10,784 Topics

Member Avatar for
Member Avatar for yikyang

i'm having a prob now..ermz..[B]msdiretx.sys[/B] keeps popping up on my avg nti virus software.what should i do about it?i deleted it,n it comes back.i've tried to search for the .exe file([B]msnt.exe,sdkcore.exe[/B])..but i can find nothing!!this is driving me nuts..n i cant clear the viruses from my com.they keep comin back!!n …

Member Avatar for crunchie
0
607
Member Avatar for summon

Hi all Plz help me i can't get rid of from hotoffers i tried everything but it still appears. Programs that i used - HiJackThis - Ad-Aware - Pocket Killbox - Spywarevansiher - Cleanmngr And some stupid question in one thread i have read says use Killbox and delete the …

Member Avatar for crunchie
0
140
Member Avatar for fragmented_user

Dear Moderator, I am relatively new to the world of adware, malware and other such inventions consisting of malicious/annoying code, and it is a great relief for me to discover, that there does exist, those few individuals who are dedicated to both fighting it and assisting others to protect themselves …

Member Avatar for crunchie
0
403
Member Avatar for nickyt8

Logfile of HijackThis v1.99.1 Scan saved at 11:47:08 AM, on 7/15/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe …

Member Avatar for crunchie
0
68
Member Avatar for mattisjo

Hi, When I try to launch Internet Explorer, the hourglass cursor displays for a couple seconds, then reverts to the regular cursor. IE does not start and does not appear in the process list. My laptop is running XP. I suspect, (after reading many other posts) that the culprit is …

Member Avatar for crunchie
0
395
Member Avatar for robert81978

[B]about:blank![/B] Hi there i have a really bad problem with about:blank i have tryed all kinds of programs to remove this but nithing has worked it just come straight back again? here is my log from hijackthis! Any ideas anyone? Thanks in advance for any help! Logfile of HijackThis v1.99.1 …

Member Avatar for dlh6213
0
231
Member Avatar for amill18

[COLOR=Red][B]I have recently acquired the about:blank virus. I have looked at many forums online but nothing as resolved my problem. I get the imfamous blue background stating the problem (Trojan-Spy.html.smit.fraud.c). I also can not get rid of PSGuard (red and white circle in system tray. My homepage will not return …

Member Avatar for DMR
0
253
Member Avatar for A Monkeys Uncle

While trying to delete, rename, move, or copy and paste a file I get the message: Cannot delete file: Cannot read from the source file or disk. While trying to use a program called Mboot (which can move or delete, move, etc files that don't start up when booting, I …

Member Avatar for DMR
0
500
Member Avatar for RPeeteRules

Logfile of HijackThis v1.99.1 Scan saved at 5:03:08 AM, on 7/11/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\wdfmgr.exe C:\WINDOWS\wanmpsvc.exe C:\WINDOWS\System32\xl.exe C:\WINDOWS\system32\mseq.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Microsoft …

Member Avatar for amill18
0
251
Member Avatar for HeidiGiller

Ok. Brief summary of my problem. It first started when I noticed a PartyPoker icon on my desktop, and yazifind pop ups started to occur. I've been hijacked before and cleaned up fairly well (or did I?) so I knew some of the steps to take to get rid of …

Member Avatar for crunchie
0
317
Member Avatar for shellbert

I know I definitely have the Aurora junk and I am sure there are others. Here is my HiJackThis log. Thank you in advance: Logfile of HijackThis v1.99.1 Scan saved at 5:54:10 PM, on 7/13/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe …

Member Avatar for Eddie Traversa
0
178
Member Avatar for Atreyu

Can't get rid of Communticator.dll (it keeps refreshing the C:\Program Files\COMMUNICATOR Toolbar (file) ) Ne help heres my Hijack this Log -------------------------------------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 1:04:44 PM, on 7/3/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe …

Member Avatar for dlh6213
0
267
Member Avatar for Bjoshvm

Hello all. I have a unknown icon flashing on and off in the taskbar whenever i open a new folder. The icon flashes on and off very fast. I managed to stop it by right-clicking on it however i have no idea what it is or how to get rid …

Member Avatar for Bjoshvm
0
76
Member Avatar for kip kelly

media player will not work on any type of file extention. have uninstalled and installed a newer version and i still get the same error "1099". also real player will not work either.

Member Avatar for kip kelly
0
62
Member Avatar for msenli

Okay, i'm getting very frustrated with the following problem. My Norton IS 2005 keeps getting me this popup with a high risk warning about a hacktool.rootkit virus. It supposed to be msdirectx.sys I tried a lot of cleaners, spyware removers etc. but it still doesnt work. Your help would be …

Member Avatar for dlh6213
0
95
Member Avatar for Cassorangeiroc

I just got done running hijackthis and got the log file but I am not sure on what I am supposed to get rid of. Any help would be greatly appreciated, thanks Ben here is the log file Logfile of HijackThis v1.99.1 Scan saved at 9:48:20 AM, on 7/13/2005 Platform: …

Member Avatar for dlh6213
0
184
Member Avatar for amandam

Logfile of HijackThis v1.99.1 Scan saved at 7:14:06 PM, on 7/8/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\Explorer.exe c:\windows\system32\caemus.exe C:\Program Files\Apoint\Apoint.exe C:\Program Files\Sony\HotKey Utility\HKserv.exe C:\Program Files\Common Files\CMEII\CMESys.exe C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe …

Member Avatar for DMR
0
154
Member Avatar for vwdriver67

i think i got some stuff off but i know there is more left on here thanks alot Logfile of HijackThis v1.99.1 Scan saved at 6:22:05 PM, on 07/12/2005 Platform: Windows 98 SE (Win9x 4.10.2222A) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\SYSTEM\NVSVC.EXE C:\WINDOWS\SYSTEM\MSTASK.EXE c:\windows\SYSTEM\KB891711\KB891711.EXE C:\PROGRAM …

Member Avatar for dlh6213
0
70
Member Avatar for tibsone

I tried following some steps posted at [url]www.pcreview.co.uk/forums/thread-1698461.php[/url] but i just cant delete these things. im new here and any help would be greatly appreciated. here is my hijackthis log file: Logfile of HijackThis v1.99.1 Scan saved at 5:00:01 PM, on 7/12/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet …

Member Avatar for dlh6213
0
158
Member Avatar for chound

Zone alarm has detected 1362 intrusions since 2-2-04. Is that a false figure so that I'll buy the program(I'm using free trial version). Or am I so popular ;) on the internet?

Member Avatar for LiBOC
0
76
Member Avatar for bochibullet

Hi, I have taken some of the initial steps to remove this hacktool.rootkit infection on my machine. I have posted below the log from the run of hijackthis. While I did reboot and did not have IE open just before running hijackthis, I did have NAV running and wanted to …

Member Avatar for bochibullet
0
432
Member Avatar for arrbug

I´m having the same problem, in both IE and Firefox. Here is the HJ log: Logfile of HijackThis v1.99.1 Scan saved at 05:11:49 p.m., on 11/07/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Archivos de programa\Archivos comunes\Symantec …

Member Avatar for arrbug
0
177
Member Avatar for Brokin

ok have 2 at the same time and cant get rid of them About:blank ans spysheriff. can you help??before I destroy my computer?I did some stuff before I found your site. nothing helped. Logfile of HijackThis v1.99.1 Scan saved at 5:11:39 PM, on 7/4/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) …

Member Avatar for Brokin
0
339
Member Avatar for LiBOC

Hi, My Norton Internet Security 2005's subscription is expiring soon. I am running XP Home Edition. Service Pack 2 Currently, I also run freeware like Spybot, Adware, AVG and Zonealarm. Do you think the above mentioned is enough to protect my computer along with my careful internet surfing habits like …

Member Avatar for dlh6213
0
83
Member Avatar for frenemy

My buddy wasn't able to download all these nifty progs so I had to upload it to him through AIM. He's no longer having problems staying in a web browser so I had him run HJT and send me his log file. Here's part of it. O4 - HKLM\..\Run: [jf4] …

Member Avatar for frenemy
0
79
Member Avatar for eagle6969
Member Avatar for waynesun

I am a new member and I need help removing the proper items of my hijack save log. can anyone help me? I dont know what spyware has infected my computer, I keep deleting the search explorer spyware with msn, but it keeps coming back whenever i reboot. :( Logfile …

Member Avatar for dlh6213
0
105
Member Avatar for gokulb

hi there... i have read the other users how they cleared the virus.... do help me out here is the log... Logfile of HijackThis v1.99.1 Scan saved at 3:56:53 PM, on 7/8/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe …

Member Avatar for gokulb
0
272
Member Avatar for SuziQ

Please help. Using the info in these forums and my own diligence I have gone from 2 trojans, various viruses and spyware/malware to only one problem left. I currently have spybot, adaware and spyware doctor showing up as clean, and yet, this small problem persists. I have run Spybot RegSupreme …

Member Avatar for dlh6213
0
373
Member Avatar for kavos1234

hi, quite new to this. norton anti-virus has detected a hacktool.rootkit withinn file name msdirectx.sys here is a logfile i ran from hijack this software any advice would be gratefully recieved Logfile of HijackThis v1.99.1 Scan saved at 00:05:52, on 12/07/2005 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 …

Member Avatar for DMR
0
84

The End.