Checking C:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeNo streams found. Download ExterminateIt! C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP358\A0047807.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned with backup (quarantined). Press the Enter key.

Rescan with Hijack This, close all browser windows except Hijack This, put a checkmark beside these entries and click fix checked. Log in or Sign up Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Computer problem? A team member, looking for a new log to work may assume another HJT Team member is already assisting you and not open the thread to respond. ..Microsoft MVP Consumer Security The other file was deleted kim-smells, Oct 11, 2006 #34 kim-smells Thread Starter Joined: Oct 3, 2006 Messages: 149 Incident Status Location Adware:adware/abox Not disinfected Windows Registry Dialer:dialer.asl Not disinfected

Locate these three and right click on them and select "delete". Hello inogen Sorry I missed your post I did stop watching the thread after a week.. Thanks - will do this today. C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP355\A0045538.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined).

Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account? User Name Remember Me? Logfile of HijackThis v1.99.1 Scan saved at 14:14:59, on 12/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: F:\WINDOWS\System32\smss.exe F:\WINDOWS\system32\winlogon.exe F:\WINDOWS\system32\services.exe F:\WINDOWS\system32\lsass.exe F:\WINDOWS\system32\svchost.exe F:\WINDOWS\System32\svchost.exe F:\WINDOWS\system32\spoolsv.exe https://www.securitystronghold.com/gates/drivecleaner.html Please now move HijackThis.exe from your Desktop into the new HJT folder. Step 2 Please download VundoFix.exe to your desktop.

    [*]Double-click VundoFix.exe to run it.[*]Put a check next to Run VundoFix

    It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot. Copyright Dennis Publishing 2010, All rights reserved F:\Documents and Settings\John\Cookies\[email protected][1].txt -> TrackingCookie.Webtrendslive : Cleaned. Often rogue programs like DriveCleaner block you from running security programs and visiting anti-virus websites.

    Posts: 2,082 Re: pop up stop up! click F:\Documents and Settings\John\Cookies\[email protected][2].txt -> TrackingCookie.2o7 : Cleaned. The malware causes massive popups, slows the computer and changes the pages of the internet explorer. The report will be called DrWeb.csvClose Dr.Web Cureit.Reboot your computer!!

    HKLM\SYSTEM\CurrentControlSet\Services\vspf\Security -> Adware.WinAntiVirus : Cleaned with backup (quarantined). When the scan is complete reboot normally and post the WinPFind.txt file (located in the WinPFind folder) back here along with a new Hijack This log. You will clearly see the status change to Inactive if you have done this correctly. Restart your computer.

    F:\Documents and Settings\John\Cookies\[email protected][2].txt -> TrackingCookie.Adbrite : Cleaned. HKLM\SYSTEM\CurrentControlSet\Services\vspf_hk -> Adware.WinAntiVirus : Cleaned with backup (quarantined). Should I be concerened? C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP355\A0045558.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined).

    Ticket was closed. Deletion of file C:\WINDOWS\Downloaded Program Files\UWA6P_0001_N91M1807NetInstaller.exe failed! Thanks in advance for your help!

    Cookiegal, Oct 13, 2006 #41 kim-smells Thread Starter Joined: Oct 3, 2006 Messages: 149 i was able to delete all three objects....

    On a computer that is configured for booting to multiple operating systems, you can press the F8 key when you see the Boot Menu. Removes all registry entries created by DriveCleaner. F:\Documents and Settings\John\Cookies\[email protected][2].txt -> TrackingCookie.Fastclick : Cleaned. C:\avenger\backup-Mon 02.05.2007- -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned with backup (quarantined).

    C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP337\A0034810.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). I did not let it install but this keeps happening ..... here's my current hijackthis log... F:\Documents and Settings\John\Cookies\[email protected][1].txt -> TrackingCookie.Spylog : Cleaned.

    Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: BhoApp Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll O2 - BHO: C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP337\A0034853.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). Posts: 2,082 Re: pop up stop up! is it getting better or worse??