hijackthis log.

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by bandit12, May 14, 2005.

  1. bandit12

    bandit12 Private E-2

    I don't really know much about computers, but have realised Ive got spyware on it. I've used hijack this to create the log (pasted below).Can someone tell me in very basic terms what I need to delete, and if there is anything else I need to do.
    Thanks
    Bandit12

    * Removed inline log file *
     
    Last edited by a moderator: May 14, 2005
  2. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

    Please follow the steps below:

    - Run ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus RemovalMake sure you check version numbers and get all updates.

    - Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.


    After doing ALL of the above you still have a problem:

    - Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).
     
  3. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

    Heres some you can remove from safe mode anyhow to hopefully get it right the first time. Your main problem jumped right out at me dealing with SYSUPUDT.EXE and DCF5678.EXE

    C:\WINDOWS\SYSUPUDT.EXE
    C:\WINDOWS\DCF5678.EXE
    O2 - BHO: CIEObject Object - {5D647E9C-6B37-4636-9A78-DADB1EB93BDF} - C:\WINDOWS\SYSTEM\CTXPOPUP.DLL
    O4 - HKLM\..\Run: [AdUpdater] C:\WINDOWS\SYSUPUDT.EXE
    O4 - HKLM\..\Run: [AdPopup] C:\WINDOWS\DCF5678.EXE
    O9 - Extra button: Freeserve - {4C7B9CA0-57A8-11D6-9373-D96654A1E879} - http://www.freeserve.net/ (file missing) (HKCU)
    O15 - Trusted Zone: *.boxsearch.net
    O15 - Trusted Zone: *.brdatahost.com
    O16 - DPF: {17D72920-7A15-11D4-921E-0080C8DA7A5E} (AimSp32 Class) - http://makeover.ivillage.co.uk/save/makeover.cab
     
  4. bandit12

    bandit12 Private E-2

    Thanks for the reply. Have removed the ones you suggested and all seems well at the moment. Sorry for pasting log instead of saving it as an attachment, but as I said, I`m hopeless when it comes to computers. Thanks again
    Bandit12 :)
     
  5. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Did you remove the things MA requested? If so, attach a fresh HJT log and we will go from there.
     
  6. bandit12

    bandit12 Private E-2

    Yes, I removed the ones MA said to and attatched the log. I still seem to have the problem though, that whenever I go to shut down the computer I get a "programme not reponding" message. Would that be anything to do with spyware, or is that a different problem altogether?
    Bandit12
     

    Attached Files:

  7. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Your HJT log is clean!

    As far as that problem your having, I get that every now and then. Its not malware related and I dont see if causing a problem. Now if you just want to you can post this in the Software Forum and those guys can tell you further about it.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds