also @ TechSpot: TechSpot 2X Giveaway: Win an ATI Radeon HD 5850, BenQ LED Mini Projector, more...
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.

Go Back   TechSpot OpenBoards > Operating Systems & Software > Virus & Malware removal

Virus message popup

Closed Thread
Page 3 of 3 12 3
Bookmark Thread Tools
  #41  
Old 11-04-2008
Bobbye's Avatar
TechSpot Evangelist
 
Location: Clearwater, FL
Member since: Mar 2007, 5,902 posts
1, I do not see a functioning antivirus program.
2. I see you are also using SpyHunter3. This program has a checkered past. It was listed as a rogue program, eventually de-listed, but ti is still not a recommended program
3. You use the file sharing program Limeware, which is a know contributor to adware, spyware and other malware.
4. It appears that you may have attempted to set up Host files, but they are not setup correctly.
You need to deal with this immediately>> already mentioned by momok.
5. You have a plug-in for Norton Confidential
6. You have an AVG v8 Toolbar entry with file missing
7. IEreset.INF: When you click reset Internet Explorer reads it's default settings from a file called iereset.inf. ... You's is set ti tiny.com
8. the O20 - AppInit_DLLs: karna.dat>> this entry loads from th Regisrty>> Added by the Troj/FakeVir-GL Trojan
9. You have a Symantec Service running for Norton Internet Security Suite. but no other entries are seen

Quote:
After you have fixed those entries, try running MBAM and SAS again. Then post back with a fresh HijackThis log.
I check the log. There are so many bad entries that you can only hope that running Malwarebytes and SuperAntispyware will clean some of it out.

I concur with exactly the same entries monok told you to remove, then follow up with those two programs and ending with a fresh logs from all 3 programs..

It is amazing at how many entries there are with the missing CLSID and URL. There is no way to verify these entries. Please proceed as requested if you want to make any progress.
  #42  
Old 11-06-2008
Newcomer, in training
 
Member since: Dec 2007, 19 posts
Fixed I think

I have managed to load and run MBAM which cleared a lot of the problems. I then downloaded and ran SAS which seemed to clear the rest.

I was then able to re-load AVG (Hurrah) - haven't bothered with Norton, so there will still be refwerences to this.

I have run scan after scan after scan and currently I don't see any problems. The Antivirus 2009 / Bratsk problem has gone.

Please find attached my HJT log and - well you tell me - is it much better?

Many thanks for your help

Steve
Attached Files
File Type: txt hijackthis Log.txt (10.8 KB, 3 views)
To remove this ad, sign in. To register for a new account, click here.
  
  #43  
Old 11-07-2008
Bobbye's Avatar
TechSpot Evangelist
 
Location: Clearwater, FL
Member since: Mar 2007, 5,902 posts
There is still an older version of Java loading. Check these two entries for HijackThis to remove:
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

Uninstall Java v6u7 in the Control Panel. If you did NOT update, please go here and update to v6u10:
http://www.java.com/en/download/manual.jsp

Otherwise the log looks fine.
If speed is an issue for you, there are several processes loading at startup that do not need to. The programs or applications can then be started manually when needed: Have HijackThis remove the following 04 entries:
Quote:
1. PDVDServ.exe>>> CyberLink\PowerDVD
2. CARPService>>>Associated with Zoltrix modems - enables the internal modem speaker, allowing you to listen to the dial-up sounds for example
3. NeroCheck.exe>>> [NeroFilterCheck] CAMTRAY.EXE>>> Creative WebCam Tray
4. mm_tray.exe>>> tray icon for Musicmatch Jukebox
5. mimboot.exe>>> eMusicmatch Jukebox.
6. QTTask.exe>>> QickTime
7. jusched.exe>>> updates for Java:
8. realsched.exe>>> updater for real Player:
9. CTSyncU.exe">>> Related to Creative_Sync_Manager synchronizes music tracks on your computer with your player.
10. PCSuite.exe" -onlytray>>> tray icon for Nokia_PC_Suite lets you edit, synchronize and back up many of your phone's files on a compatible PC through a cable or wireless connection.
12. WZQKPICK.EXE>>> or WinZip System Tray Application. Did you know that Wondows XP has a built in 'unzipper' (uncompress)?
To disabled Java auto-updates:
1. Click on the Control Panel
2. Click on Java
3. Select 'Update tab'
4. Uncheck the box next to Check for updates Automatically
5. Answer Yes when asked to Verify.
6. Click on Apply

To disabled Real Player updates: All Programs> Open Real Player:
1. Launch RealPlayer > Tools menu. (Tip: If you only see File and View, click on the double greater-than icon (>>) to access the rest of the menus.)
2. Choose Preferences. In the Categories list on the left side, find Automatic Services. Click the plus icon to the left to reveal AutoUpdate. Select AutoUpdate.
3. Uncheck the box next to Automatically Download and Install Important Updates.
(NOTE: may be slight difference in versions)

To disable Adobe Reader updates:
1. All Programs> Adobe Reader
2. Choose 'Check for Updates'
3. Preferences
4. UNCHECK 'Automatically check for updates'> OK
(NOTE: you need to check for updates at least one time in-order to access the Adobe Auto Updater preference dialog box.

New versions should be checked for at intervals, downloaded and installed. Old versions should then be uninstalled from Add/Remove Programs in the Control Panel as these updates do not usually overwrite.
If the system is not stable, you can remove the cleaning tools:

* Download OTCleanIt (http://download.bleepingcomputer.com.../OTCleanIt.exe)
* Click the CleanUp! button.
* It will go thorough the list and remove all of the tools it finds and then delete itself (requiring a reboot).

Clear your existing System Restore points and establish a new clean restore point:
Go to Start > All Programs > Accessories > System Tools > System Restore> Select Create a restore point> OK.
Next, go to Start > Run and type in cleanmgr> Select the More options tab> Choose the option to clean up System Restore and OK it.
This will remove all restore points except the new one you just created.
Closed Thread
Page 3 of 3 12 3

Tip: Download Advanced SystemCare 3 Freeware - 1 Click A Day to Clean, Repair, Protect & Optimize your PC.

Thread Tools


Similar Topics
Topic Category Replies Last Post
Infected with CID? Popup virus Virus & Malware removal 9 06-15-2008 02:14 PM
System message popup virus HELP! Virus & Malware removal 11 01-01-2008 04:05 PM
CiD Popup virus Virus & Malware removal 1 12-29-2007 09:41 AM
url.cpvfeed popup virus!!! Virus & Malware removal 1 06-13-2007 01:53 AM
Please Tell Me How To Remove This Popup Virus!! Virus & Malware removal 3 07-15-2006 11:39 PM


All times are GMT -4. The time now is 07:10 PM.