Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

NAV Spyware.Perfect [resolved]


  • This topic is locked This topic is locked

#16
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts
This is what came up,... if thats what you want....
Volume in drive C has no label.
Volume Serial Number is 5820-6B04

Directory of C:\Documents and Settings\Chaze\Local Settings\Temp

08/04/2003 10:35 AM 5,120 uninst.tmp
1 File(s) 5,120 bytes

Total Files Listed:
1 File(s) 5,120 bytes
0 Dir(s) 13,756,411,904 bytes free
  • 0

Advertisements


#17
g2i2r4

g2i2r4

    retired HiJack Helper

  • Retired Staff
  • 5,080 posts
It's a bit late I guess (midnight), sorry.

Double click the file find.bat
  • 0

#18
g2i2r4

g2i2r4

    retired HiJack Helper

  • Retired Staff
  • 5,080 posts
You did just great!

Copy the text from the box and past it to an empty file in Notepad.

%systemdrive%
cd C:\DOCUME~1\chaze\local~1\temp
echo %CD% > c:\log.txt
dir >> C:\log.txt
attrib -r -s -h uninst.tmp
if Exist C:\DOCUME~1\chaze\local~1\temp\uninst.tmp echo "File is present" >> c:\log.txt
del uninst.tmp
if Exist C:\DOCUME~1\chaze\local~1\temp\uninst.tmp echo "File not deleted" >> c:\log.txt
start c:\log.txt
exit

Save it
As clear.bat
On your desktop
All types *.*

Close Notepad.

Doubleclick clear.bat
It will create a log.txt
Please copy and past the content of that file here in your answer.
  • 0

#19
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

You did just great!

Copy the text from the box and past it to an empty file in Notepad.

%systemdrive%
cd C:\DOCUME~1\chaze\local~1\temp
echo %CD% > c:\log.txt
dir >> C:\log.txt
attrib -r -s -h uninst.tmp
if Exist C:\DOCUME~1\chaze\local~1\temp\uninst.tmp echo "File is present" >> c:\log.txt
del uninst.tmp
if Exist C:\DOCUME~1\chaze\local~1\temp\uninst.tmp echo "File not deleted" >> c:\log.txt
start c:\log.txt
exit

Save it
As clear.bat
On your desktop
All types *.*

Close Notepad.

Doubleclick clear.bat
It will create a log.txt
Please copy and past the content of that file here in your answer.

View Post





C:\Documents and Settings\Chaze\Desktop
Volume in drive C has no label.
Volume Serial Number is 5820-6B04

Directory of C:\Documents and Settings\Chaze\Desktop

03/19/2005 02:17 AM <DIR> .
03/19/2005 02:17 AM <DIR> ..
03/17/2005 08:58 PM <DIR> ABBA - Gold Greatest Hits
03/18/2005 12:21 PM 27,346 Ad.TXT
03/15/2005 02:16 PM 678 Azureus.lnk
03/17/2005 08:58 PM <DIR> Blade 3 'Trinity' Eng.DVD Video_TS
03/10/2005 04:41 PM 43,175 Blade[1].3.'Trinity'.Eng.DVD.Video_TS.torrent
01/04/2005 10:43 PM 1,498 Calculator.lnk
03/19/2005 02:17 AM 338 clear.bat
03/18/2005 11:24 AM <DIR> Downloads
03/04/2005 03:42 PM <DIR> DVD Stuff
03/18/2005 05:35 PM 66 find.bat
03/14/2005 04:52 PM <DIR> Finished Room
01/08/2005 01:31 PM 610,304 gTools.exe
03/18/2005 03:23 PM 218,112 HijackThis.exe
03/18/2005 03:34 PM 7,855 hijackthis.log
01/18/2005 02:25 PM 809 Law & Order 2 Double or Nothing.lnk
02/27/2005 10:03 PM 2,497 Microsoft Office Word 2003.lnk
03/17/2005 08:58 PM <DIR> Music
01/25/2005 03:41 PM <DIR> No Inventory Needed
03/18/2005 05:49 PM 807 Notebook Maximizer.LNK
03/16/2005 03:18 PM <DIR> Pansat
02/09/2005 05:07 PM <DIR> playstation
01/05/2005 12:04 AM 638 Shortcut (2) to emule.lnk
03/18/2005 11:59 AM 631 Shortcut to clipbrd.lnk
01/20/2005 12:29 PM 587 Shortcut to Incoming.lnk
01/14/2005 02:24 PM 678 Shortcut to mirc.lnk
01/21/2005 04:23 PM 290 Shortcut to Mouse.lnk
02/02/2005 04:46 PM 710 Shortcut to nero.lnk
01/25/2005 08:26 AM 449 Shortcut to SharedDocs on The Living Room PC (dell).lnk
03/08/2005 03:16 PM <DIR> video
19 File(s) 917,468 bytes
12 Dir(s) 13,783,416,832 bytes free
  • 0

#20
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts
????
  • 0

#21
g2i2r4

g2i2r4

    retired HiJack Helper

  • Retired Staff
  • 5,080 posts

Also,

Open HijackThis
go to config - misc tools - 'open uninstall manager' - save log.

Copy and paste the content of that log here too please.

View Post

Can you please post that log here too?
  • 0

#22
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

Can you please post that log here too?

View Post



Do you want me to scan first???
Then go to misc tools, etc???
  • 0

#23
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

Can you please post that log here too?

View Post



Ad-Aware SE Professional
Adobe Acrobat 5.0
AOL Instant Messenger
ArcSoft Software Suite
Atheros Client Utility
Atheros Wireless LAN MiniPCI card Driver
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
Azureus
CC_ccStart
ccCommon
CD/DVD Drive Acoustic Silencer
DivX Player
DivX Pro Trial
DVD-RAM Driver
Elasto Mania
eMule
Google Toolbar for Internet Explorer
HijackThis 1.99.1
InterVideo WinDVD for TOSHIBA
Java 2 Runtime Environment, SE v1.4.2_05
Law & Order II: Double or Nothing
Learn2 Player (Uninstall Only)
LimeWire
LiveReg (Symantec Corporation)
LiveUpdate 2.6 (Symantec Corporation)
Microsoft .NET Framework 1.1
Microsoft Office OneNote 2003
Microsoft Office Standard Edition 2003
Microsoft Works 7.0
mIRC
MSN
MSRedist
Nero 6 Demo
Norton AntiVirus 2004
Norton AntiVirus 2004 (Symantec Corporation)
Norton AntiVirus Parent MSI
Norton WMI Update
Notebook Maximizer
PCI 1620 Cardbus Controller and Software
Quicken 2004
QuickTime
RealPlayer
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver
Roxio Burn Engine
SMSC IrCC V5.1.3600.3 SP1
Sonic DLA
SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.2
Symantec Script Blocking Installer
SymNet
Synaptics Pointing Device Driver
TOSHIBA Access
TOSHIBA ConfigFree
TOSHIBA Console
TOSHIBA Controls
TOSHIBA Fax Extension
TOSHIBA Hotkey Utility for Display Devices
TOSHIBA PC Diagnostic Tool
TOSHIBA Power Saver
Toshiba Registration
TOSHIBA Software Modem
TOSHIBA Software Upgrades
TOSHIBA Speech System Applications
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
Toshiba Tbiosdrv Driver
TOSHIBA Utilities
TOSHIBA Zooming Utility
Touch and Launch
Viewpoint Media Player
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB891781
WinRAR archiver
XviD Media Codec 1.0.2
Yugioh Virtual Desktop
  • 0

#24
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts
Sorry,..I uninstalled HJT and reinstalled it in its own folder. Hope I didnt screw anything up . Here's a new log...

Logfile of HijackThis v1.99.1
Scan saved at 5:32:57 PM, on 3/19/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ACS.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\RAMASST.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\toshiba\ivp\ism\ivpsvmgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\HJT\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.toshiba.com/search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshibadirect.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [Notebook Maximizer] C:\Program Files\Notebook Maximizer\maximizer_startup.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [AWMON] "C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe"
O4 - HKLM\..\Run: [LimeShop] C:\Program Files\LimeShop\LimeShoprun.exe /cp:p "C:\Program Files\LimeShop\System\Code" Main lp: "C:\Program Files\LimeShop"
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\ACS.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
  • 0

#25
g2i2r4

g2i2r4

    retired HiJack Helper

  • Retired Staff
  • 5,080 posts
Let's clean out the temp files first.

Download CleanUp!.
Doubleclick the file cleanup312. Than open the program.

Go to options
set the level to custom
put a check to:* prefetch
* cookies
* temp files
* all users
Run the program.
It can take a while.
When its done, it will tell you how many files were deleted and how many space it cleared.
Then logoff and logon again with your useraccount to get rid of files that were in use at the time of the scan.

I'll make a second advice now.
  • 0

Advertisements


#26
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

Can you please post that log here too?

View Post



Latest HJT Unintall manager Log..


Ad-Aware SE Professional
Adobe Acrobat 5.0
AOL Instant Messenger
ArcSoft Software Suite
Atheros Client Utility
Atheros Wireless LAN MiniPCI card Driver
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
Azureus
CC_ccStart
ccCommon
CD/DVD Drive Acoustic Silencer
DivX Player
DivX Pro Trial
DVD-RAM Driver
eMule
Google Toolbar for Internet Explorer
HijackThis 1.99.1
InterVideo WinDVD for TOSHIBA
Java 2 Runtime Environment, SE v1.4.2_05
Law & Order II: Double or Nothing
Learn2 Player (Uninstall Only)
LimeWire
LiveReg (Symantec Corporation)
LiveUpdate 2.6 (Symantec Corporation)
Microsoft .NET Framework 1.1
Microsoft Office OneNote 2003
Microsoft Office Standard Edition 2003
Microsoft Works 7.0
mIRC
MSN
MSRedist
Nero 6 Demo
Norton AntiVirus 2004
Norton AntiVirus 2004 (Symantec Corporation)
Norton AntiVirus Parent MSI
Norton WMI Update
Notebook Maximizer
PCI 1620 Cardbus Controller and Software
Quicken 2004
QuickTime
RealPlayer
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver
Roxio Burn Engine
SMSC IrCC V5.1.3600.3 SP1
Sonic DLA
SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.2
Symantec Script Blocking Installer
SymNet
Synaptics Pointing Device Driver
TOSHIBA Access
TOSHIBA ConfigFree
TOSHIBA Console
TOSHIBA Controls
TOSHIBA Fax Extension
TOSHIBA Hotkey Utility for Display Devices
TOSHIBA PC Diagnostic Tool
TOSHIBA Power Saver
Toshiba Registration
TOSHIBA Software Modem
TOSHIBA Software Upgrades
TOSHIBA Speech System Applications
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
Toshiba Tbiosdrv Driver
TOSHIBA Utilities
TOSHIBA Zooming Utility
Touch and Launch
Viewpoint Media Player
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB891781
WinRAR archiver
XviD Media Codec 1.0.2
Yugioh Virtual Desktop
  • 0

#27
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

Let's clean out the temp files first.

Download CleanUp!.
Doubleclick the file cleanup312. Than open the program.

Go to options
set the level to custom
put a check to:* prefetch
* cookies
* temp files
* all users
Run the program.
It can take a while.
When its done, it will tell you how many files were deleted and how many space it cleared.
Then logoff and logon again with your useraccount to get rid of files that were in use at the time of the scan.

I'll make a second advice now.

View Post



I thought we cleaned up temp files with defragmenter or something or other. :tazz:
  • 0

#28
g2i2r4

g2i2r4

    retired HiJack Helper

  • Retired Staff
  • 5,080 posts
We did clean them out with a standard program. This one does a far better job. I tried it myself once, after the standard one. Lets see how it does.


Download Pocket Killbox.and unzip it; save it to your Desktop.

Run it, and click the radio button that says Delete a file on reboot. For each of the file in the box, paste them one at a time into the full path of file to delete box and click the red circle with a white cross in it.

The program will ask you if you want to reboot; say No each time until the last one has been pasted in whereupon you should answer Yes.
Let the system reboot.

C:\Documents and Settings\Chaze\Local Settings\Temp\uninst.tmp

C:\documents and settings\chaze\local settings\temp\p2psetup.exe

C:\documents and settings\chaze\local settings\temp\RarSFX1\rinst.exe

  • 0

#29
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts

We did clean them out with a standard program. This one does a far better job. I tried it myself once, after the standard one. Lets see how it does.
Download Pocket Killbox.and unzip it; save it to your Desktop.

Run it, and click the radio button that says Delete a file on reboot. For each of the file in the box, paste them one at a time into the full path of file to delete box and click the red circle with a white cross in it.

The program will ask you if you want to reboot; say No each time until the last one has been pasted in whereupon you should answer Yes.
Let the system reboot.

C:\Documents and Settings\Chaze\Local Settings\Temp\uninst.tmp

C:\documents and settings\chaze\local settings\temp\p2psetup.exe

C:\documents and settings\chaze\local settings\temp\RarSFX1\rinst.exe

View Post



Ok,.. it rebooted,.. although,.. AdAware keeps saying a registry mod has been detected.. here it is:

HKEY LOCAL MACHINE KEY/ SOFTWARE/ MICROSOFT/WINDOWS/CURRENT VERSION/RUN
VALUE:CFSSERVE.EXE
DATA:" "_ NoClient
New Data
  • 0

#30
Chaze

Chaze

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 154 posts
Ok ,.. whats the next step??
Do I do a scan with NAV??
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP