When the trial period expires it becomes feature-limited freeware but is still worth keeping as a good on-demand scanner. thanks 0 OptionsEdit Baabiouz Nov 2007 edited Nov 2007 Yes, you did it right. Confirm by clicking Yes. IMPORTANT: Do not open any other windows or programs while AVG Anti-Spyware is scanning as it may interfere with the scanning process: Launch AVG Anti-Spyware by double clicking the icon on

As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged

Under How to scan? This can patch many of the security holes through which attackers can gain access to your computer. Log in with Facebook Log in with Twitter Log in with Google Your name or email address: Do you already have an account? C:\check_LSA7.txt C:\WINDOWS\b122.exe C:\WINDOWS\cookies.ini C:\WINDOWS\system32\eopqpqha.exe C:\WINDOWS\system32\feneasvv.exe C:\WINDOWS\system32\gvvdsolt.exe C:\WINDOWS\system32\jvwmwvjt.exe C:\WINDOWS\system32\mjxktdxu.exe C:\WINDOWS\system32\nfflineg.exe C:\WINDOWS\system32\olalrgcp.exe C:\WINDOWS\system32\oqsut.bak1 C:\WINDOWS\system32\oqsut.bak2 C:\WINDOWS\system32\oqsut.ini C:\WINDOWS\system32\oqsut.ini2 C:\WINDOWS\system32\oqsut.tmp C:\WINDOWS\system32\qqqabdlx.dll C:\WINDOWS\system32\tusqo.dll C:\WINDOWS\system32\vkiialqj.exe C:\WINDOWS\system32\xldbaqqq.ini . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) -------\LEGACY_DOMAINSERVICE -------\DomainService ((((((((((((((((((((((((( Files Created from 2007-08-27 to

And since it's a buggy virus, the files cannot be properly disinfected. Webcam Upload Wrapper) - http://chat.yahoo.com/cab/yuplapp.cabO16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.installen...gine/isetup.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cabO16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo....plorer1_9us.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} Back to top #6 jurgenv jurgenv Advanced Member Volunteer Security Advisor 2462 posts Posted 21 May 2007 - 02:47 PM Please remove the following file with OTMoveIt:C:\WINDOWS\inter.exePost the report of it Back to top #11 vlados vlados Member Members 17 posts Posted 21 May 2007 - 07:15 PM After last operation that you recommend me everything is back to normal (date, time,

Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan". Show Ignored Content Page 1 of 3 1 2 3 Next > As Seen On Welcome to Tech Support Guy! Copy and paste the contents of the log into your next reply.Note: To avoid false positives, it is important that you disable ZoneAlarm Pro firewall or any other security program that Once the scan is complete, do the following: If you have any infections you will be prompted.

So the best solution is a format and a reinstall here. https://forums.spybot.info/showthread.php?19684-Please-analayze-a-TrendMicro-Hijack-This-log Cookiegal, Jul 27, 2007 #12 ttiger Thread Starter Joined: Sep 30, 2006 Messages: 105 Cookiegal: Another dumb question. I also have been getting a lot of pop-ups regarding anti-virus programs as well. I will follow your instructions when I get home.

By default it will install to C:\Program Files\GRISOFT\AVG Anti-RootkitAccept the license and follow the prompts to install.You will be asked to reboot to finish the installation so click "Finish".After rebooting, double-click Would you prefer it if I sent you the log via email? Thank you for all your help Juliet! So any help would be greatly appreciated.

Post that log in your next reply. Click on Scanner on the toolbar. Select the "Save report as" button in the lower left-hand of the screen and save it to a text file on your system (make sure to remember where you saved that Nov 6, 2007 #1 howard_hopkinso TS Rookie Posts: 24,177 +19 Your system is infected with a variety of malware.

I am not familiar with this rootkit.

Save this as CFScript.txt Then drag the CFScript.txt into ComboFix.exe as you see in the screenshot below. Thanks for the help! 0 OptionsEdit Baabiouz Nov 2007 edited Nov 2007 Hi! this Topic is closed. I have seen this.

Noticed that the anti-virus was saying that most of the problems were in the Firefox files. Ad-aware SE, Spybot and Windows Defender (my usual scans) haven't picked up on them. (Tried to paste the results here but not coming across 'cleanly' - I know nothing about Notepad!) Maybe I should do another scan and try it?Thanks for your input. When finished and after reboot (in case it asks to reboot), it should open a log, combofix.txt.