Main site > MoneySavingExpert.com Forums > Household & Travel > Techie Stuff > virus or somethin link in msn PLEASE HELP (Page 1)

IMPORTANT! This is MoneySavingExpert's open forum - anyone can post

Please exercise caution & report any spam, illegal, offensive, racist, libellous post to forumteam@moneysavingexpert.com

  • Be nice to all MoneySavers
  • All the best tips go in the MoneySavingExpert weekly email

    Plus all the new guides, deals & loopholes

  • No spam/referral links
or Login with Facebook
virus or somethin link in msn PLEASE HELP
Closed Thread
Views: 2,202
Thread Tools Search this Thread Display Modes
# 1
zoelouise88
Old 12-04-2009, 1:10 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default virus or somethin link in msn PLEASE HELP

i clicked a link in a msn message taking me to photobukket.com/?user it wouldnt load so asked my m8 what she was tryin to show me but she said she didnt send any links

can it be a virus, key jacker (or what every its called)? how would i find out? and how would i remove it if it was one?

please help as i wont be able to sleep until its sorted

thankyou
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 2
aliEnRIK
Old 12-04-2009, 1:27 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Aug 2008
Posts: 17,440
Default

Download MALWAREBYTES (Make sure you click 'DOWNLOAD NOW')
http://www.download.com/Malwarebytes...-10804572.html
UPDATE and FULL SCAN
Post the log here AFTER youve deleted everything it finds


reboot

Download HIJACK THIS (Make sure you click 'DOWNLOAD LATEST VERSION')
http://www.filehippo.com/download_hijackthis/
Click DO A SCAN AND SAVE A LOGFILE (Takes seconds) then post the log so we can see whats running
(do NOT do anything else with Hijack but scan and post the FULL log)
aliEnRIK is offline
Report Post
The Following User Says Thank You to aliEnRIK For This Useful Post: Show me >>
# 3
zoelouise88
Old 12-04-2009, 1:38 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

ok thankyou will do now and post back in a few mins
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 4
aliEnRIK
Old 12-04-2009, 1:43 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Aug 2008
Posts: 17,440
Default

well if you want to post back in a few mins youd better just run a QUICK scan for now
aliEnRIK is offline
Report Post
The Following User Says Thank You to aliEnRIK For This Useful Post: Show me >>
# 5
zoelouise88
Old 12-04-2009, 1:45 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

Quote:
Originally Posted by aliEnRIK View Post
well if you want to post back in a few mins youd better just run a QUICK scan for now
so far and says i have 3 infected objects
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!

Last edited by zoelouise88; 12-04-2009 at 1:49 AM.
zoelouise88 is offline
Report Post
# 6
zoelouise88
Old 12-04-2009, 2:06 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

Quote:
Originally Posted by aliEnRIK View Post
Download MALWAREBYTES (Make sure you click 'DOWNLOAD NOW')
http://www.download.com/Malwarebytes...-10804572.html
UPDATE and FULL SCAN
Post the log here AFTER youve deleted everything it finds
do you mean post in just a normal post on here?
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 7
aliEnRIK
Old 12-04-2009, 2:08 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Aug 2008
Posts: 17,440
Default

yes

Just copy and paste
aliEnRIK is offline
Report Post
# 8
zoelouise88
Old 12-04-2009, 2:17 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 3
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: ("%1" /S) -> Quarantined and deleted successfully.
Folders Infected:
C:\Program Files\Seekeen (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Seekeen\Seekeen_deleted0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Seekeen\Seekeen_deleted_ (Trojan.Agent) -> Quarantined and deleted successfully.
Files Infected:
C:\Program Files\Seekeen\Seekeen_deleted0\seekeen.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Seekeen\Seekeen_deleted_\seekeen.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 9
zoelouise88
Old 12-04-2009, 2:20 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 02:19:59, on 12/04/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Program Files\Prevx\prevx.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Google\Google EULA\GoogleEULALauncher.exe
C:\Program Files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe
C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.freeze.com/?AcquisitionID=...1b06d76&s=&ipc=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstan ce.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [cfFncEnabler.exe] cfFncEnabler.exe
O4 - HKLM\..\Run: [Google EULA Launcher] c:\Program Files\Google\Google EULA\GoogleEULALauncher.exe IE PA
O4 - HKLM\..\Run: [Toshiba TEMPO] C:\Program Files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [Corel Photo Downloader] "C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe" -startup
O4 - HKLM\..\Run: [Corel File Shell Monitor] C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunOnce: [iolo 3rd Party Reboot] "C:\ProgramData\iolo\IRestartStub.exe" /t "System Mechanic Professional" /i "fromreg" /v "iolo 3rd Party Reboot" /av "fromreg" /fw "fromreg"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [DelayShred] c:\PROGRA~1\mcafee\mshr\ShrCL.EXE /P7 /q c:\users\zoe\appdata\local\temp\Low\HSPERF~1.SH! c:\users\zoe\appdata\local\temp\HSPERF~1.SH! (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DelayShred] c:\PROGRA~1\mcafee\mshr\ShrCL.EXE /P7 /q c:\users\zoe\appdata\local\temp\Low\HSPERF~1.SH! c:\users\zoe\appdata\local\temp\HSPERF~1.SH! (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: eBay.co.uk - Buy It Sell It Love It - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/710-44557-9400-3/4 (file missing)
O9 - Extra button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/...k-21&site=home (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {0CFA086E-6336-4D95-B6AA-90F564E99631} (TNSClicker.Clicker) - http://www.shopandscan.com/TNSClicker.CAB
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {459E93B6-150E-45D5-8D4B-45C66FC035FE} (get_atlcom Class) - http://apps.corel.com/nos_dl_manager...EGetPlugin.ocx
O16 - DPF: {C1FDEE68-98D5-4F42-A4DD-D0BECF5077EB} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/acti..._v1-0-27-0.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: SmartFaceVWatchSrv - Toshiba - C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatchSrv.exe
O23 - Service: Notebook Performance Tuning Service (TempoMonitoringService) - Toshiba Europe GmbH - C:\Program Files\Toshiba TEMPRO\TempoSVC.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 11505 bytes
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 10
zoelouise88
Old 12-04-2009, 2:26 AM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

can i just ask is it safe to post this stuff, noone can use it to find my info, see my files etc ?
sorry but i havent a clue when it comes to computers
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 11
macman
Old 12-04-2009, 8:00 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Feb 2006
Posts: 35,627
Default

Quote:
Originally Posted by zoelouise88 View Post
can i just ask is it safe to post this stuff, noone can use it to find my info, see my files etc ?
sorry but i havent a clue when it comes to computers
Yes, it's quite safe, it just shows what programs running on your computer, you can't see what's in the files.
You didn't mention what security/anti-virus software you are currently running-is this up to date? I can see Windows Defender and Spyware Doctor, but no anti-virus?
No free lunch, and no free laptop
macman is offline
Report Post
# 12
Browntoa
Old 12-04-2009, 8:26 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Oct 2004
Location: MSE
Posts: 27,557
Default

and by the way it's her PC thats infected as its sending the link

the malwarebytes log shows it dealt with some minor infections on yours
I'm the Board Guide of the Referrers ,Telephones, Pensions and Discount Code boards which means I'm a volunteer to help them run smoothly and I can move and merge posts there. However, please remember, board guides don't read every post. If you spot an inappropriate or illegal post please report it to forumteam@moneysavingexpert.com Any views are mine and not the official line of MoneySavingExpert.


Browntoa is offline
Report Post
# 13
Browntoa
Old 12-04-2009, 8:30 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Oct 2004
Location: MSE
Posts: 27,557
Default

run hiackthis again and put a tick against these items in the log

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKLM\..\Run: [Google EULA Launcher] c:\Program Files\Google\Google EULA\GoogleEULALauncher.exe IE PA

O9 - Extra button: eBay.co.uk - Buy It Sell It Love It - {76577871-04EC-495E-A12B-91F7C3600AFA} - (file missing)

O9 - Extra button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - (file missing)

and then click on the fix selected button (had to remove the amazon and ebay links as the forum did not like them)

these are nothing major, just need fixing
I'm the Board Guide of the Referrers ,Telephones, Pensions and Discount Code boards which means I'm a volunteer to help them run smoothly and I can move and merge posts there. However, please remember, board guides don't read every post. If you spot an inappropriate or illegal post please report it to forumteam@moneysavingexpert.com Any views are mine and not the official line of MoneySavingExpert.


Browntoa is offline
Report Post
# 14
Browntoa
Old 12-04-2009, 8:32 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Oct 2004
Location: MSE
Posts: 27,557
Default

then download this free Antivirus package

http://www.avast.com/eng/avast_4_home.html
I'm the Board Guide of the Referrers ,Telephones, Pensions and Discount Code boards which means I'm a volunteer to help them run smoothly and I can move and merge posts there. However, please remember, board guides don't read every post. If you spot an inappropriate or illegal post please report it to forumteam@moneysavingexpert.com Any views are mine and not the official line of MoneySavingExpert.


Browntoa is offline
Report Post
# 15
macman
Old 12-04-2009, 10:00 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Feb 2006
Posts: 35,627
Default

Quote:
Originally Posted by Browntoa View Post
then download this free Antivirus package

http://www.avast.com/eng/avast_4_home.html
If the OP has been running without any antivirus, she's got a remarkably clean system!
No free lunch, and no free laptop
macman is offline
Report Post
# 16
aliEnRIK
Old 12-04-2009, 10:01 AM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Aug 2008
Posts: 17,440
Default

Quote:
Originally Posted by macman View Post
If the OP has been running without any antivirus, she's got a remarkably clean system!
Or any problems simply arnt showing on hijack
aliEnRIK is offline
Report Post
# 17
zoelouise88
Old 12-04-2009, 12:36 PM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

hi thanks for the replys,

have just turned my laptop on and it wont come on, its says some hardware or software was not installed properly.

it first came on with a grey screen then goes blue i try to load windows and it just wont do anything

any ideas?
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 18
aliEnRIK
Old 12-04-2009, 12:55 PM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Aug 2008
Posts: 17,440
Default

Quote:
Originally Posted by zoelouise88 View Post
hi thanks for the replys,

have just turned my laptop on and it wont come on, its says some hardware or software was not installed properly.

it first came on with a grey screen then goes blue i try to load windows and it just wont do anything

any ideas?
What EXACTLY have you done? (ie ~ have you just tried to install Avast?)

Turn on and keep pressing F8 to get into SAFE MODE WITH NETWORKING
Assuming you have just tried to install Avast then uninstall it
aliEnRIK is offline
Report Post
# 19
zoelouise88
Old 12-04-2009, 1:27 PM
Serious MoneySaving Fan
 
Join Date: Jan 2008
Posts: 1,028
Default

Hi sorry was not very clear, i was on ps3 and was finding it hard to type.

I didnt download anything, after i did the stuff last night i posted the log and then shut down - everything seemed fine

then woke up this morning turned it on and it just wouldnt start it kept saying start up windows and repair or start up normally but neither would work.

I have now totally restored my computer so its how it was when i got it.

I know have another question - is there anywya of getting the files back? (photos etc)

Sorry for being a pain but i really am useless when it comes to technology

Thanks

Zoe
Wins for 2011: ........................

Weight Lose Challenge: 7/1/11 60lbs to lose 23/1/11 17 lbs lost 43lbs to go!!
zoelouise88 is offline
Report Post
# 20
macman
Old 12-04-2009, 1:34 PM
Deliciously Dedicated Diehard MoneySaving Devotee
 
Join Date: Feb 2006
Posts: 35,627
Default

Oh dear, you have jumped the gun-did you not realise you would lose all your data by doing a factory restore (if this is what you have done)? You'll have a nice clean system now though, but you'll have to reinstall any programs that were not on it when it shipped.
No free lunch, and no free laptop
macman is offline
Report Post
Closed Thread

Bookmarks
 
 




Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

 Forum Jump  

Contact Us - MoneySavingExpert.com - Archive - Privacy Statement - Top

Powered by vBulletin® Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.

All times are GMT. The time now is 7:01 AM.

 Forum Jump  

Free MoneySaving Email

Top deals: Week of 29 October 2014

Get all this & more in MoneySavingExpert's weekly email full of guides, vouchers and Deals

GET THIS FREE WEEKLY EMAIL Full of deals, guides & it's spam free

Latest News & Blogs

Martin's Twitter Feed

profile
  • Going off line to focus on 4OD (don't think this means you're all forgiven!)
  • RT @ParkesJane: @MartinSLewis 6 bottles of champagne from Sainsburys arrived today, £50 including delivery! Thank you very much.
  • I'm deeply unhappy with all of you. Not one Twitter follower had the courtesy to tell me a new series of Big Bang was on! Shame on you

Cheap Travel Money

Find the best online rate for holiday cash with MSE's TravelMoneyMax.

Find the best online rate for your holiday cash with MoneySavingExpert's TravelMoneyMax.

TuneChecker Top Albums

  • VARIOUS ARTISTSBBC RADIO 1'S LIVE LOUNGE 2014
  • TAYLOR SWIFT1989 (DELUXE)
  • ED SHEERANX (DELUXE EDITION)

MSE's Twitter Feed

profile
Always remember anyone can post on the MSE forums, so it can be very different from our opinion.
We use Skimlinks and other affiliated links in some of our boards, for some of our users.