1. Home
  2. Acronis Internet Security
  3. Which Files Should I Delete? My Computer Is Infected. Please And Thank You! :)?

Which Files Should I Delete? My Computer Is Infected. Please And Thank You! :)?

By AntiVirus Posted in: Acronis Internet Security

R1 – HKCU\Software\Microsoft\Windows\CurrentV… Settings,ProxyOverride = 127.0.0.1;*.local;
O2 – BHO: JQSIEStartDetectorImpl – {E7E6F031-17CE-4C07-BC86-EABFE594F69C} – C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_pl…
O4 – HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 – HKLM\..\Run: [lxdnmon.exe] “C:\Program Files\Lexmark 2600 Series\lxdnmon.exe”
O4 – HKLM\..\Run: [EzPrint] “C:\Program Files\Lexmark 2600 Series\ezprint.exe”
O4 – HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 – HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.e…
O4 – HKLM\..\Run: [QuickTime Task] “C:\Program Files\QuickTime\qttask.exe” -atboottime
O4 – HKLM\..\Run: [iTunesHelper] “C:\Program Files\iTunes\iTunesHelper.exe”
O4 – HKLM\..\Run: [MSC] “c:\Program Files\Microsoft Security Client\msseces.exe” -hide -runkey
O4 – HKLM\..\Run: [Malwarebytes' Anti-Malware] “C:\Program Files\Malwarebytes’ Anti-Malware\mbamgui.exe” /starttray
O4 – HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 – HKCU\..\Run: [Yahoo! Pager] 1
O4 – HKCU\..\Run: [Aim] “C:\Program Files\AIM\aim.exe” /d locale=en-US
O4 – HKCU\..\Run: [Skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized
O4 – HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User ‘SYSTEM’)
O4 – HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User ‘Default user’)
O4 – Global Startup: AT&T Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O8 – Extra context menu item: E&xport to Microsoft Excel – res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCE…
O9 – Extra button: Skype Plug-In – {898EA8C8-E7FF-479B-8935-AEC46303B9E5} – C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O9 – Extra ‘Tools’ menuitem: Skype Plug-In – {898EA8C8-E7FF-479B-8935-AEC46303B9E5} – C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O9 – Extra button: Research – {92780B25-18CC-41C8-B9BE-3C9C571A8263} – C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.D…
O9 – Extra button: Messenger – {FB5F1910-F110-11d2-BB9E-00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O9 – Extra ‘Tools’ menuitem: Windows Messenger – {FB5F1910-F110-11d2-BB9E-00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O15 – Trusted Zone: http://*.att.net
O18 – Protocol: skype-ie-addon-data – {91774881-D725-4E58-B298-07617B9B86A8} – C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 – Protocol: skype4com – {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} – C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 – SharedTaskScheduler: Browseui preloader – {438755C2-A8BA-11D1-B96B-00A0C90312E1} – C:\WINDOWS\system32\browseui.dll
O22 – SharedTaskScheduler: Component Categories cache daemon – {8C7461EF-2B13-11d2-BE35-3078302C2030} – C:\WINDOWS\system32\browseui.dll
O23 – Service: Acronis Scheduler2 Service (AcrSch2Svc) – Acronis – C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 – Service: Apple Mobile Device – Apple Inc. – C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 – Service: Ati HotKey Poller – ATI Technologies Inc. – C:\WINDOWS\system32\Ati2evxx.exe
O23 – Service: Bonjour Service – Apple Inc. – C:\Program Files\Bonjour\mDNSResponder.exe
O23 – Service: iPod Service – Apple Inc. – C:\Program Files\iPod\bin\iPodService.exe
O23 – Service: Java Quick Starter (JavaQuickStarterService) – Sun Microsystems, Inc. – C:\Program Files\Java\jre6\bin\jqs.exe
O23 – Service: lxdnCATSCustConnectService – Lexmark International, Inc. – C:\WINDOWS\System32\spool\DRIVERS\W32X86…
O23 – Service: lxdn_device – – C:\WINDOWS\system32\lxdncoms.exe
O23 – Service: MBAMService – Malwarebytes Corporation – C:\Program Files\Malwarebytes’ Anti-Malware\mbamservice.exe
O23 – Service: McAfee Real-time Scanner (McShield) – Unknown owner – C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 – Service: McAfee SystemGuards (McSysmon) – Unknown owner – C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 – Service: NVI

  1. GTiry Says

    Since you didn’t mention which operating system you are using nor how much memory you are using, I will assume you are using a version of windows. Just bare with me and I’ll try to guide you step by step. OK?
    Remember that these suggestions are for windows operating systems.
    Go to start (you can either use your mouse or just your keyboard by pressing your windows key between the ctrl and the alt keys).
    In the search line, type in cmd (or command) then press enter.
    You will see a black DOS screen come up. It’s okay. Don’t be startled by it. This is what we used before Microsoft windows was released.
    On the command line of the DOS screen, type msconfig (this is the command to bring up the microsoft configuration screen) then press enter. This will bring up the System Configuration screen. Here you will find 5 tabs to choose from. 1.General, 2. Boot, 3.Services, 4.Startup, and 5. Tools. Go to the General tab.
    In the General tab you will find three choices. 1. Normal startup, 2. Diagnostic startup 3. Selective startup, choose the Selective startup. After you have chosen the selective startup, you may have to click on apply.
    Next go to the Startup tab. There are checkboxes on the left column, then the next column shows the name of the manufacturer of that particular software, then the command line showing where that software is located, then the actual location of that software and then the last column shows the date that software was disabled.
    Below that section there are two buttons, one is Enable all and the other is Disable all.
    Here you have a choice. You could hit the button that says “Disable all” but I wouldn’t reccommend it. Instead, go to the extreme left and in the check boxes, there should be a check mark in each of the boxes. Take your time. DO NOT GET IN A HURRY! Read each line. If you do not recognize the name of the manufacturer, un check the check box for that line.
    Make absolutely certain that you have NOT unchecked any line that has Microsoft as the manufacturer. There will be lines for your printer manufacturer (Lexmark), Adobe Reader, Google, messenger (Yahoo or Windows live), Quicktime (this is an Apple product), Skype. Make absolutely certain that those boxes remain checked. If there is any manufacturer that you don’t recognize, uncheck that box. Press apply.
    Next go to the services tab. At the bottom left there is an unchecked box that says “Hide all Microsoft services” go ahead and check that box. The remaining boxes needs to be inspected to see if that service is necessary for your system. Press apply.
    Then press OK. At this point you will see a system configuration message telling you that you may need to restart your computer to apply these changes. You will have the option of a restart or you can exit without restarting. If you restart, after windows boots up, you will see a message referring you about the changes that were made. At this point check the box that says don’t show this message again.
    Next, since you have McAfee as a virus checker, and some of your McAfee files are missing, either reinstall your McAfee software or install another virus checker that has had good reviews. (Avast and AVG have excellent programs and even though they are available for a fee, they are both available as free programs too).
    If you were to go to CNET.com, you can find both of these programs (paid and free versions). You can also get Ad-Aware, CCleaner and Spybot SD. These are not only excellent programs but they are also free. I also use each of them daily. CCleaner has one of the best registry cleaners made at the present time. I never re-boot my computer without running CCleaner and Ad-Aware first.
    You seem to have a problem but from your discription, you may not have a virus. You seem to have to many programs running at the same time. If you were to have a large amount of memory, this wouldn’t be so much of a problem. I use 12 Gb of ddr3 1600 ram myself. Please don’t hesitate to let me know if my suggestions helped you with your problem.
    Good luck.

  2. Shawn H Says

    It didn’t look like this picked anything up. Could you describe the problems your having, any messages, odd computer behavior? Operating system version as well.

  3. Pop Up Says

    if you have anti-spyware on your computer, run a scan.
    My pc has infected by it.
    this software can remove it easily:http://top5antispywarereviews.com

  4. phat zack Says

    You need to take your computer to a shop. You have a nasty little trojan virus. It is the anti malware [mbamservice.exe]. It has disabled your McFee antivirus software, it will take over your computer. The software is a virus that tells you its antivirus software then infects your computer and holds it ransom you ether pay up or take it to a computer shop and pay up. Dont try to delete it cause it prob has a .Dll root and it will just come back or it will blue screen then you will have a systemfile 32 error on your hands. Good luck a networkcomputer tech can handle it.

Leave a Reply

You must be logged in to post a comment.

More Interesting Things

©2011 Trojan AntiVirus, All rights reserved.