I do appreciate your assistance but i feel that to pursue this matter further is too aggravating.

Without regular updates you WILL NOT be protected when new malicious programs are released.Follow this list and your potential for being infected again will reduce dramatically MS - MVP Consumer Security KG) SRV - (JME Keyboard) -- C:\Windows\jmesoft\Service.exe () SRV - (UNS) Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) SRV - (LMS) Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)

Please check it out and let me know if you see anything that could solve my spyware problem (which is uncontrollable pop-ups). Thank you. ~Doris~ turn off the Realtime scanner before running the fix. KG) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co.

Please check below.FW/Software versionV502A supports Comcast, Charter, and Cablevision.V504B supports Time Warner Cable.V504F supports Comcast, Charter, Cablevision, Cox,and other MSOs*. Click Go 7. I am very serious about this and see it happen almost every day with my clients.

Put a checkmark next to each of these entries and click 'fix checked' button: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\yxouv.dll/sp.html#37049 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\yxouv.dll/sp.html#37049 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\yxouv.dll/sp.html#37049 BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. C:\Program Files (x86)\Google folder moved successfully.

KG) O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. https://forums.pcpitstop.com/index.php?/topic/92555-solvedhijack-log-file/ Save it where you can easily find it, such as your desktop, and attach it in your reply.**Caution**Rootkit scans often produce false positives. Audio Conferencing) - http://cs5.chat.yahoo.com/v43/yacscom.cab O16 - DPF: {E87A6788-1D0F-4444-8898-1D25829B6755} - http://fdl.msn.com/public/chat/msnchat4.cab O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...le.com/samantha/us/win/QuickTimeInstaller.exe O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnview95.cab O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control trekguy, Jul 18, 2006 #9 brendandonhu Joined: Jul 8, 2002 Messages: 14,681 Save KillBox to your Desktop Run KillBox and select Delete on Reboot Copy this list of file locations to

Put a checkmark next to each of these entries and click 'fix checked' button when ready (some may be gone after uninstalling some programs): R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\hkiht.dll/sp.html#37049 You'll now which txt file it is by the date on it. Please make sure to carefully read any instruction that I give you.

Reply With Quote 04-14-2012,11:38 PM #17 N3 View Profile View Forum Posts View Blog Entries View Articles Senior Member - Subscriber Join Date Feb 2005 Location Florida Posts 842 Re: Please if it is uncheck it and try again. KG) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 10.3.0) O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jin...ndows-i586.cab (Java Plug-in 1.7.0_03) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://webadapt.org/solved-hijack/solved-hijack-this-log-please.php So I created a hijackthis log.

Logfile of HijackThis v1.99.1 Scan saved at 8:43:04 AM, on 7/12/06 Platform: Windows 98 SE (Win9x 4.10.2222A) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\SYSTEM\mmtask.tsk C:\WINDOWS\SYSTEM\KB918547\KB918547.EXE c:\windows\SYSTEM\KB891711\KB891711.EXE Look for a service called Network Security Service Double click on that service and click stop and then set the startup to disabled Step#6: Press control-alt-delete to get into the task But if you wanted to to complete the OTL fix, just run the following: To ensure that Avira doesn't interfere this time....

If 11F#`I exists it will be highlighted in the left pane, right click on it and choose delete from the menu. 5.

trekguy, Jul 19, 2006 #13 brendandonhu Joined: Jul 8, 2002 Messages: 14,681 Try this then do Kaspersky again then Run KillBox and select Standard File Kill Copy this list of file How do I know if it's clean?? if you lose the report, there will be a copy here: C:\_OTL\MovedFiles Also don't forget to remove the old Java version mentioned in my earlier post. Also we'll remove the Google items you requested.

It started scanning & towards the end an "Avira" message came up stating that the host file is blocked. Copy and paste the bold text below into the address bar of Reglite: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\11F#`I 3. Advertisements do not imply our endorsement of that product or service. http://webadapt.org/solved-hijack/solved-hijack-log.php Click on them and select 'End Process'.

you will have to stop the MBAM service from running. Also after i copied the lines from the codebox, i pasted them in the Custom Scans/Fixes window & clicked the red Fix button. Did you look here: C:\_OTL\MovedFiles To see if there was a more fuller report? Join our site today to ask your question.

What programs would you suggest & btw, THANK YOU for all of the help! HOSTS file reset successfully OTL by OldTimer - Version log created on 04152012_140316 Files\Folders moved on Reboot... or read our Welcome Guide to learn how to use this site.