Author Topic: limewire actin strange  (Read 522 times)

Offline ~Spoof~

  • Sr. Member
  • ****
  • Posts: 443
  • Karma: +0/-0
    • View Profile
limewire actin strange
« on: April 29, 2007, 12:26:36 AM »
well, yea so i log in my windows account and limewire starts up as normal, i shut it down and like 2 mins after it restarts the whole dam thing and it lags my freakin computer...

and also anotha problem is my vinyl deck it keeps givin errors...il provide a pic below
this is wat happened while i was typing this topic up... and its really hard to get rid of those errors by pressing enter it keeps gettin more than b4... :\
annoying...piece of crwp. but yea try help me out.









HELP. thanx

~spoof~
« Last Edit: April 29, 2007, 12:30:08 AM by ~Spoof~ »
Quote
~transactions~

1.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERED 60K INTO MY PURE FOR ME THANX MAN - [color=\"#00ff00\"]SUCCESFULL[/color]

2.BOUGHT A LVL 26 RANGE PURE FROM [color=\"#9932cc\"]WASNT ME [/color][color=\"#000000\"]-[/color] [color=\"#ff00ff\"]DARK PURE[/color] MMED
- [/b][/i][color=\"#00ff00\"]SUCCESSFUL

[/color]3.BOUGHT 2 ACCOUNTS FROM [color=\"#ff0000\"]COOKIE[/color] HE WENT FIRST -
[color=\"#ff0000\"]SCAMMER RECVORED IT BAK

[/color]4.MADE 2 FREE SIG's FOR [color=\"#9932cc\"]MAGERPURE275[/color] - [color=\"#00ff00\"]SUCCESFULL [/color]

5.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERRED SOME 200K + STUFFS TO MY PURE -
[color=\"#00ff00\"]SUCCESFULL

[/color]
[/i]----------------------------------------------------------------------------------------

~ITEM TRANSFERS~


1.TRANSFERED STUFF FOR [color=\"#9932cc\"]MIKESTER[/color] FROM HIS PURE TO ANOTHA ONE - [color=\"#00ff00\"]SUCCESFULL[/color]

----------------------------------------------------------------------------------------

~ACCOUNT TRAINING~

1.TRAINED RANGE TO 35 FOR [color=\"#9932cc\"]MIKESTER[/color] - [color=\"#00ff00\"]SUCCESFULL

[color=\"#000000\"]2.TRAINED THIEVING FROM 35-49 FOR [color=\"#9932cc\"]ibuy/sellaccounts[/color]- [color=\"#00ff00\"]SUCCESFULL[/color][/color]

[color=\"#000000\"]----------------------------------------------------------------------------------------[/color]

[/color][/b]~MM'S~

NONE YET LOL..

[/i]
------------------------------------------------------------------------------------------
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#000000\"][color=\"#008080\"]my new[/color] retard and verbaly impared aka scammer [color=\"#00ffff\"]section[/color] -:[/color]
1. [color=\"#ff0000\"]ridinriley[/color] - (hes ranked at number 1., most retarded)
2. [color=\"#ff0000\"]cookie - [/color][color=\"#000000\"](ranked at number 2 retard scammer.)[/color]
------------------------------------------------------------------------------------------
[/color][/i][/size]

Offline ~Spoof~

  • Sr. Member
  • ****
  • Posts: 443
  • Karma: +0/-0
    • View Profile
limewire actin strange
« Reply #1 on: April 29, 2007, 01:22:45 AM »
wtf??? spam??? lol ... ??? lol ????? ???? ?????
Quote
~transactions~

1.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERED 60K INTO MY PURE FOR ME THANX MAN - [color=\"#00ff00\"]SUCCESFULL[/color]

2.BOUGHT A LVL 26 RANGE PURE FROM [color=\"#9932cc\"]WASNT ME [/color][color=\"#000000\"]-[/color] [color=\"#ff00ff\"]DARK PURE[/color] MMED
- [/b][/i][color=\"#00ff00\"]SUCCESSFUL

[/color]3.BOUGHT 2 ACCOUNTS FROM [color=\"#ff0000\"]COOKIE[/color] HE WENT FIRST -
[color=\"#ff0000\"]SCAMMER RECVORED IT BAK

[/color]4.MADE 2 FREE SIG's FOR [color=\"#9932cc\"]MAGERPURE275[/color] - [color=\"#00ff00\"]SUCCESFULL [/color]

5.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERRED SOME 200K + STUFFS TO MY PURE -
[color=\"#00ff00\"]SUCCESFULL

[/color]
[/i]----------------------------------------------------------------------------------------

~ITEM TRANSFERS~


1.TRANSFERED STUFF FOR [color=\"#9932cc\"]MIKESTER[/color] FROM HIS PURE TO ANOTHA ONE - [color=\"#00ff00\"]SUCCESFULL[/color]

----------------------------------------------------------------------------------------

~ACCOUNT TRAINING~

1.TRAINED RANGE TO 35 FOR [color=\"#9932cc\"]MIKESTER[/color] - [color=\"#00ff00\"]SUCCESFULL

[color=\"#000000\"]2.TRAINED THIEVING FROM 35-49 FOR [color=\"#9932cc\"]ibuy/sellaccounts[/color]- [color=\"#00ff00\"]SUCCESFULL[/color][/color]

[color=\"#000000\"]----------------------------------------------------------------------------------------[/color]

[/color][/b]~MM'S~

NONE YET LOL..

[/i]
------------------------------------------------------------------------------------------
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#000000\"][color=\"#008080\"]my new[/color] retard and verbaly impared aka scammer [color=\"#00ffff\"]section[/color] -:[/color]
1. [color=\"#ff0000\"]ridinriley[/color] - (hes ranked at number 1., most retarded)
2. [color=\"#ff0000\"]cookie - [/color][color=\"#000000\"](ranked at number 2 retard scammer.)[/color]
------------------------------------------------------------------------------------------
[/color][/i][/size]

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
limewire actin strange
« Reply #2 on: April 29, 2007, 01:44:36 AM »
Download Hijackthis 1.99.1 from my signature below
SAVE it to your desktop

Double click on hijackthis_sfx.exe on desktop
Click the UNZIP button>>OK the prompt
This will self extract to C:\Program Files\HijackThis
Delete hijackthis_sfx.exe from desktop

Go to START>>RUN
Copy>>paste the following to the open field, then hit OK
%systemdrive%\Program Files\HijackThis
This will open the Hijackthis folder
RIGHT CLICK on Hijackthis.exe and select SEND TO>>Desktop (create shortcut)
You can now run Hijackthis.exe from the new shortcut placed on your desktop

Do a "SCAN and Save a Log file"
A log will open in Notepad
Copy and paste the WHOLE contents of the log  here...

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline ~Spoof~

  • Sr. Member
  • ****
  • Posts: 443
  • Karma: +0/-0
    • View Profile
limewire actin strange
« Reply #3 on: April 29, 2007, 01:48:38 AM »
k downloading now.. =\ thanx questolo heard a lot abt u...
Quote
~transactions~

1.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERED 60K INTO MY PURE FOR ME THANX MAN - [color=\"#00ff00\"]SUCCESFULL[/color]

2.BOUGHT A LVL 26 RANGE PURE FROM [color=\"#9932cc\"]WASNT ME [/color][color=\"#000000\"]-[/color] [color=\"#ff00ff\"]DARK PURE[/color] MMED
- [/b][/i][color=\"#00ff00\"]SUCCESSFUL

[/color]3.BOUGHT 2 ACCOUNTS FROM [color=\"#ff0000\"]COOKIE[/color] HE WENT FIRST -
[color=\"#ff0000\"]SCAMMER RECVORED IT BAK

[/color]4.MADE 2 FREE SIG's FOR [color=\"#9932cc\"]MAGERPURE275[/color] - [color=\"#00ff00\"]SUCCESFULL [/color]

5.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERRED SOME 200K + STUFFS TO MY PURE -
[color=\"#00ff00\"]SUCCESFULL

[/color]
[/i]----------------------------------------------------------------------------------------

~ITEM TRANSFERS~


1.TRANSFERED STUFF FOR [color=\"#9932cc\"]MIKESTER[/color] FROM HIS PURE TO ANOTHA ONE - [color=\"#00ff00\"]SUCCESFULL[/color]

----------------------------------------------------------------------------------------

~ACCOUNT TRAINING~

1.TRAINED RANGE TO 35 FOR [color=\"#9932cc\"]MIKESTER[/color] - [color=\"#00ff00\"]SUCCESFULL

[color=\"#000000\"]2.TRAINED THIEVING FROM 35-49 FOR [color=\"#9932cc\"]ibuy/sellaccounts[/color]- [color=\"#00ff00\"]SUCCESFULL[/color][/color]

[color=\"#000000\"]----------------------------------------------------------------------------------------[/color]

[/color][/b]~MM'S~

NONE YET LOL..

[/i]
------------------------------------------------------------------------------------------
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#000000\"][color=\"#008080\"]my new[/color] retard and verbaly impared aka scammer [color=\"#00ffff\"]section[/color] -:[/color]
1. [color=\"#ff0000\"]ridinriley[/color] - (hes ranked at number 1., most retarded)
2. [color=\"#ff0000\"]cookie - [/color][color=\"#000000\"](ranked at number 2 retard scammer.)[/color]
------------------------------------------------------------------------------------------
[/color][/i][/size]

Offline ~Spoof~

  • Sr. Member
  • ****
  • Posts: 443
  • Karma: +0/-0
    • View Profile
limewire actin strange
« Reply #4 on: April 29, 2007, 01:53:58 AM »
Logfile of HijackThis v1.99.1
Scan saved at 6:53:24 PM, on 4/29/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
c:\windows\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\ScsiAccess.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\outlook\outlook.exe
E:\PDVDServ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
D:\acrobat\Distillr\AcroTray.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ycomp/def.../search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\PCHealth\HelpCtr\System\panels\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIA Technologies, Inc\Audio Deck\ADeck.exe
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [RemoteControl] E:\PDVDServ.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [FreeCall] "H:\FreeCall\FreeCall.exe" -nosplash -minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Global Startup: Acrobat Assistant.lnk = D:\acrobat\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\office\Office10\OSA.EXE
O4 - Global Startup: svchost.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\office\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-NZ/a-UNO1/GAME_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: ScsiAccess - Unknown owner - C:\WINDOWS\System32\ScsiAccess.EXE
Quote
~transactions~

1.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERED 60K INTO MY PURE FOR ME THANX MAN - [color=\"#00ff00\"]SUCCESFULL[/color]

2.BOUGHT A LVL 26 RANGE PURE FROM [color=\"#9932cc\"]WASNT ME [/color][color=\"#000000\"]-[/color] [color=\"#ff00ff\"]DARK PURE[/color] MMED
- [/b][/i][color=\"#00ff00\"]SUCCESSFUL

[/color]3.BOUGHT 2 ACCOUNTS FROM [color=\"#ff0000\"]COOKIE[/color] HE WENT FIRST -
[color=\"#ff0000\"]SCAMMER RECVORED IT BAK

[/color]4.MADE 2 FREE SIG's FOR [color=\"#9932cc\"]MAGERPURE275[/color] - [color=\"#00ff00\"]SUCCESFULL [/color]

5.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERRED SOME 200K + STUFFS TO MY PURE -
[color=\"#00ff00\"]SUCCESFULL

[/color]
[/i]----------------------------------------------------------------------------------------

~ITEM TRANSFERS~


1.TRANSFERED STUFF FOR [color=\"#9932cc\"]MIKESTER[/color] FROM HIS PURE TO ANOTHA ONE - [color=\"#00ff00\"]SUCCESFULL[/color]

----------------------------------------------------------------------------------------

~ACCOUNT TRAINING~

1.TRAINED RANGE TO 35 FOR [color=\"#9932cc\"]MIKESTER[/color] - [color=\"#00ff00\"]SUCCESFULL

[color=\"#000000\"]2.TRAINED THIEVING FROM 35-49 FOR [color=\"#9932cc\"]ibuy/sellaccounts[/color]- [color=\"#00ff00\"]SUCCESFULL[/color][/color]

[color=\"#000000\"]----------------------------------------------------------------------------------------[/color]

[/color][/b]~MM'S~

NONE YET LOL..

[/i]
------------------------------------------------------------------------------------------
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#000000\"][color=\"#008080\"]my new[/color] retard and verbaly impared aka scammer [color=\"#00ffff\"]section[/color] -:[/color]
1. [color=\"#ff0000\"]ridinriley[/color] - (hes ranked at number 1., most retarded)
2. [color=\"#ff0000\"]cookie - [/color][color=\"#000000\"](ranked at number 2 retard scammer.)[/color]
------------------------------------------------------------------------------------------
[/color][/i][/size]

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
limewire actin strange
« Reply #5 on: April 29, 2007, 02:03:13 AM »
Download and save [color=\"red\"]Brute Force Uninstaller[/color][/b] to the desktop
  • Right click the BFU folder on your desktop, and choose Extract All
  • Click "Next"
  • In the box to choose where to extract the files to, click "Browse"
  • Click on the + sign next to "My Computer"
  • Click on "Local Disk (C:) or whatever your primary drive is
  • Click "Make New Folder"
  • Type in BFU
  • Click "Next", and Uncheck the "Show Extracted Files" box and then click "Finish".
[color=\"red\"]RIGHT-CLICK HERE[/color][/b] and choose "Save As" (in IE it's "Save Target As") in order to download [color=\"red\"]Alcan worm remover[/color].
Save it then transfer to the
same folder you made earlier (C:\BFU).

Go to Start > My Computer and navigate to the C:\BFU folder.
  • Start the Brute Force Uninstaller by doubleclicking BFU.exe
  • Next to the scriptline to execute field click the folder icon
    and select alcanshorty.bfu
  • Press Execute and let it do it's job. (You ought to see a progress bar if you did this correctly.)
  • Wait for the complete script execution box to pop up and press OK.
  • Press exit to terminate the BFU program.
Reboot your computer

Back in Windows
Post a fresh hijackthis log

NOTE: I do Not see any Anti-Virus software running on this computer
If I'm mistaken, or you have your own to install, install it now and run a full system scan
If you need a free solution, let me know, I have links to free ones
It's not safe being online without realtime AV protection

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline ~Spoof~

  • Sr. Member
  • ****
  • Posts: 443
  • Karma: +0/-0
    • View Profile
limewire actin strange
« Reply #6 on: April 29, 2007, 02:18:29 AM »
Logfile of HijackThis v1.99.1
Scan saved at 7:17:17 PM, on 4/29/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
c:\windows\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\Explorer.EXE
E:\PDVDServ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
D:\acrobat\Distillr\AcroTray.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\System32\ScsiAccess.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ycomp/def.../search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\PCHealth\HelpCtr\System\panels\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIA Technologies, Inc\Audio Deck\ADeck.exe
O4 - HKLM\..\Run: [RemoteControl] E:\PDVDServ.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [FreeCall] "H:\FreeCall\FreeCall.exe" -nosplash -minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Global Startup: Acrobat Assistant.lnk = D:\acrobat\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\office\Office10\OSA.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\office\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-NZ/a-UNO1/GAME_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: ScsiAccess - Unknown owner - C:\WINDOWS\System32\ScsiAccess.EXE
Quote
~transactions~

1.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERED 60K INTO MY PURE FOR ME THANX MAN - [color=\"#00ff00\"]SUCCESFULL[/color]

2.BOUGHT A LVL 26 RANGE PURE FROM [color=\"#9932cc\"]WASNT ME [/color][color=\"#000000\"]-[/color] [color=\"#ff00ff\"]DARK PURE[/color] MMED
- [/b][/i][color=\"#00ff00\"]SUCCESSFUL

[/color]3.BOUGHT 2 ACCOUNTS FROM [color=\"#ff0000\"]COOKIE[/color] HE WENT FIRST -
[color=\"#ff0000\"]SCAMMER RECVORED IT BAK

[/color]4.MADE 2 FREE SIG's FOR [color=\"#9932cc\"]MAGERPURE275[/color] - [color=\"#00ff00\"]SUCCESFULL [/color]

5.[color=\"#9932cc\"]DARK PURE[/color] TRANSFERRED SOME 200K + STUFFS TO MY PURE -
[color=\"#00ff00\"]SUCCESFULL

[/color]
[/i]----------------------------------------------------------------------------------------

~ITEM TRANSFERS~


1.TRANSFERED STUFF FOR [color=\"#9932cc\"]MIKESTER[/color] FROM HIS PURE TO ANOTHA ONE - [color=\"#00ff00\"]SUCCESFULL[/color]

----------------------------------------------------------------------------------------

~ACCOUNT TRAINING~

1.TRAINED RANGE TO 35 FOR [color=\"#9932cc\"]MIKESTER[/color] - [color=\"#00ff00\"]SUCCESFULL

[color=\"#000000\"]2.TRAINED THIEVING FROM 35-49 FOR [color=\"#9932cc\"]ibuy/sellaccounts[/color]- [color=\"#00ff00\"]SUCCESFULL[/color][/color]

[color=\"#000000\"]----------------------------------------------------------------------------------------[/color]

[/color][/b]~MM'S~

NONE YET LOL..

[/i]
------------------------------------------------------------------------------------------
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#ff0000\"][color=\"#ff0000\"][/color][/color]
[color=\"#000000\"][color=\"#008080\"]my new[/color] retard and verbaly impared aka scammer [color=\"#00ffff\"]section[/color] -:[/color]
1. [color=\"#ff0000\"]ridinriley[/color] - (hes ranked at number 1., most retarded)
2. [color=\"#ff0000\"]cookie - [/color][color=\"#000000\"](ranked at number 2 retard scammer.)[/color]
------------------------------------------------------------------------------------------
[/color][/i][/size]

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
limewire actin strange
« Reply #7 on: April 29, 2007, 02:33:00 AM »
Just on my way to bed, in the meantime, can you do the following please
Do a "System scan only" with Hijackthis and put a check next to these entries:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ycomp/def.../search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://www.popcap.com/games/popcaploader_v6.cab


Include the next one also, this should help with the error message referring to Adeck.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIA Technologies, Inc\Audio Deck\ADeck.exe

Additionally, the next ones are not needed on startup, you may choose to tick them also
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = D:\office\Office10\OSA.EXE


After you have ticked the above entries, close All other open windows
Including this one
Leave Hijackthis open and click FIX CHECKED
OK the prompt and exit Hijackthis

Restart the computer

Back in Windows
Access your Internet options via Control Panel
Under the Programs tab "Reset Web Settings"
Under the General tab---Delete files + offline content---Also Reset home page

You Need an AntiVirus solution, I recommend that you install ONLY one of these free versions
You decide, but ONLY install one, more than one can cause conflicts

Choose from the below, All have a free version
AVG 7 by Grisoft
OR
Avast Home Edition by ALWIL
OR
Avira AntiVir Personal Edition Classic
OR
Active Virus Shield
Powered by Kaspersky's>"UNCheck Security toolbar during install"

Ensure your new AV is updated and run a full system scan, let it clean what it finds
Reboot afterwards

Post one last hijackthis log and let me know how things are running
If you have a question about your new AV, don't hestitate to ask
« Last Edit: April 29, 2007, 02:36:09 AM by guestolo »

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline Hybrid

  • Full Member
  • ***
  • Posts: 183
  • Karma: +0/-0
    • View Profile
limewire actin strange
« Reply #8 on: May 08, 2007, 03:32:52 PM »
just stay away from limewire...its not safe and half the stuff is viruses and spyware...dont use it
« Last Edit: May 12, 2007, 12:25:48 PM by guestolo »
[color=\"#006400\"]I AM A SCAMMER! BAN ME PLEASE![/color][color=\"#48d1cc\"][color=\"#000080\"]

 [/color][/color][color=\"#0000ff\"]Transactions[/color]

 
[color=\"red\"][color=\"red\"]Traded level 70 main for level 53 ancient to danielisew UNSUCCESSFULL

Bought level 60 ancient/range hybrid off jaamal UNSUCCESSFUL - he recovered next day

Bought level 86 main and pure ranger of MR.SANTA - Sent false details. Scammed. Left ttg. STILL OWES ME RANGER.

[/color][color=\"#000080\"][color=\"#00ff00\"] Bought lvl 40str pure off BloodSplatter SUCCESSFUL --- TRUSTED

 Transfered Items for BloodSplatter  SUCCESSFUL

Sold sig to DeScReTe GoD - SUCCESSFUL- He went first - NO MM

Sold sig to FagexFun.-  SUCCESSFUL - I went first - NO MM - this guy is fishy. <[email protected]> and <[email protected]> both the same guy

Sold 2 sigs 200k to ttg forum ownage - took a while - SUCCESSFUL

Sold lvl 30 skiller to Holes 2mil - He went first NO MM - SUCCESSFUL - Trusted

Sharing acc's with 4rrows k1ss - TRUSTED - SO FAR SO GOOD -



[/color]

[color=\"#000080\"][color=\"#0000ff\"]Freebies[/color]

[color=\"#00ff00\"]Gave free sig to BloodSplatter

Gave free sig to 4rrow k1ss - he gave me a pixel - i put stuff on it.



[/color][/color][/color][/color]SCAMMERS - These guys are assh0les. Dont trust em with a penny

1. Jaamal

2. MR.SANTA - ASS SCAMMING NUB - DONT BUY FROM HIM.



Trusted -

1. BloodSplatter

2. Holes - Hes a nice guy.

3. 4rrows k1ss sucks n0b.



I DONT BUY OR SELL MILLS SO DONT ASK.



My MSN: [email protected] <--------------- ADD THIS ONE

and my other one: psychic-elemental@Email Removed.co.uk - i dont really use this one



anything else it aint me.

[color=\"red\"]









[/color]

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
limewire actin strange
« Reply #9 on: June 09, 2007, 04:44:04 PM »
As the original poster has not returned, I'll lock this topic

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here