Home > Hijackthis Log > HiJackThis Log - Unknowfile In Winsock LSP

HiJackThis Log - Unknowfile In Winsock LSP

C:\Program Files\Internet Explorer\iexplore.exe Safe This entry was classified from our visitors as good. C:\Program Files\Mozilla Firefox\plugin-container.exe Very safe This is a unknown process. Use LSPFix to modify the Winsock stack.)". Save the file as gmer.log.Click the Copy button and paste the results into your next reply.Exit GMER and re-enable your security programs when done. check over here

Unknown file in Winsock LSP Started by nam_id , Nov 08 2010 08:50 AM Page 1 of 2 1 2 Next This topic is locked #1 nam_id Posted 08 November 2010 I mean, I'm embarrassed to say...but I'm literally running off of a 3.4 gig hard drive...but I mean, I can get on the net...run Flash and Jasc Paint Shop Pro, Windows That should fix that problem. O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe Safe Intel Common User Interface Module O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe Safe O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe Very safe IAA Event Monitor

BleepingComputer.com can not be held responsible for problems that may occur by using this information. Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38306.8169328704 O16 - DPF: O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe Neutral This service (mDNSResponder.exe) was identified as a good one.

Let it run uninterrupted to completion.Once it's finished it should reboot your machine. judt wondering if any of you can tell me what needs deleting and fixing. Error code: 2S136/C Contact Us Existing user? Yes, my password is: Forgot your password?

Macboatmaster replied Jan 24, 2017 at 5:09 PM Loading... My System Specs Computer type PC/Desktop System Manufacturer/Model Number Bruce ... James My System Specs OS Win7U 64 RTM CPU Q9550 Motherboard GA-EP45-UD3R Memory 8GB Gskill Graphics Card ASUS|EAH4850/HTDI/1GD3/A Sound Card xfi Plat Monitor(s) Displays Dell 2405fpw Screen Resolution 1920x1200 Keyboard MS C:\Windows\Explorer.EXE Very safe This entry was classified from our visitors as good.

All Rights ReservedAd Choices The information on Computing.Net is the opinions of its users. You better plan on getting the SP's unless there was some problem which we just fixed getting Windows Updates... To ensure that I get all the information this log will need to be attached. Prefix: http:// Recommendation: You need not be selective here.

Generated 08/17/2010 at 02:29 PM Application Version : 4.41.1000 Core Rules Database Version : 5368 Trace Rules Database Version: 3180 Scan type : Complete Scan Total Scan Time : 00:36:17 Memory Specs: win7 64-bit, comodo firewall scans: i scanned with hijackthis, here's the log Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 9:13:10 PM, on 6/3/2013 Platform: Windows 7 SP1 (WinNT There has been no discussion of Winsock LSP with the Windows Live Team. (As they haven't asked about it, and I didn't know it was relevant). It's your computer, you decide but I would be getting them, even if it meant uninstalling some old programs that were not used anymore, some games no longer played...if you have

and will save disk space by starting out at Service Pack 3: then get 4. check my blog ST3500630AS ATA Device. ST3500630AS ATA Device. O4 - HKCU\..\Run: [{C9ABE953-83B1-4EBD-8EF9-C48F9B13B501}] rundll32 "C:\Users\Sam\AppData\Local\Temp\{C9ABE953-83B1-4EBD-8EF9-C48F9B13B501}\1f88.dll ",DllGetClassObject secret 18530 Neutral (3.1 / 5.00) O4 - HKCU\..\Run: [{BB89FCA9-375A-4BA5-A6AA-01A88E10EED6}] rundll32 "C:\Users\Sam\AppData\Local\Temp\{BB89FCA9-375A-4BA5-A6AA-01A88E10EED6}\266d.dll ",DllGetClassObject secret 40941 Neutral (3.1 / 5.00) O4 - Startup: BBC iPlayer

O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe Safe Safe (4.18 / 5.00) O23 - Service: CrossLoop Service (CrossLoopService) - Unknown owner - C:\Users\Sam\AppData\Local\CrossLoop\CrossLoopService.exe" Been chasing this thing around for a couple of days and it is driving me nuts! 0 #4 Essexboy Posted 08 November 2010 - 09:58 AM Essexboy GeekU Moderator Retired Staff Wooooooooooohooooooooooooo!!!!! this content If you didn't add the listed domain to the Trusted Zone yourself, have HijackThis fix it.

O16 - ActiveX Objects (aka Downloaded Program Files) In this section HijackThis tags the items

Free Computer Help. Now, I am even getting the occasional blue screen of death when I try and run Gmer. Powered by Volunteers.

You will get a dialog where you can "Browse..." for the file.

has been identified as safe. Sign In Sign Up Browse Back Browse Forums Guidelines Staff Online Users Members Activity Back Activity All Activity My Activity Streams Unread Content Content I Started Search Malwarebytes.com Back Malwarebytes.com Malwarebytes This folder holds various types of files downloaded from the internet including ActiveX and Java objects. Let's see if it quarantines this file: C:\Users\Sam\AppData\Local\Temp\{DB4AB874-A2EB-44F7-B7FD-A1BE0CE92997}\1732.dll (Trojan.ObjectSec) My System Specs Computer type PC/Desktop System Manufacturer/Model Number Bruce ...

According to our database this process runs normally in c:\programme\java\.*\bin\! MBAM can be uninstalled via control panel add/remove along with ERUNT. C:\Windows\system32\rundll32.exe Neutral RUNDLL32 is the Microsoft Windows program that loads DLLs into memory so that they can be used by specific programs or by Windows. have a peek at these guys Installing every Word component takes about 100 MB of disk space, and disk space is now very affordable.

The entry is unnecessary and can be fixed. We will provide all the tools necessary, though, so that you can determine this. http://www.hijackthis.de/en Good luck. C:\Program Files\Internet Explorer\iexplore.exe Safe This entry was classified from our visitors as good.

According to our database this process runs normally in c:\programme\gemeinsame dateien\real\update_ob\! As you state, just before "Step 1"; that you believe system already clean. So> it can be uninstalled and then reinstalled, during which you should be offered a choice of what goes in... Blogs Advanced Search Forums Spyware Help Unknown file in Winsock LSP (Hijackthis log) Results 1 to 10 of 10 Thread: Unknown file in Winsock LSP (Hijackthis log) LinkBack LinkBack URL About

I think 2k is more secure anyway! Unless you can spot a spyware program by the names of its Registry keys and DLL files it is best left to those specifically trained in interpreting the HijackThis logs. One is not connected Internet Speed DSL Antivirus Avira Internet Security Browser IE 11 Other Info ATI HDMI Audio . Click on Reboot Now.

Then Reboot. Having two anti-virus programs running at the same time can cause your computer to run very slow, become unstable and even, in rare cases, crash.If you choose to install more than Don't fix anything otherthan onflow.

O13 - IE DefaultPrefix hijack When a website URL like www.microsoft.com is typed into IE's address bar without the prefix, http:// in this case, it is Please include the C:\ComboFix.txt in your next reply. 0 #10 nam_id Posted 08 November 2010 - 04:06 PM nam_id Member Topic Starter Member 12 posts Back, sorry had to run an

I am just nervouse enough of the winsock items to not just blindly delete them.