Create Account How it Works Javascript Disabled Detected You currently have javascript disabled.

Please Help with HIJACK Log [Solved] Started by Lorelle , Sep 20 2009 03:17 PM Page 1 of 2 1 2 Next This topic is locked #1 Lorelle Posted 20 September Scanned with Malwarebytes anti-malware and superantispyware andnothing found.

C:\Documents and Settings\All Users\Application Data\MPK\CPDA (Refog.Keylogger) -> Quarantined and deleted successfully. The name sounds pretty much like a ringer, but since I have no clue I'll leave that to you, the helper, to tell me for sure.Ok, I think those are the Again, many thanks to anyone who can help me. That may cause it to stall TANSTAAFL!!I am not a Comcast employee, I am a paying customer just like you!I am an XFINITY Forum Expert and I am here to help.

scan completed successfully hidden files: 0 ************************************************************************** . --------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - - > 'winlogon.exe'(676) E:\SASWINLO.dll .

It keeps coming back, slows things down or even shuts down the Internet connection. The program should not take long to finish its jobOnce its finished it should reboot your machine, if not, do this yourself to ensure a complete cleanPlease download Malwarebytes' Anti-Malware from We'll be here if you can return. andrux Private E-2 Hello everyone, and thanks to anyone who can help me solve the problems I face with IE : -The homepage is automatically changed to "" -The computer keeps

ERUNT is easy to use and since it creates a full backup, there are no options or choices other than to select the location of the backup files. C:\WINDOWS\system32\MPK\Help\English\screenshot.htm (Refog.Keylogger) -> Quarantined and deleted successfully. When the scan completes, it will open two notepad windows. C:\WINDOWS\system32\MPK\Help\English (Refog.Keylogger) -> Quarantined and deleted successfully.

Back to top #4 Juliet Juliet Advanced Member Trusted Malware Techs 23,136 posts Gender:Female Posted 11 January 2009 - 03:01 PM Sorry to hear about all the computer problems. Problems increasing last 2 weeks, hijack log included Started by ronsfastl , Jan 10 2009 05:50 PM This topic is locked 5 replies to this topic #1 ronsfastl ronsfastl Member Members C:\WINDOWS\system32\MPK\icon_1.ico (Refog.Keylogger) -> Quarantined and deleted successfully. Should you need assistance in installing the Recovery Console, please do not hesitate to ask.

Download OTC to your desktop and run itClick Yes to beginning the Cleanup process and remove these components, including this application.You will be asked to reboot the machine to finish the All three log files are attached: Attached Files mbam_log_2009_11_06__15_18_14_.txt 947bytes 109 downloads hijackthis.txt 15.37KB 117 downloads otmlog.txt 3.57KB 65 downloads 0 #8 Rorschach112 Posted 06 November 2009 - 02:30 PM Rorschach112 Make Internet Explorer more secure Click Start > RunType Inetcpl.cpl & click OKClick on the Security tabClick Reset all zones to default levelMake sure the Internet Zone is selected & Click Current Boot Mode: NormalScan Mode: Current userCompany Name Whitelist: OffSkip Microsoft Files: OffFile Age = 30 DaysOutput = Minimal ========== Processes (SafeList) ========== PRC - C:\WINDOWS\System32\bcmwltry.exe (Dell Inc.)PRC - c:\program files\idt\dellxpm09b_6124v037\wdm\stacsv.exe

scanning hidden files ... C:\WINDOWS\system32\MPK\Help\Spanish\filters.htm (Refog.Keylogger) -> Quarantined and deleted successfully. Last edited by a moderator: Sep 3, 2004 andrux, Sep 3, 2004 #2 chaslang MajorGeeks Admin - Master Malware Expert Staff Member Re: oops.. check over here Make sure all other windows are closed and to let it run uninterrupted.When the window appears, underneath Output at the top change it to Minimal Output.Click the Run Scan button.

If the report is very long, it will not be complete if you post it, so please attach it to your reply instead.To attach a file, do the following:Click Add ReplyUnder C:\WINDOWS\system32\MPK\Help\English\invisible.htm (Refog.Keylogger) -> Quarantined and deleted successfully. Basically, this prevents your computer from connecting to those sites by redirecting them to which is your local computer, meaning it will be difficult to infect yourself in the future.

C:\WINDOWS\system32\MPK\Images\russian.gif (Refog.Keylogger) -> Quarantined and deleted successfully.

Its important to keep programs up to date so that malware doesn't exploit any old security flaws. HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a1789eb6-b263-4bd6-8830-d3daaf78949a} (Trojan.BHO) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\MPK\3 (Refog.Keylogger) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\MPK\Images\german.gif (Refog.Keylogger) -> Quarantined and deleted successfully. C:\WINDOWS\system32\MPK\Help\Spanish\alarms.htm (Refog.Keylogger) -> Quarantined and deleted successfully. C:\WINDOWS\system32\MPK\Images\xp_hide.bmp (Refog.Keylogger) -> Quarantined and deleted successfully. Please help-hijackthis log included Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by andrux, Sep 3, 2004.

Mark it as an accepted solution!I am not a Comcast employee. LOG DELETED. here is the hijackthis log Here is the hijackthis log for the problem in this thread. Please note that these fixes are not instantaneous.

C:\WINDOWS\system32\MPK\Help\Spanish (Refog.Keylogger) -> Quarantined and deleted successfully. ERUNT however creates a complete backup set, including the Security hive and user related sections.

