Sign in to follow this  
TwoBros

Google results get redirected

Recommended Posts

Hello HJThis,

 

I opened a new topic because you closed the topic:

http://www.lavasoftsupport.com/index.php?showtopic=7343

 

A question about your last reply in this topic:

 

Hey,TwoBros

 

This is great news now if you should have any problmes please let me know

i will now close this Topic.

We can help you, but first you need to help us. The first step in this process is to apply Service Pack 1a for Windows XP. Without this update, you're wide open to reinfection and we're both just wasting our time.

 

Click here: http://www.microsoft.com/windowsxp/downloa...p1/default.mspx

Apply the update, reboot, and post a fresh Hijack This log.

 

Do I have to install Service Pack 1a for Windows XP since I use Windows XP with Service Pack 2 installed?

 

Thanx for your reply.

Share this post


Link to post
Share on other sites

Hi,Bro

 

Im so sorry for that looks like i need some sleep and no don't

do that your up to date on your PC.

 

Gogo ;)

Share this post


Link to post
Share on other sites

Hello HJThis,

 

Ok, and here is the latest Hijack This log:

 

Logfile of HijackThis v1.99.1

Scan saved at 17:23:55, on 24-2-2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

D:\util\Maxtor\OneTouch\Utils\OneTouch.exe

C:\WINDOWS\MXOALDR.EXE

D:\util\OmniPageSE\opware32.exe

C:\Program Files\Common Files\Real\Update_OB\realsched.exe

D:\util\ZoneAlarm\zlclient.exe

D:\util\Avast4\ashDisp.exe

D:\util\Java\jre1.6.0\bin\jusched.exe

d:\util\Avast4\aswUpdSv.exe

d:\util\Avast4\ashServ.exe

D:\util\Dantz\RETROS~1\retrorun.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

D:\util\Spy Sweeperrr\Spy Sweeper\SpySweeper.exe

d:\util\Avast4\ashMaiSv.exe

d:\util\Avast4\ashWebSv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\wuauclt.exe

D:\util\Mozilla Firefox\firefox.exe

E:\hijackthis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nu.nl/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - d:\util\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - d:\util\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\util\Java\jre1.6.0\bin\ssv.dll

O4 - HKLM\..\Run: [MaxtorOneTouch] D:\util\Maxtor\OneTouch\Utils\OneTouch.exe

O4 - HKLM\..\Run: [MXO Auto Loader] C:\WINDOWS\MXOALDR.EXE

O4 - HKLM\..\Run: [Omnipage] D:\util\OmniPageSE\opware32.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Zone Labs Client] "D:\util\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [avast!] d:\util\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "D:\util\Java\jre1.6.0\bin\jusched.exe"

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\util\Java\jre1.6.0\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\util\Java\jre1.6.0\bin\ssv.dll

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - D:\util\SPYWAR~1\tools\iesdpb.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab

O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/m...90/mcinsctl.cab

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - d:\util\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - d:\util\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - d:\util\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - d:\util\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - D:\util\Dantz\RETROS~1\retrorun.exe

O23 - Service: Retrospect Helper - Dantz Development Corporation - D:\util\Dantz\Retrospect\rthlpsvc.exe

O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - D:\util\Spyware Doctor\sdhelp.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - D:\util\Spy Sweeperrr\Spy Sweeper\SpySweeper.exe

Share this post


Link to post
Share on other sites

Hi,TwoBros

 

Looking good here are we having a problme if no then i say

go and sin no more. :) give me a heads-up so i may close this one as well.

 

Gogo ;)

Share this post


Link to post
Share on other sites

Hey,Bud

 

Anytime best of luck

 

Since this issue appears resolved ... this topic is closed.

 

If you need this topic reopened, please request this by sending the moderating team

a PM with the address of the thread. This applies only to the original topic starter.

 

Everyone else please begin a new topic.

 

 

Gogo ;)

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.
Sign in to follow this