HijackThis Log - Www.searchv.com Problems

The problem with adding everything to the ignore list is that it might make future analysis a little confusing since a lot of what you expect to see would be missing

Word Racer - http://download.games.yahoo.com/games/clients/y/wt0_x.cabO16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cabO16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20020713/qtinstall.info.apple.com/samantha/us/win/QuickTimeInstaller.exeO16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cabO16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} IE 11 copy/paste problem It has come to our attention that people using Internet Explorer 11 (IE 11) are having trouble with copy/paste to the forum. Sign Up This Topic All Content This Topic This Forum Advanced Search Browse Forums Calendar Staff Online Users More Activity All Activity Search More More More All Activity Home Spyware, thiefware, If they're gone, just delete the c:\Progrma Files\Common Name folder.

However, it did leave some junks somewhere in the registry that Comcast couldn't uninstalled everything. I will see about making a donation in your name.

At this point we are novices ourselves, even though much of the basics of malware apply for smartphones as they do for PCs. Spelldown - http://download.games.yahoo.com/games/clients/y/sdt0_x.cabO16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/games/clients/y/pyt0_x.cabO16 - DPF: Yahoo! Are you looking for the solution to your computer problem?

When Hijack This deletes an item it creates backups in the folder it's running from.

When Hijack This deletes an item it creates backups in the folder it's running from. Toki Toki Boom - http://download.games.yahoo.com/games/clients/y/vtj_x.cabO16 - DPF: Yahoo! Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... this content Messenger (HKLM) O9 - Extra button: AIM (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16

Then check the items above (you can't check comwiz, but check all the others) and click "Fix Checked", then reboot.

here is my log fileLogfile of HijackThis v1.99.1Scan saved at 8:16:03 PM, on 12/03/2006Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exeC:\WINDOWS\system32\cisvc.exeC:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exeC:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exeC:\WINDOWS\system32\nvsvc32.exeC:\Program Files\Alcohol

The posted log was completed prior to completing the instructions in the READ BEFORE POSTING HIJACK THIS LOGS which fixed for SearchV, Viewpoint, ViewManager and removed the the IET.ie.dll file and

In Notepad go to File>Save As and put "Appinit.bat" in the filename box (Use the quotes too) and save it on the desktop.   Reg save "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows" windows1.hiv chkntfs c:

Get rid of the "Searchv.com" item.

Navigate to the key 'HKEY_CLASSES_ROOT\CLSID\{00000000-0000-0000-0000-000000000000}' and right click on the 'InProcServer32' subkey and hit delete3) Go to the key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run and delete the Winnet value, then reboot4) Download and run LSPFix

I seem to get rid of it and 48 hours later its back, please help. Still, you can recheck my log in case I missed some entries.

Close all browser windows and "Fix checked" R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http:/www.searchv.com/w/search.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.searchv.com/w/search.html R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchv.com/w/ R0 - HKLM\Software\Microsoft\Internet

Pool 2 - http://download.games.yahoo.com/games/clients/y/potc_x.cabO16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cabO16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CABO16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cabO16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - Show Ignored Content As Seen On Welcome to Tech Support Guy! You can donate using a credit card and PayPal. Click here to join today!

But then, I finally realized they are useless and add some unnecessary toolbars on my IE so I decided to removed them. If I can't, just know you made someone's day with your help ZipperJJ, Oct 16, 2003 #3 Flrman1 Joined: Jul 26, 2002 Messages: 46,329 MSUpdater.exe was what was bringing it