Please Check My Hijack And MBAM Logs

Please note that your topic was not intentionally overlooked. HKEY_CLASSES_ROOT\CLSID\{30de9920-2e84-40a2-88a5-b8d256e15101} (Trojan.Dropper) -> Quarantined and deleted successfully.

Please check my log. After I run all this steps , what should I be reporting you to make sure the PC is clean? Please temporarily disable such programs or permit them to allow the changes.Reports/logs to post in your next reply:* Report.txt <- SDFix report* MBAM report log* A fresh HijackThis log

Completion time: 2009-01-08 12:02:17 ComboFix-quarantined-files.txt 2009-01-08 20:01:29 ComboFix2.txt 2009-01-07 21:09:37 ComboFix3.txt 2009-01-07 07:47:34 Pre-Run: 42,996,879,360 bytes free Post-Run: 42,982,432,768 bytes free

Good stuff! arthursday Posts: 4Joined: Wed Jan 07, 2009 8:17 am Top by patrik » Sat Jan 10, 2009 8:10 am Now that you are clean, please follow these simple steps in scan completed successfullyhidden files: 0**************************************************************************.--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'explorer.exe'(2256)c:\windows\system32\WININET.dllc:\windows\system32\ieframe.dllc:\program files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dllc:\windows\system32\wmvcore.dllc:\windows\system32\WMASF.DLL.------------------------ Other Running Processes ------------------------.c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exec:\program files\Java\jre6\bin\jqs.exec:\windows\system32\lxdwcoms.exec:\windows\system32\wdfmgr.exec:\progra~1\AVG\AVG8\avgrsx.exec:\progra~1\AVG\AVG8\avgnsx.exec:\program files\Java\jre6\bin\javaw.exec:\program weblink rab&query= FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll FF - component: c:\program files\AVG\AVG8\ToolbarFF\components\vmAVGConnector.dll FF - plugin: c:\program files\Google\Google Updater\2.4.1425.4532\npCIDetect13.dll FF - plugin: c:\program files\Microsoft Silverlight\2.0.30523.8\npctrl.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll FF -

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) R3 - URLSearchHook: eMusic Toolbar - {9ee802e8-c931-47ab-b570-aa8f791598ca} - C:\Program Files\eMusic\tbeMu1.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 Once it has fixed them, close HijackThis.Now rescan again with MBAM but this time perform a Full Scan in normal mode and check all items found for removal. Tech Support Guy is completely free -- paid for by advertisers and donations.

Before this the hard disk was constantly working. I dont know if that matters but here is the log...

Several virus' removed. Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and Flash ads that install viruses, Trojans and spyware. ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: Connection to failed. http://nuvisiongraphx.com/please-check/please-check-the-hjt-logs.html Two for DDS (attach the attach.txt file), one for DeFogger and one for Gmer.

If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you after scanning with MBAM. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{419cbe3f-7914-4e4b-93fa-25aef43c2cc0} (Trojan.FakeAlert) -> Quarantined and deleted successfully. Do not make any changes to default settings and when the program has finished installing, make sure you leave both the Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware checked. Press the OK button to close that box and continue.

As MBAM will automatically update itself after the install, you can press the OK button to close that box and you will now be at the main program.On the Scanner tab, If you use this mirror, please extract the zip file to your desktop.Disconnect from the Internet and close all running programs.Temporarily disable any real-time active protection so your security programs will The scan will begin and "Scan in progress" will show at the top. They are a security risk which can make your computer susceptible to a smörgåsbord of malware infections, remote attacks, exposure of personal information, and identity theft.

Please choose YES. I'm pasting here the log file:defogger_disable by jpshortstuff ( created at 22:34 on 05/04/2010 (Administrator)Checking for autostart values...HKCU\~\Run values retrieved.HKLM\~\Run values retrieved.Checking for services/drivers...-=E.O.F=-<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<

AVG Free 9.0 ``````````````````````````````` Anti-malware/Other Utilities Check: Malwarebytes' Anti-Malware CCleaner Adobe Flash Player Mozilla Firefox (3.5.6) Firefox Out of Date! ```````````````````````````````` Process Check: objlist.exe by Laurent Malwarebytes' Anti-Malware mbam.exe AVG Thanks you again...Let me know the next step....