Member Panel


Sponsors and Ads

Live Tag Cloud

[Fixed] Hijackthis! Logs - [Fixed] please help posted in the Security & Safety forums; Hi yall 1st I want to say how great this site is. I've been getting alot of pop ups and my computer is not running the best that it should, ...

JOIN US NOW to remove these Ads

pc help forum number one in the search engines
Post New Thread  Reply
  #1  
Old 04-18-2006
sourlang's Avatar
Bronze Member
 
Join Date: Jan 2006
Location: sydney
Posts: 7
sourlang - See this Members User comments on their Profile page
Default [Fixed] please help

Hi yall
1st I want to say how great this site is.
I've been getting alot of pop ups and my computer is not running the best that it should, I've had alot of problems I'm thinking alot has come from kazzar.
Can you guy's please have a look at my logs to see whats going on.
Thanks
Attached Files
File Type: txt Scan report_20060419.txt.txt (13.9 KB, 2 views)
File Type: log hijackthis.log (11.4 KB, 4 views)


  #2  
Old 04-18-2006
CyFanate's Avatar
Bronze Member
My PC
 
Join Date: Mar 2006
Location: Dieren (near. Arnhem)
Posts: 75
CyFanate - See this Members User comments on their Profile page
Send a message via MSN to CyFanate
Default

First of all: The program you use is not my choice. Maybe a idea to install a program like MS Defender to scan your pc for spyware and then delete. I have really good experiences with that program, instead of programs like AdAware etcetera.


__________________
Life is not hard. It's just hard cause we're trying to understand the reason of all this ****.
  #3  
Old 04-18-2006
Bluefish's Avatar
Elite Member
My PC
 
Join Date: Jan 2005
Location: Holland
Posts: 2,189
Bluefish - See this Members User comments on their Profile page Bluefish - See this Members User comments on their Profile page
Default

Hi CyFanate!
Please do not post back in this forum section, as our Security Team will handle the problems in here.
Blue


__________________
PCHF Rules - You're Welcome!
What's inside my PC? - Prework
  #4  
Old 04-18-2006
CyFanate's Avatar
Bronze Member
My PC
 
Join Date: Mar 2006
Location: Dieren (near. Arnhem)
Posts: 75
CyFanate - See this Members User comments on their Profile page
Send a message via MSN to CyFanate
Default

Furthermore I know it's allowed to help. And if the information given by a non-sec member is correct and helpfull, what's the problem then? But okey, if it is a rule, I will stick to it.


__________________
Life is not hard. It's just hard cause we're trying to understand the reason of all this ****.
  #5  
Old 04-18-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Originally Posted by CyFanate
Furthermore I know it's allowed to help. And if the information given by a non-sec member is correct and helpfull, what's the problem then? But okey, if it is a rule, I will stick to it.
Now that could have been in a nicer tone couldn't it? And no , it is not allowed for members to help in the malware section unless they have made clear that they know enough about the subject.


Originally Posted by CyFanate
First of all: The program you use is not my choice.
And are you talking about Ewido ?? One of the best out there..





Hya Sourlang. Welcome to PCHF , and let's clean that up.


First uninstall these in add/remove programs if present:

YourSiteBar
Media Gateway
180search assistant
Intergrated Search Technologies
ISTBar
P2P Networking
The Best Offers Network

Then disable the wimdows messenger service:

Please download Shoot The Messenger

Download and run the small (22 kbyte) "ShootTheMessenger.exe" utility. It will display the current status of your system's Messenger Service. The button near the bottom of its window will allow you to set the service to whichever state — running or disabled — that you desire.

If, for any reason, you should ever choose to re-enable the Windows Messenger Service, simply re-run ShootTheMessenger to do so.
After that boot in safemode (hit f8 when booting up) and then fix these with hjt:

O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - blank (file missing)
O3 - Toolbar: YourSiteBar - {86227D9C-0EFE-4f8a-AA55-30386A3F5686} - C:\Program Files\YourSiteBar\ysb.dll (file missing)
O4 - HKLM\..\Run: [Media Gateway] C:\Program Files\Media Gateway\MediaGateway.exe
O4 - HKLM\..\Run: [180sa] c:\program files\180search assistant\180sa.exe
[b]O4 - HKLM\..\Run: [srevydsj] C:\WINDOWS\srevydsj.exe
O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\system32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKCU\..\Run: [tbon] C:\PROGRA~1\TBONBin\tbon.exe /r
O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - blank (file missing)
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} -
O16 - DPF: {8FCDF9D9-A28B-480F-8C3D-581F119A8AB8} - http://static.zangocash.com/cab/180s.../bridge-c9.cab
O18 - Filter: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - blank
And then manually delete the files in bold.

When done please post a new hjt log to check.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -


Last edited by joe5; 04-18-2006 at 09:40 PM.
  #6  
Old 04-18-2006
CyFanate's Avatar
Bronze Member
My PC
 
Join Date: Mar 2006
Location: Dieren (near. Arnhem)
Posts: 75
CyFanate - See this Members User comments on their Profile page
Send a message via MSN to CyFanate
Default

Originally Posted by joe5
Now that could have been in a nicer tone couldn't it? And no , it is NOT allowed for members to help in the malware section unless they have made clear that they know enough about the subject.
First of all: Yes, maybe I could have said that I nicer tone. On the other hand, Bluefish could have said it on a nicer tone either. It's A matter of perception I believe, maybe I didn't get the tone right. That's possible. Second: I really wasn't aware 'bout the rule that normal member are not allowed to try to give answers on questions in this part of the forum. My appologies for that.

Originally Posted by joe5
And are you talking about Ewido ?? One of the best out there..
I had other experiences with the program. It maked my pc running slow, and it didn't find all the spyware. But if you really recommend the program, I will give it another try.


__________________
Life is not hard. It's just hard cause we're trying to understand the reason of all this ****.

Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 10:32 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top