My HijackThis log, please help...

Status
Not open for further replies.
Hi,

I have run ad-aware, spybot, spysweeper, cws-shredder on my box (Windows 2000), everything was cleaned, still i get the popups. Also internet explorer is very slow to come up. Please let me know what I can do. I am attaching my hijackthis log.

Thanks,
Gomez
 
You should seriously consider installing W2K-SP4 plus about 40 patches/updates since!

Update Hijackthis first, and move it into its OWN directory, NOT on the desktop!

Boot in Safe Mode
Run HJT on its own and let it fix:

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/cus.../*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
O2 - BHO: (no name) - {4B57B77A-B130-4EB8-8CFB-42B880F6D311} - (no file)
O2 - BHO: (no name) - {520ADA10-12DF-4FDB-9C06-A6841E8F919F} - C:\Program Files\lvz4nd2s\lvz4nd2s.dll
O2 - BHO: CAUN Object - {59F12660-2B92-4554-98F9-87295AD8A0CE} - C:\WINNT\System32\AUNBHO.dll
O2 - BHO: (no name) - {83935B03-F1B0-4606-8333-649B993DCE39} - C:\Program Files\48fc6y9i\48fc6y9i.dll
O2 - BHO: (no name) - {A138C991-22B2-40D0-9C04-CC8AD44C5939} - C:\Program Files\lvz4nd2s\lvz4nd2s.dll
O2 - BHO: (no name) - {CC924BD1-7382-4619-A706-070CB00F2325} - (no file)
O2 - BHO: SDWin32 Class - {EEDF63BC-5BE1-4578-AA37-1322C14C894B} - C:\WINNT\System32\cxruc.dll
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

ALL lines with O16 - DPF:

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll ++>> only 'fix' <<==

When done, delete the bold files. When a directory-name is bold, delete everything in it, including that directory itself.
 
Status
Not open for further replies.
Back