Comodo has helped me get my system back under control but I’m sure There is still something left in here.
I have persistant attempts to connect from china and suadi arabia. My system keeps trying to announce itself to various IP’s and I just dont feel comfortable with it. I wish I had time to learn to counterhack but I’m afraid I have a “real job” I have to go and waste my life at =) oh well. Thanks for looking
Thanks for your response I deleted the files as you said here is the new hjtlog.
Sorry for the delay I had to do that work thing and will be headed back there soon.
Mod break: the following advice is flawed and therefor edited. Please don’t follow it. The considerations of JamesFrance and jay2007tech given after this hit the nail on the head here.
HijackThis is not a tool for beginners to mess about with and I see no reason to suggest deleting the entries for Comodo DNS which is what you are suggesting.
Could a mod please remove the post by jagdish. There is no justification to remove those entries.
For the entries in O17 from the hijack this log. Those are comodo dns entries ← those are safe
as for CISVC.EXE (file missing)
It has 2 purposes
it’s for windows indexing and the other it can be used for a key logger (repairing the altered file will solve those problems). The file just needs to be repaired. That’s all. If the person doesn’t like windows indexing service, all the person needs to do is go to services.msc and set it to “manual” But the file needs to be fixed first before. If the person asks I show how step-by-step
Follow the link below to repair the altered files http://www.sevenforums.com/tutorials/1538-sfc-scannow-command-system-file-checker.html