| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 108566 | 2010-04-02 10:32:00 | Stumped | sk69ersnz (13476) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 872199 | 2010-04-02 19:07:00 | Its probably under a panel. Turn it off, unscrew the panel and pull it out | Speedy Gonzales (78) | ||
| 872200 | 2010-04-02 19:27:00 | I'm back into normal mode,seems to be behaving,I'll let you know what MS finds and try to get a hijackthis log on. | sk69ersnz (13476) | ||
| 872201 | 2010-04-02 19:49:00 | If you are going to install MSSE, uninstall Avast first. | Driftwood (5551) | ||
| 872202 | 2010-04-02 19:55:00 | Avast uninstalled,MS still installing,lol.This thing has 222mb of ram. | sk69ersnz (13476) | ||
| 872203 | 2010-04-02 20:20:00 | Scan finished,found trojan downloader,now running windows updates which was also turned off. | sk69ersnz (13476) | ||
| 872204 | 2010-04-02 20:35:00 | hijackthis log Logfile of Trend Micro HijackThis v2.0.3 (BETA) Scan saved at 9:29:57 a.m., on 3/04/2010 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Spyware Terminator\sp_rsser.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE c:\Program Files\Microsoft Security Essentials\MsMpEng.exe C:\Program Files\Microsoft Security Essentials\msseces.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\msiexec.exe C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe C:\WINDOWS\SoftwareDistribution\Download\ca9dce055 d1f0f23d2b57daec177104f\update\update.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = ie.redirect.hp.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = ie.redirect.hp.com R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_AU&c=Q105&bd=pavilion&pf=laptop O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - platformdl.adobe.com O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe -- End of file - 3612 bytes |
sk69ersnz (13476) | ||
| 872205 | 2010-04-02 21:14:00 | I would update to IE 7 or 8 and update to SP3. Both IE 6 and SP2 will no longer be supported soon. (July this year for SP2 anyway) | Speedy Gonzales (78) | ||
| 872206 | 2010-04-02 21:22:00 | I would Speedy but there is 1.9gb of free space,I've cleared a lot of stuff off it already.I'm gonna tell him to upgrade soon as,all he wanted was the internet back,unless you can think of something else to delete. | sk69ersnz (13476) | ||
| 872207 | 2010-04-02 21:38:00 | What size is the Hard drive? | Driftwood (5551) | ||
| 872208 | 2010-04-02 21:40:00 | Use ccleaner to remove the temp files etc. It may give them some more space | Speedy Gonzales (78) | ||
| 1 2 3 | |||||