on the X1 Platform Dashboard. Jump to content Resolved or inactive Malware Removal Spywareinfo Forum Existing user? Book your tickets now and visit Synology. Due to a few misunderstandings, I just want to make it clear that this site provides only an online analysis, and not HijackThis the program. weblink

plodr replied Feb 10, 2017 at 4:32 PM VPN and internet Athenoc replied Feb 10, 2017 at 4:27 PM ABC of double letters #7 dotty999 replied Feb 10, 2017 at 4:25 transcriptionist transcriptionist, Dec 4, 2005 #1 Sponsor Cookiegal Administrator Malware Specialist Coordinator Joined: Aug 27, 2003 Messages: 105,647 That's only the top portion of the log. O4 - Global Startup: hpoddt01.exe.lnk = ? Register now! https://forums.techguy.org/threads/hijack-this-log-anything-amiss.422266/

Join over 733,556 other people just like you! Is NewDotNet still listed in the Control Panel - Add/Remove programs? A menu will appear with several options.

DO NOT use it just yet.Reboot your computer in "Safe Mode" using the F8 method. I'm off now to change all my passwords Back to top #3 quietman7 quietman7 Bleepin' Janitor Global Moderator 47,352 posts ONLINE Gender:Male Location:Virginia, USA Local time:04:55 PM Posted 13 December transcriptionist, Dec 4, 2005 #7 Cookiegal Administrator Malware Specialist Coordinator Joined: Aug 27, 2003 Messages: 105,647 Sorry about the mix-up with the instructions. Page 1 of 12 1 ← 2 3 4 5 6 → 12 Next > Advertisement transcriptionist Thread Starter Joined: May 26, 2001 Messages: 309 My computer has been quite doggy

Occasionally sketchy stuff happens...see anything weird?   Logfile of HijackThis v1.97.7 Scan saved at 10:06:43 AM, on 5/16/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)   If your homepage or search pages are changed it will change them back on startup.In Hijack This, choose to ignore anything you know is good. Be sure to adhere to our posting rules. see it here Thanks in advance!)Logfile of Trend Micro HijackThis v2.0.2Scan saved at 00:43:24, on 28/11/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16544)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exeC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\WinTV\EPG Services\System\EPGService.exeC:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exeC:\PROGRA~1\McAfee\MSC\mcmscsvc.exec:\program files\common

Mark it as an accepted solution!I am not a Comcast employee. Notifications blocked by Outlook.com, Hotmail, Live, etc Our notifications are blocked by those mail servers. We recommend Gmail.   The notifications won't even be in your Spam folder - they just go down a black hole. But what about fonts?

Please note that many features won't work unless you enable it. This Site I did a restart on my own. Remember where you saved the log file, as we will want to see it. Is this 32 bit Vista or 64 bit vista?

I appreciate your help!! have a peek at these guys Also of note, when I was asked to reboot after running the new.net uninstall software, I got the error message that I got a couple weeks ago when I first suspected More information here:http://www.pctools.com/mrc/infections/id/Trojan-PWS.TanspyThis was after McAfee, Ad-Aware, Spybot, ComboFix and VundoFix all failed to detect anything amiss. Check out the forums and get free advice from the experts.

Several functions may not work. This process can take quite a while, so we suggest you go and do something else and periodically check on the status of the scan.When the scan is finished a message VoG II 21:25 10 Sep 03 Sounds like lop click hereTry Spybot click here Ironman556 21:34 10 Sep 03 Try Start Page Guardclick hereWorks with Win 2000 & NT, doesn't check over here Started by Sypha , Jan 22 2005 11:10 PM This topic is locked #1 Sypha Posted 22 January 2005 - 11:10 PM Sypha New Member Member 5 posts This is the

I have no clue what is amiss, but everytime I reboot, I have about ten more things running at startup and popup windows that should not be there.Thanks for any help At this point we are novices ourselves, even though much of the basics of malware apply for smartphones as they do for PCs. This site is completely free -- paid for by advertisers and donations.

Replace and strike any key when ready.' Here is the Panda log Incident Status Location Spyware:spyware/new.net Not disinfected C:\PROGRAM FILES\NewDotNet Spyware:Spyware/New.net Not disinfected C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\default.0qj\Cache\EFA351F7d01 Spyware:Spyware/New.net Not disinfected C:\Recycled\NPROTECT\00000013.EXE Spyware:Spyware/New.net Not

If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. Review the log as desired, and then close the Notepad window. Mark it as an accepted solution!I am not a Comcast employee.Was your question answered?Mark it as a solution! 0 Kudos All Forum Topics Previous Topic Next Topic Popular Help Articles Set Do you want me to run another hijack this or panda scan?

If you have email address at Hotmail, Hotmail.uk, etc etc then you will not get notifications and need to manually check for new replies. Right-click My Computer > click Properties > Advanced > Environment Variables and check that the ComSpec variable points to cmd.exe.%SystemRoot%\system32\cmd.exe ..Microsoft MVP Consumer Security 2007-2015 Microsoft MVP Reconnect 2016Windows Insider MVP A menu should come up where you will be given the option to enter Safe Mode.Run AboutBuster-Click Start to begin the process-Click OK on the Buster Report dialogue box to start this content the google toolbar)I need some advice on what to do with the results of the scan - do I set to ignore?

or read our Welcome Guide to learn how to use this site. Spyware Doctor isn't my favorite piece of software (it takes about 5 minutes to launch and shut down!) but it seems to have done the job: HijackThis no longer lists the Tech Reviews Tech News Tech How To Tech Buying Advice Laptop Reviews PC Reviews Printer Reviews Smartphone Reviews Tablet Reviews Wearables Reviews PC & Laptop Storage Reviews Antivirus Reviews Best Tech Please re-enable javascript to access full functionality.

There will no longer be separate Usernames and Display Names. All rights reserved. If there is some abnormality detected on your computer HijackThis will save them into a logfile. Started by SuperCatBarf, May 16, 2004 4 posts in this topic SuperCatBarf Member Full Member 27 posts Posted May 16, 2004 · Report post She swears she doesn't go to

Click here to Register a free account now! do I 'ignore' or 'fix'?)Really appreciate the helpLogfile of HijackThis v1.97.0Scan saved at 21:37:39, on 10/09/2003Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exeC:\Program Files\Common Files\Microsoft I am a paying customer just like you! google.com/O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dllO17 - HKLM\System\CCS\Services\Tcpip\..\{61AB31C3-8C50-4837-8D9F-6E6EBD043BC7}: NameServer = 212.74.112.67 212.74.114.129 O17 - HKLM\System\CS1\Services\Tcpip\..\{61AB31C3-8C50-4837-8D9F-6E6EBD043BC7}: NameServer = 212.74.112.67 212.74.114.129 krypt1c 23:06 10 Sep 03 Hi, this link gives

It is likely that everyone who visits after the upgrade will need to log in again, so please keep this in mind.   Update again - Feb 7 - We have Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe O9 - Extra 'Tools' menuitem: Yahoo! I am ready to throw this thing out the window right now and stay away from computers for the rest of my life. Do not make any changes to default settings and when the program has finished installing, make sure you leave both the Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware checked.

Do I fix? C:\WINDOWS\NDNuninstall6_98.exe C:\WINDOWS\NDNuninstall6_90.exe Let me know how that goes please. From the looks of it, you're actually running a pretty lean system in terms of start-up items and other processes. You are correct to change all your passwords as one or more of the identified infections is a backdoor Trojan.Although the backdoor Trojan has been identified and may be removed, your

Cookiegal, Dec 4, 2005 #11 transcriptionist Thread Starter Joined: May 26, 2001 Messages: 309 No, NewDotNet is no longer listed there.