Welcome Guest ( Log In | Join )

Discover the best free computer help!
Learn more about Geeks to Go by taking the tour. Spyware, virus, trojan, fake security or privacy alerts? Read the malware cleaning guide. Want to reply to a topic, start a new one, or remove the advertising? Join today (always free).
 
Reply to this topicStart new topic
Is there Malware here? Not sure....
judgedredd
post Apr 21 2007, 03:47 PM
Post #1


New Member
*
Posts: 1
OS: XP



Logfile of HijackThis v1.99.1
Scan saved at 4:45:33 PM, on 4/21/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
E:\Apache2.2\bin\httpd.exe
C:\WINDOWS\system32\Atievxx.exe
E:\AVGFRE~1\avgamsvr.exe
E:\AVGFRE~1\avgupsvc.exe
E:\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\WINDOWS\system32\cisvc.exe
E:\Apache2.2\bin\httpd.exe
C:\Program Files\Novatel Wireless\Sprint\Sprint PCS Connection Manager\OSCMUtilityService.exe
E:\sdb\programs\MAXDB1\pgm\kernel.exe
C:\WINDOWS\Explorer.EXE
E:\SDB\programs\MAXDB1\pgm\kernel.exe
E:\SDB\programs\MAXDB1\pgm\kernel.exe
C:\Program Files\SpywareDetector\SDService.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
e:\sdb\programs\pgm\serv.exe
E:\AVGFRE~1\avgcc.exe
E:\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe
E:\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Novatel Wireless\Sprint\Sprint PCS Connection Manager\OSCM3.exe
C:\Program Files\Skype\Phone\Skype.exe
E:\HJT\HijackThis.exe

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7ACB5731-5839-13AB-EABC-124791194525} - (no file)
O3 - Toolbar: optionsXpress Toolbar - {63CC63C6-1AE1-491C-B96A-812A7950A1EC} - C:\Program Files\optionsXpress\optionsXpress Toolbar\optionsXpressToolbar.dll
O4 - HKLM\..\Run: [AVG7_CC] E:\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Zone Labs Client] "E:\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SDAutoLiveupdate] C:\Program Files\SpywareDetector\LiveUpdateSD.exe -AUTO
O4 - HKLM\..\Run: [SystemTraySD] C:\Program Files\SpywareDetector\SDSystemTray.exe -AUTO
O4 - HKCU\..\Run: [SUPERAntiSpyware] E:\SUPERAntiSpyware\SUPERAntiSpyware.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\j2re1.4.2_12\bin\npjpi142_12.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\j2re1.4.2_12\bin\npjpi142_12.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.scientology.org.com
O16 - DPF: {CE7D2BF2-D173-4CE2-9DAF-15EA153B5B43} - http://entriq.vo.llnwd.net/o1/NBCUniversal...0_15_Silent.cab
O16 - DPF: {DE0FB644-C59B-46D1-B650-88BA945BC98F} - http://entriq.vo.llnwd.net/o1/NBCUniversal...sal_1_0_0_3.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5BBB312C-B8F0-4F11-9C13-A69A3A42C3A7}: NameServer = 68.28.154.11 68.28.146.11
O20 - Winlogon Notify: !SASWinLogon - E:\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: SDNotify - C:\Program Files\SpywareDetector\SDNotify.dll
O23 - Service: Apache2.2 - Unknown owner - E:\Apache2.2\bin\httpd.exe" -k runservice (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - E:\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - E:\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - E:\AVGFRE~1\avgemc.exe
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: MySQL5 - Unknown owner - E:\MySQL.exe (file missing)
O23 - Service: OSCM Utility Service - Sprint Spectrum, L.L.C - C:\Program Files\Novatel Wireless\Sprint\Sprint PCS Connection Manager\OSCMUtilityService.exe
O23 - Service: SAPDB: .M760034 (SAP DBTech-.M760034) - SAP AG - E:\SDB\programs\MAXDB1\pgm\kernel.exe
O23 - Service: SAPDB: .M760034 (quick) (SAP DBTech-.M760034 (quick)) - SAP AG - (no file)
O23 - Service: SAPDB: .M760034 (slow) (SAP DBTech-.M760034 (slow)) - SAP AG - (no file)
O23 - Service: SAPDB: .M760034 (omststknl.exe) (SAP DBTech-.M760034 (test)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB1 (SAP DBTech-MAXDB1) - SAP AG - E:\sdb\programs\MAXDB1\pgm\kernel.exe
O23 - Service: SAPDB: MAXDB1 (quick) (SAP DBTech-MAXDB1 (quick)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB1 (slow) (SAP DBTech-MAXDB1 (slow)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB1 (omststknl.exe) (SAP DBTech-MAXDB1 (test)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB2 (SAP DBTech-MAXDB2) - SAP AG - E:\SDB\programs\MAXDB1\pgm\kernel.exe
O23 - Service: SAPDB: MAXDB2 (quick) (SAP DBTech-MAXDB2 (quick)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB2 (slow) (SAP DBTech-MAXDB2 (slow)) - SAP AG - (no file)
O23 - Service: SAPDB: MAXDB2 (omststknl.exe) (SAP DBTech-MAXDB2 (test)) - SAP AG - (no file)
O23 - Service: SAPDB: WEBDATA (SAP DBTech-WEBDATA) - SAP AG - E:\SDB\programs\MAXDB1\pgm\kernel.exe
O23 - Service: SAPDB: WEBDATA (quick) (SAP DBTech-WEBDATA (quick)) - SAP AG - (no file)
O23 - Service: SAPDB: WEBDATA (slow) (SAP DBTech-WEBDATA (slow)) - SAP AG - (no file)
O23 - Service: SAPDB: WEBDATA (omststknl.exe) (SAP DBTech-WEBDATA (test)) - SAP AG - (no file)
O23 - Service: SAP DB WWW (SAPDBWWW) - Unknown owner - e:\sdb\programs\web\pgm\wahttp.exe
O23 - Service: SDService - Max Secure Software - C:\Program Files\SpywareDetector\SDService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
O23 - Service: XServer - SAP AG - e:\sdb\programs\pgm\serv.exe

Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

Collapse

> Similar Topics

    Topic Title Replies / Views Topic Information
No New Posts   0 / 154 7th June 2006 - 11:44 AM
Noelle126 started - last by Noelle126
No new   16 / 430 28th June 2006 - 03:36 AM
stucuk started - last by Wizard
No New Posts   2 / 234 20th December 2007 - 07:40 PM
DJC2388 started - last by Facedown98
No New Posts 0 / 75 15th July 2008 - 11:39 AM
kera started - last by kera

RSS Time is now: 5th December 2008 - 04:31 AM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.