Home > General > Gomyhit?


Display Name I have read and agree to the Symantec Terms of Service and Privacy Policy. Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged C:\WINDOWS\system32\pggwnr.dll (Trojan.Vundo) -> No action taken.

The connection is automatically restored before CF completes its run. Please try again. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{fae5458c-9fb0-45c7-a9aa-ae2721ba4c2f} (Trojan.Vundo.H) -> Quarantined and deleted successfully. http://www.bing.com/search?q=ip%3A103.224.182.210 Every domain that is featured on the IP Find a record of every other site with the exact IP gomyhit.com has, from Bing Alexa Traffic Pageviews Bounce % Search https://www.bleepingcomputer.com/forums/t/140051/gomyhit-and-other-nasties/

C:\WINDOWS\SYSTEM32\eudooma.dll (Trojan.Vundo.H) -> Delete on reboot. The best way to find out is with the "site:" query. Doing so could make your pc inoperatible and could require a full reinstall of your OS, losing all your programs and data. Thread Status: Not open for further replies.

By continuing to browse our site you agree to our use of data and cookies.Tell me more | Cookie Preferences Partially Powered By Products Found At Lampwrights.com Log in julieu89, Oct 4, 2008 #1 cybertech Moderator Joined: Apr 16, 2002 Messages: 71,995 Hi Welcome to TSG!! C:\WINDOWS\system32\qkfdhuul.dll (Trojan.Agent) -> No action taken. Attempting to run things like DSS and Spybot do not even start unless you change the name of the executable (i.e.

this has kept my system clean for years. Learn more. Style Default Style Contact Us Help Home Top RSS Terms and Rules Copyright © TechGuy, Inc. If you're not already familiar with forums, watch our Welcome Guide to get started.

Stay with this topic until I give you the all clean post. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 7:58:35 PM, on 10/25/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe We think our information is right, but if you think otherwise then send us a message about it. IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO:

Download ComboFix from one of these locations: Link 1 Link 2 Link 3 * IMPORTANT !!! visit HKEY_CLASSES_ROOT\minibugtransporter.minibugtransporterx.1 (Adware.Minibug) -> Quarantined and deleted successfully. Try What the Tech -- It's free! Since this is your first time signing in, please provide a display name for yourself.

Thread Status: Not open for further replies. Files Infected: c:\WINDOWS\SYSTEM32\witrwzw.dll (Trojan.Vundo.H) -> Delete on reboot. Close Norton Apps Norton Account Norton ConnectSafe Norton Family Norton Online Backup Norton Identity Safe Norton Management Norton Mobile Security Support Site Owner Norton Update Center Corporate Norton.com Symantec.com © 1995-2017 Control Panel and Task manager are disabled except in Safe Mode.

That may cause it to stall. 2. HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\dwrpsdxa (Trojan.Vundo.H) -> Quarantined and deleted successfully. thank you.Yes it does. Also please describe how your computer behaves at the moment.

Logs will be closed if you haven't replied within 3 days If you would like to for the help you received. If so, please do not wait to get in touch. Change the directory to your desktop; 3.Change the Save as type to "All Files"; 4.Type in the file name: CFScript 5.Click Save ...

scanning hidden autostart entries ...

Please do not delete anything unless instructed to. Useful links Privacy About Contact Us Please click here if you are not redirected within a few seconds. Join our site today to ask your question. Since I've been infected, IE is very slow to load.

Click the Tools menu, and then click Folder Options. Please download ATF Cleaner by Atribune. Did we mention that it's free. scanning hidden files ...

Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Yahoo! All rights reserved. Click here to view the most popular tags for all sites. Computer Threats: 0 Identity Threats: 0 Annoyance factors: 0 Total threats on this site: 0 The Norton rating is a result of Symantec's automated analysis system.

HKEY_CLASSES_ROOT\Typelib\{3c2d2a1e-031f-4397-9614-87c932a848e0} (Adware.Minibug) -> Quarantined and deleted successfully. Close × NortonTM Safe Web Thanks for joining the Norton Safe Web community. Logs will be closed if you haven't replied within 3 days If you would like to for the help you received. We invite you to ask questions, share experiences, and learn.