I think I'm hijacked please help

Discussion in 'Malware Help (A Specialist Will Reply)' started by Ace 30, Jul 10, 2006.

  1. Ace 30

    Ace 30 Private E-2

    I noticed that my 3 meg connection drops off alot and when i typr netstat -a i get about 13 tcp connections I have attached my log your help is very much appreicated another problem i have is alot of pictures don't display properly they just appear as a little white box with a red x in it
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Majorgeeks!

    Your problems do not appear to be malware. However HJT logs do not provide enough information to really make that determination. You should run the the step down below in the quote box to be positive but I doubt your problems are malware. You do have to many realtime antispyware blockers running though:

    - Ewido
    - Spy Sweeper
    - Windows Defender (part of Windows One care)

    If you are using Once Care, you should not use Spy Sweeper and Ewido. Are Ewido and Spy Sweeper paid versions.
    .
     
  3. Ace 30

    Ace 30 Private E-2

    Can you tell me how to view hidden files in I.E. 7 I have windows defender, spysweeper, I will run all the steps that you have askeds thanks man
     
  4. Ace 30

    Ace 30 Private E-2

    I cannot get ewido online to work it will not start to download the box stays blank thanks I did not use to have any problems downloding it but one day it just starting doing that and the white boxes with red x's in them where pictures belong?
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Instructions for viewing hidden files are in the READ ME and this applies to all Windows OS's. It has nothing to do with any version of IE.
     
  6. Ace 30

    Ace 30 Private E-2

    sorry abput the delay but anyhow i removed all the spyware programs but defender and ran bit defender online it found nothing attached are the logs for hijackthis and panda thanks for your help
     

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You should delete the below file (use safe mode if necessary)

    C:\WINDOWS\system32\fk.dll

    Also you can use HJT to fix the below R1 line if you do not want the about:blank Default Page. However, the settings you put in place using Windows Once Care may block the change. You have IE and Control Panel Restrictions enabled (notice the O6 lines in your HJT log):
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
     
  8. Ace 30

    Ace 30 Private E-2

    yes I was wondering about the o6 lines myself as aswell as the o9 can you tell me what they are and if i need them and also ehat is the o9 thanks alot I don't know alot about those hopefully you do no name looks suspious
    O6 Internet Explorer\Restrictions present
    O6 Internet Explorer\Control Panel present
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I just told you in my last message what the O6 lines were. The were put in place by Windows One Care to block certain configuration changes on your system. An attempt to keep malware from being able to edit your registry or IE settings.

    The O9 line is for Sun Java.
     
  10. Ace 30

    Ace 30 Private E-2

    Man I very sorry about that I mistunderstood that please accept my apoligizes anyhow I deleted the file and have attached new logs thanks let me know thanks for your help Didn't mean to piss you off
    Neil
     

    Attached Files:

  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No problem! I was not pissed! I was just stating the obvious and when read, it may have sounded that way.

    Your log is clean the same as your previous one! You do not appear to be having any malware problems.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds