HijackThis Log - Desperate Last Try :)
kami thanks..............it really worked Valoo Your tutorial is such an interested one, thank you for such a help you have rendered to ppl like me. Please help!! I then did another search and turned up nothing. csrsss.exe has always kicked back in within 24hrs of removing it before, but when I last formatted both drives in my system it took 3days to emerge, I don't know if check over here
Shingster18-01-2005, 20:06A friend's just informed me that apparently these registry entries are from running file searches in windows: Details here (http://www.jsiinc.com/SUBH/tip3800/rh3836.htm). In fact Trend's housecall is about the only thing that's been spotting it. Forums DaniWeb IT Discussion Community Join Log In Read Answer Ask Hardware and Software Programming Digital Media Community Center Hardware and Software Microsoft Windows OMG! Did you really google? https://forums.techguy.org/threads/hijackthis-log-desperate-last-try.286834/
Solar.18-01-2005, 02:06i would do it manualy run regedit and do a search for ns.exe, delete it and keep searching and deleteing all keys from the registry then delete the files you That application has now gone completely, but these two references to Optispeed persist, and I can't remove them. Shingster16-01-2005, 16:59It's back, again D: only: created: 16 January 2005, 16:53:18 last modified: 3 January 2005, 18:25:14 accessed: 16 January 2005, 16:55:00 faster time between creation and access this time.
and then stop doing it!? I have a quick question, I did steps 1, 2, and 4 and the all went really smoothly, thank you a ton for that. The two Iconstreams had gone. Due to a few misunderstandings, I just want to make it clear that this site provides only an online analysis, and not HijackThis the program.
Raj thank you for your wonderful steps. The Upgrade is ú90. Shingster10-01-2005, 21:25Not lately no. http://www.pcadvisor.co.uk/forum/helproom-1/please-check-my-hijackthis-log-part-2-195404/ Ragnarak08-01-2005, 19:39I wrote a long reply with all the removal instructions that sophos gave but my computer crashed and now Crazy Squirrel has done it anyway.
Here's a taster of the kind of thing: 82-37-107-126.cable.ubr02.sand.blueyonder.co.uk, port 3744, wants to connect to port 1025 owned by "TASK SCHEDULER ENGINE" (mstask.exe) [TCP] I repeatedly got warnings from blueyonder stuff The very first 2 "formats" I did were on my C: only (once before I installed my D: and obviously once again after I got my first incident of agobot infection) so kindly help me through this... :) Margaret I have an aquarium screensaver in my screensaver list, but I have uninstalled it, removed the download link, removed it from my program Tonight though I'm just not going to worry about that though and disconnect to get me a new ip.
Also consider the portability of your product or idea. Thank you in advance VG ^^ Deleting important registry keys might cause system problems. I'd install Firefox as a first step, as it doesn't have the same holes as IE and the current batch of dodgy sites don't work against it. Can you get hold of WinXP?You could try putting that on and stick sygate on straight away Shingster20-01-2005, 12:40I do not know how to check if a format is full or
Shingster16-01-2005, 16:05I have every Windows update bar 2 which I figured weren't worth getting: Windows Journal Viewer .NET framework version 1.1 tmk I didn't run a single thing between those times, http://splodgy.org/hijackthis-log/hijackthis-log-for-my-pc.php Why dont microsoft just rob you :D Still belive that alot of people would buy XP at ú50 as that is reasonable but decide to go for the cheaper option.Its like I've looked through every damn folder on this laptop. anyway doesn't hurt to check.
Back to Shingster's problem, your highjack this log looks fine. It first reared itself in the guise of NS/ns.exe, I got rid of that a few times with agobot remover etc. 24hrs later it resurfaced as CSRSSS/csrsss.exe and this will not Better safe than sorry. this content kohoutec10-01-2005, 22:44Sounds to me like its hiding in a restore point somewhere, have you disabled system restore, rebooted, scanned and then reenabled it?
However after a new installation it came with the same mistake. I'd suggest removing all the security software and using alternatives. Does that mean that I can delete the entire folder (Key)?
Here's the info on the file: Created: 16 January 2005, 13:09:56 Last Modified: 03 January 2005, 18:25:14 Accessed: 16 January 2005, 15:09:19 Since I got rid of the last csrsss and
The chap on the line at the time said to allow the ones to system,svchost,mstask but deny the rest. Hopefully it's done and dusted now. Shingster13-01-2005, 02:38It's now been 24hrs with no virus kicking in yet - a first since the whole mess began!!! I run Secunia PSI on my computer which tells me if any programs are insecure.
I know i've been warned away from networks like IRC, bittorrents and emule, but i've been using them for 2yrs now without a problem and they're of tremendous importance to the Pro tip: "The internet is not ubiquitous. These should be free and not require you to register anywhere. http://splodgy.org/hijackthis-log/hijackthis-log-please-let-me-know-what-i-m-to-do-next.php Read the notes enclosed in the self-extractor for details on running this program.
You've probably got an infected install CD somewhere... 1) Look long and hard at your Windows install CD. I tried to reinstall or used IObit soft or Regedit clean all remaining files and so on. My windows is fully up to date, it was the 2nd thing I did after installing my firewall and getting a connection to the internet. Maybe it's a permission problem.A asked for log files earlier - I meant the steam.log and the stuff in the logs (mainly the connections_log.txt) folder. #14 Abaris Profili G├Âr├╝nt├╝le ─░letileri G├Âr├╝nt├╝le
pdm Thank you for the simple instructions. Please help me VG ^^ Please try following: http://www.askvg.com/ccleaner-freeware-system-optimization-and-privacy-tool/ joyce kenny can you send me details of how to get office student 2007 off this desktop and onto my new desktop Each # entry should be kept on an individual line.