CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 937
Comments: 25
block bottom
spacer spacer

How to Be [READY]

 
Post new topic   This topic is locked you cannot edit posts or make replies       All -> FavForums -> Trend Micro HijackThis Logs [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
Prince_Serendip

Site Moderator


Joined: Sep 07, 2002
Posts: 17293

1st Responders MIRT Moderators MVP Premium RootKit Detection Hosts Rootkit Experts Rootkit Responders

PostPosted: Sat Jan 19, 2008 5:36 pm    Post subject: How to Be [READY]
Reply with quote

At CastleCops we screen all our HijackThis logs for errors, out-of-date versions, omissions, legitimate operating systems, and P2P applications; getting you ready for cleaning by our 1st Responders and Security Experts.

We use the title edit [READY] to indicate that your topic and posted logs have met our requirements. You are ready for cleaning. This saves our HijackThis responders a lot of time, thus enabling them to answer more logs.

You can help yourselves to be [READY] by doing the following:


1. Please read: CastleCops Link/t102301-Hijackthis_Guidelines_Read_Before_Posting.html ...especially The Rules at the bottom.


2. Describe the problems on your computer in your own words. Post it in your New Topic with your first HijackThis Log, or in a reply to it.

Please do not post any other log except a HijackThis log. If your helper wants other types of logs, they'll ask for them.


3. Be sure that you have removed any P2P (Peer-to-Peer file-sharing) applications you may have been using.

Quote:
Please remove P2P applications with Add/Remove Programs. We do not clean logs that have P2P applications installed as this can cause reinfection during your cleaning. (If you have any problems removing them, we have special instructions you can use.)

Please refer to this topic:
CastleCops Link/t204179-P2P_programs_we_ask_that_you_remove_first.html
(You can put it back after your cleaning is completed.)


P2P applications must be completely removed before we will help you.



4. Ensure that you are using a legitimate Windows operating system by updating it with Windows Updates.

The following instructions are for users with UNPATCHED versions of Windows XP only.

Quote:
If you are currently using an unpatched version of Microsoft XP. It is CRITICAL that you update to Service Pack 1a.
Please visit this link: Microsoft Service Pack 1a
and follow the directions for Express Installation under "Installing SP1a on Your Computer".

IMPORTANT: DO NOT update to Service pack 2. Doing so before your computer is malware free can cause Windows to become unstable. You can update to SP2 when your system is clean.

Please post a new HJT log after you have updated to SP1a. If you have difficulty with the update, please post the exact error message. A First Responder or Security Expert will then help you as soon as possible.



5. Ensure that you are using the latest version of HijackThis, which can only be obtained from its new owner, TrendMicro. Instructions below:

Quote:
We prefer that you use the latest version of HijackThis (2.0.2) to scan your computer for problems.


Please click >>>Here<<< to download the latest version of HijackThis to your desktop.


Click the Download button. When the Trend Micro HJT install box appears, double click on the HJTInstall.exe. Click on Install.


It will be installed by default here: C:\Program Files\Trend Micro\HijackThis


A shortcut to the application will also be placed on your Desktop.


The program will open automatically after installation.


You can double-click the icon that was placed on the Desktop to run subsequent HijackThis scans or you can use the icon inside the folder. The folder HijackThis is where you will find the HJT logs that you save. When you use the application to remove anything, you will also find the backup copies made by HJT inside this folder.


Close all other windows except HijackThis.


Click on "Do a system scan and save a logfile" When the log pops up in Notepad, copy and paste that file back here. (Click on the Format menu, and uncheck Word Wrap, Ctrl+A to highlight everything in the log, Ctrl+C to copy it to your clipboard. In your PostReply, position the cursor and press Ctrl+V to paste it.)


Do NOT have HijackThis fix anything yet. Most of what it finds will be harmless or even required.



Topics with HijackThis Logs which meet the above criteria will be marked as [READY]. Thanks from all of us at CastleCops! Thumbs Up

Back to top
View users profile Send private message
Display posts from previous:   
Post new topic   This topic is locked you cannot edit posts or make replies       All -> FavForums -> Trend Micro HijackThis Logs All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer