Anyway, I tried numerous times to run "TrendMicro House Call" but every time I tried to download the required ActiveX program it caused my browser (MS Explorer) to have to close Then click Finish. Under the Hidden files and folders heading select "Show hidden files and folders". Follow the instructions on the screen.
Back to top #3 pandh pandh Member Full Member 10 posts Posted 20 December 2004 - 10:24 PM OK, I downloaded and ran Ad-Aware SE Personal 1.05. This utility will find legitimate files in addition to malware. now you're gone again and no logs still . 0 Trogan London, UK Dec 2004 edited Dec 2004 lol...I saw them come online and I was wondering what was going to Please copy it and paste it back in this thread. 0 Crunchie Mandurah. http://www.techsupportforum.com/forums/f100/cant-get-rid-of-calsp-dll-winlspak-dll-25140.html
Username or email: I've forgotten my password Forum Password Remember me This is not recommended for shared computers Sign in anonymously Don't add me to the active users list Community Forum Another victim of Spotresult.com and other nonsense! Powered by Volunteers. Go to c:\windows\system32 and delete that file manually. 0 OptionsEdit GreatWideLeong Dec 2004 edited Dec 2004 As requested by JUSTLOOKING, below are the logs for VX2 and DLLCOmapre respectively... ... 0
Logfile of HijackThis v1.99.0Scan saved at 5:35:53 PM, on 12/22/2004Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINNT\System32\smss.exeC:\WINNT\system32\winlogon.exeC:\WINNT\system32\services.exeC:\WINNT\system32\lsass.exeC:\WINNT\system32\svchost.exeC:\WINNT\System32\svchost.exeC:\WINNT\system32\rundll32.exeC:\WINNT\system32\spoolsv.exeC:\WINNT\Explorer.EXEC:\WINNT\System32\hkcmd.exeC:\WINNT\system32\SK9910DM.EXEC:\WINNT\GWMDMMSG.exeC:\WINNT\system32\PROMon.exeC:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exeC:\WINNT\System32\spool\drivers\w32x86\3\hpztsb04.exeC:\Program Files\QuickTime\qttask.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\Common Files\Symantec Shared\ccApp.exeC:\WINNT\system32\ctfmon.exeC:\WINNT\DvzCommon\DvzMsgr.exeC:\Program Member Dec 2004 edited Dec 2004 Go here and download FindIt.zip to your Desktop, unzip it and open the FindIt folder and doubleclick on find.bat. Back to top #7 pandh pandh Member Full Member 10 posts Posted 24 December 2004 - 01:37 PM OK, I did everything you recommended. There are so many files to delete that it doesn't matter if you reboot before this first sweep ...
Do not remove anything unless you are sure you know what you're doing. Select the Safe Mode option and press Enter.To return to normal mode just restart your computer as you normally would.Please remove these entries from Add/Remove Programs in the Control Panel(if present):WinToolsPlease If you disabled System Restore, make sure to enable it now. http://www.mytechsupport.ca/forums/index.php?topic=8952.0;wap2 copy and paste each of the following lines into the "Full Path of File to Delete" box in Killbox, and click the red button with the white X on it after
Western Australia. Posts 14,022 Points 2335 Hi Sorry, it's the FindIt9xME.bat file you need to click... (find.bat is for the XP version) After clicking it, let it run, it may take a few Windows server 2012 R2 steps to... Remove anything it finds.Once you have completed the instructions restart and post a new HijackThis log.
Everyday is virus day. http://icrontic.com/discussion/25808/need-help-with-persistent-annoying-pop-ups BTW, During Spybot's removal of, well, spybots...I came across these: CoolWWWSearch.Bootconf CoolWWWSearch.Loadbat CoolWWWSearch.Msconfd CoolWWWSearch.Oslogo CoolWWWSearch.Tapicfg CoolWWWSearch.Xmlmimefilter I could only get rid of them one at a time but they always showed None of the malicious folders or files were present.2. A donation is forthcoming.
My recycle bin always shows files in it. Done!-- Scan 2 ---------------------------About:Buster Version 4.0Reference List : 21Removed Data Streams:C:\WINNT\AolCInUn.exe:irmqqC:\WINNT\ntdtcsetup.log:gcnmwC:\WINNT\ODBC.INI:ydgryC:\WINNT\OEWABLog.txt:reyftC:\WINNT\QDQICK.ini:twfdzC:\WINNT\reg.prm:pqbbyC:\WINNT\SchedLgU.Txt:aseuuC:\WINNT\SYMEVENT.LOG:qkfpnC:\WINNT\Tcd_64271ca8.ini:ikyvpC:\WINNT\tmupdate.ini:blqajC:\WINNT\twain_32.dll:tmbfmC:\WINNT\woinstall.exe:xqixbC:\WINNT\xpsp1hfm.log:qqbcvAttempted Clean Of Temp folder.Pages Reset... If you need this topic reopened, please contact a staff member. Run it only if the next step causes any lost internet connection.
If they do not, click once on the circle next to them to put a green checkmark in it.:"Scan within archives""Select drives & folders to scan" - select your hard drive(s)."Scan Subsequent Explorer starts, however, have reverted back to "about:blank".5. Help!!!!!! Yes, my password is: Forgot your password?
Western Australia. Download > FindIt9xME.zip > http://castlecops.com/zx/Zupe/FindIt9xME.zip (download it to your desktop) unzip the contents to a folder. If you are running Windows XP copy it to C:\WINDOWS\system32.HOSTS - Download the Hoster.Unzip Hoster to a convenient folder such as C:\Hoster.Run Hoster.exe, click Restore Original Hosts and then click OK.Click
with "Locate" a log appears, but I couldn't copy it. Click here to get the latest version of HijackThis. Logfile of HijackThis v1.98.2Scan saved at 3:09:24 PM, on 11/20/2004Platform: Windows ME (Win9x 4.90.3000)MSIE: Internet Explorer v5.50 (5.50.4134.0100)Running processes:C:\WINDOWS\SYSTEM\KERNEL32.DLLC:\WINDOWS\SYSTEM\MSGSRV32.EXEC:\WINDOWS\SYSTEM\mmtask.tskC:\WINDOWS\SYSTEM\MPREXE.EXEC:\PROGRAM FILES\STOPZILLA!\SZNTSVC.EXEC:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCEVTMGR.EXEC:\WINDOWS\SYSTEM\MSTASK.EXEC:\PROGRAM FILES\NORTON ANTIVIRUS\ADVTOOLS\NPROTECT.EXEC:\WINDOWS\SYSTEM\DEVLDR16.EXEC:\WINDOWS\EXPLORER.EXEC:\WINDOWS\RUNDLL32.EXEC:\PROGRAM FILES\STOPZILLA!\STOPZILLA.EXEC:\WINDOWS\SYSTEM\SYSTRAY.EXEC:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCAPP.EXEC:\WINDOWS\SYSTEM\WMIEXE.EXEC:\WINDOWS\TASKMON.EXEC:\PROGRAM FILES\SPYWAREGUARD\SPYWAREGUARDCP.EXEC:\WINDOWS\SYSTEM\RNAAPP.EXEC:\WINDOWS\SYSTEM\TAPISRV.EXEC:\WINDOWS\SYSTEM\STIMON.EXEC:\HJT\HIJACKTHIS.EXER0 - Flrman1, Nov 20, 2004 #2 rubaid Thread Starter Joined: Nov 20, 2004 Messages: 2 Hello!
Check all instances of winlspak.dll (and nothing else) , and move them to the "Remove" pane. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files View New Content SWI Forums Members Forums ListLogs More SpywareInfo Forum → Can't get rid of calsp.dll, winlspak.dll This is a discussion on Can't get rid of calsp.dll, winlspak.dll within the Resolved HJT Threads forums, part of the Tech Support Forum category. Posts 14,022 Points 2335 Hi Same proceedure as before with Killbox...
Western Australia. Killbox will be used later. 0 Crunchie Mandurah. Categories 45951 All Categories6598 Gaming 16745 Hardware 19273 Science & Tech 1855 Internet & Media 849 Lifestyle 28053 Community Edit Need help with persistent, annoying POP-UPs! Please run HijackThis again and post a fresh log, just so I can make sure that all the malware was deleted according to plan.
Back to top #9 pandh pandh Member Full Member 10 posts Posted 25 December 2004 - 10:41 PM By the way, one other unusual thing that I noticed the other day. Powered with <3 from Vanilla & WordPress. when I double clicked on "Findlt9ME" , "Hijackthis", or "My Computer"...nothing happened. This utility will find legitimate files in addition to malware.
Click here to Register a free account now! Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only things checked.Press OK to remove them.Restart your computer normally to return to normal mode.Restore (possibly) deleted files:control.exe - Anyway, here's the contents of the output.txt file: Warning! We need to get rid of it.Please download LSPFix from here.Run the LSPFix.exe that you have just finished downloading.Check the I know what I'm doing box.In the Keep box you should
Uncheck the "Hide file extensions for known file types" option.Click Yes to confirm. Check out the forums and get free advice from the experts. Blogs Advanced Search Forums Spyware Help Can't Get Rid of Spyware & Adware Page 1 of 3 123 Last Jump to page: Results 1 to 10 of 22 Thread: Can't Get Are you looking for the solution to your computer problem?
I have the following items running on my system: Windows 98 SE IE 6.0 ZoneAlarm free firewall NortonSystem Works 2004 Also, after some research, I have installed and run: Ad-Aware Spybot If they do not, click once on the circle next to them to put a green checkmark in it.:"Automatically save logfile""Automatically quarantine objects prior to removal""Safe Mode (always request confirmation)""Prompt to If they do not, click once on the circle next to them to put a green checkmark in it.:"Move deleted files to Recycle Bin""Include additional object information""Include negligible objects information""Include environment I click yes and it indicates that they were deleted, but I can go right back in and repeat the whole procedure again.
Join over 733,556 other people just like you! This will expand the section.Make sure these items have a green check next to them. Grrrr.....