Hi greenvillage47,
- Get this version of Hijackthis from http://danborg.org/spy/hjt/alternativ.exe
2 Save it in a permanent folder of your choice, such as C:\HJT. To create this specific folder on your hard drive:
Double click the ‘My Computer’ icon on your desktop, then under the category hard disk drives: double click Local Disk:,
then select file->New → Folder and name it HJT
3 Run hijackthis. (alternativ exe).
Choose the “Do a system scan and save a log file” option to perform your scan.
HijackThis will analyze your system, and automatically open a notepad textfile
containing the HijackThis log when the scan is finished.
Open the text files containing the logs with a text editor and click Edit → Select All, followed by Edit → Copy.
From within the browser window and with the message body text box selected, click Edit → Paste.
Post hijackthis log here, if the folder is large use two postings for it.
After we here have evaluated this hjt-log we can do the following, but don’t do this yet!
Please download free Trial of Superantispyware
http://www.superantispyware.com/superantispywarefreevspro.html
Install it using the Standard Install option. (You will be asked for your e-mail address, it is safe to give it.
close the program
Please download ATF Cleaner:
http://www.atribune.org/ccount/click.php?id=1 by Atribune.
This program is for XP and Windows 2000 only
Download and install DrWebCureit:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
http://spywareinfo.dk/download/drweb-cureit.exe
to your desktop.
Please print out or copy this page to Notepad as you will be in Safe Mode and unable to refer to this page.
Reboot into Safe Mode by tapping F8 after the BIOS has loaded.
The Windows Advanced Options Menu appears.
Ensure that the Safe mode option is selected.
Press Enter. The computer then begins to start in Safe mode.
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
Doubleclick the “drweb-cureit.exe” and click “ok” in the prompt window that will open , asking “start the express scan now”.
It will first make a quick scan of your system, let it clean what it find, and when it says “done”
Click on the green screwdriver-
Actions Tab- Adware-Dialers-Riskware-Hacktools, use dropdown menu and select -Delete
Click on the drive(s) you want to scan . A red dot will mark the selected drive(s) . Then hit the green arrow in lower right corner It will now scan your drive(s), say yes to all
After the scan, in the Dr.Web CureIt menu on top, click file and choose save report list
Save the report to your desktop. The report will be called DrWeb.csv
Close Dr.Web Cureit.
Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
Start Superantispyware/rightclick on the black/yellow bug in tray.
Hit - Scan Your Computer - button
Click on the drive(s) you want to scan. Put a check in - Perform Complete Scan, then next
it will scan now. When scan have finished, put a checkmark with all items it found. Next, after cleaning, let it Reboot
Start Superantispyware again –
Click Preferences and then click the statistics/logs tab.
Click the dated log and press view log and a text file will appear.
Post this log along with fresh hijackthis log, Dr.Web and tell how things are running?
polonus