Makes no difference if AVG or Windows Malicious Removal tool were running scans or not the instructions are very clear, they are supposed to be turned off COMPLETELY when running the ESET scanner.Sorry about the running of AVG (wasn't running a scan) and Windows malicious removal tool at the same time, just hoped to get this post up asap for some help.
But what I was pointing out in the HJT log were all of this are these entries in RUNNING PROCESSES, meaning these programs WERE running when the HJT log was also run:
C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe
C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
These should NOT have been showing in the running processes when the HJT scanner was running. They would not have been running if the computer had been rebooted after the ESET Scan was 100% complete.
And while the HJT was doing It's scan AND the ESET ONLINE SCANNER was also doing It's scan the HJT log clearly shows that AVG was TURNED on...No it was not scanning but it was TURNED ON as shown by this entry in the HJT log:
C:\Program Files\AVG\AVG9\avgtray.exe
. The instructions for ESET clearly state:, meaning it should be completely TURNED OFF. This is likely one reason ESET Scanner obviously was not finished because the log you posted was incomplete, the other reason being you ran HiJackThis in the middle of the ESET scan. The ESET scan will take more than one hour and if it didn't run at least one hour it was an incomplete scan.You will need to temporarily Disable your current Anti-virus program.
I didn't say it was doing anything, what I said was be sure it is turned off and NOT turned back on for the duration. I should have added it should not be set to auto start when the computer is booted up, ever. In fact the program shouldn't be on there at all. This is likely how you became infected in the first place.As for utorrent, nothing is being downloaded and uploaded and I am sure it wasn't open at the time of the scan so this is news to me.
Run HiJackThis and put check marks next to the following:
O15 - Trusted Zone: http://*.buy-security-essentials.com
O15 - Trusted Zone: http://*.download-soft-package.com
O15 - Trusted Zone: http://*.download-software-package.com
O15 - Trusted Zone: http://*.get-key-se10.com
O15 - Trusted Zone: http://*.is-software-download.com
O15 - Trusted Zone: http://*.buy-security-essentials.com (HKLM)
O15 - Trusted Zone: http://*.get-key-se10.com (HKLM)
Click the Fix Checked button and Exit HJT. Reboot the computer. See if you can update MBA-M and run it again.


Reply With Quote