Copy and paste the follow text into the address bar, then hit 'Go': HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks In the pane on the right are the values associated with that key. the last few days, whenever I scan with McAfee, it finds nothing.

Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 2:28:45 PM, on 2/12/2010 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v7.00 (7.00.6002.18005) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe

Try running Malware Bytes. Move HJT from the Desktop for safety.

Post a new log when all the above is done plz.

Here is my hijack this log (note that whenever I FIX the easy-search.biz entries, they come right back in a few minutes): Logfile of HijackThis v1.97.7 Scan saved at 6:36:24 PM, If not please perform the following steps below so we can have a look at the current condition of your machine.

Waiting for things to happen. oh, i was just confused because I didn't see that last reg entry with the underscore that you mentioned. The message he gets is ""Windows must now restart because the DCOM Server Process Launcher Service terminated unexpectedly." AFter that the system reboots.

and all AVG virus definitions are updated as well. Double-click on the Internet Protocol (TCP/IP) item and select the radio dial that says Obtain DNS servers automatically Press OK twice to get out of the properties screen and reboot if

IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file) O3 - Toolbar: Save it as URLRepair.reg (Change the 'Save As Type' to 'All Files').

These are the only listings found under URLSearchHooks. Try these suggestions out and report back. I'll try and get an updated HJT log when i can get my hands on the computer. Finally, please post a fresh HijackThis log, along with the contents of the logfile C:\fixwareout\report.txt (hold those logs until the end...thanks)3) Now lets check some settings on your system. (2000/XP) OnlyIn

Thanks! Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.


Started by OceanOfSound , Apr 13 2006 02:40 PM Please don't send help request via PM, unless I am already helping you. Be sure to have your windows disk at the ready if it finds anything. First i would boot into safe mode, open a command prompt window with admin capabilities and run chkdsk /f, then once that is done, run sfc /scannow.

In the field "Full Path of File to Delete" copy and paste next:C:\WINDOWS\System32\systr.dllChoose the option: "unregister dll before deleting" Then press the button that looks like a red circle with a My only options are - "Open" "Open with" "Add to Windows Media List" Play in Windows Media." I have tried opening the file, it does not load or do anything.