To search for a file, click the Start button, and then click search.

failed to deleteC:\WINDOWS\system32\drivers\core.cache.dsk . . . . With OTMoveIt, file move failed and I was asked to reboot to finish the move. Na netu jsem nasel informaci, ze by to mel byt BadTrans nebo BugBear, a tak jsem zkousel tyhle nastroje, ale neuspesne: http://securityresponse.symantec.com/av ... .tool.html - po chvili prace se objevila klasicka Companion2008-01-11 01:28 --------- d-----w C:\Documents and Settings\natalie\Application Data\Yahoo!2008-01-08 07:34 10 ----a-w C:\Program Files\.autoreg2008-01-08 07:19 --------- d-----w C:\Program Files\Corel2008-01-07 07:28 --------- d-----w C:\Program Files\Ad-Aware2008-01-07 07:23 246 ----a-w C:\Program Files\Common Files\lavul2008-01-04 08:49 ---------

This is the Hijack log Logfile of Trend Micro HijackThis v2.0.2Scan saved at 21:38:42, on 2008-4-23Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16608)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Explorer.EXEC:\PROGRA~1\AVG\AVG8\avgwdsvc.exeC:\Program Files\Common

d-------- C:\WINDOWS\inf2008-01-13 15:44 . 2007-06-05 10:56 44,928 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\SDTHOOK.SYS2008-01-13 15:28 . 2008-01-13 16:44 d-------- C:\WINDOWS\SYSTEM32\ActiveScan2008-01-13

Menu Menu Alerts! Here's part 1 : ComboFix 08-01-09.2 - natalie 2008-01-13 20:17:40.4 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.187 [GMT -8:00] Running from: C:\Documents and Settings\natalie\Desktop\Geeks_2_Go\ComboFix.exe Command switches used :: C:\Documents and Back to top #4 BigMama BigMama Topic Starter Members 11 posts OFFLINE Local time:08:49 AM Posted 23 April 2008 - 08:47 PM This is the latest Hijack Log:Logfile of Trend C:\WINDOWS\TEMPscan completed successfully hidden files: 1 **************************************************************************.Completion time: 2008-01-13 20:34:39 - machine was rebootedComboFix-quarantined-files.txt 2008-01-14 04:34:35ComboFix2.txt 2008-01-11 23:34:16ComboFix3.txt 2008-01-11 02:29:34ComboFix4.txt 2008-01-09 23:49:13.2008-01-10 01:54:41 --- E O F --- 0 #35 Stamper19

Please re-enable javascript to access full functionality. Check out the forums and get free advice from the experts. Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: FGCatchUrl - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dllO2 - BHO: RealPlayer pls try check for me i tried tweak and run every antispyware program but stl no diff .

I still thought I had been double checking the submitted posts, but I'll check thing more closely. https://malwr.com/analysis/MjA2M2U4ZDhjNjM5NDcyYzk4YzhlNzI1Y2FlNWJhMTk/ If I have helped you in any way, please consider a donation to help me continue the fight against malware.Failing to respond back to the person that is giving up their Please thank your helpers and there will always be help here when you need it!======================================================== Back to top #6 BigMama BigMama Topic Starter Members 11 posts OFFLINE Local time:08:49 AM Compared to free things you can get online, the difference is that McAfee is constantly running and searching?

This time I did pay closer attention to postings and what got copied over, and things seemed right. Several functions may not work. Fill in your details below or click an icon to log in: Email (required) (Address never made public) Name (required) Website You are commenting using your WordPress.com account. (LogOut/Change) You are I only submit once I'm sure everything is there, so I'm not quite sure what's going on.

Depending on your decision, we might have to get an AntiSpyware Program as well. 0 #40 geminis076 Posted 15 January 2008 - 05:01 PM geminis076 Member Topic Starter Member 41 posts Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. I retried things to see what would happen, same as above happened. http://tcdownload.org/general/c-windows-system32-rdriv-sys.html Thread Status: Not open for further replies.

It helps to block pop-ups as well.Let me know what you decide with the AntiVirus.

TechNet Products IT Resources Downloads Training Support Products Windows Windows Server System Center Browser   Office Office 365 Exchange Server   SQL Server SharePoint Products Skype for Business See all products

How are things running at this point? 0 #38 geminis076 Posted 15 January 2008 - 12:23 PM geminis076 Member Topic Starter Member 41 posts Hello. Here's what the message says: Windows cannot find 'C:\Documents and Settings\natalie\desktop\dss.exe'. Companion2008-04-24 10:24 . 2008-04-24 10:55

d-------- C:\Program Files\SpywareBlaster2008-04-24 09:33 . 2008-04-24 10:17 d--h----- C:\$AVG8.VAULT$2008-04-24 09:30 . 2008-04-24 09:30 d-------- C:\Deckard2008-04-23 16:29 . 2008-04-26 02:20 d-------- C:\WINDOWS\system32\drivers\Avg2008-04-23 16:29 All rights reserved.Newsletter|Contact Us|Privacy Statement|Terms of Use|Trademarks|Site Feedback ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: Connection to

Several functions may not work. When I copy the info into the window and click OK, which I also tried a few times and double checked to make sure things were correct, Windows is not able As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged Stejně tak ty, které budou nečinné déle než 14 dní.

Please double-click OTMoveIt.exe to run it.Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy): C:\WINDOWS\SYSTEM32\DRIVERS\core.cache.dsk Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: FGCatchUrl - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dllO2 - BHO: RealPlayer

