Getting unwanted pop ups from internet explorer....Need Help

View previous topic View next topic Go down

Solved Getting unwanted pop ups from internet explorer....Need Help !!!

Post by A.F.R.A.K on Wed Feb 18, 2009 5:19 pm

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:48:18 PM, on 2/18/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.20978)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [You must be registered and logged in to see this link.]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [You must be registered and logged in to see this link.]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [You must be registered and logged in to see this link.]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [You must be registered and logged in to see this link.]
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O8 - Extra context menu item: Add to Banner Ad Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - [You must be registered and logged in to see this link.]
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{A0F00C29-37B3-4B6A-BA59-5D4ECAA68113}: NameServer = 123.231.0.167 123.231.0.181
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~2\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~2\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~2\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~2\KASPER~1\kloehk.dll
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

--
End of file - 6004 bytes

A.F.R.A.K
Novice
Novice

Posts Posts : 48
Joined Joined : 2008-11-14
OS OS : Windows xp (sp2)
Points Points : 29417
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by Belahzur on Wed Feb 18, 2009 5:24 pm

Hello.
Can you describe what these popups are?
Are you Asian or is your ISP Asian?
Do you know what this IP is? 123.231.0.167

A trace tells me it's APNIC. [A = Asian]


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by A.F.R.A.K on Wed Feb 18, 2009 5:34 pm

pop up says that i have won 1000000 million or sumthng lol normally i use IE to watch online stream sports i dnt used t get these kind of pop ups but today each time i use that particular site am keep on getting pop ups...and my KIS 2009 showed this message twice after restarted also am getting this check dis.. and ya am asian (sri lanka)........

thank you.

A.F.R.A.K
Novice
Novice

Posts Posts : 48
Joined Joined : 2008-11-14
OS OS : Windows xp (sp2)
Points Points : 29417
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by Belahzur on Wed Feb 18, 2009 5:39 pm

Hello.
We can look around the machine soon.

I don't think the popups are popups, they are pop-under, see here:
[You must be registered and logged in to see this link.]

The website your getting them from has started using pop-under instead of normal web ads because they earn more revenue than website ads.

  • Please download DDS by sUBs to your Desktop (Important!!) from one of these locations:
    [You must be registered and logged in to see this link.]
    [You must be registered and logged in to see this link.]
    [You must be registered and logged in to see this link.]
  • Double click DDS.scr to run
  • When complete, DDS.txt will open.
  • Save the report to your Desktop.
  • Copy and paste DDS.txt back here, I don't need to see attach.txt.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by A.F.R.A.K on Wed Feb 18, 2009 5:45 pm

DDS (Ver_09-02-01.01) - NTFSx86
Run by AFRAK at 23:12:25.78 on Wed 02/18/2009
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_12
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1982.1363 [GMT 5.5:30]


============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\AFRAK\Desktop\dds.com

============== Pseudo HJT Report ===============

BHO: IDMIEHlprObj Class: {0055c089-8582-441b-a0bf-17b458c2a3a8} - c:\program files\internet download manager\IDMIECC.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky internet security 2009\ievkbd.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~3\office12\GRA8E1~1.DLL
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [IDMan] c:\program files\internet download manager\IDMan.exe /onboot
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky internet security 2009\avp.exe"
dRunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32
IE: Add to Banner Ad Blocker - c:\program files\kaspersky lab\kaspersky internet security 2009\ie_banner_deny.htm
IE: Download all links with IDM - c:\program files\internet download manager\IEGetAll.htm
IE: Download FLV video content with IDM - c:\program files\internet download manager\IEGetVL.htm
IE: Download with IDM - c:\program files\internet download manager\IEExt.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - c:\program files\kaspersky lab\kaspersky internet security 2009\SCIEPlgn.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - [You must be registered and logged in to see this link.]
DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} - [You must be registered and logged in to see this link.]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [You must be registered and logged in to see this link.]
TCP: {A0F00C29-37B3-4B6A-BA59-5D4ECAA68113} = 123.231.0.167 123.231.0.181
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~3\office12\GR99D3~1.DLL
Notify: klogon - c:\windows\system32\klogon.dll
AppInit_DLLs: c:\progra~1\kasper~2\kasper~1\mzvkbd.dll,c:\progra~1\kasper~2\kasper~1\mzvkbd3.dll,c:\progra~1\kasper~2\kasper~1\adialhk.dll,c:\progra~1\kasper~2\kasper~1\kloehk.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\progra~1\micros~3\office12\GRA8E1~1.DLL

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\afrak\applic~1\mozilla\firefox\profiles\5zfa4j6y.default\
FF - prefs.js: browser.startup.homepage - [You must be registered and logged in to see this link.]
FF - component: c:\documents and settings\afrak\application data\idm\idmmzcc2\components\idmmzcc.dll
FF - plugin: c:\documents and settings\afrak\application data\mozilla\firefox\profiles\5zfa4j6y.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll

============= SERVICES / DRIVERS ===============

R0 kl1;Kl1;c:\windows\system32\drivers\kl1.sys [2008-7-21 121872]
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-1-29 33808]
R0 xfilt;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfilt.sys [2009-2-17 11264]
R1 KLIF;Kaspersky Lab Driver;c:\windows\system32\drivers\klif.sys [2009-2-17 213520]
R2 AVP;Kaspersky Internet Security;c:\program files\kaspersky lab\kaspersky internet security 2009\avp.exe [2008-7-29 206088]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [2008-3-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2008-4-30 24592]
S2 vvdsvc;VJVodServices;c:\windows\system32\svchost.exe -k vvdsvc [2004-8-4 14336]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\g:\ntglm7x.sys --> g:\NTGLM7X.sys [?]

=============== Created Last 30 ================

2009-02-18 23:00 212 a--sh--- c:\windows\klif.spi
2009-02-18 22:46 --d----- c:\program files\Trend Micro
2009-02-18 22:10 --d----- c:\docume~1\afrak\applic~1\TeamViewer
2009-02-18 22:10 --d----- c:\program files\TeamViewer
2009-02-18 22:10 --d----- c:\documents and settings\afrak\temp
2009-02-18 05:58 --d----- c:\windows\SQL9_KB960089_ENU
2009-02-18 05:55 --d----- c:\program files\MSXML 4.0
2009-02-18 05:54 221,184 a------- c:\windows\system32\wmpns.dll
2009-02-18 05:54 --d-h--- c:\windows\$hf_mig$
2009-02-18 05:39 56,324 a---h--- c:\windows\system32\mlfcache.dat
2009-02-18 05:38 808 a------- c:\windows\system32\%LocalXml%
2009-02-18 05:30 --d----- c:\windows\system32\CatRoot_bak
2009-02-18 05:12 2,142,720 -c------ c:\windows\system32\dllcache\ntkrnlmp.exe
2009-02-18 05:12 2,185,984 -c------ c:\windows\system32\dllcache\ntoskrnl.exe
2009-02-18 05:12 2,062,976 -c------ c:\windows\system32\dllcache\ntkrnlpa.exe
2009-02-18 05:12 2,020,864 -c------ c:\windows\system32\dllcache\ntkrpamp.exe
2009-02-18 05:05 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2009-02-18 05:05 272,128 -------- c:\windows\system32\drivers\bthport.sys
2009-02-18 05:02 --d-h--- c:\windows\system32\GroupPolicy
2009-02-18 04:49 --d----- c:\docume~1\alluse~1\applic~1\TVU Networks
2009-02-18 04:49 --d----- c:\program files\TVUPlayer
2009-02-18 04:49 --d----- c:\windows\system32\Nagasoft
2009-02-18 04:45 --d----- c:\documents and settings\afrak\LocalLow
2009-02-18 04:41 --d----- c:\program files\SopCast
2009-02-18 04:38 455,936 -c------ c:\windows\system32\dllcache\mrxsmb.sys
2009-02-18 04:37 --d----- c:\program files\Nero
2009-02-18 04:35 410,984 a------- c:\windows\system32\deploytk.dll
2009-02-18 04:35 73,728 a------- c:\windows\system32\javacpl.cpl
2009-02-18 04:33 --d----- c:\program files\Sjboy Emulator
2009-02-18 04:29 2,455,488 -c------ c:\windows\system32\dllcache\ieapfltr.dat
2009-02-18 04:29 991,232 -c------ c:\windows\system32\dllcache\ieframe.dll.mui
2009-02-18 04:29 459,264 -c------ c:\windows\system32\dllcache\msfeeds.dll
2009-02-18 04:29 267,776 -c------ c:\windows\system32\dllcache\iertutil.dll
2009-02-18 04:29 52,224 -c------ c:\windows\system32\dllcache\msfeedsbs.dll
2009-02-18 04:29 380,928 -c------ c:\windows\system32\dllcache\ieapfltr.dll
2009-02-18 04:29 63,488 -c------ c:\windows\system32\dllcache\icardie.dll
2009-02-18 04:29 13,824 -c------ c:\windows\system32\dllcache\ieudinit.exe
2009-02-18 04:29 6,068,736 -c------ c:\windows\system32\dllcache\ieframe.dll
2009-02-18 04:21 --d----- c:\docume~1\afrak\applic~1\IDM
2009-02-18 04:21 --d----- c:\docume~1\afrak\applic~1\DMCache
2009-02-18 04:21 --d----- c:\program files\Internet Download Manager
2009-02-18 04:17 23,856 a------- c:\windows\system32\spupdsvc.exe
2009-02-18 04:13 --d----- c:\program files\The KMPlayer1431
2009-02-18 04:11 --d----- c:\docume~1\afrak\applic~1\FastStone
2009-02-18 04:10 --d----- c:\program files\FastStone Capture
2009-02-18 04:08 --d----- c:\windows\system32\SoftwareDistribution
2009-02-18 03:50 3,072 a------- c:\windows\system32\drivers\audstub.sys
2009-02-18 03:49 57,472 a------- c:\windows\system32\drivers\redbook.sys
2009-02-18 03:49 44,672 a------- c:\windows\system32\drivers\UAGP35.SYS
2009-02-18 03:48 27,165 a------- c:\windows\system32\drivers\fetnd5.sys
2009-02-18 03:48 74,240 a------- c:\windows\system32\usbui.dll
2009-02-18 03:46 --d----- c:\program files\common files\ODBC
2009-02-18 03:46 --d----- c:\program files\common files\SpeechEngines
2009-02-18 03:46 --d--r-- c:\documents and settings\all users\Documents
2009-02-18 03:45 --d----- c:\windows\system32\CatRoot2
2009-02-18 03:45 --d----- c:\windows\system32\CatRoot
2009-02-18 03:45 --d----- C:\Documents and Settings
2009-02-18 03:44 261 a------- c:\windows\system32\$winnt$.inf
2009-02-17 23:49 --d----- c:\program files\MSXML 6.0
2009-02-17 23:47 --d----- c:\program files\Microsoft SQL Server
2009-02-17 23:46 --d----- c:\docume~1\afrak\applic~1\Malwarebytes
2009-02-17 23:46 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-02-17 23:46 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-02-17 23:35 --d----- c:\documents and settings\afrak\Tracing
2009-02-17 23:34 --d----- c:\program files\Microsoft
2009-02-17 23:34 --d----- c:\program files\Windows Live SkyDrive
2009-02-17 23:26 --d----- c:\program files\common files\Windows Live
2009-02-17 23:26 --d----- c:\program files\CCleaner
2009-02-17 23:02 --d----- c:\program files\Unlocker
2009-02-17 23:01 --d----- c:\docume~1\afrak\applic~1\URSoft
2009-02-17 23:01 --d----- c:\program files\Your Uninstaller 2008
2009-02-17 22:55 --d----- c:\program files\Kaspersky Lab
2009-02-17 22:55 --d----- c:\docume~1\alluse~1\applic~1\Kaspersky Lab
2009-02-17 22:55 --d----- c:\program files\Kaspersky Internet Security
2009-02-17 22:54 --d----- c:\docume~1\afrak\applic~1\TuneUp Software
2009-02-17 22:54 --d----- c:\docume~1\alluse~1\applic~1\TuneUp Software
2009-02-17 22:54 --d----- c:\program files\TuneUp Utilities 2008
2009-02-17 22:53 --d----- c:\program files\common files\Wise Installation Wizard
2009-02-17 22:14 --d----- c:\program files\Realtek Sound Manager
2009-02-17 22:14 --d----- c:\program files\AvRack
2009-02-17 22:14 --d----- c:\program files\Realtek AC97
2009-02-17 22:08 --d----- c:\program files\S3
2009-02-17 22:04 --d----- c:\program files\VIA
2009-02-17 21:55 --dsh--- c:\documents and settings\all users\DRM
2009-02-17 21:55 --d-h--- c:\program files\WindowsUpdate
2009-02-17 21:54 --d----- c:\program files\common files\MSSoap
2009-02-17 21:53 --d----- c:\program files\Online Services
2009-02-17 21:53 --d----- c:\program files\Windows Media Connect 2
2009-02-17 21:52 --d----- c:\program files\Messenger
2009-02-17 21:52 --d----- c:\program files\MSN Gaming Zone
2009-02-17 21:52 --d----- c:\program files\Windows NT

==================== Find3M ====================

2009-02-18 22:32 1,935,392 a--sh--- c:\windows\system32\drivers\fidbox.dat
2009-02-18 22:32 311,328 a--sh--- c:\windows\system32\drivers\fidbox2.dat
2009-02-18 22:32 19,344 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-02-18 22:32 4,240 a--sh--- c:\windows\system32\drivers\fidbox2.idx
2009-02-17 23:47 68,456 a------- c:\windows\system32\GDIPFONTCACHEV1.DAT
2009-02-17 23:43 33,808 a------- c:\windows\system32\drivers\klbg.sys
2009-02-17 23:43 101,287 a------- c:\windows\system32\drivers\klin.dat
2009-02-17 23:43 89,601 a------- c:\windows\system32\drivers\klick.dat
2009-02-17 22:54 355,584 a------- c:\windows\system32\TuneUpDefragService.exe
2009-02-17 22:49 218,624 a------- c:\windows\system32\uxtheme.dll
2009-02-17 22:49 64,259 a------- c:\windows\BricoPackUninst.cmd
2009-02-17 22:49 6,114 a------- c:\windows\BricoPackFoldersDelete.cmd
2009-02-17 21:56 86,327 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-02-17 21:53 21,640 a------- c:\windows\system32\emptyregdb.dat
2009-02-11 10:19 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-02-11 10:19 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-02-06 18:52 49,504 a------- c:\windows\system32\sirenacm.dll
2009-01-22 20:19 206,256 a------- c:\windows\system32\idmmbc.dll
2008-12-21 05:26 827,904 a------- c:\windows\system32\wininet.dll

============= FINISH: 23:13:13.59 ===============


Thank You! Sir

A.F.R.A.K
Novice
Novice

Posts Posts : 48
Joined Joined : 2008-11-14
OS OS : Windows xp (sp2)
Points Points : 29417
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by Belahzur on Wed Feb 18, 2009 5:53 pm

No malware showing.

Please consider using an alternate browser. Mozilla's Firefox browser is fantastic; it is much more secure than Internet Explorer, immune to almost all known browser hijackers, and also has the best built-in popup blocker (as an added benefit!) that I have ever seen. If you are interested, Firefox may be downloaded from here:
[You must be registered and logged in to see this link.]
I also recommand the following add-ons for Firefox, they will help keep you safe from malicious scripts or activeX exploits.
[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]
[You must be registered and logged in to see this link.]


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by A.F.R.A.K on Wed Feb 18, 2009 6:00 pm

thank you Belahzur sir for your help...ya i use firefox,but for online streams they dnt support firefox only IE....(TVU and sopcast).

thank you and have a nice day ;)

A.F.R.A.K
Novice
Novice

Posts Posts : 48
Joined Joined : 2008-11-14
OS OS : Windows xp (sp2)
Points Points : 29417
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by Doctor Inferno on Mon Jul 06, 2009 3:36 am

Since this issue has been addressed, a "solved" tag will be added and this topic will be closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter.

Everyone else, please open a [You must be registered and logged in to see this link.] for your questions.


Please be a GeekPolice fan on [You must be registered and logged in to see this link.]



Have we helped you? [You must be registered and logged in to see this link.] | Doctor by day, ninja by night.

Doctor Inferno
Administrator
Administrator

Posts Posts : 12015
Joined Joined : 2007-12-26
Gender Gender : Male
OS OS : Windows 7 Home Premium and Ultimate X64
Protection Protection : Kaspersky PURE and Malwarebytes' Anti-Malware
Points Points : 104600
# Likes # Likes : 0

View user profile

Back to top Go down

Solved Re: Getting unwanted pop ups from internet explorer....Need Help

Post by Doctor Inferno on Mon Jul 06, 2009 3:38 am

Since this issue has been addressed, a "solved" tag will be added and this topic will be closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter.

Everyone else, please open a [You must be registered and logged in to see this link.] for your questions.


Please be a GeekPolice fan on [You must be registered and logged in to see this link.]



Have we helped you? [You must be registered and logged in to see this link.] | Doctor by day, ninja by night.

Doctor Inferno
Administrator
Administrator

Posts Posts : 12015
Joined Joined : 2007-12-26
Gender Gender : Male
OS OS : Windows 7 Home Premium and Ultimate X64
Protection Protection : Kaspersky PURE and Malwarebytes' Anti-Malware
Points Points : 104600
# Likes # Likes : 0

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum