Home > Hjt Log > HJT Log Help - Ross

HJT Log Help - Ross

I'd still like to know what changed the Shell32.dll. Task Manager is set for "always on top" by default. Log in Username Remember Me? I also did a Trend Micro scan, it was clean.

Sign In Sign Up Browse Back Browse Forums Guidelines Staff Online Users Members Activity Back Activity All Activity My Activity Streams Unread Content Content I Started Search Malwarebytes.com Back Malwarebytes.com Malwarebytes So to disable guard.exe, I just put a check next to its line in HJT and clicked fix checked. I was just wondering if this is important. PS.

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn6\yt.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dllO4 - HKLM\..\Run: [KYE_Showicon] "C:\Program Files\USB Storage RW\shwicon.exe" -t"KYE\USB Storage RW"O4 - HKLM\..\Run: [WCOLOREAL] "C:\Program Files\Coloreal\coloreal.exe"O4 - HKLM\..\Run: I would like to see them, but I can tell you what I'm looking for: basically, any time the Commit Charge exceeds the total physical memory, Windows is going to have What sort of % CPU usage would you expect to see during normal surfing with Internet Explorer? We will also try and help with troubleshooting any technical problems you may have with the forums.

It sometimes reports missing files in error. Any ideas? Photo 7.0-->MsiExec.exe /I{369B36BE-3D64-4641-9AEA-808D436FE132} Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft Streets and Trips 2002-->MsiExec.exe /I{12BDDF23-B1DB-49C8-92D3-3E6841CCED61} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Works 2003 Setup Launcher-->C:\Program Files\Microsoft Works Suite 2003\Setup\Launcher.exe D:\ Microsoft Works 7.0-->MsiExec.exe A warning message will pop up.

I use a wireless connection to a Netgear router (i live in a shared house so the connection is shared between 2-3 other people). If you have an account, please sign in. Download it to your desktop and double click to open. http://www.techmonkeys.co.uk/forum/printthread.php?tid=15892 or read our Welcome Guide to learn how to use this site.

AVG scan did not find any virus, but this result does not seem normal to me. Accept the default location, which is C:\Documents and Settings\All Users\Application Data\Spybot-Search & Destroy\Logs. Accept the terms, let it install an ActiveX program (since you have XP SP2 this is blocked by default, you must allow it), then accept the terms again, let it download I'd call this a bug in the AVG-AS program.Here's the skinny on HJT -- it's an enumerator-cum-registry editor, does a lot of other tricks too, but that's the heart of its

This includes browsers. https://forums.malwarebytes.com/topic/19263-winifighter-help/ HJT Log Started by Ross Neptune , Sep 27 2006 06:01 AM This topic is locked 1 reply to this topic #1 Ross Neptune Ross Neptune New Member Members 8 posts I do not have any Symantec or Norton product installed on my computer. Just for grins and giggles I ran HJT on my own machine, sure enough, there was that O23 for AVG Antispyware guard.exe.

Cheers, Ross Back to top #12 DaveM59 DaveM59 Bleepin' Grandpa Members 1,355 posts OFFLINE Gender:Male Location:TN USA Local time:12:35 PM Posted 11 December 2006 - 08:51 PM Hi Ross,It depends Help Privacy Policy Contact Us Back to Top Malwarebytes Community Software by Invision Power Services, Inc. × Existing user? Anybody have any thoughts? Jump to content Resolved Malware Removal Logs Existing user?

useless!!!! The first item is the MSN toolbar. It looks like you've scanned in safe mode and that's not showing me everything I need to see. Thread Tools Search this Thread 2nd Mar 2005, 00:03 #1 (permalink) Sky_Captain Thread Starter Join Date: Oct 2004 Location: Everywhere Posts: 190 Please Help Get Rid Of This Virus,

I will be back as soon as possible. One quick check I might suggest: Press -- to open Task Manager, then click on the Processes tab. That should end the program and leave you with only Windows Defender running.

Thanks for your help,RossLogs follow:SpyBot--- Search result list ---Bearshare: Class ID (Registry key, fixing failed) HKEY_CLASSES_ROOT\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---2005-05-31 blindman.exe (1.0.0.1)2005-05-31 SpybotSD.exe (1.4.0.3)2005-05-31 TeaTimer.exe

Do some surfing and see what happens with CPU usage. Keep it in mind and if things start getting funky we'll look into it further. Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account? In order to find out what entries are nasty and what are installed by the user, you need some background information.A logfile is not so easy to analyze.

Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-08-17 343112] {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504] {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Windows Live Toolbar - C:\Program Files\Windows Live Toolbar\msntb.dll [2007-10-19 546320] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2007-11-07 8523776] "ccApp"=C:\Program Have you asked you housemates about their internet speed?Let me know, I'll get back to you on Monday. on a side note, i would like to clear any startup programs that i don't need to be running, so any help there would be great too. My machine is a very middling Sempron 2400, low end when I built it a year and a half ago.What you are looking for is sustained high usage, with a bad

Please download Blacklight Beta here. But after each spike CPU usage quickly returns to its idling 2 percent. I am also posting my HJT log file. Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe ======Security center information====== AV: Spy Sweeper with AntiVirus ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\PROGRA~1\MICROS~4\Office;C:\Program Files\QuickTime\QTSystem\ "windir"=%SystemRoot% "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=15 "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 2 Stepping 9, GenuineIntel "PROCESSOR_REVISION"=0209 "NUMBER_OF_PROCESSORS"=1 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP

HJT Log Help - Ross This is a discussion on HJT Log Help - Ross within the Resolved HJT Threads forums, part of the Tech Support Forum category. Open the Tools section. Just paste your complete logfile into the textbox at the bottom of this page. But services.msc confirms HJT, guard.exe was set to automatic (i.e.

I re-ran HiJackThis and the O23 line entry was still showing too. Ross Back to top #10 DaveM59 DaveM59 Bleepin' Grandpa Members 1,355 posts OFFLINE Gender:Male Location:TN USA Local time:12:35 PM Posted 08 December 2006 - 09:30 PM Hi Ross, You're right,