|
|
|||||||||
|
|||||||||
| |||||||||
|
|
|
| |||||||||
![]() |
|
|
«
Previous Thread
|
Next Thread
»
|
Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|
|
Get inside! Sample the range of functionality easily built with JMSL Library for Time Series Data Analysis, Heat Maps, Portfolio Optimization, Monte Carlo Simulation, Stock Price Charting and more. Download Now! |
|
#1
|
|||
|
|||
|
i have 4 or 5 popups that i get everytime i bootup...even though i have run CCleaner, HiJackThis, e-Mode, popup nuker, and spyware nuker.
i am losing my mind! am i crazy or is microsoft doing this to me on purpose?! if anyone has any idea what is going on, i promise you will win my esteem and i will think you are brilliant! - and perhaps i will not feel so insane.... here is my hijack log: Logfile of HijackThis v1.98.2 Scan saved at 6:05:05 PM, on 9/21/04 Platform: Windows 98 Gold (Win9x 4.10.1998) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\SPOOL32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\PCCIOMON.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\PCCPFW.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\TMPROXY.EXE C:\WINDOWS\SYSTEM\mmtask.tsk C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\SYSTEM\E_S4I2G1.EXE C:\PROGRAM FILES\NETGEAR\WG511\UTILITY\WG511WLU.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\PCCGUIDE.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\PCCLIENT.EXE C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY\TMOAGENT.EXE C:\WINDOWS\SYSTEM\WINTYG32.EXE C:\PROGRAM FILES\POPUPS NUKER\POPNUKER.EXE C:\WINDOWS\SYSTEM\DDHELP.EXE C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WORKS SHARED\WKCALREM.EXE C:\PROGRAM FILES\YAHOO!\BROWSER\YCOMMON.EXE C:\PROGRAM FILES\YAHOO!\BROWSER\YBRWICON.EXE C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE C:\UNZIPPED\HIJACKTHIS\HIJACKTHIS.EXE R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=PopupsNuker:8100 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *windowsupdate*;<local> O2 - BHO: CookieHlprObj Class - {4DF1DB24-A57C-11d3-A180-00A0C90AE44B} - C:\PROGRAM FILES\POPUPS NUKER\NUKERBHO.DLL O4 - HKLM\..\Run: [EPSON Stylus CX5400] C:\WINDOWS\SYSTEM\E_S4I2G1.EXE /P19 "EPSON Stylus CX5400" /O5 "LPT1:" /M "Stylus CX5400" O4 - HKLM\..\Run: [WG511WLU] C:\Program Files\NETGEAR\WG511\Utility\WG511WLU.exe O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security\pccguide.exe" O4 - HKLM\..\Run: [PCCIOMON.exe] "C:\Program Files\Trend Micro\Internet Security\PCCIOMON.exe" O4 - HKLM\..\Run: [PCClient.exe] "C:\Program Files\Trend Micro\Internet Security\PCClient.exe" O4 - HKLM\..\Run: [TM Outbreak Agent] "C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe" /run O4 - HKLM\..\Run: [Sys29] C:\WINDOWS\SYSTEM\WINTYG32.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime O4 - HKLM\..\RunServices: [PCCIOMON.exe] "C:\Program Files\Trend Micro\Internet Security\PCCIOMON.exe" O4 - HKLM\..\RunServices: [PccPfw] C:\Program Files\Trend Micro\Internet Security\PccPfw.exe O4 - HKLM\..\RunServices: [tmproxy] C:\Program Files\Trend Micro\Internet Security\tmproxy.exe O4 - HKLM\..\RunOnce: [VcCleanUp.exe] C:\WINDOWS\TEMP\VcCleanUp.exe /F C:\PROGRA~1\COMMON~1\SYMANT~1\LIVEREG\ /RemoveAll O4 - HKCU\..\Run: [ccleaner] "C:\PROGRAM FILES\CCLEANER\CCLEANER.exe" /AUTO O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun O4 - HKCU\..\Run: [Popups Nuker] C:\Program Files\Popups Nuker\PopNuker.exe O4 - Startup: Microsoft Works Calendar (2).lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WksCal.exe O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsearch.html O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmcache.html O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsimilar.html O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmbacklinks.html O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmtrans.html O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YHEXBMES.DLL O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YHEXBMES.DLL O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\PROGRAM FILES\YAHOO!\COMMON\YLOGIN.DLL O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\PROGRAM FILES\YAHOO!\COMMON\YLOGIN.DLL O9 - Extra button: Ebates - {7F241C00-DAB6-11d5-AAA8-0001028DF1BC} - file://C:\Program Files\EbatesMoeMoneyMaker\System\Temp\ebates_script0.htm (file missing) (HKCU) O9 - Extra button: (no name) - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\PROGRAM FILES\EBATES_MOEMONEYMAKER\Sy350\Tp350\scri350a.htm (file missing) (HKCU) |
|
#2
|
|||
|
|||
i am in the same situation. i was just playing nhl 2004 and i had 3 pop-ups active out of no where. it's pissing me off because ever since i had webshots in the computer, i have been getting them. anyone have any clue how to get them out. i run adaware and skybot everyday. but, dam, they are still there and slowing down the puter. ![]() |
|
#3
|
||||
|
||||
|
ryandylan: If you'd like help, please create a new thread in this forum and post your HijackThis log. It's best not to bring up an old thread asking for help.
|
|
#4
|
|||
|
|||
|
Hi christy18,
If you still need help: Please update HijackThis, you are using an outdated version. The new version does a better job of detecting malware: Open HijackThis, click Config > Misc Tools > Check for Update online Or download a copy of version 1.99 at: http://www.majorgeeks.com/download3155.html If you downloaded the newer version, please delete the older version you are using now. Post a fresh log with this new version. Tom
__________________
HijackThis Ad-aware Spybot Search & Destroy SpywareBlaster SpywareGuard Housecall Online A/V Scan Please read the stickys at the top of the forum before posting! |
![]() |
| Viewing: Dev Shed Forums > System Administration > Antivirus Protection > IE popups stuck in my computer. |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|
|
|