  1. Hi guys, Hope this find you all well and free of credit crunch and other woes. Got a problem I'm hoping someone can help me with. Both my Cd drive and DVD drive display the same message when I left click on them E or F is not accesible acees denied. Strangely enough this only happens on one of the two accounts. I recently installed an external hard drive and upgraded from Office 2003 to 2007. Not sure this has anything to do with it. Can anyone help please? Ta
  2. Hi Sari, Things seem to be a lot better, thank yoy very much for all your help. you guys do a great job!! Take care Marco
  3. Hi Sari, Sorry for the delay in replying. I've followed all your instructions and attached both reports you asked for. A funny thing happened: my Antivirus programme expired and on downloading the new one, thus getting rid of the older version, things seem to have got a lot better. My homepage is not longer hijacked. Could it be that the virus was in my antivitus programme? Thanks Marco log.txt main.txt
  4. Hi Sari, Here are the logs you asked for: ComboFix 07-11-08.1 - Owner 2007-11-07 17:45:42.1 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.118 [GMT 0:00] Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe * Created a new restore point . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\WINDOWS\pack.epk c:\WINDOWS\system32\fxgenyl.dat c:\windows\system32\fxgenyl.exe C:\WINDOWS\system32\fxgenyl_nav.dat C:\WINDOWS\system32\fxgenyl_navps.dat C:\WINDOWS\system32\nvs2.inf C:\WINDOWS\system32\u2
  5. Hi Sari, Thanks very much for your patient help. Bad news I'm afraid. I've got the same problem as when I tried to run Smitfraudfix on Safe Mode; I can't do it, when I type Y to run the program nothing happens and the cursor gets still I can't move it and my only alternative as far as I can see is to reboot the computer. Another thing that may be relevant: every time I log on to my account the following message appears: "TmPfw has encountered a problem and needs to close. We are sorry for the inconvenience." This message didn't appear before the virus infected my PC. Thanks again Marco
  6. Yes that's what happens, I've tried again but clicking on the smitfraudfix icon directly, I press any key and the program doesn't run it gets stuck. I can't move the cursor or do anything so I have to manually switch off the computer. Marco
  7. hI Sari, Following your instructions I've installed the newest version of Smitfraud and tried to run it on Safe Mode but I can't do it. When I click on smitfraudfix.cmd a new window opens where it prompts me to press a key, I do this and the computer gets blocked. I can only turn it off and restart again and the same thing happens time and time again. Another thing: this virus has also hijacked my Antivirus program which I cannot access. thanks Marco
  8. Hi Sari and thanks for your help. I have got rid of those two buggers but my homepage remains hijacked by this website: I've tried to change it to my usual using Internet Options but it will not allow me to do so. Another problem I have is that whenever I try to acces PDF type web pages my browser closes automatically. These are the reports you requested: SmitFraudFix v2.240 Scan done at 19:02:00.67, 24/10/2007 Run from C:\Documents and Settings\Yoly\Desktop\SmitfraudFix OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT The filesystem type is NTFS Fix run i
  9. I have inadvertently installed what was supposed to be a simple movie add-on and my home page has been hijacked. On the Add or Remove Programs screen these two appear:IE Custom Tools,IE Safety Features and I can't remove them. Can anybody please help? These are the hijack this reports: Deckard's System Scanner v20071014.68 Run by Yoly on 2007-10-22 19:50:42 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Re