Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

red desktop with "Danger: Spyware"


  • Please log in to reply

#1
kotsy

kotsy

    New Member

  • Member
  • Pip
  • 9 posts
Hey folks,

Been having a problem on my computer here... I can't right click anywhere on my desktop and it has turned red with a black box reading "Danger: Spyware". I managed to get rid of it yesterday by following instructions off a thread I found here... which I can't seem to find anymore. Now today, the background is back and I can't right click again. I followed the instructions of this page up... http://www.geekstogo.....og-t2852.html... until the Highjack This part.... this is the log I got... any help would be greatly appreciated.

Thanks,

Chris.

Logfile of HijackThis v1.99.1
Scan saved at 10:33:41 PM, on 4/25/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\HijackThis.exe

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O4 - HKLM\..\Run: [MessengerPlus2] "C:\Program Files\Messenger Plus! 2\MsgPlus.exe"
O4 - HKLM\..\Run: [Pcv] C:\WINDOWS\System32\Qjk.exe
O4 - HKLM\..\Run: [Kmj] C:\WINDOWS\System32\Tqf.exe
O4 - HKLM\..\Run: [Uhq] C:\WINDOWS\Cri.exe
O4 - HKLM\..\Run: [Lqo] C:\WINDOWS\System32\Vtc.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [Qrd] C:\WINDOWS\Utd.exe
O4 - HKLM\..\Run: [Utt] C:\WINDOWS\System32\Kqm.exe
O4 - HKLM\..\Run: [Jup] C:\WINDOWS\System32\Rlo.exe
O4 - HKLM\..\Run: [Rko] C:\WINDOWS\Qhm.exe
O4 - HKLM\..\Run: [Cki] C:\WINDOWS\Huv.exe
O4 - HKLM\..\Run: [Vvp] C:\WINDOWS\System32\Stc.exe
O4 - HKLM\..\Run: [Rpo] C:\WINDOWS\Clj.exe
O4 - HKLM\..\Run: [Ald] C:\WINDOWS\Nfn.exe
O4 - HKLM\..\Run: [Gig] C:\WINDOWS\System32\Imn.exe
O4 - HKLM\..\RunServices: [ntddetect] C:\WINDOWS\System32\ntddetect.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Kmj] C:\WINDOWS\System32\Tqf.exe
O4 - HKCU\..\Run: [Uhq] C:\WINDOWS\Cri.exe
O4 - HKCU\..\Run: [Lqo] C:\WINDOWS\System32\Vtc.exe
O4 - HKCU\..\Run: [Utt] C:\WINDOWS\System32\Kqm.exe
O4 - HKCU\..\Run: [Rko] C:\WINDOWS\Qhm.exe
O4 - HKCU\..\Run: [Vvp] C:\WINDOWS\System32\Stc.exe
O4 - HKCU\..\Run: [Ald] C:\WINDOWS\Nfn.exe
O4 - HKCU\..\Run: [Gig] C:\WINDOWS\System32\Imn.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
  • 0

Advertisements


#2
kotsy

kotsy

    New Member

  • Topic Starter
  • Member
  • Pip
  • 9 posts
Sorry about the double topic post... I wasn't aware the other one posted... as it never loaded the next page after I hit "add post"


chris.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP