Hijackthis Log - Task Manager Doesn't Come Up

When the scan completes, a text window with your log will open. Do I have to do something through dos, like a sys restore or something to undo the GMER deletions, so I can get my logs? In HijackThis, click Config - Misc Tools.

The longer you go without updating them, the less effective they become. It wasn't until this morning when I turned on my computer that I was unable to log into windows. Status: Deleted Registry entries detected HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146} HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146} HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\ProxyStubClsid HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\ProxyStubClsid HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\ProxyStubClsid32 HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\ProxyStubClsid32 HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\TypeLib HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\TypeLib HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{0D3F3CF0-4060-4257-BF18-77CE00454146}\TypeLib HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE} HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE} HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\ProxyStubClsid HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\ProxyStubClsid HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\ProxyStubClsid32 HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\ProxyStubClsid32 HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\TypeLib HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\TypeLib HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{49217364-E570-4F9D-9CD2-62EB4780B2EE}\TypeLib WindUpdates.PreviewAdService Adware (General) more information... Back to top #10 ICYcold ICYcold Topic Starter Members 100 posts OFFLINE Local time:03:40 PM Posted 02 September 2007 - 05:01 PM With an AVG scan I get that trojan http://www.techsupportforum.com/forums/f284/hijackthis-log-task-manager-doesnt-come-up-286840.html

Just because Chrome runs more processes, doesn't mean it's more resource intensive. should I try that first before using the restore media cd for my computer?If I do use the cd, how do I make sure it doesn't reinstall the operating system?

So I have no logs I can post - the only one I could save was the Adaware scan log on the desktop, but I can't get to it..It seems like

All I see is the fake anti-virus.

Make a copy of the following list, then close Internet Explorer and all running programs and run a scan in HijackThis. Place a check next to all of the following lines, then select "Fix Checked" and close HijackThis.

Details: WebSearch Toolbar is an Internet Explorer search hijacker. In Chrome's own Task Manager, you can immediately identify which websites or extensions consume most of your memory and CPU power.

When you find yourself using this service on a regular basis, you can install their ProcessQuickLink tool to take you directly from the Task Manager to the website. If that worked do this:Download DDS and save it to your desktop from here or here or here.Disable any script blocker, and then double click dds.scr to run the tool. If the process is persistent and not a system process, scan your system for malware

Note: Do not mouseclick combofix's window while it's running. It would show as an added startup screen to choose operating systems to load to. C:\System Volume Information\_restore{48346496-E154-416D-B35F-440D0445F185}\RP145\A0076327.exe (Rogue.VirusProtector) -> Quarantined and deleted successfully. There were two files: one application with nothing in it (showed a size of 0 KB) and another file of type .exe.part.

Then click that file to start ComboFix.

Anyway heres the new HJT log.

Details: SafeSurfing is a program that installs adware without the users consent. It includes folders and links placed in Internet Explorer's favorites list. Please use "Reply to this topic" -button while replying. Registry Values Infected: (No malicious items detected) Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Also when i go to go into my computer the searching flashlight icon comes up and it takes forever for it to load. S_live.cab O16 - DPF: {64D01C7F-810D-446E-A07E-16C764235644} (AtlAtomadersCtlAttrib Class) - http://zone.msn.com/bingame/amad/default/atomaders.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZI ... Post the entire contents of C:\ComboFix.txt into your next reply.