What Is "mousehs" Doing To My Computer?

On the Scanner page click on My Computer and then click the Start button to begin the scan. In some systems, this may be the F5 key, so try that if F8 doesn't work. Click "Yes" at the Delete on Reboot prompt. I hope so. Check This Out

Logfile of HijackThis v1.99.1 Scan saved at 11:17:29 AM, on 6/24/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe Open the extracted SDFix folder and double click RunThis.bat to start the script. Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! When you are doing this, make sure you have No IE windows, nor any other browsers open, including this one.

Best thing to do would disconnect your network cable (to other PCs and the Internet), format the PC (careful of backups), install a firewall, and AV scanner then connect the Internet

Any help or input would be appreciated. When completed, it will prompt that it will shutdown your computer, click OK. Stopping or disabling this service will result in system instability.

This would be the best way to get rid of all these problems. Before you do anything else, please create a folder for HijackThis and put it in a permanent folder (like C:\HJT) instead of the Temp folder. Also post the total results: =>Total Number of Files Scanned: =>Total Number of Virus(es) Found: =>Total Number of Disinfected Files: =>Total Number of Files Renamed: =>Total Number of Deleted Files: =>Total I will find that file and get things going.

Hello Nissmo I will do my best to help you. To use the System Configuration Utility to start Windows XP in normal mode 1. Also, enable the 'Show Hidden Folders' option, like this: Click Start.

Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only things checked. http://internetpasswordpro.com/what-is/what-is-a-folder-in-computer.html Copy and paste that information in your next post for me to review. Microsoft ftp.exe = 4B155B6C 44C4CD59 E5380E9A DE36A8A2 1B39381D Microsoft tftp.exe = C075CD1B E3E03A87 8EF96B81 30898424 10B3B181 Checking System32\Microsoft\backup.ftp: FA4C78C2 1DE7FB4E 32215D43 86B61CE5 54F84DA5 Unknown ftp.exe File! Please advise what els can be done to remove this thing.

Checking System32\tftp.exe: 27A4C40B F8C284B6 D2F86990 F3832B20 3308741E Unknown tftp.exe File!

I followed your instructions and ran the new When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.

I still do not have any control over my display.ThanksLogfile of HijackThis v1.99.1Scan saved at 10:47:03 PM, on 5/20/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\LEXBCES.EXEC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\system32\LEXPPS.EXEC:\WINDOWS\Explorer.EXEC:\windows\system\hpsysdrv.exeC:\WINDOWS\System32\hphmon05.exeC:\HP\KBD\KBD.EXEC:\Program Files\Common

You have not only clicksearchclick but also a Backdoor Trojan at your system: Troj/Bdoor-HU, which allows others to access your system. No, create an account now. I wanted to get the download to clear out the spyware but I cannot download files via my internet explorer - something in my system will not let me. Some computers have a progress bar that refers to the word BIOS.

Join over 733,556 other people just like you! I wanted to get the download to clear out the spyware but I cannot download files via my internet explorer - something in my system will not let me. In the System Configuration Utility, on the BOOT.INI tab, check /SAFEBOOT. 5.