We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

New Items Appeared on my Startup list

2»

Comments

  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Open notepad and copy/paste the text in RED below

    File::
    c:\windows\Dbujetelaguze.bin


    Save this as "CFScript"

    Then drag the CFScript into ComboFix.exe as you see in the screenshot below.

    CFScript.gif


    This will start ComboFix again. After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply

    Combofix should never take more that 20 minutes including the reboot if malware is detected.
    If it does, open Task Manager then Processes tab (press ctrl, alt and del at the same time) and end any processes of findstr, find, sed or swreg, then combofix should continue.



    :idea:
  • Steve_xx
    Steve_xx Posts: 6,979 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Combo Breaker
    OK done that, and this is the result:

    ComboFix 11-02-28.02 - Steven Nicholas 28/02/2011 23:31:18.2.1 - x86
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2039.1586 [GMT 0:00]
    Running from: c:\documents and settings\Steven Nicholas\Desktop\ComboFix.exe
    Command switches used :: c:\documents and settings\Steven Nicholas\Desktop\CFScript .txt
    AV: AntiVir Desktop *Enabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
    AV: McAfee VirusScan *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
    FW: *Disabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}
    FILE ::
    "c:\windows\Dbujetelaguze.bin"
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    c:\windows\Dbujetelaguze.bin
    .
    ((((((((((((((((((((((((( Files Created from 2011-01-28 to 2011-02-28 )))))))))))))))))))))))))))))))
    .
    2011-02-28 22:14 . 2011-02-28 22:14 388096 ----a-r- c:\documents and settings\Steven Nicholas\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
    2011-02-28 22:14 . 2011-02-28 22:14
    d
    w- c:\program files\Trend Micro
    2011-02-28 20:42 . 2011-02-28 20:42
    d
    w- c:\documents and settings\Steven Nicholas\Application Data\Malwarebytes
    2011-02-28 20:42 . 2010-12-20 18:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2011-02-28 20:42 . 2011-02-28 20:42
    d
    w- c:\documents and settings\All Users\Application Data\Malwarebytes
    2011-02-28 20:42 . 2010-12-20 18:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
    2011-02-28 20:42 . 2011-02-28 20:42
    d
    w- c:\program files\Malwarebytes' Anti-Malware
    2011-02-27 21:28 . 2011-02-28 20:27
    d
    w- c:\windows\system32\NtmsData
    2011-02-22 15:54 . 2011-02-22 15:54
    d
    w- C:\Temp
    2011-02-22 15:51 . 2008-04-14 00:12 26624 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
    2011-02-22 15:51 . 2011-02-23 09:10
    d
    w- c:\documents and settings\Steven Nicholas\Local Settings\Application Data\Samsung
    2011-02-22 15:50 . 2010-12-21 05:55 98432 ----a-w- c:\windows\system32\drivers\ss_bbus.sys
    2011-02-22 15:50 . 2010-12-21 05:55 14848 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys
    2011-02-22 15:50 . 2010-12-21 05:55 12416 ----a-w- c:\windows\system32\drivers\ss_bcmnt.sys
    2011-02-22 15:47 . 2011-02-22 15:49
    d
    w- c:\documents and settings\All Users\Application Data\Samsung
    2011-02-22 15:47 . 2011-02-22 15:47
    d
    w- c:\windows\system32\LogFiles
    2011-02-22 15:45 . 2011-02-22 15:53
    d
    w- c:\windows\system32\drivers\umdf
    2011-02-22 15:43 . 2011-02-22 15:43
    d
    w- c:\documents and settings\Steven Nicholas\Local Settings\Application Data\Downloaded Installations
    2011-02-14 15:47 . 2011-02-14 15:47
    d
    w- c:\documents and settings\Steven Nicholas\Application Data\uk.co.symbiosgroup.shchat
    2011-02-14 15:47 . 2011-02-14 15:47
    d
    w- c:\program files\SH Chat
    2011-02-14 15:47 . 2011-02-14 15:47
    d
    w- c:\program files\Common Files\Adobe AIR
    2011-02-08 21:49 . 2011-02-08 21:49
    d-sh--w- c:\documents and settings\Steven Nicholas\IECompatCache
    2011-02-08 21:25 . 2011-02-08 21:25
    d
    w- c:\documents and settings\Steven Nicholas\Application Data\OpenOffice.org
    2011-02-08 21:21 . 2011-02-08 23:13
    d
    w- c:\program files\OpenOffice.org 3
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2011-02-02 21:40 . 2011-01-16 11:42 472808 ----a-w- c:\windows\system32\deployJava1.dll
    2011-02-02 19:19 . 2011-01-16 11:42 73728 ----a-w- c:\windows\system32\javacpl.cpl
    2011-01-29 23:16 . 2011-01-29 23:16 30056 ----a-w- c:\windows\system32\MASetupCleaner.exe
    2011-01-29 17:00 . 2011-01-29 17:00 90112 ----a-w- c:\windows\MAMCityDownload.ocx
    2011-01-29 17:00 . 2011-01-29 17:00 325552 ----a-w- c:\windows\MASetupCaller.dll
    2011-01-29 17:00 . 2011-01-29 17:00 30568 ----a-w- c:\windows\MusiccityDownload.exe
    2011-01-29 17:00 . 2011-01-29 17:00 974848 ----a-w- c:\windows\system32\cis-2.4.dll
    2011-01-29 17:00 . 2011-01-29 17:00 81920 ----a-w- c:\windows\system32\issacapi_bs-2.3.dll
    2011-01-29 17:00 . 2011-01-29 17:00 65536 ----a-w- c:\windows\system32\issacapi_pe-2.3.dll
    2011-01-29 17:00 . 2011-01-29 17:00 57344 ----a-w- c:\windows\system32\MTXSYNCICON.dll
    2011-01-29 17:00 . 2011-01-29 17:00 57344 ----a-w- c:\windows\system32\MK_Lyric.dll
    2011-01-29 17:00 . 2011-01-29 17:00 57344 ----a-w- c:\windows\system32\issacapi_se-2.3.dll
    2011-01-29 17:00 . 2011-01-29 17:00 569344 ----a-w- c:\windows\system32\muzdecode.ax
    2011-01-29 17:00 . 2011-01-29 17:00 491520 ----a-w- c:\windows\system32\muzapp.dll
    2011-01-29 17:00 . 2011-01-29 17:00 49152 ----a-w- c:\windows\system32\MaJGUILib.dll
    2011-01-29 17:00 . 2011-01-29 17:00 45056 ----a-w- c:\windows\system32\MaXMLProto.dll
    2011-01-29 17:00 . 2011-01-29 17:00 45056 ----a-w- c:\windows\system32\MACXMLProto.dll
    2011-01-29 17:00 . 2011-01-29 17:00 40960 ----a-w- c:\windows\system32\MTTELECHIP.dll
    2011-01-29 17:00 . 2011-01-29 17:00 40960 ----a-w- c:\windows\system32\MAMACExtract.dll
    2011-01-29 17:00 . 2011-01-29 17:00 352256 ----a-w- c:\windows\system32\MSLUR71.dll
    2011-01-29 17:00 . 2011-01-29 17:00 258048 ----a-w- c:\windows\system32\muzoggsp.ax
    2011-01-29 17:00 . 2011-01-29 17:00 245760 ----a-w- c:\windows\system32\MSCLib.dll
    2011-01-29 17:00 . 2011-01-29 17:00 200704 ----a-w- c:\windows\system32\muzwmts.dll
    2011-01-29 17:00 . 2011-01-29 17:00 155648 ----a-w- c:\windows\system32\MSFLib.dll
    2011-01-29 17:00 . 2011-01-29 17:00 143360 ----a-w- c:\windows\system32\3DAudio.ax
    2011-01-29 17:00 . 2011-01-29 17:00 135168 ----a-w- c:\windows\system32\muzaf1.dll
    2011-01-29 17:00 . 2011-01-29 17:00 131072 ----a-w- c:\windows\system32\muzmpgsp.ax
    2011-01-29 17:00 . 2011-01-29 17:00 122880 ----a-w- c:\windows\system32\muzeffect.ax
    2011-01-29 17:00 . 2011-01-29 17:00 118784 ----a-w- c:\windows\system32\MaDRM.dll
    2011-01-29 17:00 . 2011-01-29 17:00 110592 ----a-w- c:\windows\system32\muzmp4sp.ax
    2011-01-21 14:44 . 2004-08-10 11:51 439296 ----a-w- c:\windows\system32\shimgvw.dll
    2011-01-07 14:09 . 2004-08-10 11:50 290048 ----a-w- c:\windows\system32\atmfd.dll
    2010-12-31 13:10 . 2004-08-10 11:51 1854976 ----a-w- c:\windows\system32\win32k.sys
    2010-12-22 12:34 . 2004-08-10 11:51 301568 ----a-w- c:\windows\system32\kerberos.dll
    2010-12-20 23:59 . 2004-08-10 11:51 916480 ----a-w- c:\windows\system32\wininet.dll
    2010-12-20 23:59 . 2004-08-10 11:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
    2010-12-20 23:59 . 2004-08-10 11:51 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
    2010-12-20 17:26 . 2004-08-10 11:51 730112 ----a-w- c:\windows\system32\lsasrv.dll
    2010-12-20 12:55 . 2004-08-10 11:51 385024 ----a-w- c:\windows\system32\html.iec
    2010-12-13 08:40 . 2011-01-04 15:52 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
    2010-12-13 08:40 . 2011-01-04 15:52 135096 ----a-w- c:\windows\system32\drivers\avipbb.sys
    2010-12-09 15:15 . 2004-08-10 11:51 718336 ----a-w- c:\windows\system32\ntdll.dll
    2010-12-09 14:30 . 2004-08-10 11:50 33280 ----a-w- c:\windows\system32\csrsrv.dll
    2010-12-09 13:38 . 2004-08-10 11:51 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-12-09 13:07 . 2004-08-03 21:59 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ModemOnHold"="c:\program files\NetWaiting\netWaiting.exe" [2003-09-10 20480]
    "SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-02-22 2423752]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ShowLOMControl"="1 (0x1)" [X]
    "igfxtray"="c:\windows\system32\igfxtray.exe" [2005-10-14 94208]
    "igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-10-14 77824]
    "igfxpers"="c:\windows\system32\igfxpers.exe" [2005-10-14 114688]
    "SigmatelSysTrayApp"="stsystra.exe" [2005-09-09 393216]
    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-11-29 761947]
    "Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2005-12-19 1347584]
    "ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
    "ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
    "DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940]
    "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-12-13 281768]
    "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-05-10 98304]
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
    c:\documents and settings\All Users\Start Menu\Programs\Startup\
    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2006-5-10 24576]
    [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
    "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
    2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
    path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
    backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Status Monitor.lnk]
    path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Status Monitor.lnk
    backup=c:\windows\pss\Status Monitor.lnkCommon Startup
    [HKLM\~\startupfolder\C:^Documents and Settings^Steven Nicholas^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk]
    path=c:\documents and settings\Steven Nicholas\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
    backup=c:\windows\pss\OpenOffice.org 3.3.lnkStartup
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BuildBU]
    2006-05-10 14:55 61440 ----a-w- c:\dell\bldbubg.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter2.0]
    2005-07-22 21:36 933888
    w- c:\program files\Brother\ControlCenter2\brctrcen.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell QuickSet]
    2005-12-15 09:44 839680 ----a-w- c:\program files\Dell\QuickSet\quickset.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
    2004-07-19 06:51 306688 ----a-w- c:\program files\Dell Support\DSAgnt.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DMXLauncher]
    2005-11-01 02:12 94208 ----a-w- c:\program files\Dell\Media Experience\DMXLauncher.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
    2011-01-29 23:11 888120 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
    2011-01-29 23:11 3372856 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSKDetectorExe]
    2005-07-12 18:05 1117184 ----a-w- c:\program files\McAfee\SpamKiller\MSKDetct.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    2006-05-10 15:21 98304 ----a-w- c:\program files\QuickTime\qttask.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
    2006-05-10 15:20 26112 ----a-w- c:\program files\Real\RealPlayer\realplay.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    2010-10-29 14:49 249064 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
    "DisableMonitoring"=dword:00000001
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeFirewall]
    "DisableMonitoring"=dword:00000001
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [17/02/2010 18:25 12872]
    R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [10/05/2010 18:41 67656]
    R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [04/01/2011 15:53 135336]
    S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [22/02/2011 15:50 98432]
    S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [22/02/2011 15:50 14848]
    S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [22/02/2011 15:50 123648]
    S3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\drivers\ss_bserd.sys [22/02/2011 15:50 100224]
    .
    .
    Supplementary Scan
    .
    uStart Page = hxxp://www.mail.yahoo.com/
    uInternet Connection Wizard,ShellNext = hxxp://www1.euro.dell.com/content/default.aspx?c=uk&l=en&s=gen
    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    FF - ProfilePath - c:\documents and settings\Steven Nicholas\Application Data\Mozilla\Firefox\Profiles\xox9xrv5.default\
    FF - prefs.js: browser.startup.homepage - www.mail.yahoo.com
    FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
    FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
    FF - Ext: Java Quick Starter: [EMAIL="jqs@sun.com"]jqs@sun.com[/EMAIL] - c:\program files\Java\jre6\lib\deploy\jqs\ff
    FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
    .
    **************************************************************************
    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2011-02-28 23:36
    Windows 5.1.2600 Service Pack 3 NTFS
    scanning hidden processes ...
    scanning hidden autostart entries ...
    scanning hidden files ...
    scan completed successfully
    hidden files: 0
    **************************************************************************
    .
    LOCKED REGISTRY KEYS
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe,-101"
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe"
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    DLLs Loaded Under Running Processes
    - - - - - - - > 'winlogon.exe'(768)
    c:\program files\SUPERAntiSpyware\SASWINLO.DLL
    c:\windows\system32\WININET.dll
    .
    Completion time: 2011-02-28 23:37:52
    ComboFix-quarantined-files.txt 2011-02-28 23:37
    ComboFix2.txt 2011-02-28 22:54
    Pre-Run: 27,103,186,944 bytes free
    Post-Run: 27,096,375,296 bytes free
    - - End Of File - - C073119EE2ED7C4A5A1D0707C988599F
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Looks clean now

    Id recommend resetting the HOSTS file -
    Download HostsXpert
    http://www.softpedia.com/progDownload/Hoster-Download-27041.html
    and then follow the below steps.
    * Unzip HostsXpert.zip
    * It will create a folder named HostsXpert in whatever folder you extract it to.
    * Run HostsXpert.exe by double clicking on it.
    * click the Make Writeable? button.
    * click Restore Microsoft's Hosts File and then click OK.
    * Click the X to exit the program


    .............................................

    and giving it a clean

    Download CCLEANER
    http://www.piriform.com/ccleaner/download/slim
    Run the CLEANER scan (UNTICK 'cookies')
    Then run the REGISTRY scan (Backup the registry when it asks)
    :idea:
  • Steve_xx
    Steve_xx Posts: 6,979 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Combo Breaker
    Many thanks for helping me with this It's much appeciated.
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    No worries :)
    :idea:
  • aliEnRIK wrote: »
    No worries :)

    Workin nights again RIK ?
    Disclaimer : Everything I write on this forum is my opinion. I try to be an even-handed poster and accept that you at times may not agree with these opinions or how I choose to express them, this is not my problem. The Disabled : If years cannot be added to their lives, at least life can be added to their years - Alf Morris - ℜ
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Workin nights again RIK ?


    Now why do you think that :p
    :idea:
  • aliEnRIK wrote: »
    Now why do you think that :p

    eer ~u~r mate, a qick 1/2 hour's worth
    :beer: :beer::beer: :beer::beer::beer: :beer::beer::beer::beer:
    Disclaimer : Everything I write on this forum is my opinion. I try to be an even-handed poster and accept that you at times may not agree with these opinions or how I choose to express them, this is not my problem. The Disabled : If years cannot be added to their lives, at least life can be added to their years - Alf Morris - ℜ
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351.7K Banking & Borrowing
  • 253.4K Reduce Debt & Boost Income
  • 454K Spending & Discounts
  • 244.7K Work, Benefits & Business
  • 600.1K Mortgages, Homes & Bills
  • 177.3K Life & Family
  • 258.4K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.2K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.