Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Serious spyware or virus problem (Help please!)  (Read 11851 times)

0 Members and 1 Guest are viewing this topic.

007will

    Topic Starter


    Beginner

    Serious spyware or virus problem (Help please!)
    « on: January 04, 2010, 05:27:41 AM »
    Hi

    I have some kind of virus and i have used this site before and the help was super!!
    Basicly I get thing come up when i turn on that says 'Windows Security Alert - Application cannot be executed. Do you want to activate your antivirus software now?'

    Then I get other messages that basicly want to know if i wanna activate antivirus or stay unprotected.

    Unfortunatly i cant run anything coz this blocks everything from opening. I can't run any virus scan software or anything like that. I cant open the internet or even anything like word.

    I need help desperatly!

    Please can someone help me...??

    Thanks!

    harry 48



      Egghead

    • lay back , relax and chill out
    • Thanked: 129
      • Yes
      • Yes
      • Yes
      • Dribbling Pensioner
    • Certifications: List
    • Experience: Familiar
    • OS: Windows 7
    Re: Serious spyware or virus problem (Help please!)
    « Reply #1 on: January 04, 2010, 07:34:10 AM »
    http://www.computerhope.com/forum/index.php/topic,46313.0.html

    you must be on another pc to get on here so go to above and download to a memory stick or similar and run all on your own pc and post the 3 logs here

    007will

      Topic Starter


      Beginner

      Re: Serious spyware or virus problem (Help please!)
      « Reply #2 on: January 04, 2010, 09:10:13 AM »
      I would but am unable to open any programs on my computer so don't think i could do that  :(

      harry 48



        Egghead

      • lay back , relax and chill out
      • Thanked: 129
        • Yes
        • Yes
        • Yes
        • Dribbling Pensioner
      • Certifications: List
      • Experience: Familiar
      • OS: Windows 7
      Re: Serious spyware or virus problem (Help please!)
      « Reply #3 on: January 04, 2010, 10:14:47 AM »
      when you put the stick in it should open its self

      007will

        Topic Starter


        Beginner

        Re: Serious spyware or virus problem (Help please!)
        « Reply #4 on: January 04, 2010, 02:55:02 PM »
        I'm really sorry i maybe dumb but i downloaded the programs to an external hard drive (as they wouldn't fit on the stick i've got) and then try to use them but my computer would open the drive but NOT let me open the programs. No programs can open it seems. Everytime i try it flashes as if its opening and then that warning message comes up. Its like its blocking me opening things. Really sorry if i am dumb. Can you still help please?

        Allan

        • Moderator

        • Mastermind
        • Thanked: 1207
        • Experience: Guru
        • OS: Windows 10
        Re: Serious spyware or virus problem (Help please!)
        « Reply #5 on: January 04, 2010, 03:53:46 PM »
        Download a boot time anti virus scanner (pick one: http://www.google.com/search?hl=en&rlz=1T4GGLL_enUS304US305&ei=WHFCS-DZLMW8lAeTsP2fBw&sa=X&oi=spell&resnum=0&ct=result&cd=1&ved=0CAYQBSgA&q=download+boot+time+av+scanner&spell=1). Burn it to a cd and put the cd in the infected computer. Make sure the cd is at the top of the boot order in bios, then boot to the cd and run the scan.

        harry 48



          Egghead

        • lay back , relax and chill out
        • Thanked: 129
          • Yes
          • Yes
          • Yes
          • Dribbling Pensioner
        • Certifications: List
        • Experience: Familiar
        • OS: Windows 7
        Re: Serious spyware or virus problem (Help please!)
        « Reply #6 on: January 04, 2010, 03:57:50 PM »
        thanks allan  ;)

        Allan

        • Moderator

        • Mastermind
        • Thanked: 1207
        • Experience: Guru
        • OS: Windows 10
        Re: Serious spyware or virus problem (Help please!)
        « Reply #7 on: January 04, 2010, 03:58:29 PM »
         ;)

        007will

          Topic Starter


          Beginner

          Re: Serious spyware or virus problem (Help please!)
          « Reply #8 on: January 05, 2010, 05:02:29 AM »
          great i will try that when i get home :). Any probs i will let you guiys know!

          007will

            Topic Starter


            Beginner

            Re: Serious spyware or virus problem (Help please!)
            « Reply #9 on: January 05, 2010, 02:08:40 PM »
            Well for some unknown reason my comp is now working better! WooHoo! I have therefore been able to complete the logs... please find them below :)

            007will

              Topic Starter


              Beginner

              Re: Serious spyware or virus problem (Help please!)
              « Reply #10 on: January 05, 2010, 02:09:16 PM »
              SUPERAntiSpyware Scan Log
              http://www.superantispyware.com

              Generated 01/05/2010 at 08:17 PM

              Application Version : 4.32.1000

              Core Rules Database Version : 4447
              Trace Rules Database Version: 2269

              Scan type       : Complete Scan
              Total Scan Time : 02:39:33

              Memory items scanned      : 609
              Memory threats detected   : 0
              Registry items scanned    : 7423
              Registry threats detected : 2
              File items scanned        : 147813
              File threats detected     : 6

              Trojan.Agent/Gen-FakeSpy[Broad-1]
                 [hruvonsl] C:\DOCUMENTS AND SETTINGS\WILL\LOCAL SETTINGS\APPLICATION DATA\LPTDVL\FSGDSYSGUARD.EXE
                 C:\DOCUMENTS AND SETTINGS\WILL\LOCAL SETTINGS\APPLICATION DATA\LPTDVL\FSGDSYSGUARD.EXE
                 [hruvonsl] C:\DOCUMENTS AND SETTINGS\WILL\LOCAL SETTINGS\APPLICATION DATA\LPTDVL\FSGDSYSGUARD.EXE
                 C:\WINDOWS\Prefetch\FSGDSYSGUARD.EXE-057A6C20.pf

              Adware.Tracking Cookie
                 C:\Documents and Settings\Will\Cookies\[email protected][2].txt

              Rogue.Agent/Gen-Nullo[EXE]
                 C:\WINDOWS\ADEPAZUHA.EXE

              Rogue.Agent/Gen-Nullo[DLL]
                 C:\WINDOWS\SYSTEM32\ATSDRVE.DLL

              Rogue.Agent/Gen-Nullo[BIN]
                 C:\WINDOWS\SYSTEM32\TAZAREM.BIN

              007will

                Topic Starter


                Beginner

                Re: Serious spyware or virus problem (Help please!)
                « Reply #11 on: January 05, 2010, 02:09:40 PM »
                Malwarebytes' Anti-Malware 1.43
                Database version: 3497
                Windows 5.1.2600 Service Pack 3
                Internet Explorer 8.0.6001.18702

                05/01/2010 20:47:09
                mbam-log-2010-01-05 (20-47-09).txt

                Scan type: Quick Scan
                Objects scanned: 115485
                Time elapsed: 11 minute(s), 48 second(s)

                Memory Processes Infected: 0
                Memory Modules Infected: 0
                Registry Keys Infected: 1
                Registry Values Infected: 0
                Registry Data Items Infected: 3
                Folders Infected: 0
                Files Infected: 1

                Memory Processes Infected:
                (No malicious items detected)

                Memory Modules Infected:
                (No malicious items detected)

                Registry Keys Infected:
                HKEY_CURRENT_USER\SOFTWARE\AvScan (Trojan.FakeAlert) -> Quarantined and deleted successfully.

                Registry Values Infected:
                (No malicious items detected)

                Registry Data Items Infected:
                HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
                HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
                HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

                Folders Infected:
                (No malicious items detected)

                Files Infected:
                C:\Documents and Settings\Will\Application Data\Microsoft\Internet Explorer\Quick Launch\AntivirusPro_2010.lnk (Rogue.AntiVirusPro2010) -> Quarantined and deleted successfully.

                007will

                  Topic Starter


                  Beginner

                  Re: Serious spyware or virus problem (Help please!)
                  « Reply #12 on: January 05, 2010, 02:10:14 PM »
                  Logfile of Trend Micro HijackThis v2.0.2
                  Scan saved at 21:05:47, on 05/01/2010
                  Platform: Windows XP SP3 (WinNT 5.01.2600)
                  MSIE: Internet Explorer v8.00 (8.00.6001.18702)
                  Boot mode: Normal

                  Running processes:
                  C:\WINDOWS\System32\smss.exe
                  C:\WINDOWS\system32\winlogon.exe
                  C:\WINDOWS\system32\services.exe
                  C:\WINDOWS\system32\lsass.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MsMpEng.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\WINDOWS\system32\spoolsv.exe
                  C:\WINDOWS\Explorer.EXE
                  C:\WINDOWS\system32\hkcmd.exe
                  C:\WINDOWS\system32\igfxpers.exe
                  C:\WINDOWS\stsystra.exe
                  C:\Program Files\Dell\Media Experience\DMXLauncher.exe
                  C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
                  C:\Program Files\Real\RealPlayer\RealPlay.exe
                  C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
                  C:\WINDOWS\System32\DLA\DLACTRLW.EXE
                  C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                  C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
                  C:\Program Files\BT Voyager 105 ADSL Modem\dslstat.exe
                  C:\Program Files\BT Voyager 105 ADSL Modem\dslagent.exe
                  C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
                  C:\Program Files\Winamp\winampa.exe
                  C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
                  C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                  C:\Program Files\Bonjour\mDNSResponder.exe
                  C:\Program Files\Dell Network Assistant\hnm_svc.exe
                  C:\Program Files\Java\jre6\bin\jqs.exe
                  C:\Program Files\iTunes\iTunesHelper.exe
                  C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe
                  C:\Program Files\Zune\ZuneLauncher.exe
                  C:\Program Files\Dell Support\DSAgnt.exe
                  C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                  C:\WINDOWS\system32\ctfmon.exe
                  C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
                  C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                  C:\Program Files\Kontiki\KHost.exe
                  C:\Program Files\Messenger\msmsgs.exe
                  C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
                  C:\Program Files\Microsoft Windows OneCare Live\OcHealthMon.exe
                  C:\WINDOWS\system32\HPZipm12.exe
                  C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
                  C:\WINDOWS\system32\SearchIndexer.exe
                  C:\WINDOWS\system32\ZuneBusEnum.exe
                  C:\WINDOWS\system32\wuauclt.exe
                  C:\Program Files\Microsoft Windows OneCare Live\Firewall\msfwsvc.exe
                  C:\Program Files\AOL 9.0\aoltray.exe
                  C:\Program Files\Microsoft Windows OneCare Live\winss.exe
                  C:\Program Files\Logitech\SetPoint\KEM.exe
                  C:\Program Files\BT Broadband Basic Help\bin\mpbtn.exe
                  C:\Program Files\Windows Desktop Search\WindowsSearch.exe
                  C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
                  C:\Program Files\iPod\bin\iPodService.exe
                  C:\Program Files\Kontiki\KService.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\system32\wuauclt.exe
                  C:\WINDOWS\system32\msiexec.exe
                  C:\Program Files\Internet Explorer\iexplore.exe
                  C:\Program Files\Internet Explorer\iexplore.exe
                  C:\Program Files\Windows Live\Toolbar\wltuser.exe
                  C:\Program Files\Internet Explorer\iexplore.exe
                  C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
                  C:\Program Files\Trend Micro\HijackThis\sniper.exe.exe
                  C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://uk.msn.com/
                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.msn.com/
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                  R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.btbroadbandstart.com/
                  O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
                  O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
                  O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                  O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
                  O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
                  O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
                  O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar5.dll
                  O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
                  O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
                  O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
                  O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
                  O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
                  O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
                  O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
                  O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
                  O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
                  O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
                  O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
                  O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
                  O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
                  O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
                  O4 - HKLM\..\Run: [DSLSTATEXE] C:\Program Files\BT Voyager 105 ADSL Modem\dslstat.exe icon
                  O4 - HKLM\..\Run: [DSLAGENTEXE] C:\Program Files\BT Voyager 105 ADSL Modem\dslagent.exe
                  O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB002" /M "Stylus C64"
                  O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
                  O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                  O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                  O4 - HKLM\..\Run: [OneCareUI] "C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe"
                  O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
                  O4 - HKLM\..\Run: [Zune Launcher] "C:\Program Files\Zune\ZuneLauncher.exe"
                  O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
                  O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                  O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                  O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
                  O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
                  O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                  O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe
                  O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe"
                  O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                  O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
                  O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                  O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                  O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
                  O4 - Global Startup: BT Broadband Basic Help.lnk = C:\Program Files\BT Broadband Basic Help\bin\matcli.exe
                  O4 - Global Startup: Dell Network Assistant.lnk = ?
                  O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
                  O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
                  O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                  O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                  O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                  O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
                  O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
                  O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Will\Start Menu\Programs\IMVU\Run IMVU.lnk (file missing)
                  O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
                  O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
                  O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
                  O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by101fd.bay101.hotmail.msn.com/resources/MsnPUpld.cab
                  O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1159216988941
                  O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
                  O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - http://www.sibelius.com/download/software/win/ActiveXPlugin.cab
                  O16 - DPF: {A903E5AB-C67E-40FB-94F1-E1305982F6E0} (KooPlayer Control) - http://www.ooxtv.com/stream.ocx
                  O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                  O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                  O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
                  O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
                  O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                  O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
                  O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
                  O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
                  O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                  O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                  O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
                  O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                  O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
                  O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
                  O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                  O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
                  O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
                  O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
                  O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
                  O23 - Service: NMSAccessU - Unknown owner - C:\Documents and Settings\Will\Local Settings\Temp\{A069857B-A614-4598-9495-B0029E79B748}\NMSAccessU.exe (file missing)
                  O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
                  O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
                  O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
                  O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

                  --
                  End of file - 14294 bytes

                  harry 48



                    Egghead

                  • lay back , relax and chill out
                  • Thanked: 129
                    • Yes
                    • Yes
                    • Yes
                    • Dribbling Pensioner
                  • Certifications: List
                  • Experience: Familiar
                  • OS: Windows 7
                  Re: Serious spyware or virus problem (Help please!)
                  « Reply #13 on: January 05, 2010, 02:46:19 PM »
                  glad you got it working

                  you don't seem to have an anti-virus in the pc if not go here , both free

                  http://www.free-av.com/

                  or

                  http://www.avast.com/eng/download-avast-home.html

                  a malware expert should have a look at the logs but there seems to be little wrong

                  007will

                    Topic Starter


                    Beginner

                    Re: Serious spyware or virus problem (Help please!)
                    « Reply #14 on: January 05, 2010, 02:50:28 PM »
                    okay great... hope a malware guy will look at it :)