Fix Perfc000.dat (Solved)

Home > General > Perfc000.dat


Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\microsoft\windows\currentversion\explorer\runmru Description : mru list for items opened in start | run MRU List Object Recognized! We recommend SecurityTaskManager for verifying your computer's security. Type : IECache Entry Data : [email protected][2].txt TAC Rating : 3 Category : Data Miner Comment : Value : C:\DOCUME~1\RJ\LOCALS~1\Temp\Cookies\[email protected][2].txt Tracking Cookie Object Recognized! Copies of the logs from running your scanning software is below.

Location: : software\microsoft\directdraw\mostrecentapplication Description : most recent application to use microsoft directdraw MRU List Object Recognized! Lucian Bara 26.06.2007 14:42 actually his not running any AV program. Please post (reply) with the reports from DSS and the Kaspersky log. By default this is C:\Windows\System for Windows 95/98/ME, C:\Winnt\System32 for Windows NT/2000, or C:\Windows\System32 for Windows XP/Vista/7.

Click the Save as Text button to save the file to your desktop so that you may post it in your next reply **Note for Internet Explorer 7 users: If at The perfc000.dat file is a file with no information about its developer. All rights reserved. OriginalFilename : lsass.exe #:6 [svchost.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 1088 ThreadCreationTime : 5-27-2007 8:01:45 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating

  • Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account?
  • Update it and scan your system.
  • OriginalFilename : spoolsv.exe #:15 [btwdins.exe] FilePath : C:\Program Files\WIDCOMM\Bluetooth Software\bin\ ProcessID : 1732 ThreadCreationTime : 5-27-2007 8:01:49 PM BasePriority : Normal FileVersion : 1.4.3 Build 4 ProductVersion : 1.4.3 Build 4
  • Help other users!
  • D: is CDROM (No Media)E: is Fixed (NTFS) - 186.31 GiB total, 115.53 GiB free.
  • Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\microsoft\mediaplayer\player\settings Description : last open directory used in jasc paint shop pro MRU List Object Recognized!

Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\google\navclient\1.1\history Description : list of recently used search terms in the google toolbar MRU List Object Recognized! WE'RE SURE THAT YOU'LL LOVE US! This means running a scan for malware, cleaning your hard drive using cleanmgr and sfc /scannow, uninstalling programs that you no longer need, checking for Autostart programs (using msconfig) and enabling The application starts when Windows starts (see Registry key: AppInit_DLLs).

BLEEPINGCOMPUTER NEEDS YOUR HELP! Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\nico mak computing\winzip\filemenu Description : winzip recently used archives MRU List Object Recognized! OriginalFilename : EXPLORER.EXE #:29 [csrss.exe] FilePath : C:\WINDOWS\ ProcessID : 2228 ThreadCreationTime : 5-27-2007 8:01:57 PM BasePriority : Normal #:30 [ifrmewrk.exe] FilePath : C:\Program Files\Intel\Wireless\Bin\ ProcessID : 2244 ThreadCreationTime : 5-27-2007 Right-click the registry value name and select Delete on the menu.

While it is working in your computer, it performs a series of malicious attacks to damage the computer system such as corrupting system registry files, disabling security programs and turning off Several functions may not work. Exterminate It! Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\microsoft\mediaplayer\medialibraryui Description : last selected node in the microsoft windows media player media library MRU List Object Recognized!

Baz^^ 26.06.2007 13:14 Hi, We can only support Kaspersky users who are having virus related issues. All rights reserved. Please check this against your installation diskette"For example, if I am opening Notepad, a window with the text as above and title "NOTEPAD.EXE - Bad Image" will pop up. As similar as other Trojan viruses, perfc000.dat also can open a backdoor to let remote hacker access compromised computer easily which means your privacy and personal information such as password, credit

Register Now Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules Forums Members Tutorials Every time a new process is starting on my PC (I open a new application, open file by using shortcut, or even during a start-up when programs that are to be To delete all other references to perfc000.dat, repeat steps 4-6. Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF:

All rights reserved. Useful Automatic removal perfc000.dat with SpyHunter from the Infected Computer You can use the manual removal procedures above step by step to get rid of perfc000.dat, but it is quite complicated Although the internet is still running at a crawling speed, it seems that it is still active. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged

OriginalFilename : BTTray.exe #:37 [printkey2000.exe] FilePath : C:\Program Files\PrintKey2000\ ProcessID : 2408 ThreadCreationTime : 5-27-2007 8:01:58 PM BasePriority : Normal FileVersion : ProductName : PrintKey CompanyName : Fred's Software InternalName Type : IECache Entry Data : [email protected][2].txt TAC Rating : 3 Category : Data Miner Comment : Hits:2 Value : Cookie:[email protected]/ Expires : 5-14-2012 8:00:00 PM LastSync : Hits:2 UseCount : Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts". »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Hosts file scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» 3 entries scanned.

Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\microsoft\office\11.0\common\open find\microsoft office powerpoint\settings\insert picture\file name mru Description : list of recent pictured inserted in microsoft powerpoint MRU List Object Recognized!

Please check this against your installation diskette." Firstly, I had a Sygate firewall software installed. Also was able to delete the perfc000.dat file. Register now! After doing that, the messages completely stopped.

BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. This was one of the Top Download Picks of The Washington Post and PCWorld. Alternatively, visit the forum/contact the tech support department of your anitvirus application. OriginalFilename : svchost.exe #:24 [wdfmgr.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 244 ThreadCreationTime : 5-27-2007 8:01:49 PM BasePriority : Normal FileVersion : 5.2.3790.1230 built by: DNSRV(bld4act) ProductVersion : 5.2.3790.1230 ProductName : Microsoft®

The free file information forum can help you find out how to remove it. Location: : S-1-5-18\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Then ran the AdAware and here is its log. There is only one button OK in this popped up window.

As my problem is slightly different then the post http://forums.tomcoy...dat_t79088.html so thought of creating a new topic. Facing lot of problems as the internet is barely working so have to dowaload everything required on other PC and copy it on pen-drive and take it onto the laptop. Keith Edited by doofus, 21 June 2007 - 10:55 AM. Repeat steps 2-4 for each location listed in Location of perfc000.dat and Associated Malware.

Please note that your topic was not intentionally overlooked. random.exeStep 3: Find and remove all corrupt files related to perfc000.dat virus: C:\program files%AllUsersProfile%\Application Data\%AllUsersProfile%\Step 4: Navigate to registry editor to clear all perfc000.dat virus registry entries as followings: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image Back to top #5 Juliet Juliet Advanced Member Trusted Malware Techs 23,131 posts Gender:Female Posted 21 June 2007 - 11:04 AM Hi eagle Please copy and paste this log or scan OriginalFilename : wuauclt.exe Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Win32.Trojan.Agent Object Recognized!

InternalName : S24EvMon LegalCopyright : Copyright © Intel Corporation 1999-2004 OriginalFilename : S24EvMon.exe #:11 [wlkeeper.exe] FilePath : C:\Program Files\Intel\Wireless\Bin\ ProcessID : 1360 ThreadCreationTime : 5-27-2007 8:01:47 PM BasePriority : Normal FileVersion Toolbar --> rundll32.exe C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\YCOMP5~1.DLL,DllCommand ui-- Application Event Log -------------------------------------------------------Event Record #/Type10715 / ErrorEvent Submitted/Written: 08/02/2008 08:55:25 PMEvent ID/Source: 1000 / Application ErrorEvent Description:Faulting application iexplore.exe, version 7.0.6000.16544, faulting module mshtml.dll, version Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\microsoft\mediaplayer\preferences Description : last playlist loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-3760607338-1603120009-2945326695-1005\software\corel\user assistant\12\recent work\wordperfect\last opened Description : list of recently opened documents in corel wordperfect MRU List Object Recognized!

Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dllO2 - BHO: Join 91119 other members!