Edited by nakedsanta, 05 March 2007 - 10:31 AM.
generic host win32 pop up
#1
Posted 05 March 2007 - 10:29 AM
Register to Remove
#2
Posted 06 March 2007 - 09:12 PM
Welcome to Tom Coyote .
Open HijackThis > Do a System Scan Only, close your browser and all open windows, the only program or window you should have open is HijackThis, check the following entries and click on Fix Checked.
O1 - Hosts: 66.98.148.65 auto.search.msn.com
O1 - Hosts: 66.98.148.65 auto.search.msn.es
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
generic host win32 svchost.exe <-- This may be related to a bad windows update, read about it here. Read post #4
http://forums.speedg...ad.php?t=180853
Open IE and go to Tools> Windows Updates and download any critical updates and see if that fixes it.
msblast.exe I am not following you on this, I don't see it in your log, but it is related to the Blaster Worm and Symantec has removal tool.
http://www.symantec....-081119-5051-99
Then run Housecall.
Please run Trend Micro House Call
- Click Scan now. It's free!
- Read and put a Check next to Yes I accept the terms of use.
- Click the Launching HouseCall>> button.
- Under "Browser plug-in" Installing and using Housecall kernel, click the Starting HouseCall>> button.
- You may receive a prompt to install the ActiveX, click install.
- If you are taken back to the main page, click Launching HouseCall>> button again.
- Under Scan complete computer for malware, grayware, and vulnerabilities click the Next>> button.
- Please be patient while it installs, updates, and scans your system.
- Once the scan is complete, it will take you to the summary page.
- Under Cleanup options, choose clean all detected infections automatically.
- Click the Clean now>> button.
- If anything was found you may be prompted to run the scan again, you can just close the browser window.
- When the scan is finished, please restart your computer.
Run this system cleaner.
Download and Install CCleaner
If you don't want the Yahoo Toolbar, be sure to uncheck it during installation
* Click on Run Cleaner
Tutorial for CCleaner
Post a new HJT log and lthe log from Housecall and let me know if any of this helped.
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
Find us on Facebook
Please LIKE and SHARE
Just a reminder that threads will be closed if no reply in 3 days.
#3
Posted 07 March 2007 - 05:44 PM
#4
Posted 07 March 2007 - 06:35 PM
I really don't know, sometimes software and hardware conflict, maybe a bad install, the programs getting corrupted, hard to tell.ps : is there any way that my scanner or automatic synchronization was responsible for all that mess?
How did I get infected in the first place ? Read these links and find out how to prevent getting infected again.
- Tutorial for System Restore <-- Do this first to prevent yourself from being reinfected.
- Tom Coyote
- TonyKlein CastleCops
- Grinler BleepingComputer
- Geeks To Go
- Dslreports
Here are some free programs to install, don't leave home without them
- Spybot Search and Destroy 1.4
Check for Updates/ Immunize and run a Full System Scan on a regular basis.
- Ad-Aware SE Personal 1.06
Check for Updates and run a Full System Scan on a regular basis.
- Spyware Blaster It will prevent most spyware from ever being installed.
- Spyware Guard It offers realtime protection from spyware installation attempts.
- Win Patrol This program will warn you when any changes are being made to your system and give you the option to deny the change.
- IE-Spyad
IE-Spyad places over 4000 web sites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (cookies etc) from the sites listed, although you will still be able to connect to the sites.
- Firefox 2.0 It has more features and is a lot more secure than IE. It is a very easy and painless download and install, it will no way interfere with IE, you can use them both.
- Zone Alarm Here is a free Firewall from Zone Labs, I wouldn't access the internet without it.
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
Find us on Facebook
Please LIKE and SHARE
Just a reminder that threads will be closed if no reply in 3 days.
#5
Posted 08 March 2007 - 05:46 AM
Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
Make sure you use proper prevention to keep from having problems occur to your computer in the future.
Coyote's Installed programs for prevention:
http://forums.tomcoy...showtopic=31418
The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online.
Visit the CoyoteStore http://TomCoyote.org/coyotestore.php
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
Find us on Facebook
Please LIKE and SHARE
Just a reminder that threads will be closed if no reply in 3 days.
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users