Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: winfixer  (Read 4174 times)

0 Members and 1 Guest are viewing this topic.

fatman3

  • Guest
winfixer
« on: January 17, 2006, 05:42:07 PM »
i think i have this

popups started appearing a few days ago


if somebody can find it or anything else that needs fixed i would appreciate it



Logfile of HijackThis v1.99.1
Scan saved at 5:28:41 AM, on 1/17/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\****\Desktop\HijackThis.exe

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: ATLDistrib Object - {83A5F7B7-DC75-44CE-9195-264F41709FA9} - C:\WINDOWS\system32\jkhhg.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Digital Line Detect.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: jkhhg - C:\WINDOWS\system32\jkhhg.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Fil

Fed

  • Moderator


  • Sage
  • Thanked: 35
    • Experience: Experienced
    • OS: Windows XP
    Re: winfixer
    « Reply #1 on: January 17, 2006, 11:20:06 PM »
    Run Hijackthis and remove

    O2 - BHO: ATLDistrib Object - {83A5F7B7-DC75-44CE-9195-264F41709FA9} - C:\WINDOWS\system32\jkhhg.dll    

    O20 - Winlogon Notify: jkhhg - C:\WINDOWS\system32\jkhhg.dll

    Then re-boot and carry out the following.

    Download, install & update...
    CLEANUP
    Ccleaner
    ANTI SPYWARE
    Ad-Aware
    Spybot S&D
    Microsoft Antispyware (W2k & XP)
    ANTI VIRUS
    AVG Free (Set options to 'scan all files')
    ANTI TROJAN
    EWIDO (W2k & XP)

    Turn off System Restore if applicable. (ME & XP users)

    Run Ccleaner
    Run Ad-Aware
    Run Spybot
    Run Microsoft Antispyware
    Run AVG Free
    Run Ewido

    Re-start in Safe Mode
    Re-run AVG Free

    Re-start in Normal Mode
    Turn on System Restore if applicable. (ME & XP users)

    Then re=post a fresh Hijackthis log.

    fatman3

    • Guest
    Re: winfixer
    « Reply #2 on: January 18, 2006, 03:37:59 AM »
    hijackthis could not remove those 2 entries

    i ran spybot,ccleaner,and ad aware

    nothing was found


    how hard is it to completely remove IE and re-install it?..........or will a repair fix it?............if so,then how do i do that?

    Fed

    • Moderator


    • Sage
    • Thanked: 35
      • Experience: Experienced
      • OS: Windows XP
      Re: winfixer
      « Reply #3 on: January 18, 2006, 07:13:59 AM »
      Run Hijackthis in [highlight]safe mode with system restore turned[/highlight] off and remove
       
      O2 - BHO: ATLDistrib Object - {83A5F7B7-DC75-44CE-9195-264F41709FA9} - C:\WINDOWS\system32\jkhhg.dll    
       
      O20 - Winlogon Notify: jkhhg - C:\WINDOWS\system32\jkhhg.dll  
       
      Then re-boot and carry out the following.
       
      Download, install & update...
      CLEANUP
      Ccleaner
      ANTI SPYWARE
      Ad-Aware
      Spybot S&D
      Microsoft Antispyware (W2k & XP)
      ANTI VIRUS
      AVG Free (Set options to 'scan all files')
      ANTI TROJAN
      EWIDO (W2k & XP)
       
      Turn off System Restore if applicable. (ME & XP users)
       
      Run Ccleaner
      Run Ad-Aware
      Run Spybot
      Run Microsoft Antispyware
      Run AVG Free
      Run Ewido
       
      Re-start in Safe Mode
      Re-run AVG Free
       
      Re-start in Normal Mode
      Turn on System Restore if applicable. (ME & XP users)
       
      Then re=post a fresh Hijackthis log.

      Peccavi



        Adviser

      • Hope Helps!
      • Thanked: 6
        Re: winfixer
        « Reply #4 on: January 18, 2006, 09:42:07 AM »
        Quote
        how hard is it to completely remove IE and re-install it?..........or will a repair fix it?............if so,then how do i do that?

        To Remove it go to Control Panel-->Add Remove Programs and Choose Add Remove Windows Components on the left pane.

        You can reinstall if again if you have OS disk or seperate istalation package also possible.
        Use FireFox instead ;)
        Computer Hope: Rise of the Machines!

        soybean



          Genius
        • The first soybean ever to learn the computer.
        • Thanked: 469
        • Computer: Specs
        • Experience: Experienced
        • OS: Windows 10
        Re: winfixer
        « Reply #5 on: January 18, 2006, 10:40:52 AM »
        Quote
        Quote
        how hard is it to completely remove IE and re-install it?..........or will a repair fix it?............if so,then how do i do that?

        To Remove it go to Control Panel-->Add Remove Programs and Choose Add Remove Windows Components on the left pane.

        You can reinstall if again if you have OS disk or seperate istalation package also possible.
        Use FireFox instead ;)
        That does not completely remove IE; it merely removes access to IE from the Start menu and Desktop.  IE can't be completely removed; it's too tightly integrated with the OS.  But, just because it's there doesn't mean you have to use it.  And, it doesn't prevent the user from installing another browser and using it as the default browser.

        GX1_Man

        • Guest
        Re: winfixer
        « Reply #6 on: January 18, 2006, 05:17:08 PM »
        Quote
         IE can't be completely removed; it's too tightly integrated with the OS.  

        Not exactly true. That's what Bill Gates claims but these guys proved differently a long time ago!

        http://www.litepc.com/xplite.html


        soybean



          Genius
        • The first soybean ever to learn the computer.
        • Thanked: 469
        • Computer: Specs
        • Experience: Experienced
        • OS: Windows 10
        Re: winfixer
        « Reply #7 on: January 18, 2006, 07:41:02 PM »
        Quote
        Quote
         IE can't be completely removed; it's too tightly integrated with the OS.  

        Not exactly true. That's what Bill Gates claims but these guys proved differently a long time ago!

        http://www.litepc.com/xplite.html

        Well, they say they can completely remove Outlook Express, but they make no mention of Internet Explorer.  Anyway, if the shortcuts/icons to IE are removed, why does it matter whether IE is not completely removed?  No need to even think about it.  Just install your browser of choice and use it.  

        GX1_Man

        • Guest
        Re: winfixer
        « Reply #8 on: January 19, 2006, 05:22:11 PM »
        I used the Win98 version and it took that puppy COMPLETELY out of there, FYI. I found it to be an amazing product.

        The idea of not using it though is always a good one, except for the few sites that require it.