I Need Help Please. I Can't Even Run HijackThis

What the Tech → Spyware / Malware / Virus Removal → Virus, Spyware & Malware Removal

Posted 27 May 2006 - 02:42 PM Rename "HijackThis.exe" to something else... Not sure why it was not shut down. *************** wits - 06-10-05 11:05:07.46 Service Pack 2 ComboFix 06.09.28 - Running from: "C:\Program Files" ((((((((((((((((((((((((((((((( Files Created from 2006-09-05 to 2006-10-05 )))))))))))))))))))))))))))))))))

Click Scan button. Same result - close before it could creat the logfile. Inc.)HKU\Sean Pierce\...\Winlogon: [Shell] explorer.exe,C:\Documents and Settings\Sean Pierce\Application Data\Other.res [ 2010-12-09] () <==== ATTENTIONStartup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnkShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)Startup: C:\Documents and Settings\Sean Pierce\Start Advertisement LANDROVER Thread Starter Joined: Dec 31, 2005 Messages: 50 Hi there I am dealing with a computer which is so infected that I can't even run Hijackthis!

Even in safe mode, I canot run any anti-spyware software: Malwarebyte's will close in one second after starting scanning. Many security applications use a great deal of resources. Logged jwaschke Posts: 33 Gender: Location: Provances Like Texas but farther North Joined:Jan 2007 Re: Okay smart people, I need some help.

I got Avira back when I used to download a lot of torrents because it was supposed to be good with UTorrent.I also have MalwareBytes and CCleaner on the laptop too. Join the ClassRoom and learn how. FakeMSN8Beta: Executable (File, fixed) C:\WINDOWS\system32\netstat.com FakeMSN8Beta: Executable (File, fixed) C:\WINDOWS\system32\taskkill.com --- Spybot - Search & Destroy version: 1.4 (build: 20050523) --- 2005-05-31 blindman.exe ( 2005-05-31 SpybotSD.exe ( 2006-05-27 TeaTimer.exe ( 2006-04-11 Here is my "Hijackthis" log.Thank you in advance,jmruelLogfile of HijackThis v1.99.1Scan saved at 12:11:18 PM, on 8/17/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16512)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\Ati2evxx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program

Start here -> Malware Removal Forum.

Answer 'Yes' and wait for a message to appear similar to "Merged Successfully".

However, every time I try to run the FRST64.exe from the flash drive I get the error "B:\Documents and Settings\Default User\Desktop\FRST64.exe is not a valid Win32 application." I tried to move So, let me know what can go...Plus, why does Internet Explorer crap keep showing up?

  • I thought I deleted that muther!
  • Save it to desktopDouble click on the file name on your desktop, it will run now.
  • Hold F8 at startup and you should be able to select Safe Mode with Networking.Good luck!
  • Cookiegal, Oct 5, 2006 #11 Cookiegal Administrator Malware Specialist Coordinator Joined: Aug 27, 2003 Messages: 105,647 This worm has set policies to restrict the use of registry tools and to force

I think...I don't fucking know any more! Please re-enable javascript to access full functionality. If you dont have restore active get back to me Logged JAG Posts: 670 Gender: Location: On the shores of Lake Erie Joined:Jul 2009 Re: Okay smart people, I need some There are two options to do this, and which one you should use depends on if you have an installation disc with Windows Vista or Windows 7, respectively.Option 1 without Windows

torrents aren`t good imo, too easy to get caught Logged Mitch Lahey Posts: 1615 Gender: Location: Catalina Island, CA Joined:Jan 2006 Re: Okay smart people, I need some help. this content Double-click on OTLPENet.exe. Please copy/paste the content of that report into your next reply. Logged -Mitch Dolphin (I work for Cyrus now)"Hey everybody, there's a shitcloud comin'!

Checked thrue regedit - and below was also back under load. If you wish to show your appreciation, then you may donate to help keep us online. Please use them so that others may benefit from your questions and the responses you receive.OldTimer Back to top Back to Virus, Trojan, Spyware, and Malware Removal Logs 1 user(s) are http://custsolutions.net/i-need/i-need-help-someone-please-look-at-my-hijackthis-log.php LANDROVER, Oct 4, 2006 #3 abustiaf Guest in safemode please post another pic of the taskmanager.

Click on Next.Select your user account and enter your password (if you don't have a password, press the Enter key).The System Recovery Options menu is displayed and it starts with Startup Start FRST. I would recommend SpyBot Search & Destroy and Adaware SE which are both free and are used everyday by people who design and manipulate virii and spyware programs for major corporations.I

When done, the Reatogo desktop is displayed. I'll start on those next steps.

post your new/latest HJT log here and I will continue to try and help as much as I am able!

THANKS A LOT FOR THE HELP!!!! Please start a New Thread if you're having a similar issue.

REGEDIT4 [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows] "load"="" "run"=- [HKEY_USERS\S-1-5-21-2980883070-2775256524-249630050-10777\Software\Microsoft\Windows NT\CurrentVersion\Windows] "load"="" "run"=- Then, locate fixme.reg on your desktop and it.