Page 1 of 2 12 LastLast
Results 1 to 10 of 11

Thread: HiJack This, browser hijack(Resolved)

  1. #1
    Join Date
    Feb 2007
    Posts
    6

    HiJack This, browser hijack(Resolved)

    Alright here it is:

    I'm basically having the same problem as this thread http://forum.networktechs.com/showthread.php?p=7419 . I have done all the initial cleaning and have attached the hijack this file, however, I can't run it in normal mode. AVG anti-spyware found nothing and the Windows Defender scan was also clean. Upon restart into normal mode Windows Defender found a "Possible Hosts File Hijack located in c:\windows\system32\drivers\etc\hosts" I used the remove action and it was successful. I have also added the log from the Kaspersky online scan, let me know if there is any other info I need to post. Any help would be greatly appreciated.
    Attached Files Attached Files

  2. #2
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Hi,
    I am not certain what you mean when you say you cannot run HJT in normal mode. The log you posted looks to be in normal mode to me.
    The first thing I notice, other than the host files of course, is that you are running two, or portions of two anti-virus programs, Norton and AVG. This is an absolute No-No.
    These running processes indicate Norton Anti-virus'
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

    You need to go to Add/Remove and Uninstall everything listed as Norton and Symantec.
    You may need to reboot if prompted.
    Once that is complete then do a file search by going to Start, Search, Files and Folders, "C" drive and first search for files named Symantec. If any are found delete them. Next do the same for files named Norton, if any are found, delete them.
    Once you have removed the extra anti-virus program
    Download SDFix and save it to your Desktop.

    Double click SDFix.exe and it will extract the files to %systemdrive%
    (Drive that contains the Windows Directory, typically C:\SDFix)

    Please then reboot your computer in Safe Mode by doing the following :
    • Restart your computer
    • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
    • Instead of Windows loading as normal, the Advanced Options Menu should appear;
    • Select the first option, to run Windows in Safe Mode, then press Enter.
    • Choose your usual account.
    Open the extracted SDFix folder and double click RunThis.bat to start the script.[*] Type Y to begin the cleanup process.[*] It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.[*] Press any Key and it will restart the PC.[*] When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.[*] Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
    (Report.txt will also be copied to Clipboard ready for posting back on the forum).[*] Finally paste the contents of the Report.txt back on the forum with a new HijackThis log

  3. #3
    Join Date
    Feb 2007
    Posts
    6
    Alright I've done all required steps, and have posted the reports. However, when I started up the computer I received another virus alert from AVG "Trojan horse Downloader.Agent.INL located C:\Documents and Settings\Compaq_Owner\Desktop\install.exe" along with the previous Windows Defender alert. Just thought I'd let you know.
    Attached Files Attached Files

  4. #4
    Join Date
    Feb 2007
    Posts
    6
    Sorry, here is the pasted report.


    SDFix: Version 1.63

    06/02/2007 - 0:37:33.71

    Microsoft Windows XP [Version 5.1.2600]

    Running From: C:\SDFix

    Safe Mode:
    Checking Services:

    Name:
    Client IP-IPX

    Path:
    "C:\WINDOWS\system32\svchosts.exe" -e te-110-12-0000282

    Client IP-IPX Deleted

    Restoring Windows Registry Entries
    Restoring Default Hosts File


    Rebooting...

    Normal Mode:
    Checking Files:

    Below files will be copied to Backups folder then removed:

    C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\Startup\winlogon.lnk - Deleted
    C:\WINDOWS\system32\netstat.com - Deleted
    C:\WINDOWS\system32\svchosts.exe - Deleted
    C:\WINDOWS\system32\taskkill.com - Deleted



    ADS Check:

    C:\WINDOWS\system32
    No streams found.

    Final Check:

    Remaining Services:
    ------------------


    Authorized Application Key Export:

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess\Parameters\FirewallPolicy\Standard Profile\AuthorizedApplications\List]
    "C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe"="C:\\Program Files\\Compaq Connections\\6750491\\Program\\Compaq Connections.exe:*isabled:BackWeb for Presario"
    "C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"="C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe:*isabled:Earthlink"
    "C:\\WINDOWS\\system32\\sessmgr.exe"="C:\\WINDOWS\ \system32\\sessmgr.exe:*isabled:@xpsp2res.dll,-22019"
    "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
    "C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
    "C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTor rent"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe:*:Enabled:avginet.exe"
    "C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
    "C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe:*:Enabled:avgcc.exe"
    "C:\\Program Files\\Grisoft\\AVG Free\\avgemc.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgemc.exe:*:Enabled:avgemc.exe"
    "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
    "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"


    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess\Parameters\FirewallPolicy\DomainPr ofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\syste m32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%ProgramFiles%\\iTunes\\iTunes.exe"="%ProgramFile s%\\iTunes\\iTunes.exe:*:enabled:iTunes"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
    "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"


    Remaining Files:
    ---------------

    Backups Folder: - C:\SDFix\backups\backups.zip


    Checking For Files with Hidden Attributes :

    C:\Documents and Settings\Compaq_Owner\Desktop\Divx\Brayden's ****\A Taste of Chasey Lain - Vivid XXX [DVDRIP][Pornstars][www.sexotorrent.com]\Thumbs.db
    C:\Documents and Settings\Compaq_Owner\Desktop\Office\MSDE2000\SQLR ESLD.DLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SQLRESLD.DLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SQLRESLD.DLL
    C:\WINDOWS\system32\gtitxpw\winlogon.exe
    C:\hiberfil.sys
    C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\AUTORUN.INF
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SETUP.INI
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SETUP.RLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SQLRESLD.DLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 3 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\ORK\AUTORUN.INF
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\AUTORUN.INF
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\OFFICE1.CAB
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\FILES\OSP\1033\OSP1.CAB
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SETUP.INI
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SETUP.RLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\MSDE2000\SQLRESLD.DLL
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\ORK\AUTORUN.INF
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\ORK\ORK.CAB
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\SHAREPT\CFGQUIET.INI
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\SHAREPT\OWS10.CAB
    C:\Documents and Settings\Compaq_Owner\Local Settings\Temp\Temporary Directory 4 for Microsoft Office XP PRO (word, excel, powerpoint, outlook, access, frontpage, Publisher 2005.zip\SHAREPT\SETUPSE.INI

    Finished

  5. #5
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Somethings were removed but obviously some nasty items remain.
    Here are the next steps I want you to follow;
    Go to this link;
    Follow each and every step exactly as given, skipping of course the download of Windows Defender since you have it and also download of HJT. But then follow every other download recommendation.
    Follow the directions for running the programs in safe mode exactly and allow each program to delete whatever is found. Save the AVG Anti-spy log and post it back here with a new log from HiJackThis that you will run in NORMAL mode once the other steps are complete.

  6. #6
    Join Date
    Feb 2007
    Posts
    6
    I have done the required steps here are the files.
    Attached Files Attached Files

  7. #7
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    First a question; is http://www.virushelpzone.com/ your Home Page? If it is NOT then it will need to be included in the HJT fixes I will give below;

    Ok here are the next steps;
    First of all be sure to Enable Hidden Files and Folders

    Next reboot into SAFE MODE as you did to complete the steps in the link I gave you.
    Open My Computer.
    Double Click on "C" Drive.
    Navigate to this Folder \WINDOWS\system32\
    Once in the system 32 folder look for this gtitxpw
    When you find it, delete it.

    Reboot the system into Normal mode and with ALL browsers CLOSED run HiJackThis again and place checkmarks next to the following entries if they still are listed;

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.virushelpzone.com/
    F3 - REG:win.ini: load=C:\WINDOWS\system32\gtitxpw\winlogon.exe
    F3 - REG:win.ini: run=C:\WINDOWS\system32\gtitxpw\winlogon.exe
    O1 - Hosts: 1.1.1.1 liveupdate.
    O1 - Hosts: 1.1.1.1 f-secure.com
    O1 - Hosts: 1.1.1.1 www.f-secure.com
    O1 - Hosts: 1.1.1.1 ftp.f-secure.com
    O1 - Hosts: 1.1.1.1 ftp.sophos.com
    O1 - Hosts: 1.1.1.1 liveupdate.symantec.com
    O1 - Hosts: 1.1.1.1 customer.symantec.com
    O1 - Hosts: 1.1.1.1 dispatch.mcafee.com
    O1 - Hosts: 1.1.1.1 download.mcafee.com
    O1 - Hosts: 1.1.1.1 rads.mcafee.com
    O1 - Hosts: 1.1.1.1 mast.mcafee.com
    O1 - Hosts: 1.1.1.1 my-etrust.com
    O1 - Hosts: 1.1.1.1 www.my-etrust.com
    O1 - Hosts: 1.1.1.1 nai.com
    O1 - Hosts: 1.1.1.1 www.nai.com
    O1 - Hosts: 1.1.1.1 networkassociates.com
    O1 - Hosts: 1.1.1.1 secure.nai.com
    O1 - Hosts: 1.1.1.1 securityresponse.symantec.com
    O1 - Hosts: 1.1.1.1 service1.symantec.com
    O1 - Hosts: 1.1.1.1 www.sophos.com
    O1 - Hosts: 1.1.1.1 support.microsoft.com
    O1 - Hosts: 1.1.1.1 symantec.com
    O1 - Hosts: 1.1.1.1 www.symantec.com
    O1 - Hosts: 1.1.1.1 update.symantec.com
    O1 - Hosts: 1.1.1.1 updates.symantec.com
    O1 - Hosts: 1.1.1.1 us.mcafee.com
    O1 - Hosts: 1.1.1.1 vil.nai.com
    O1 - Hosts: 1.1.1.1 viruslist.com
    O1 - Hosts: 1.1.1.1 www.viruslist.com
    O1 - Hosts: 1.1.1.1 grisoft.com
    O1 - Hosts: 1.1.1.1 www.grisoft.com
    O1 - Hosts: 1.1.1.1 free.grisoft.com
    O1 - Hosts: 1.1.1.1 trendmicro.com
    O1 - Hosts: 1.1.1.1 housecall.trendmicro.com
    O1 - Hosts: 1.1.1.1 www.trendmicro.com
    O1 - Hosts: 1.1.1.1 pandasoftware.com
    O1 - Hosts: 1.1.1.1 www.pandasoftware.com
    O1 - Hosts: 1.1.1.1 usa.kaspersky.com
    O1 - Hosts: 1.1.1.1 ewido.net
    O1 - Hosts: 1.1.1.1 www.ewido.net
    O1 - Hosts: 1.1.1.1 zonelabs.com
    O1 - Hosts: 1.1.1.1 www.zonelabs.com
    O1 - Hosts: 1.1.1.1 bitdefender.com
    O1 - Hosts: 1.1.1.1 www.bitdefender.com
    O1 - Hosts: 1.1.1.1 download.bitdefender.com
    O1 - Hosts: 1.1.1.1 upgrade.bitdefender.com
    O1 - Hosts: 1.1.1.1 spywareinfo.com
    O1 - Hosts: 1.1.1.1 www.spywareinfo.com
    O1 - Hosts: 1.1.1.1 merijn.org
    O1 - Hosts: 1.1.1.1 www.merijn.org
    O1 - Hosts: 1.1.1.1 sysinternals.com
    O1 - Hosts: 1.1.1.1 www.sysinternals.com
    O1 - Hosts: 1.1.1.1 onguardonline.gov
    O1 - Hosts: 1.1.1.1 www.onguardonline.gov
    O1 - Hosts: 1.1.1.1 avast.com
    O1 - Hosts: 1.1.1.1 www.avast.com
    O1 - Hosts: 1.1.1.1 safety.live.com
    O1 - Hosts: 1.1.1.1 www.paretologic.com
    O1 - Hosts: 1.1.1.1 paretologic.com
    O1 - Hosts: 1.1.1.1 virusscan.jotti.org
    O1 - Hosts: 1.1.1.1 services.google.com
    O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
    O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll

    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - Startup: winlogon.lnk = ?
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Client IP-IPX - Unknown owner - C:\WINDOWS\system32\svchosts.exe" -e te-110-12-0000282 (file missing)
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h cltCommon (file missing)
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    Once you have placed checkmarks next to all of the above then click the FIX button.
    Exit HJT.
    Reboot and run a new HJT scan and post the log here.

  8. #8
    Join Date
    Feb 2007
    Posts
    6
    The files have been removed here is the new log.
    Attached Files Attached Files

  9. #9
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Your log looks pretty good. Only one thing i see is this entry in running processes;
    C:\WINDOWS\ALCMTR.EXE which is the Realtek AC97 Audio - Event Monitor. "Sypware" file used surreptitiously monitor ones actions. It is not a sinister one, like remote control programs, but it is being used by Realtek to gather data about customers.

    I would remove this manually by going to My Computer, C:\WINDOWS and then look for this file ALCMTR.EXE and delete it.
    Reboot.

    If you feel the computer is running well then I would set a new Restore Point so that you know System Restore files are clean also.
    To do this;
    Right Click My Computer.
    Choose Properties.
    System Properties will open.
    Choose the System Restore Tab.
    Place a checkmark in Turn Off System Restore.
    You will get a box asking if you are sure, say yes.
    System Restore will then shut down.
    Wait a few minutes and then do the reverse and take the checkmark out. This will re-enable System Restore with new, clean restore points.

    Next, in order to assure that your computer remains clean and free of nasty items I would download, if you don't all ready have them, install and use, in addition to your regular anti-virus scans, at least once a week the following;
    SpyBotSD -- This Scanner/Remover is a Must Have! - Do not forget to use the Immunize feature!
    Ad-awareSE -- The ever-popular Scanner/Remover by Lavasoft.
    AVG Anti-Spyware v7.5 -- This is a free trial of the Full Feature "Plus Version" of this fine tool. After 1 month, some of the "Plus" features are deactivated. (Windows 2000 & XP Only)
    Spyware Blaster -- Another Must Have tool! Blocks malicious ActiveX installs by implementing a “kill bit” to prevent those ActiveX programs with known CLSIDs from being executed. Highly recommended! From Javacool Software.

    I would also continue to use the ATF-Cleaner that you used during the clean-up. This will get rid of all the useless temp files and junk you just don't need.

    Let me know if all is ok.
    Judy

  10. #10
    Join Date
    Feb 2007
    Posts
    6
    Everything seems to be running fine now.
    Thanks for all the help.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •