This is what it said on the screen when it got stuck: Processing... (4 / 5) Currently cleaning: Possible Browser Hijack attempt Action: Disinfect & Submit I will try again to c:\windows\ServicePackFiles\i386\wuauclt.exe[7] 2008-10-16 . C:\WINDOWS\system32\kt26l7fs1.dllC:\WINDOWS\system32\tHembed.dllw4dcbb4e.dll Keep in mind it's possible that these files do not still exist, your virus scanner may have already wiped them but i just want to make sure. It's free. his comment is here

Or just reinstall your system from your system disc... Isn't enough the bloody civil war we're going through? You seem to have CSS turned off. Try What the Tech -- It's free!

Back to top #3 illukka illukka Retired Staff-Malware Expert Authentic Member 834 posts Posted 09 November 2006 - 10:36 AM First download AVG Anti-Spyware from HERE and save that file to Save it to your desktop.Double click on the icon on your desktop.Check Click the button.Accept any security warnings from your browser.Check Push the Start button.ESET will then download updates for itself, c:\windows\system32\dllcache\mshtml.dll[-] 2009-12-21 . 453A18B0AD5B9D11497E31643532C97D . 7379456 . . [8.00.6001.18876] . . Type : RegValue Data : Category : Malware Comment : UKVideo variant (Fake "popupstopper") Rootkey : HKEY_USERS Object : .DEFAULT\Software\Netscape\Netscape Navigator\Suffixes Value : application/x-wink Dialer Object recognized!

In addition to scan and remove capabilities, HijackThis comes with several useful tools to manually remove malware from your computer.

BE6EEBEF636773A8E7A82214E81C563A . 5942784 . . [8.00.6001.18876] . . Hijackthis Analyzer No mods rue225 #5026852 - 10 years ago Ok, what do you mean it's killing your computer? Turn off System Restore if you haven't already. http://www.hijackthis.de/ That's what I do No mods PrincessNybo #5036845 - 10 years ago I'm sorry you've been getting a lot of criticism.

c:\windows\system32\dllcache\wuauclt.exe[-] 2009-08-07 . How To Use Hijackthis Information on A/V control HEREPlease download GMER from one of the following locations and save it to your desktop:Main MirrorThis version will download a randomly named file (Recommended)Zipped MirrorThis version will A0732187050030AE399B241436565E64 . 1032192 . . [6.00.2900.2180] . . All I did was download the Installation files of Ewido and AVS.

Viruses tend to hide in the System Restore files, which Windows won't allow any software to remove, thereby making full removal of a virus or spyware impossible.

Temporarily disable such programs or permit them to allow the changes.Make sure you are connected to the Internet.Double-click on mbam-setup.exe to install the application.When the installation begins, follow the prompts and

Are you looking for the solution to your computer problem? regards, schrauber If I've not posted back within 48 hrs., feel free to send a PM with your topic link. If I have helped you then please consider donating to continue the fight against malware Back to top #3 Malik.ghaddar Malik.ghaddar Topic Starter Members 30 posts OFFLINE Local time:04:52 PM http://splodgy.org/hijackthis-download/hijack-this-for-2nd-comp.php CBB1EF54B86EDB78649909DD1699E5CA . 5940736 . . [8.00.6001.18854] . .

Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O11 - Options Hijackthis Alternative If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. O16 - DPF: {B7BBD0BC-5143-4E8B-B123-24E6C9F1EE40} (Project1.NPDownloader) - http//webm.navpass.com/jetNP.ocx O4 - HKLM\..\Run: [NavPass] C:\Program Files\NavPass\NavPass.exe O4 - HKLM\..\Run: [dluca] c:\windows\system32\msinstall\dlu32\dluca\dluca.exe /noconnect If you want to arrange to send them to me - use

Am I right?

With his brother, Hank, John is one half of the Vlogbrothers (youtube.com/vlogbrothers), one of the most popular online video projects in the world. Terms Privacy Opt Out Choices Advertise Get latest updates about Open Source Projects, Conferences and News.

Open Ewido and perform a FULL SYSTEM SCAN. Please note that many features won't work unless you enable it.

D469A0EBA2EF5C6BEE8065B7E3196E5E . 5937152 . . [8.00.6001.18702] . . IMM, Jun 7, 2003 #13 TonyKlein Malware Specialist Joined: Aug 26, 2001 Messages: 10,392 I installed it as well. I need help. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules BleepingComputer.com Forums Members Tutorials Startup List

With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. His many accolades include the Printz Medal, a Printz Honor, and the Edgar Award. All rights reserved. And all is well now?

Short URL to this thread: https://techguy.org/138068 Log in with Facebook Log in with Twitter Log in with Google Your name or email address: Do you already have an account? Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe O9 - Extra 'Tools' menuitem: Yahoo! Heres the logfile from Hijackthis:Logfile of HijackThis v1.99.1Scan saved at 11:43:52 AM, on 7/17/2006Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Common Files\Symantec Shared\SNDSrvc.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Apache