Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

HJL help comp wont work right [RESOLVED]


  • This topic is locked This topic is locked

#16
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Can you get another windows installation disk set?

I can clean this machine of malware for you but there appears to be so much junk on it, that you will still have a dodgy machine. I would honestly recommend reformatting and reinstalling windows, rather than trying to clean it. However the choice is yours.

Let me know how you would like to proceed.
  • 0

Advertisements


#17
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
is there a way to do it with out spending anymore money on it can i DL and burn the disks i need ... please please please :-}
  • 0

#18
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Do you have the windows installation disks from your other machine?
  • 0

#19
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
no no disks at all
  • 0

#20
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, that complicates things, especially the repair of Internet Explorer.

Could you try downloading Firefox and installing that, then let me know if you can view web pages.
  • 0

#21
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
sorry had to step out 4 a min ......

back now no cant do firefox i dl it here went to send through AOL and wont go keeps freezing file to big i think

any other ideas??

i got 1 big hammer lol

im up to try anything
  • 0

#22
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, lets see if we can find a backup of Internet Explorer, as I need to get you online to do an online scan.

Please visit Windows VBScript Tools to download Find File Information
  • Scroll down the page until you locate Find File Information
  • Click on the small arrow to the left of the word File
  • On the right hand side, you will see a small arrow pointing down onto a hard drive (under a magnifying glass icon)
  • Click on the Arrow to Download the script
  • Save the script to your Desktop
  • Once the script has completed download, unzip it to your Desktop
Next, locate FileInfo.vbs and double click it to run the program
  • In the first dialog box, type * and click OK
  • In the next dialog box, type iexplore and click OK
  • The program will disappear for a minute, Do Not do anything while it is running
  • When the scan is complete, it will open a Text file named searched.txt which it will save to you root drive (typically C:\searched.txt)
  • Copy and paste the results of the search in your next reply

  • 0

#23
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
c:\program files\internet explorer\iexplore.exe
Version: 6.0.2900.2180
Created: 8/7/2004 3:01:03 PM
Modified: 8/4/2004 3:00:00 PM
Size: 93,184 bytes
Attributes: Archive

c:\windows\help\iexplore.chm
Version:
Created: 8/16/2004 5:08:06 PM
Modified: 8/4/2004 8:00:00 AM
Size: 204,810 bytes
Attributes: Archive Compressed

c:\windows\help\iexplore.hlp
Version:
Created: 8/16/2004 5:08:06 PM
Modified: 8/4/2004 8:00:00 AM
Size: 180,335 bytes
Attributes: Archive Compressed

c:\windows\i386\iexplore.ch_
Version:
Created: 8/16/2004 6:03:09 PM
Modified: 8/4/2004 8:00:00 AM
Size: 199,077 bytes
Attributes: Compressed

c:\windows\i386\iexplore.ex_
Version:
Created: 8/16/2004 6:03:09 PM
Modified: 8/4/2004 8:00:00 AM
Size: 37,895 bytes
Attributes: Compressed

c:\windows\i386\iexplore.hl_
Version:
Created: 8/16/2004 6:03:09 PM
Modified: 8/4/2004 8:00:00 AM
Size: 59,881 bytes
Attributes: Compressed

c:\windows\system32\dllcache\iexplore.exe
Version: 6.0.2900.2180
Created: 8/7/2004 3:01:03 PM
Modified: 8/4/2004 3:00:00 PM
Size: 93,184 bytes
Attributes: Archive Compressed

d:\i386\iexplore.ch_
Version:
Created: 8/16/2004 2:08:06 PM
Modified: 8/4/2004 5:00:00 AM
Size: 199,077 bytes
d:\i386\iexplore.ex_
Version:
Created: 8/16/2004 2:08:06 PM
Modified: 8/4/2004 5:00:00 AM
Size: 37,895 bytes
d:\i386\iexplore.hl_
Version:
Created: 8/16/2004 2:08:06 PM
Modified: 8/4/2004 5:00:00 AM
Size: 59,881 bytes
  • 0

#24
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Looks like you have the legitimate internet explorer.

Back to the drawing board!
  • 0

#25
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
i get these errors when trying to go to internet through aol browser

internet explorer can not download landpop6 from aolsearcht7.search.aol.com

and

internet explorer can not download ?src=htmlws-main from www.welcomescreen.aol.com



when i go through IE itself if i type something in just nothing comes up no error messages or anything
  • 0

Advertisements


#26
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Lets try this:

Download OTScanIt.exe to your Desktop and double-click on it to extract the files. It will create a folder named OTScanIt on your desktop.
  • Close ALL OTHER PROGRAMS.
  • Open the OTScanIt folder and double-click on OTScanIt.exe to start the program.
  • Check the box that says Scan All User Accounts
  • Check the box that says Include MD5
  • Check the Radio buttons for Files/Folders Created Within 90 Days and Files/Folders Modified Within 90 Days
  • Check the Radio button under Drivers for Non Microsoft
  • Check the radio button under Rootkit Search for Yes
  • Under Additional Scans check the following:
    • Reg - Approved Shell Extensions
    • Reg - BotCheck
    • Reg - ControlSets
    • Reg - IE CmdMapping
    • Reg - Tcpip Persistant Routes
    • File - Additional Folder Scans
    • File - Lop Check
    • File - Purity Scan
    • Evnt - EventViewer Errors/Warnings (last 7 days)
  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.

Please zip the log and attach the zipped file in your next post.

To attach a file, do the following:
  • Click Add Reply
  • Under the reply panel is the Attachments Panel
  • Browse for the attachment file you want to upload, then click the green Upload button
  • Once it has uploaded, click the Manage Current Attachments drop down box
  • Click on Posted Image to insert the attachment into your post

  • 0

#27
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
Attached File  OTScanIt.txt   289.16KB   124 downloads
  • 0

#28
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
Not sure if this is going to allow you to use Internet Explorer or not. Lets see:

Start OTScanIt.exe Copy/Paste the information in the codebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

[Win32 Services - Non-Microsoft Only]
YY -> (avast! Antivirus) avast! Antivirus [Win32_Own | Auto | Stopped] -> %ProgramFiles%\Alwil Software\Avast4\ashServ.exe
YY -> (avast! Mail Scanner) avast! Mail Scanner [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Alwil Software\Avast4\ashMaiSv.exe
YY -> (avast! Web Scanner) avast! Web Scanner [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Alwil Software\Avast4\ashWebSv.exe
YY -> (Hiddrvx) Hiddrvx [Win32_Own | On_Demand | Stopped] -> 
[Registry - Non-Microsoft Only]
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
NY -> {724d43a9-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Siber Systems\AI RoboForm\roboform.dll [Reg Error: Value  does not exist or could not be read.]
NY -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Java\jre1.5.0_06\bin\ssv.dll [SSVHelper Class]
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar
NY -> {724d43a0-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Siber Systems\AI RoboForm\roboform.dll [&RoboForm]
NY -> {DE9C389F-3316-41A7-809B-AA305ED9D922} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
YN -> ShellBrowser\\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [Reg Error: Key does not exist or could not be opened.]
NY -> WebBrowser\\{724D43A0-0D85-11D4-9908-00400523E39A} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Siber Systems\AI RoboForm\roboform.dll [&RoboForm]
NY -> WebBrowser\\{DE9C389F-3316-41A7-809B-AA305ED9D922} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
< Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\] > -> HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\Software\Microsoft\Internet Explorer\Toolbar\
NY -> WebBrowser\\{724D43A0-0D85-11D4-9908-00400523E39A} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Siber Systems\AI RoboForm\roboform.dll [&RoboForm]
NY -> WebBrowser\\{DE9C389F-3316-41A7-809B-AA305ED9D922} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\
YN -> {320AF880-6646-11D3-ABEE-C5DBF3571F46}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [Fill Forms]
YN -> {320AF880-6646-11D3-ABEE-C5DBF3571F49}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [Save]
NY -> {3369AF0D-62E9-4bda-8103-B4C75499B578}:{DE9C389F-3316-41A7-809B-AA305ED9D922} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
YN -> {4982D40A-C53B-4615-B15B-B5B5E98D167C}:{4982D40A-C53B-4615-B15B-B5B5E98D167C} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL Toolbar\toolbar.dll [AOL Toolbar]
YN -> {669B269B-0D4E-41FB-A3D8-FD67CA94F646}:Exec -> [ComcastHSI]
YN -> {724d43aa-0d85-11d4-9908-00400523e39a}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. [RoboForm]
YN -> {8828075D-D097-4055-AA02-2DBFA9D85E8A}:Exec -> [Support]
YN -> {97809617-3937-4F84-B335-9BB05EF1A8D4}:Exec -> [Help]
YN -> CmdMapping: [HKEY_LOCAL_MACHINE] -> Reg Error: Key does not exist or could not be opened. []
< Internet Explorer Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\ButtonText [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\CLSID [HKEY_LOCAL_MACHINE] -> [{0000031A-0000-0000-C000-000000000046}]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\ClsidExtension [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Default Visible [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Exec [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\HotIcon [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Icon [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> CmdMapping\\{320AF880-6646-11D3-ABEE-C5DBF3571F46} [HKEY_LOCAL_MACHINE] -> [Fill Forms]
YN -> CmdMapping\\{320AF880-6646-11D3-ABEE-C5DBF3571F49} [HKEY_LOCAL_MACHINE] -> [Save]
NY -> CmdMapping\\{3369AF0D-62E9-4bda-8103-B4C75499B578} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
YN -> CmdMapping\\{4982D40A-C53B-4615-B15B-B5B5E98D167C} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL Toolbar\toolbar.dll [AOL Toolbar]
YN -> CmdMapping\\{669B269B-0D4E-41FB-A3D8-FD67CA94F646} [HKEY_LOCAL_MACHINE] -> [ComcastHSI]
YN -> CmdMapping\\{724d43aa-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> [RoboForm]
YN -> CmdMapping\\{8828075D-D097-4055-AA02-2DBFA9D85E8A} [HKEY_LOCAL_MACHINE] -> [Support]
YN -> CmdMapping\\{97809617-3937-4F84-B335-9BB05EF1A8D4} [HKEY_LOCAL_MACHINE] -> [Help]
YN -> CmdMapping\\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> CmdMapping\\{AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
< Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\
NY -> &AOL Toolbar Search -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltbhtml.dll
YN -> RoboForm Toolbar -> 
< Internet Explorer Extensions [HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\] > -> HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\Software\Microsoft\Internet Explorer\Extensions\
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\ButtonText [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\CLSID [HKEY_LOCAL_MACHINE] -> [{0000031A-0000-0000-C000-000000000046}]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\ClsidExtension [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Default Visible [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Exec [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\HotIcon [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52}\\Icon [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> CmdMapping\\{320AF880-6646-11D3-ABEE-C5DBF3571F46} [HKEY_LOCAL_MACHINE] -> [Fill Forms]
YN -> CmdMapping\\{320AF880-6646-11D3-ABEE-C5DBF3571F49} [HKEY_LOCAL_MACHINE] -> [Save]
NY -> CmdMapping\\{3369AF0D-62E9-4bda-8103-B4C75499B578} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltb.dll [AOL Toolbar]
YN -> CmdMapping\\{4982D40A-C53B-4615-B15B-B5B5E98D167C} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\AOL Toolbar\toolbar.dll [AOL Toolbar]
YN -> CmdMapping\\{669B269B-0D4E-41FB-A3D8-FD67CA94F646} [HKEY_LOCAL_MACHINE] -> [ComcastHSI]
YN -> CmdMapping\\{724d43aa-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> [RoboForm]
YN -> CmdMapping\\{8828075D-D097-4055-AA02-2DBFA9D85E8A} [HKEY_LOCAL_MACHINE] -> [Support]
YN -> CmdMapping\\{97809617-3937-4F84-B335-9BB05EF1A8D4} [HKEY_LOCAL_MACHINE] -> [Help]
YN -> CmdMapping\\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
YN -> CmdMapping\\{AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key does not exist or could not be opened.]
< Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\] > -> HKEY_USERS\S-1-5-21-3723892049-1373733762-987226394-1009\Software\Microsoft\Internet Explorer\MenuExt\
YN -> &AOL Toolbar Search -> %ProgramFiles%\AOL\AOL Toolbar 2.0\aoltbhtml.dll
YN -> RoboForm Toolbar -> 
YN -> Save Forms -> 
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\
YN -> {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B}[HKEY_LOCAL_MACHINE] -> http://aolcc.aol.com/computercheckup/qdiagcc.cab[Reg Error: Key does not exist or could not be opened.]
YN -> {BCC0FF27-31D9-4614-A68E-C18E1ADA4389}[HKEY_LOCAL_MACHINE] -> http://download.av.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab[Reg Error: Key does not exist or could not be opened.]
[Registry - Additional Scans - Non-Microsoft Only]
< BotCheck > -> 
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\ACS\AOLDial.exe -> %CommonProgramFiles%\AOL\ACS\AOLDial.exe [C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe -> %CommonProgramFiles%\AOL\ACS\AOLacsd.exe [C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\America Online 9.0a\waol.exe -> %ProgramFiles%\America Online 9.0a\waol.exe [C:\Program Files\America Online 9.0a\waol.exe:*:Enabled:America Online 9.0a]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\Loader\aolload.exe -> %CommonProgramFiles%\AOL\Loader\aolload.exe [C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Application Loader]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\America Online 9.0b\waol.exe -> %ProgramFiles%\America Online 9.0b\waol.exe [C:\Program Files\America Online 9.0b\waol.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe -> %CommonProgramFiles%\AOL\TopSpeed\2.0\aoltsmon.exe [C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe:*:Enabled:AOLTsMon]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe -> %CommonProgramFiles%\AOL\TopSpeed\2.0\aoltpspd.exe [C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe:*:Enabled:AOLTopSpeed]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\1100862348\EE\AOLServiceHost.exe -> %CommonProgramFiles%\AOL\1100862348\EE\AOLServiceHost.exe [C:\Program Files\Common Files\AOL\1100862348\EE\AOLServiceHost.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\System Information\sinf.exe -> %CommonProgramFiles%\AOL\System Information\sinf.exe [C:\Program Files\Common Files\AOL\System Information\sinf.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe -> %CommonProgramFiles%\AolCoach\en_en\player\AOLNySEV.exe [C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe:*:Enabled:AOL]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\America Online 9.0c\waol.exe -> %ProgramFiles%\America Online 9.0c\waol.exe [C:\Program Files\America Online 9.0c\waol.exe:*:Enabled:America Online 9.0c]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Album Galaxy\AlbumGalaxy.exe -> %ProgramFiles%\Album Galaxy\AlbumGalaxy.exe [C:\Program Files\Album Galaxy\AlbumGalaxy.exe:*:Enabled:Album Galaxy]
NY -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Parameters\\ServiceDll -> %SystemRoot%\system32\wuauserv.dll [C:\WINDOWS\system32\wuauserv.dll]
< Internet Explorer CmdMapping [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping
YN -> {4982D40A-C53B-4615-B15B-B5B5E98D167C} -> 8195 - AOL Toolbar
[Files/Folders - Created Within 90 days]
NY -> 12 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp
[Files Created - Additional Folder Scans - Non-Microsoft Only]
NY -> @Alternate Data Stream - 120 bytes -> %AllUsersProfile%\Application Data\TEMP:5C321E34
NY -> Viewpoint -> %AllUsersProfile%\Application Data\Viewpoint
NY -> Unzipped -> %UserProfile%\My Documents\Unzipped
NY -> gemdrop.exe -> %UserProfile%\Desktop\gemdrop.exe
NY -> Viewpoint -> %ProgramFiles%\Viewpoint
[Files/Folders - Modified Within 90 days]
NY -> PMLSP.exe -> C:\Documents and Settings\HP_Owner\Local Settings\temp\PMLSP.exe
NY -> 32 C:\Documents and Settings\HP_Owner\Local Settings\temp\*.tmp files -> C:\Documents and Settings\HP_Owner\Local Settings\temp\*.tmp
[File - Lop Check: Additional Folder Scans - Non-Microsoft Only]
NY -> @Alternate Data Stream - 120 bytes -> %AllUsersProfile%\Application Data\TEMP:5C321E34
NY -> Viewpoint -> C:\Documents and Settings\All Users\Application Data\Viewpoint
[Extra Files]
Purity
[Empty Temp Folders]

The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. Click the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here.
  • 0

#29
crazyeagle

crazyeagle

    Member

  • Topic Starter
  • Member
  • PipPip
  • 93 posts
ok did what you said ...

you were right it only took about 30 sec - a min for it to complete ... BUT ...


it has been about 45 min now no notepad thing has poped up the otscan it wil not minimize or anything think it froze up

should i shut it down ????


i still have use of mouse and all comp not froze just think otscan is





i click and hold the blue strip @ top of OTscanit and it will not even hilight and cant hold and drag it either

Edited by crazyeagle, 27 September 2008 - 09:54 AM.

  • 0

#30
RatHat

RatHat

    Ex Malware Expert

  • Expert
  • 7,829 posts
OK, shut down, and restart the computer. Then run OTScanit again with the fix in Post 28.

Once you get the log, run OTScanIt again like you did in Post 26, and post both logs, with the new scan log as an attachment.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP