1.

Solve : Autoloading webpages/Pop ups?

Answer»

I have spyware i'm SURE on my computer. I have Hijack this, Spybot adware and stinger all on my computer. As well as cwshredder. I have ran Spybot and adware so many TIMES, restarted my computer and ran them again. And still When i try to load hotmail it autoloads another website, gets ride of my hotmail. Making it very difficult for me to ready my mail.

It also has a ton of popups that come with this website.
I'm posting my hijack this log and i'm hoping one of you guys will tell me exactly what i need to get ride of through there.

Any other thoughts would be greatly appreciated.
Thanks.

here is my hijack this log.


R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:NavigationFailure
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:NavigationFailure
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:NavigationFailure
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:NavigationFailure
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:NavigationFailure
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:NavigationFailure
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {59DE9A84-A6BF-4827-A5F6-449023823D27} - C:\WINNT\system32\henp.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &SearchBar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL
O3 - Toolbar: MSN Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.1629.0\en-us\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\Smtray.exe
O4 - HKLM\..\Run: [IMONTRAY] C:\Program Files\Intel\Intel(R) Active Monitor\imontray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [BootWarn] C:\Program Files\Norton SystemWorks\Norton AntiVirus\BootWarn.exe /a
O4 - HKLM\..\Run: [SymTray - Norton SystemWorks] C:\Program Files\Common Files\Symantec Shared\Symtray.exe SetReg
O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\System32\NeroCheck.exe
O4 - HKLM\..\Run: [LoadQM] loadqm.exe
O4 - HKLM\..\Run: [Run32dll] c:\winnt\system32\temp.exe task32.exe
O4 - HKLM\..\Run: [wins] C:\WINNT\$NtServicePackUninstall$\explorer.exe
O4 - HKLM\..\Run: [ethernet32] C:\WINNT\$NtServicePackUninstall$\smss.exe
O4 - HKLM\..\Run: [graphics64a] C:\WINNT\$NtServicePackUninstall$\csrss.exe
O4 - HKLM\..\Run: [SpyHunter] E:\jeff\SpyHunter.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Microsoft DRIVER Control] windrv.exe
O4 - HKLM\..\Run: [Windows Drive Monitor] windrv.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [WinampAgent] E:\jeff\Winamp\winampa.exe
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\RunServices: [Microsoft Driver Control] windrv.exe
O4 - HKLM\..\RunServices: [Windows Drive Monitor] windrv.exe
O4 - HKLM\..\RunOnce: [SymTray - Norton SystemWorks] C:\Program Files\Common Files\Symantec Shared\Symtrdr.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [AIM] E:\jeff\aim.exe -cnetwait.odl
O4 - GLOBAL Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - E:\jeff\aim.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: HushEncryptionEngine - https://mailserver1.hushmail.com/shared/HushEncryptionEngine.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/drakken/us/win/QuickTimeInstaller.exe
O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/20031216/qtinstall.info.apple.com/mickey/us/win/QuickTimeInstaller.exe
O18 - Filter: text/html - {06940CA1-BDE7-4338-BBD0-34AEA9D36CB6} - C:\WINNT\system32\henp.dll
O18 - Filter: text/plain - {06940CA1-BDE7-4338-BBD0-34AEA9D36CB6} - C:\WINNT\system32\henp.dll
jeff--......Yes I would concur...you have a lot of spyware and adware in there .......Here are 3 very useful links .....they will explain how to read and correct items that have been generated in your hijackthis log .....
http://computercops.biz/HijackThis.html
http://computercops.biz/CLSID.html
http://computercops.biz/StartupList.html
once you have read these pages go back and start marking items for removal......be sure to check each entry that your log has listed.....and mark for removal anything that you find listed in the above pages. It may take you an hour or so to go through all the entries....but it will get rid of the pests.......

let us know how you make out.
dl65  Configure Adaware to run on Windows startup. You can set it to do so in the configurations.



Discussion

No Comment Found