|
|
Joe_London
HijackThis Helper
Reg'd: Tue
Posts: 10783
Loc: London
|
Re: help with father-in-laws hijack this log please
Sun Feb 17 2008 07:09 PM
|
|
|
Hi Jim,
The append.dll was still present and is now deleted so we made some progress that time. However it still failed to edit the registry as it should.
Try this:
Open Notepad, (Start | Run, type in Notepad) Copy ALL the bold text below to notepad. Click File | Save As Change the Save as type to *All Files* Save it to your desktop as fixme.reg
REGEDIT4
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Locate fixme.reg on your Desktop and double-click on it. You will receive a prompt similar to: "Do you wish to merge the information into the registry?". Answer Yes and wait for a message to appear similar to Merged Successfully.
Reboot your computer.
Delete the fixme.reg
- 1. Download ComboFix.exe using either of these links: (You shouldn't need to download the programme again, I hope.)
Link 1 Link 2 Link 3
- Double click on combofix.exe to run the programme & then follow the prompts.
It will create a new system restore point and registry backup.
You will be asked to type 1 (One) and then "enter" to run the programe.
Your firewall may seek permission to allow the programme to run. Check the "Remember" checkbox and click yes
- When finished, it will produce a log for you. Save the log then copy and post it back here in your reply
Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall
Joe.
-------------------- If I have helped you in any way, please consider a donation:
Joe's WebSite.
Member of UNITE and ASAP.
|
|
|
|
0 registered and 21 anonymous users are browsing this forum.
Moderator: putasolutions, greysts, bricat, AndrewC, Joe_London, John_McKenna, Mouse, Hello_There, TheFatControlleR, Nanook, Noviciate
Print Thread
|
Forum Permissions
You cannot start new topics
You cannot reply to topics
HTML is disabled
Mark-up is enabled
|
Rating:
Thread views: 0
|
|
|