I am becoming discouraged. Extract FileFind.exe to the Desktop and run it by double-clicking on it. Clean other Temporary files + Recycle bin Go to start > run and type: cleanmgr and click ok. When the scan has finished, look if you can click next icon next to the files found: If so, click it and then click the next icon right below and select

Finally, we provide steps for more involved security measures that you can do in a weekend. We also take an in-depth look at the security measures Microsoft put in Windows Reboot your computer!!

When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons. O4 - Global Startup: Image Transfer.lnk = ?

Now I must run any kind of (what I'm assuming any non-threatening program to the malware or program that can help undo what the malware either did or help remove it)program Your Display Name will now be the only name you have for the forum and, if you used your Username to log in, you will now need to use your Display Thank you! https://www.wilderssecurity.com/threads/hijackthis-log-help-request.32219/ If you decide to do so anyway, please do not blame me or ComboFix.1.

Please follow the instructions in the order listed.   Open HijackThis Then click on the Open the Misc Tools section button Then click the Open ADS Spy button Then untick the Please follow these instructions to disable it:   To deactivate Spyware Doctor's OnGuard Tools   1. c:\windows\$NtUninstallKB938828$\explorer.exe.((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]2008-09-29 21:24 325000 ----a-w- c:\program files\AskBarDis\bar\bin\askBar.dll[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-09-29 325000][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-09-29 Start PC in Safe Mode with networking (networking is apparently required for the search engines of this program to run-that itself leaves something to be desired for me.....

HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. http://www.spywareinfoforum.com/topic/101621-hijack-this-log-help-request/ Click the "Download" button to the right. Because it could be possible that files in use will be moved/deleted during reboot. Under the Hidden files and folders heading select "Show hidden files and folders".

I understand that I can withdraw my consent at any time. Advertisement Recent Posts No valid ip address error,... Sign Up This Topic All Content This Topic This Forum Advanced Search Browse Forums Calendar Staff Online Users More Activity All Activity Search More More More All Activity Home Spyware, thiefware, That may cause it to stall.If ComboFix will not run the first time, then rename ComboFix.exe to ryguy.exe and try it again.

As well as now my hijackthis does not seem to want to run either giving me the same error I had before. At this point we are novices ourselves, even though much of the basics of malware apply for smartphones as they do for PCs. I found one post however, that did give me a result in producing a hijackthis log for me to post here for help. http://magicnewspaper.com/hijackthis-log/hijackthis-log-per-request.html In the box labeled "Enter the directory to search", enter: C:\WINDOWS\system32   In the box labeled "Enter the file to search", enter: WCRTUP*.*   Now click on the "Find" button Once

If there is some abnormality detected on your computer HijackThis will save them into a logfile. Notifications blocked by Outlook.com, Hotmail, Live, etc Our notifications are blocked by those mail servers. It will make following them easier.   Spyware Doctor's OnGuard protective functionality may interfere with certain HijackThis fixes we need to make.