It seems to have left behind some things. went into safe mode- signed in as admin... Also please re-run look.bat and post the results.ok here we go Windows Registry Editor Version 5.00[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AIM]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="aim""hkey"="HKCU""command"="C:\\Config.Msi\\aim.exe -cnetwait.odl""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BlockChecker]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="block-checker""hkey"="HKLM""command"="C:\\Program Files\\Block Checker\\block-checker.exe""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Ceah]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="wauc""hkey"="HKCU""command"="C:\\Program Files\\amwh\\wauc.exe""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Dintuzra]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="alg""hkey"="HKCU""command"="C:\\WINDOWS\\system32\\ѕystem32\\alg.exe""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\gcasServ]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="gcasServ""hkey"="HKLM""command"="\"C:\\Program Files\\Microsoft AntiSpyware\\gcasServ.exe\"""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MimBoot]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="mimboot""hkey"="HKLM""command"="C:\\PROGRA~1\\MUSICM~1\\MUSICM~1\\mimboot.exe""inimapping"="0"[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MMTray]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="mm_tray""hkey"="HKLM""command"="\"C:\\Program Files\\Musicmatch\\Musicmatch Post the log to your next reply. http://everfreetech.com/general/c-progra-soproc-exe.html

Close Notepad.Double click on look.bat and a notepad file should open. Post the log to your next reply.

Copy the contents of that file to your next post.The HJT log you posted appears to have been run in safe mode.

Expert: Barun replied7 years ago. Oh my... This is normal. Sorry about the misinterpretation ..please navigate to Start > Run, and carry out the rest of the steps thereafter.Keep me posted.Regards Ask Your Own Computer Question Customer: replied7 years ago.

please remove, 2/2/2017 2/2/2017 Viet - Computer Tech I just downloaded firefox on my laptop. Jump to content Build Theme! Join 91126 other members! http://winpedia.org/c-progra-1-softwa-1-soproc-exe/ Let's take a look and see what's there:Open Notepad, (Start button, click on Run, type in Notepad, and click OK) copy & pastes the following block of text into Notepad:regedit /e

Download HijackThis: http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download by clicking on Download HijackThis Installer Install, and run it.

They are all good programs, but they can sometimes prevent the registry changes we need to make to impliment a fix. https://www.bleepingcomputer.com/forums/t/34999/please-help-blockchecker/ The help you receive here is free. Get a Professional Answer Via email, text message, or notification as you wait on our site.Ask follow up questions if you need to. 100% Satisfaction Guarantee Rate the answer you receive. Pager]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="ypager""hkey"="HKCU""command"="C:\\Program Files\\Yahoo!\\Messenger\\ypager.exe -quiet""inimapping"="0"seems to be running pretty good Back to top #12 ddeerrff ddeerrff Retired Malware Response Team 2,707 posts OFFLINE Gender:Male Location:Upper Midwest, US Local time:12:41 AM Posted 18

Jeffmathieson replied Feb 2, 2017 at 1:16 AM Network traffic monitoring bbgarnett replied Feb 2, 2017 at 1:14 AM Wireless Card Hardware Not... his comment is here More... I did download this program called Hijackthis and made a log..... I'm at a loss to explain why the .reg file was not clearing those entries, but it looks good now.

Yes, my password is: Forgot your password? Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! That's strange ..clicking 'Ok' logs you out? http://everfreetech.com/general/c-progra-1-mywebs-1-bar-3-bin-m3plugin-dll.html TRIED to restore back to April 2/09 because I'm sure I downloaded AVG on the 3rd..

Several functions may not work. More About Us... Just post back with the results.

Download SUPERAntiSpyware Free for Home Users: http://www.superantispyware.com/ * Double-click SUPERAntiSpyware.exe and use the default settings for installation. * An icon will be created on your desktop.

  1. Put a check mark in front of the following lines if they still show:O2 - BHO: (no name) - {C2EEB4FA-B6D6-41b9-9CFA-ABA87F862BCB} - (no file)O4 - HKLM\..\Run: [BlockChecker] C:\Program Files\Block Checker\block-checker.exeO4 - HKCU\..\Run:
  4. Okay ..are you using an administrator account, or a standard one?Regards Ask Your Own Computer Question Customer: replied7 years ago.
  5. Search Protection Yahoo!
  6. Barun is online now My screen is display code C PROGRA~1 SOFTWA~1 soproc.exe ....
  7. account to the specified changes....
  Hello out there!!
  9. Download GMER: http://www.gmer.net/files.php, by clicking on Download EXE button.
  10. Toolbar ==== Event Viewer Messages From Past Week ======== 9/4/2009 10:21:57 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service MDM with arguments " " in

They are all good programs, but they can sometimes prevent the registry changes we need to make to impliment a fix. No, create an account now. Tough luck, indeed ..did you have a Norton product installed in your system earlier or presently, by any chance?Regards Ask Your Own Computer Question Customer: replied7 years ago. Please be patient while it scans your computer. * After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected.

Please be patient while it scans your computer. * After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected.

From that menu, select Safe Mode by using the arrow keys to highlight it then pressing enter.Locate fix.reg on your desktop and double click on it.- When it prompts to add

Hi,Please go to Start > Run, and type in msconfig; in the 'System Configuration Uitlity' window that comes up, click on the 'Startup' tab, then uncheck the entry relevant to 'soproc.exe' Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove ads #2 ddeerrff ddeerrff Retired Malware Response Team 2,707 posts OFFLINE Gender:Male Location:Upper Midwest, US Local time:12:41 browse I can't find what I'm looking for......

My web page My help doesn't cost a penny, but if you'd like to consider a donation to WindowsBBS, click HERE

Want to help others? How to Troubleshoot By Using the Msconfig Utility in Windows XP [Q310560] http://support.microsoft.com/?kbid=310560 -- Best of Luck, Rick Rogers, aka "Nutcase" - Microsoft MVP http://mvp.support.microsoft.com/ Associate Expert - WindowsXP Expert Zone Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll BHO: {0421701D-CF13-4E70-ADF0-45A953E7CB8 - No File
BHO: Dictionary.com: {11359f4a-b191-42d7-905a-594f8cf0387b} - c:\windows\downloaded program files\lexbar.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: AVG Here's how it works.

Okay ..now, please go to Start and type in the following in the 'Start Search' box:control userpasswords2In the 'User Accounts' dialog box that comes up, check the user(s) listed and their Pager]"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run""item"="ypager""hkey"="HKCU""command"="C:\\Program Files\\Yahoo!\\Messenger\\ypager.exe -quiet""inimapping"="0"Logfile of HijackThis v1.99.1Scan saved at 7:30:01 AM, on 11/18/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\LEXBCES.EXEC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\system32\LEXPPS.EXEC:\WINDOWS\Explorer.EXEC:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exeC:\Program Files\Zone Labs\ZoneAlarm\zlclient.exeC:\PROGRA~1\Sony\SONICS~1\SsAAD.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\WINDOWS\system32\cisvc.exeC:\Program Files\ewido\security suite\ewidoctrl.exeC:\Program Files\Spyware Doctor\sdhelp.exeC:\WINDOWS\system32\devldr32.exeC:\WINDOWS\system32\wdfmgr.exeC:\Program Files\Microsoft AntiSpyware\gcasDtServ.exeC:\WINDOWS\system32\ZoneLabs\vsmon.exeC:\WINDOWS\System32\alg.exeC:\Program Now, a list of processes being loaded up should come up ..when the logon screen comes up thereafter, check if there's an 'Administrator' account listed, and let me know so that Log in or Sign up Forums Forums Quick Links Search Forums Recent Posts Members Members Quick Links Notable Members Registered Members Current Visitors Recent Activity Donate User Guide User

route , no clearance given..... Guest Guest Whenever I start up my pc, I get two error messages.