First thing: could you find the following file and submit it to [email protected] wiyh a link back to this thread: C:\WINDOWS\sb.dll Then with only HJT running, have it fix: R1 -

ocraware.exe is part of optical character

To get around the error you must install the VBRun60sp5.exe from here: http://support.microsoft.com/default.aspx?kbid=290887

Then rescan with HJT and post a final log to check I didn't miss anything. As for Win.ini, every since I deleted the earlier version, I haven't got any error messages at all on startup. O2 - BHO: (no name) - {EE392A64-F30B-47C8-A363-CDA1CEC7DC1B} - C:\PROGRA~1\ADVANC~1\bar.dll See: http://www.doxdesk.com/parasite/NewtonKnows.html Please run a new HJT!

Gin - http://download.game...nts/y/nt1_x.cab O16 - DPF: {26E8361F-BCE7-4F75-A347-98C88B418322} - http://dst.trafficsy..._50037/QDow.cab O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! http://www.sophos.co.nz/virusinfo/analyses/trojbdsinitc.html I have looked everywhere and cannot find it, sorry.

Upon startup I receive the following messages at the desktop stage: cannot find C: windows\system\esbfwa.exe cannot find svcpack.exe cannot find ocraware.exe I do not have the Win98 cd that was installed

Next, close all browser windows and click the Fix checked button... http://win98banter.com/archive/index.php/index.php?t-399.html Tech Support: Hard Disk Failure How to Fix Problem - Hybrid Sleep? Rollin' Rog, Jan 13, 2004 #13 zorak Thread Starter Joined: Nov 12, 2003 Messages: 33 Thanks for all the work. Sometimes I also got blue screen error 0x0000009C MACHINE_CHECK_EXCEPTION.

SVCPACK.EXE is part of backdoor trojan, BKDR_ITERATOR.A:=20 http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=3DBKDR_IT= ERATOR.A&VSect=3DT Removal details here: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=3DBKDR_IT= ERATOR.A Once it is removed, update your anti-virus app and then run a = full-system virus scan. http://internetpasswordpro.com/windows-98/windows-98-client-using-windows-server-2000.html No, create an account now. Join 91179 other members! Leave a Reply Your email address will not be published.

  Locate the HKEY_LOCAL_MACHINE entry: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\ SVC Service= C:\windows\system32\svcpack.exe and delete it if it exists.
Here is the last log. When the scan is finished, the "Scan" button will change into a "Save Log" button.

This was just annoying, but last week after I deleted svcpack.exe for the umpteenth time, I found that every time I tried to get onto the Internet, I got a message Have you tried different numbers?

The registry editor opens.

Instructions are provided in this forum. Step 1 is to download, update, and run the CoolWebShredder (have it "fix" problems): http://www.spywareinfo.com/~merijn/cwschronicles.html#cwshredder Because you have dereplace.dll in this log, and it can be problematic to remove especially in

In the meantime, download Spybot Search & Destroy - install, update, scan and fix all RED items it finds. I saved the results of the HiJackThis scan but how do I print it out?

Ad-Aware: http://www.lavasoftusa.com/support/download/ Install, update and run SpyBot Search & Destroy, scan your system, and = then remove the items in RED only. My Celeron 300 Win98, Office 2000 machine is sick. Tech Support Guy is completely free -- paid for by advertisers and donations. [email protected] 4)@ <)@ t(@ ?(@ (@ O1 - Hosts: www.qwe.ru #[email protected] [email protected] .

Type 'Regedit' and press Return. Messenger (HKLM) O15 - Trusted Zone: *.greatplugin.com O16 - DPF: {29B2C103-AB53-4971-B765-FC1CE5D8B2D1} - http://www.silvercrk...rs/hweuchre.cab O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://lw11fd.law11....ex/HMAtchmt.ocx O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macr...ash/swflash.cab

I've talked to my ISP, Earthlink, about this and they're sending me a new copy of their software.