Home > Need Help > Need Help! HiJack This Log Attached

Need Help! HiJack This Log Attached

Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More... If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). There are hundreds of rogue anti-spyware programs that have used this method of displaying fake security warnings. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

Contact Support Submit Cancel Thanks for voting. Related Articles Technical Support for Worry-Free Business Security 9.0Using the Trend Micro System Cleaner in Worry-Free Business Security (WFBS) Contact Support Download Center Product Documentation Support Policies Product Vulnerability Feedback Business Can you please run "CWshreader" and also "SpyBot S&D" and fix all that it finds and then post a fresh log thanks Pancake View Public Profile Find all posts by Pancake by Grif Thomas Forum moderator / May 15, 2007 3:41 AM PDT In reply to: ICON.EXE - Hijack this log attached - HELP PLS !!

Main Sections Technology News Reviews Features Product Finder Downloads Drivers Community TechSpot Forums Today's Posts Ask a Question News & Comments Useful Resources Best of the Best Must Reads Trending Now If you have already posted this log at another forum or if you decide to seek help at another forum, please let us know. Double click on RSIT.exe to run RSIT.

It is not really meant for novices. All Rights Reserved. Items listed at HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ ShellServiceObjectDelayLoad are loaded by Explorer when Windows starts. If you have an existing case, attach the log as a reply to the engineer who handles it.

I also tried many trojan removers and anti-virus software but they couldn't remove the virus as well. What to do: Unless you have the Spybot S&D option 'Lock homepage from changes' active, or your system administrator put this into place, have HijackThis fix this. -------------------------------------------------------------------------- O7 - Regedit Proud graduate of TC/WTT Classroom Back to top #3 LDTate LDTate Forum God Root Admin 57,123 posts Posted 27 November 2005 - 09:05 AM Due to inactivity this topic will http://www.cybertechhelp.com/forums/showthread.php?t=44574 Remove formatting × Your link has been automatically embedded.

No, create an account now. cerge View Public Profile Find all posts by cerge #7 July 27th, 2004, 10:07 AM Pancake CTH Subscriber Join Date: Jan 2004 Location: Australia Posts: 11,317 Have you Password Register FAQ Calendar Today's Active Topics Search Notices Viewing on a mobile device? Last edited by a moderator: Mar 12, 2009 Major Attitude, Aug 1, 2004 #1 (You must log in or sign up to reply here.) Show Ignored Content Thread Status: Not open

What to do: This is an undocumented autorun for Windows NT/2000/XP only, which is used very rarely. Premium Internal Rating: Category:Remove a Malware / Virus Solution Id:1057839 Feedback Did this article help you? This website uses cookies to save your regional preference Continue to Business Support Geolocation Notification Please approve access on GeoIP location for us to better provide information based on your support http://housecall.trendmicro.com/ Pancake View Public Profile Find all posts by Pancake Bookmarks Digg del.icio.us StumbleUpon Google « Previous Topic | Next Topic » Topic Tools Show Printable Version Email this Page Posting

O4 - Global Startup: SideACT!.lnk = C:\Program Files\ACT\SideACT.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll Below this point is a tutorial about HijackThis. This website uses cookies to save your regional preference. Log in or Sign up MajorGeeks.Com Support Forums Home Forums > ----------= PC, Desktop and Laptop Support =------ > Malware Asia Pacific France Germany Italy Spain United Kingdom Rest of Europe Latin America Mediterranean, Middle East & Africa North America Please select a region.

Try our mobile theme. What to do: It's best to fix these using LSPFix from Cexx.org, or Spybot S&D from Kolla.de. c:\program files\timbuktupro2000\tb2launch.exe c:\program files\timbuktupro2000\minitb2.exe Pancake View Public Profile Find all posts by Pancake #6 July 27th, 2004, 09:53 AM cerge New Member Join Date: Jul 2004 Posts: 4 What to do: If you recognize the URL at the end as your homepage or search engine, it's OK.

If you see anything more than just explorer.exe, you need to determine if you know what the additional entry is. You need to investigate what you see. or read our Welcome Guide to learn how to use this site.

Thank you for helping us maintain CNET's great community.

Follow Us Facebook Twitter Help Community Forum Software by IP.BoardLicensed to: What the Tech Copyright © 2003- Geeks to Go, Inc. If you don't like the stock appearance of Google Home, here are two quick and easy ways to make it truly yours. Several functions may not work. If you receive alerts from your firewall, allow all activities for Spy Sweeper) You will be prompted to check for updated definitions, please do so. (This may take several minutes) Click

Dismiss Notice TechSpot Forums Forums Software Virus and Malware Removal Today's Posts Puper Trojan mrjj.exe Help Please Hijack Logattached Byweinbob May 24, 2007 hijack this file attached.. Check Local Disc C. O13 - WWW. I do not think that you are attaching anything scary but others may do so.

PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics) Social: Join the ClassRoom and learn how. I attach Hijack this log. And the log will be put into a MGlogs.zip file with a few other required logs.

If you did not install some alternative shell, you need to fix this. What to do: This is the listing of non-Microsoft services. What to do: F0 entries - Any program listed after the shell statement will be loaded when Windows starts, and act as the default shell. All Activity Home Malware Removal Help Malware Removal for Windows Resolved Malware Removal Logs HiJackThis Log attached...need help Privacy Policy Contact Us Back to Top Malwarebytes Community Software by Invision Power

Please re-enable javascript to access full functionality. HijackThis uses a whitelist of several very common SSODL items, so whenever an item is displayed in the log it is unknown and possibly malicious. The below registry key\\values are used: HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\\load HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\\run -------------------------------------------------------------------------- N1, N2, N3, N4 - Netscape/Mozilla Start & Search page What it looks like: N1 - Netscape 4: user_pref("browser.startup.homepage", "www.google.com"); Try What the Tech -- It's free!

I am always leery of opening attachments so I always request that HijackThis logs are to be posted as a reply to the thread.