Home > Need Help > Need Help (With HJT)

Need Help (With HJT)

SourceForge Browse Enterprise Blog Deals Help Create Log In or Join Solution Centers Go Parallel Resources Newsletters Cloud Storage Providers Business VoIP Providers Internet Speed Test Call Center Providers Home Browse You are all where I would like to be at someday. HKCR\f (PUP.Funmoods) -> No action taken. Here is the MBAM log: Malwarebytes Anti-Malware 1.61.0.1400 www.malwarebytes.org Database version: v2012.06.12.09 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 John :: JOHN-PC [administrator] 12/06/2012 8:54:04 PM mbam-log-2012-06-12 (20-54-04).txt

O3 - HKLM..Toolbar: (no name) - Locked - No CLSID value found. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> No action taken. Do not start a new topic.Refrain from running self fixes as this will hinder the malware removal process.It may prove beneficial if you print of the following instructions or save them O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM..comfile [open] -- "%1" %* O35:64bit: - HKLM..exefile [open] -- "%1" %* O35 - HKLM..comfile

If you have email address at Hotmail, Hotmail.uk, etc etc then you will not get notifications and need to manually check for new replies. We recommend Gmail.   The notifications won't even be in your Spam folder - they just go down a black hole. I will get to it.

Then reboot into safe mode by rebooting then start tapping the F8 key you will get the advance option select safe mode then load run the program Once the program has HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> No action taken. We do not know what the problem is, but it seems to be specific to IE 11 and we are hopeful that Microsoft will eventually fix it. O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program Files (x86)OracleJavaFX 2.1 Runtimebinjp2ssv.dll (Oracle Corporation) O3:64bit: - HKLM..Toolbar: (no name) - 10 - No CLSID value found.

Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_16_0.dllO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: ElnkScamBHO Class - {15F4D456-5BAA-4076-8486-EECB38CD3E57} - C:\Program Files\EarthLink TotalAccess\Toolbar\EScamBlk.dllO2 - BHO: ElnkPubBHO Class Your Display Name will now be the only name you have for the forum and, if you used your Username to log in, you will now need to use your Display Continue with that same procedure until you have copied and pasted all of these in the "Paste Full Path of File to Delete" box.

Show Ignored Content As Seen On Welcome to Tech Support Guy! OTL.txt <-- Will be openedExtra.txt <-- Will be minimizedPlease post the contents of these 2 Notepad files in your next reply. SourceForge About Site Status @sfnet_ops Powered by Apache Allura™ Find and Develop Software Create a Project Software Directory Top Downloaded Projects Community Blog @sourceforge Resources Help Site Documentation Support Request © Please refer to our CNET Forums policies for details.

Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn0\ycomp5_5_7_0.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Related Page - {9A9C9B68-F908-4AAB-8D0C-10EA8997F37E} - C:\WINDOWS\System32\WinNB57.dll O3 - Toolbar: UCmore XP - The Search Accelerator Thanks in advance!   Logfile of HijackThis v1.98.0 Scan saved at 7:02:20 PM, on 7/16/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)   Running processes: C:\WINDOWS\System32\smss.exe O3 - HKLM..Toolbar: (no name) - 10 - No CLSID value found. Loading...

HijackThis is not compatible on a 64 bit system like yours and it's scan results can not be relied upon. inffile [install] -- %SystemRoot%System32InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:WindowsSystem32rundll32.exe" "C:WindowsSystem Software > Computer viruses and spyware Need help with analyzing a HJT log. << < (2/3) > >> HKCR\escort.escortIEPane.1 (PUP.Funmoods) -> No action taken. HJT Log included Dec 27, 2006 HJT Log, infected with Vundo, I need help Feb 20, 2008 Need Help with HJT log Dec 24, 2005 Need Help - HJT Log Dec

Need help, HJT doesn't work Discussion in 'Virus & Other Malware Removal' started by Cireel, Jul 26, 2005. Disruptive posting: Flaming or offending other usersIllegal activities: Promote cracked software, or other illegal contentOffensive: Sexually explicit or offensive languageSpam: Advertisements or commercial links Submit report Cancel report Track this discussion Please help. Remove formatting Only 75 emoticons maximum are allowed. × Your link has been automatically embedded.

Thanks. Ask a question and give support. No, create an account now.

If you do get an error, just select the service and look there in the top left of the main service window and click "Stop" to stop the service.

Advertisement Recent Posts Unstable FPS on Insane Computer donnynotty replied Feb 13, 2017 at 11:30 PM Word List Game #14 cwwozniak replied Feb 13, 2017 at 11:29 PM 4 Word Story Mammuthus Hibernian Scouserus, member of ASAP and UNITE. You will do that later in safe mode. Please don't fill out this field.

http://reviews.cnet.com/5208-6132-0.html?forumID=32&threadID=107213&messageID=1223125 Flag Permalink This was helpful (0) Back to Spyware, Viruses, & Security forum 2 total posts Popular Forums icon Computer Help 51,912 discussions icon Computer Newbies 10,498 discussions icon Laptops nothing show up I did a scan with hjt and I will put here. Thread Status: Not open for further replies. I'm going to need you to run a different scan for myself in due course.

You may also... HKCR\escort.escortIEPane (PUP.Funmoods) -> No action taken. Register now! C:\WINDOWS\System32\WinNB57.dll C:\WINDOWS\CDM\whrievdxxk.dll C:\WINDOWS\System32\msbe.dll C:\woekd.exe C:\WINDOWS\system32\1.tmp C:\WINDOWS\System32\vjktdpir.exe C:\spool.exe C:\WINDOWS\System32\vbsys2.dll C:\WINDOWS\aim.exe C:\WINDOWS\wkssvc.exe C:\WINDOWS\System32\mousehs.exe C:\WINDOWS\svcproc.exe Note: It is possible that Killbox will tell you that one or more files do not exist.

You're welcome! First, let me just say thank you and props to all those knowledgeable people that help out the rest of us. HKCR\funmoods.funmoodsHlpr.1 (PUP.FunMoods) -> No action taken. Advertisement Tech Support Guy Home Forums > Security & Malware Removal > Virus & Other Malware Removal > Home Forums Forums Quick Links Search Forums Recent Posts Members Members Quick Links

HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> No action taken. If that happens, just continue on with all the files. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules BleepingComputer.com Forums Members Tutorials Startup List

Back to top #4 Dakeyras Dakeyras Anti-Malware Mammoth Trusted Malware Techs 1,107 posts Gender:Male Location:The Tundra Posted 13 June 2012 - 05:34 AM Hi. Sign up for the SourceForge newsletter: I agree to receive quotes, newsletters and other information from sourceforge.net and its partners regarding IT services and products. Run ActiveScan online virus scan http://www.pandasoftware.com/activescan/ When the scan is finished, anything that it cannot clean have it delete it. Case closed.

Failure to reboot will prevent MBAM from removing all the malware. If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members. Logfile of HijackThis v1.99.1 Scan saved at 6:04:53 PM, on 7/26/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe Alternate downloads are here and here.

I appreciate your help. Several functions may not work. If you think you have similar problems, please post the appropriate logs in the Have I Been Hijacked?