|
|
slinky_crazy
new user
Reg'd: Tue
Posts: 12
|
|
Which wouldnt be a problem...but...we're on broadband. The broadband still works, just when i click connect i hear dialing up noise then it sounds like the line is busy or engaged. So althought the dial up isnt connecting to anything it's a bit worrying. Anyone help? Thanks..
Logfile of HijackThis v1.98.2 Scan saved at 12:52:45 PM, on 12/22/2004 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\Program Files\Anti-Virus Package\AVKService.exe C:\Program Files\Anti-Virus Package\AVKWCtl.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\wanmpsvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Medion\PowerCinema\My_TV\Agent.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\WINDOWS\System32\hphmon04.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\Spyware Doctor\swdoctor.exe C:\Program Files\iMesh\Client\iMeshClient.exe C:\WINDOWS\DitExp.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\System32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe c:\documents and settings\laura\local settings\temp\fsg_4104.exe C:\Documents and Settings\laura\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.faceparty.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe O4 - HKLM\..\Run: [Agent] C:\Program Files\Medion\PowerCinema\My_TV\Agent.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [HPHmon04] C:\WINDOWS\System32\hphmon04.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O4 - HKLM\..\Run: [WinLogon] C:\WINDOWS\logon.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Trickler] "c:\documents and settings\laura\local settings\temp\fsg_4104.exe" O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q O4 - Startup: iMesh.lnk = C:\Program Files\iMesh\Client\iMeshClient.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{DEEA023B-C32D-47BB-B0A6-70677A7E20D0}: NameServer = 212.74.114.129 212.74.114.193
|
|
Joe_London
HijackThis Helper
Reg'd: Tue
Posts: 11788
Loc: London
|
|
laura,
Disconnect from the internet. Close all Browser Windows (including this one) Run hijackthis and tick to fix (check the box next to) the list below. When all are ticked (checked) click the Fix Checked button at the bottom. :-
O4 - HKLM\..\Run: [WinLogon] C:\WINDOWS\logon.exe O4 - HKLM\..\Run: [Trickler] "c:\documents and settings\laura\local settings\temp\fsg_4104.exe" O4 - Startup: iMesh.lnk = C:\Program Files\iMesh\Client\iMeshClient.exe
(This entry (Highlighted In Blue) is non-threatening, but is a resource hog. It's up to you if you want to fix it with HJT)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
Have you deliberately set your home page to About Blank? If not check/fix this entry. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
Set Windows to show Hidden Files And Folders then reboot into safe mode Click "My Computer", then navigate to and delete the following files if present (If you get an error when deleting a file. Right click on the file and check to see if the read only attribute is checked. if it is uncheck it and try again.):
C:\WINDOWS\logon.exe <<<--Remove File c:\documents and settings\laura\local settings\temp\fsg_4104.exe <<<--Remove File C:\Program Files\iMesh\Client\iMeshClient.exe <<<--Remove iMesh Folder
Download and run:
Ad-Aware Second Edition.,
Spybot Search & Destroy and delete anything they find.
Also download and install Spyware Blaster.
Tutorials
Ad-Aware Second Edition Tutorial
Spybot Search & Destroy Tutorial
SpywareBlaster Tutorial
Temporarily disable System Restore Please run the following online scans and let them fix everything they find:
HOUSECALL and ONLINE TROJANSCAN
Re-enable System Restore when finished and set a new restore point.
Not sure whats causing your dial-up issue just now but as a precaution make sure the Computer Telephone Cable is disconnected at the wall socket.
Click the "Post Reply" button top right in this post and post a new log in this thread for review and to let us know how the Computer is running.
Joe.
Merry Christmas everyone and a Happy New Year!
|
|
|