O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll O9 - Extra button: Send to OneNote - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Download with Free Download Manager - file://d:\Program Files\Free Download Manager\dllink.htm O8 - Extra context menu item: Download video with Free Download Manager - file://d:\Program Files\Free Download Manager\dlfvideo.htm O8 - Extra context menu item: Download selected with Free Download Manager - file://d:\Program Files\Free Download Manager\dlselected.htm O8 - Extra context menu item: Download all with Free Download Manager - file://d:\Program Files\Free Download Manager\dlall.htm O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O4 - HKUS\.DEFAULT\.\RunOnce: rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,4,N (User 'Default user') O4 - HKUS\S-1-5-18\.\RunOnce: rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,4,N (User 'SYSTEM') O4 - HKUS\S-1-5-20\.\RunOnce: rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,4,N (User 'NETWORK SERVICE') O4 - HKCU\.\Run: C:\WINDOWS\system32\ctfmon.exe O4 - HKLM\.\Run: C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKLM\.\Run: "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\.\Run: "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\.\Run: C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\.\Run: C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\.\Run: C:\WINDOWS\system32\igfxtray.exe

O4 - HKLM\.\Run: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Old log file with what i deleted in blue.Ĭ:\Program Files\Alwil Software\Avast4\ashSimpl.exe

tools that scanned the CPU I will post the last one i scaned since i dont have the one before and after the viruse got on, i will post what i deleted in blue. I got the registry working by using hijackthis's misc. When I put the flash stick in my port comodo noticed a file started to act up and change things in the registry with my previous experience dealing with the registry, I managed to find and remove both registry key that disabled the task manger and regedit. Format and reinstall, the last time this virus attack my computer had no virus protection, but now I have comodo internet security the latest version (so I think), avast home edition, and winpatrol. But these viruses caused me to need to reinstall my whole computer. I have previously used this site to fix my computer, I was assisted by one of you staff and I was very pleased with how my cup was working I was a bit younger but good at computer now imp better and dealing with cpu problems on my own most of the time.

