Ok, so I have done my homework and have followed all of the directions posted on here about getting rid of spyfalcon (ewido, ad-aware, smitrem, panda, etc..) but i cannot get any txt docs or logs of ewido or smitrem- and panda stops scanning and working (yes i am in safe mode) after going thru an estimated 615-640 files. I am going absolutely crazy here!! The only log I am able to get is my HJT log..... can anyone help??!!
Logfile of HijackThis v1.99.1
Scan saved at 3:59:18 PM, on 3/16/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\wpabaln.exe
C:\WINDOWS\system32\cleanmgr.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\All Users.WINDOWS\Desktop\Spyware Check\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O4 - HKLM\..\Run: [SpyFalcon] C:\Program Files\SpyFalcon\SpyFalcon.exe /h
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Ltho] "C:\WINDOWS\System32\ECURIT~1\msconfig.exe" -vt mt
O4 - HKCU\..\Run: [Kgglib] C:\Documents and Settings\LacyMason\Application Data\??stem32\?hkdsk.exe
O4 - HKCU\..\Run: [Arnu] "C:\DOCUME~1\LACYMA~1\APPLIC~1\SSTEM3~1\ntvdm.exe" -vt mt
O4 - HKCU\..\Run: [Fns] C:\Documents and Settings\LacyMason\My Documents\s?stem\w?auclt.exe
O4 - HKCU\..\Run: [Shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"
O4 - HKCU\..\Run: [MStask] C:\WINDOWS\svchost.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O18 - Filter: text/html - {CEA53356-C414-4331-A35E-AA4CE9D8DFA2} - C:\WINDOWS\System32\w9seq.dll
O20 - Winlogon Notify: dvd4free - dvd4free.dll (file missing)
O20 - Winlogon Notify: extfpu - extfpu.dll (file missing)
O20 - Winlogon Notify: ur32krutik6666reg - C:\Documents and Settings\All Users.WINDOWS\Documents\Settings\ur32krutik6666.dll
O20 - Winlogon Notify: winhdn32 - winhdn32.dll (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe (file missing)
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\myjpwvi.exe (file missing)