[Referred]Ad-Aware log file [CLOSED], Posting Ad-Aware log file |
![]() ![]() |
[Referred]Ad-Aware log file [CLOSED], Posting Ad-Aware log file |
| Guest_Andy_veal_* |
May 12 2005, 10:08 AM
Post
#16
|
|
|
Please scan your computer with one of the following free online virus scanners
Panda Symantec McAfee TrendMicro Recommended F-secure Thanks |
|
|
| Guest_Andy_veal_* |
May 12 2005, 10:10 AM
Post
#17
|
|
|
QUOTE #:39 [bitsprx2.exe] ModuleName : C:\WINDOWS\system32\bitsprx2.exe Command Line : "C:\WINDOWS\system32\bitsprx2.exe" ProcessID : 644 ThreadCreationTime : 5-12-2005 1:09:16 AM BasePriority : Normal #:40 [gsmedia3.exe] ModuleName : C:\WINDOWS\system32\GSMedia3.exe Command Line : "C:\WINDOWS\system32\GSMedia3.exe" ProcessID : 124 ThreadCreationTime : 5-12-2005 1:09:16 AM BasePriority : Normal FileVersion : 1.00 ProductVersion : 1.00 ProductName : URLBrowser CompanyName : Atix InternalName : URLBrowser OriginalFilename : URLBrowser.exe Once you have done a virus scan, from my advice above, We can help you remove this bad files! Keep us updated |
|
|
May 12 2005, 10:12 AM
Post
#18
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
So your saying it's ok to connect to the internet? I haven't tried since your latest instructions but when I last connected the pop up were to the point I couldn't do anything else. They were coming so fast I couldn't close them fast enough and had to disconnect my cable modem.
Thanks! After I run the on-line scan do you want to see it or is that another forum. |
|
|
| Guest_Andy_veal_* |
May 12 2005, 10:15 AM
Post
#19
|
|
|
Please reconnect your internet,
Have you tried my host file instructions? Please inform us about your online scan here! |
|
|
May 12 2005, 10:31 AM
Post
#20
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
I have not tried your host file instructions. I wasn't certain they were intended for me. I will do so now.
Thanks |
|
|
May 13 2005, 08:00 AM
Post
#21
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
OK! I ran the on-line scan from TrendMicro "Housecall". It found no viruses. What do I do now?
Thanks! |
|
|
May 13 2005, 08:02 AM
Post
#22
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Oh one other thing: I did the Host file thing and set it back to default.
Thanks again! |
|
|
May 13 2005, 03:56 PM
Post
#23
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Hi Andy,
Are you out there. I ran the oon-line scan from trend Micro and it came back with no viruses found. You mentioned that ater my on-line scan you could help me remove a couple of bad files. Please advise. Thanks, Keith |
|
|
| Guest_Andy_veal_* |
May 13 2005, 05:37 PM
Post
#24
|
|
|
Sorry for my late reply
Please could you post your latest logfile with the newest definition file (released earlier today) Thanks |
|
|
May 13 2005, 07:33 PM
Post
#25
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Here is my latest log using definitions released today.... Note pop ups still going crazy. I can barely do anything on-line because of the pop ups. Also please note that I did a virus scan with AVG and it finds four trojans that TrendMicro didn't find. AVG heals them and deletes them but they always come back when I start up.
Ad-Aware SE Build 1.05 Logfile Created on:Friday, May 13, 2005 7:09:12 PM Created with Ad-Aware SE Personal, free for private use. Using definitions file:SE1R45 13.05.2005 »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» References detected during the scan: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» None »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Definition File: ========================= Definitions File Loaded: Reference Number : SE1R45 13.05.2005 Internal build : 53 File location : C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref File size : 473168 Bytes Total size : 1430575 Bytes Signature data size : 1399518 Bytes Reference data size : 30545 Bytes Signatures total : 39932 Fingerprints total : 881 Fingerprints size : 30173 Bytes Target categories : 15 Target families : 672 Memory + processor status: ========================== Number of processors : 1 Processor architecture : Intel Pentium IV Memory available:48 % Total physical memory:523244 kb Available physical memory:248124 kb Total page file size:1279172 kb Available on page file:1053356 kb Total virtual memory:2097024 kb Available virtual memory:2047348 kb OS:Microsoft Windows XP Professional Service Pack 2 (Build 2600) Ad-Aware SE Settings =========================== Set : Safe mode (always request confirmation) Set : Scan active processes Set : Scan registry Set : Deep-scan registry Set : Scan my IE Favorites for banned URLs Set : Scan within archives Set : Scan my Hosts file Extended Ad-Aware SE Settings =========================== Set : Obtain command line of scanned processes Set : During removal, unload Explorer and IE if necessary Set : Let Windows remove files in use at next reboot Set : Delete quarantined objects after restoring Set : Write-protect system files after repair (Hosts file, etc.) Set : Include basic Ad-Aware settings in log file Set : Include additional Ad-Aware settings in log file Set : Include reference summary in log file Set : Play sound at scan completion if scan locates critical objects 5-13-2005 7:09:12 PM - Scan started. (Full System Scan) Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] ModuleName : \SystemRoot\System32\smss.exe Command Line : n/a ProcessID : 632 ThreadCreationTime : 5-14-2005 1:08:03 AM BasePriority : Normal #:2 [csrss.exe] ModuleName : \??\C:\WINDOWS\system32\csrss.exe Command Line : C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestTh ProcessID : 680 ThreadCreationTime : 5-14-2005 1:08:04 AM BasePriority : Normal #:3 [winlogon.exe] ModuleName : \??\C:\WINDOWS\system32\winlogon.exe Command Line : winlogon.exe ProcessID : 704 ThreadCreationTime : 5-14-2005 1:08:05 AM BasePriority : High #:4 [services.exe] ModuleName : C:\WINDOWS\system32\services.exe Command Line : C:\WINDOWS\system32\services.exe ProcessID : 748 ThreadCreationTime : 5-14-2005 1:08:05 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Services and Controller app InternalName : services.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : services.exe #:5 [lsass.exe] ModuleName : C:\WINDOWS\system32\lsass.exe Command Line : C:\WINDOWS\system32\lsass.exe ProcessID : 760 ThreadCreationTime : 5-14-2005 1:08:05 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : LSA Shell (Export Version) InternalName : lsass.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : lsass.exe #:6 [svchost.exe] ModuleName : C:\WINDOWS\system32\svchost.exe Command Line : C:\WINDOWS\system32\svchost -k DcomLaunch ProcessID : 904 ThreadCreationTime : 5-14-2005 1:08:06 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:7 [svchost.exe] ModuleName : C:\WINDOWS\system32\svchost.exe Command Line : C:\WINDOWS\system32\svchost -k rpcss ProcessID : 964 ThreadCreationTime : 5-14-2005 1:08:06 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:8 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k netsvcs ProcessID : 1004 ThreadCreationTime : 5-14-2005 1:08:06 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:9 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k NetworkService ProcessID : 1052 ThreadCreationTime : 5-14-2005 1:08:06 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:10 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k LocalService ProcessID : 1104 ThreadCreationTime : 5-14-2005 1:08:07 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:11 [explorer.exe] ModuleName : C:\WINDOWS\Explorer.EXE Command Line : C:\WINDOWS\Explorer.EXE ProcessID : 1388 ThreadCreationTime : 5-14-2005 1:08:08 AM BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows Explorer InternalName : explorer LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : EXPLORER.EXE #:12 [spoolsv.exe] ModuleName : C:\WINDOWS\system32\spoolsv.exe Command Line : C:\WINDOWS\system32\spoolsv.exe ProcessID : 1456 ThreadCreationTime : 5-14-2005 1:08:08 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Spooler SubSystem App InternalName : spoolsv.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : spoolsv.exe #:13 [avgamsvr.exe] ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe Command Line : C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe ProcessID : 1600 ThreadCreationTime : 5-14-2005 1:08:08 AM BasePriority : Normal FileVersion : 7,1,0,307 ProductVersion : 7.1.0.307 ProductName : AVG Anti-Virus System CompanyName : GRISOFT, s.r.o. FileDescription : AVG Alert Manager InternalName : avgamsvr LegalCopyright : Copyright © 2005, GRISOFT, s.r.o. OriginalFilename : avgamsvr.EXE #:14 [bcmsmmsg.exe] ModuleName : C:\WINDOWS\BCMSMMSG.exe Command Line : "C:\WINDOWS\BCMSMMSG.exe" ProcessID : 1608 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 3.5.25 08/27/2003 20:04:35 ProductVersion : 3.5.25 08/27/2003 20:04:35 ProductName : BCM Modem Messaging Applet CompanyName : Broadcom Corporation FileDescription : Modem Messaging Applet InternalName : smdmstat.exe LegalCopyright : Copyright © Broadcom Corporation 1998-2000 OriginalFilename : smdmstat.exe #:15 [ctsysvol.exe] ModuleName : C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe Command Line : "C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe" ProcessID : 1632 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 1.0.9.0 ProductVersion : 1.0.0.0 ProductName : Creative Volume Control CompanyName : Creative Technology Ltd FileDescription : CTSysVol.exe LegalCopyright : Copyright © Creative Technology Ltd., 2002. All rights reserved. OriginalFilename : CTSysVol.exe #:16 [ctdvddet.exe] ModuleName : C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE Command Line : "C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE" ProcessID : 1640 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 1.0.2.0 ProductVersion : 1.0.2.0 ProductName : CTDVDDET CompanyName : Creative Technology Ltd FileDescription : CTDVDDET InternalName : CTDVDDET LegalCopyright : Copyright © Creative Technology Ltd., 2002. All rights reserved. OriginalFilename : CTDVDDET.EXE #:17 [cthelper.exe] ModuleName : C:\WINDOWS\system32\CTHELPER.EXE Command Line : "C:\WINDOWS\system32\CTHELPER.EXE" ProcessID : 1648 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 1, 0, 0, 10 ProductVersion : 1, 0, 0, 10 ProductName : CtHelper Application CompanyName : Creative Technology Ltd FileDescription : CtHelper MFC Application InternalName : CtHelper LegalCopyright : Copyright © 2002 OriginalFilename : CtHelper.EXE #:18 [dsentry.exe] ModuleName : C:\WINDOWS\System32\DSentry.exe Command Line : "C:\WINDOWS\System32\DSentry.exe" ProcessID : 1664 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 1, 0, 2, 0 ProductVersion : 1, 0, 2, 0 ProductName : Dell - DVDSentry CompanyName : Dell - Advanced Desktop Engineering FileDescription : DVDSentry InternalName : DVDSentry LegalCopyright : Copyright © 2002 Dell OriginalFilename : DSentry.exe Comments : DVDSentry launches your software DVD player when a DVD is inserted. #:19 [avgupsvc.exe] ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe Command Line : C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe ProcessID : 1680 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 7,1,0,285 ProductVersion : 7.1.0.285 ProductName : AVG 7.0 Anti-Virus System CompanyName : GRISOFT, s.r.o. FileDescription : AVG Update Service InternalName : avgupsvc LegalCopyright : Copyright © 2004, GRISOFT, s.r.o. OriginalFilename : avgupdsvc.EXE #:20 [realplay.exe] ModuleName : C:\Program Files\Real\RealPlayer\RealPlay.exe Command Line : "C:\Program Files\Real\RealPlayer\RealPlay.exe" SYSTEMBOOTHIDEPLAYER ProcessID : 1716 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 6.0.9.584 ProductVersion : 6.0.9.584 ProductName : RealPlayer (32-bit) CompanyName : RealNetworks, Inc. FileDescription : RealPlayer InternalName : REALPLAY LegalCopyright : Copyright © RealNetworks, Inc. 1995-2000 LegalTrademarks : RealAudio is a trademark of RealNetworks, Inc. OriginalFilename : REALPLAY.EXE #:21 [mm_tray.exe] ModuleName : C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe Command Line : "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" ProcessID : 1724 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 8.10.2026 ProductVersion : 8.10.2026 ProductName : MUSICMATCH JUKEBOX CompanyName : MUSICMATCH, Inc. FileDescription : mm_tray InternalName : mm_tray LegalCopyright : Copyright © MUSICMATCH 1998-2003 LegalTrademarks : OriginalFilename : mm_tray.exe #:22 [support.exe] ModuleName : C:\Program Files\Common Files\Dell\EUSW\Support.exe Command Line : "C:\Program Files\Common Files\Dell\EUSW\Support.exe" ProcessID : 1756 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 2, 0, 0, 33 ProductVersion : 1, 0, 0, 1 ProductName : Dell Support CompanyName : Dell FileDescription : Support InternalName : Support LegalCopyright : Copyright © 2002 OriginalFilename : Support.exe #:23 [cisvc.exe] ModuleName : C:\WINDOWS\system32\cisvc.exe Command Line : C:\WINDOWS\system32\cisvc.exe ProcessID : 1764 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Content Index service InternalName : cisvc.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : cisvc.exe #:24 [hpgs2wnd.exe] ModuleName : C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe Command Line : "C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" ProcessID : 1772 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 2,3,0,0\ 161 ProductVersion : 2,3,0,0\ 161 ProductName : Hewlett-Packard hpgs2wnd CompanyName : Hewlett-Packard FileDescription : hpgs2wnd InternalName : hpgs2wnd LegalCopyright : Copyright © 2001 OriginalFilename : hpgs2wnd.exe #:25 [qttask.exe] ModuleName : C:\Program Files\QuickTime\qttask.exe Command Line : "C:\Program Files\QuickTime\qttask.exe" -atboottime ProcessID : 1780 ThreadCreationTime : 5-14-2005 1:08:09 AM BasePriority : Normal FileVersion : 6.5 ProductVersion : QuickTime 6.5 ProductName : QuickTime CompanyName : Apple Computer, Inc. InternalName : QuickTime Task LegalCopyright : © Apple Computer, Inc. 2001-2004 OriginalFilename : QTTask.exe #:26 [mmtask.exe] ModuleName : C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe Command Line : "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe" ProcessID : 1836 ThreadCreationTime : 5-14-2005 1:08:10 AM BasePriority : Normal FileVersion : 1.0.0.1 ProductVersion : 1.0.0.1 ProductName : TODO: <Product name> CompanyName : TODO: <Company name> FileDescription : TODO: <File description> InternalName : mmtask.exe LegalCopyright : TODO: © <Company name>. All rights reserved. OriginalFilename : mmtask.exe #:27 [viewmgr.exe] ModuleName : C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe Command Line : "C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe" ProcessID : 1884 ThreadCreationTime : 5-14-2005 1:08:10 AM BasePriority : Normal FileVersion : 2, 0, 0, 42 ProductVersion : 2, 0, 0, 42 ProductName : Viewpoint Manager CompanyName : Viewpoint Corporation FileDescription : ViewMgr InternalName : Viewpoint Manager LegalCopyright : Copyright © 2004 OriginalFilename : ViewMgr.exe Comments : Viewpoint Manager #:28 [ctsvccda.exe] ModuleName : C:\WINDOWS\System32\CTsvcCDA.exe Command Line : C:\WINDOWS\System32\CTsvcCDA.exe ProcessID : 1896 ThreadCreationTime : 5-14-2005 1:08:10 AM BasePriority : Normal FileVersion : 1.0.1.0 ProductVersion : 1.0.0.0 ProductName : Creative Service for CDROM Access CompanyName : Creative Technology Ltd FileDescription : Creative Service for CDROM Access InternalName : CTsvcCDAEXE LegalCopyright : Copyright © Creative Technology Ltd., 1999. All rights reserved. OriginalFilename : CTsvcCDA.EXE #:29 [avgcc.exe] ModuleName : C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe Command Line : "C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" /STARTUP ProcessID : 1936 ThreadCreationTime : 5-14-2005 1:08:10 AM BasePriority : Normal FileVersion : 7,1,0,307 ProductVersion : 7.1.0.307 ProductName : AVG Anti-Virus System CompanyName : GRISOFT, s.r.o. FileDescription : AVG Control Center InternalName : AvgCC LegalCopyright : Copyright © 2005, GRISOFT, s.r.o. OriginalFilename : AvgCC.EXE #:30 [incdsrv.exe] ModuleName : C:\Program Files\Ahead\InCD\InCDsrv.exe Command Line : "C:\Program Files\Ahead\InCD\InCDsrv.exe" ProcessID : 1960 ThreadCreationTime : 5-14-2005 1:08:10 AM BasePriority : Normal FileVersion : 4, 0, 10, 0 ProductVersion : 4, 0, 10, 0 ProductName : AHEAD Software incdsrv CompanyName : AHEAD Software FileDescription : incdsrv InternalName : incdsrv LegalCopyright : Copyright © 2003 OriginalFilename : incdsrv.exe #:31 [gcasserv.exe] ModuleName : C:\Program Files\Microsoft AntiSpyware\gcasServ.exe Command Line : "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe" ProcessID : 1976 ThreadCreationTime : 5-14-2005 1:08:11 AM BasePriority : Idle FileVersion : 1.00.0509 ProductVersion : 1.00.0509 ProductName : Microsoft AntiSpyware (Beta 1) CompanyName : Microsoft Corporation FileDescription : Microsoft AntiSpyware Service InternalName : gcasServ LegalCopyright : Copyright © 2004-2005 Microsoft Corporation. All rights reserved. LegalTrademarks : Microsoft® and Windows® are registered trademarks of Microsoft Corporation. SpyNet is a trademark of Microsoft Corporation. OriginalFilename : gcasServ.exe #:32 [jusched.exe] ModuleName : C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe Command Line : "C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe" ProcessID : 220 ThreadCreationTime : 5-14-2005 1:08:11 AM BasePriority : Normal #:33 [hpgs2wnf.exe] ModuleName : C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe Command Line : "C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe" -Embedding ProcessID : 232 ThreadCreationTime : 5-14-2005 1:08:11 AM BasePriority : Normal FileVersion : 2, 6, 0, 161 ProductVersion : 2, 6, 0, 161 ProductName : hpgs2wnf Module FileDescription : hpgs2wnf Module InternalName : hpgs2wnf LegalCopyright : Copyright 2001 OriginalFilename : hpgs2wnf.EXE #:34 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k imgsvc ProcessID : 260 ThreadCreationTime : 5-14-2005 1:08:11 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:35 [incd.exe] ModuleName : C:\Program Files\Ahead\InCD\InCD.exe Command Line : "C:\Program Files\Ahead\InCD\InCD.exe" ProcessID : 344 ThreadCreationTime : 5-14-2005 1:08:11 AM BasePriority : Normal FileVersion : 4, 0, 10, 0 ProductVersion : 4, 0, 10, 0 ProductName : InCD CompanyName : Ahead Software AG FileDescription : InCD InternalName : InCD LegalCopyright : Copyright © Ahead Software 1996-2003, Karlsbad, Germany LegalTrademarks : InCD TM OriginalFilename : InCD.exe #:36 [wdfmgr.exe] ModuleName : C:\WINDOWS\system32\wdfmgr.exe Command Line : C:\WINDOWS\system32\wdfmgr.exe ProcessID : 372 ThreadCreationTime : 5-14-2005 1:08:12 AM BasePriority : Normal FileVersion : 5.2.3790.1230 built by: dnsrv(bld4act) ProductVersion : 5.2.3790.1230 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows User Mode Driver Manager InternalName : WdfMgr LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : WdfMgr.exe #:37 [gsmedia3.exe] ModuleName : C:\WINDOWS\system32\GSMedia3.exe Command Line : "C:\WINDOWS\system32\GSMedia3.exe" ProcessID : 540 ThreadCreationTime : 5-14-2005 1:08:12 AM BasePriority : Normal FileVersion : 1.00 ProductVersion : 1.00 ProductName : URLBrowser CompanyName : Atix InternalName : URLBrowser OriginalFilename : URLBrowser.exe #:38 [wanmpsvc.exe] ModuleName : C:\WINDOWS\wanmpsvc.exe Command Line : "C:\WINDOWS\wanmpsvc.exe" ProcessID : 552 ThreadCreationTime : 5-14-2005 1:08:12 AM BasePriority : Normal FileVersion : 7, 0, 0, 2 ProductVersion : 7, 0, 0, 2 ProductName : America Online CompanyName : America Online, Inc. FileDescription : Wan Miniport (ATW) Service InternalName : WanMPSvc LegalCopyright : Copyright © 2001 America Online, Inc. OriginalFilename : WanMPSvc.exe #:39 [mspmspsv.exe] ModuleName : C:\WINDOWS\System32\MsPMSPSv.exe Command Line : C:\WINDOWS\System32\MsPMSPSv.exe ProcessID : 596 ThreadCreationTime : 5-14-2005 1:08:12 AM BasePriority : Normal FileVersion : 7.00.00.1954 ProductVersion : 7.00.00.1954 ProductName : Microsoft ® DRM CompanyName : Microsoft Corporation FileDescription : WMDM PMSP Service InternalName : MSPMSPSV.EXE LegalCopyright : Copyright © Microsoft Corp. 1981-2000 OriginalFilename : MSPMSPSV.EXE #:40 [dlg.exe] ModuleName : C:\Program Files\Digital Line Detect\DLG.exe Command Line : "C:\Program Files\Digital Line Detect\DLG.exe" ProcessID : 1264 ThreadCreationTime : 5-14-2005 1:08:13 AM BasePriority : Normal FileVersion : 1, 0, 0, 1 ProductVersion : 1, 0, 0, 1 ProductName : BVRP Software TestLine CompanyName : BVRP Software FileDescription : Digital Line Detection InternalName : TestLine LegalCopyright : Copyright © 2001 OriginalFilename : TestLine.exe #:41 [hpobnz08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe" ProcessID : 1304 ThreadCreationTime : 5-14-2005 1:08:13 AM BasePriority : Normal FileVersion : 2.00 ProductVersion : 001.000.000.155 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet COM Device Objects InternalName : HPOBNZ08 LegalCopyright : Copyright © Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOBNZ08.EXE Comments : HP OfficeJet <Banzai> Series COM Device Objects #:42 [hposol08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe Command Line : "C:\Program ProcessID : 1112 ThreadCreationTime : 5-14-2005 1:08:14 AM BasePriority : Normal FileVersion : 2.00 ProductVersion : 001.000.000.155 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet COM Device Objects InternalName : HPOSOL08 LegalCopyright : Copyright © Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOSOL08.EXE Comments : HP OfficeJet <Solar> Series COM Device Objects #:43 [hpoevm08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe" -Embedding ProcessID : 2096 ThreadCreationTime : 5-14-2005 1:08:16 AM BasePriority : Normal FileVersion : 1.00 ProductVersion : 001.000.000.155 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet COM Event Manager InternalName : HPOEVM08 LegalCopyright : Copyright © Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOEVM08.EXE Comments : HP OfficeJet COM Event Manager #:44 [hposts08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe" /CtxID "#Hewlett-Packard#hp officejet 6100 series#1042776839" /Startup ProcessID : 2160 ThreadCreationTime : 5-14-2005 1:08:17 AM BasePriority : Normal FileVersion : 1.00 ProductVersion : 001.000.000.155 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet Status InternalName : HPOSTS08 LegalCopyright : Copyright © Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOCPY08.EXE Comments : HP OfficeJet Status #:45 [msiexec.exe] ModuleName : C:\WINDOWS\system32\msiexec.exe Command Line : C:\WINDOWS\system32\msiexec.exe /V ProcessID : 2216 ThreadCreationTime : 5-14-2005 1:08:21 AM BasePriority : Normal #:46 [alg.exe] ModuleName : C:\WINDOWS\System32\alg.exe Command Line : C:\WINDOWS\System32\alg.exe ProcessID : 2532 ThreadCreationTime : 5-14-2005 1:08:22 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Application Layer Gateway Service InternalName : ALG.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : ALG.exe #:47 [gcasdtserv.exe] ModuleName : C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe Command Line : "C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe" ProcessID : 2828 ThreadCreationTime : 5-14-2005 1:08:33 AM BasePriority : Normal FileVersion : 1.00.0509 ProductVersion : 1.00.0509 ProductName : Microsoft AntiSpyware (Beta 1) CompanyName : Microsoft Corporation FileDescription : Microsoft AntiSpyware Data Service InternalName : gcasDtServ LegalCopyright : Copyright © 2004-2005 Microsoft Corporation. All rights reserved. LegalTrademarks : Microsoft® and Windows® are registered trademarks of Microsoft Corporation. SpyNet is a trademark of Microsoft Corporation. OriginalFilename : gcasDtServ.exe #:48 [ad-aware.exe] ModuleName : C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe Command Line : "C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe" ProcessID : 3220 ThreadCreationTime : 5-14-2005 1:08:49 AM BasePriority : Normal FileVersion : 6.2.0.206 ProductVersion : VI.Second Edition ProductName : Lavasoft Ad-Aware SE CompanyName : Lavasoft Sweden FileDescription : Ad-Aware SE Core application InternalName : Ad-Aware.exe LegalCopyright : Copyright © Lavasoft Sweden OriginalFilename : Ad-Aware.exe Comments : All Rights Reserved #:49 [wuauclt.exe] ModuleName : C:\WINDOWS\system32\wuauclt.exe Command Line : "C:\WINDOWS\system32\wuauclt.exe" /RunStoreAsComServer Local\[3ec]SUSDS5fcb5648f86d5a47b8d243e1cd7c959a ProcessID : 3244 ThreadCreationTime : 5-14-2005 1:08:58 AM BasePriority : Normal FileVersion : 5.4.3790.2182 built by: srv03_rtm(ntvbl04) ProductVersion : 5.4.3790.2182 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Automatic Updates InternalName : wuauclt.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : wuauclt.exe Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Registry Scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started deep registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Deep registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started Tracking Cookie scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Tracking cookie scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Deep scanning and examining files (C:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for C:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Scanning Hosts file...... Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts". »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Hosts file scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» 11 entries scanned. New critical objects:0 Objects found so far: 0 7:23:47 PM Scan Complete Summary Of This Scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Total scanning time:00:14:35.688 Objects scanned:100513 Objects identified:0 Objects ignored:0 New critical objects:0 |
|
|
May 14 2005, 12:50 PM
Post
#26
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Hi Andy,
What do I do now? How do I stop the pop ups? They are relentless. If I clean my machine according to your instructions I can get about two minutes of internet use before they lock up my machine. Thanks, Keith |
|
|
| Guest_Andy_veal_* |
May 14 2005, 05:15 PM
Post
#27
|
|
|
Please follow the instructions located in Step Five: Posting a Hijack This Log. Post your HJT log as a reply to this thread, which has been relocated to the Malware Removal Forum for providing you with further assistance.
Kindly note that it is very busy in the Malware Removal Forum, so there may be a delay in receiving a reply. Please also note that HJT logfiles are reviewed on a first come/first served basis. |
|
|
May 15 2005, 06:59 PM
Post
#28
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Thanks to the folks at Lavasoft and Hello to the HiJackThis Staff. I have a real problem. I have followed the instructions from the Lavasoft staff and now they have referred me to you. I have a pop up problem so bad that I can't even run a HijackThis log. I can clean my computer according to the Lavasoft instructions and my computer will be clean but within a minute of connecting to the internet, the pop ups will lock up my computer. I have fifty pup ups within 30 seconds and I can't do anything else but disconnect and hard reboot. What can I do? Do I need to do a reinstall to restore my system back to the day it was new? After running CCleaner, Ad-Aware, and doing a scan with TrendMicro my system showed no sign of infection but again after I connect to the internet the pop ups go crazy and take over.
Please help! Thanks, Keith |
|
|
May 15 2005, 07:30 PM
Post
#29
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Logfile of HijackThis v1.99.1
Scan saved at 7:28:36 PM, on 5/15/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\WINDOWS\BCMSMMSG.exe C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE C:\WINDOWS\system32\CTHELPER.EXE C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\WINDOWS\System32\DSentry.exe C:\Program Files\Real\RealPlayer\RealPlay.exe C:\WINDOWS\system32\cisvc.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe C:\Program Files\Common Files\Dell\EUSW\Support.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\System32\CTsvcCDA.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\Program Files\Microsoft AntiSpyware\gcasServ.exe C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\Ahead\InCD\InCD.exe C:\WINDOWS\system32\bitsprx2.exe C:\WINDOWS\wanmpsvc.exe C:\WINDOWS\system32\GSMedia3.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\Program Files\Digital Line Detect\DLG.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe C:\WINDOWS\system32\cidaemon.exe C:\WINDOWS\system32\cidaemon.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Keith Nielsen\Local Settings\Temporary Internet Files\Content.IE5\0J2LM5OP\HijackThis[1].exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\WINDOWS\system32\Searchx.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.charter.net/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.charter.net/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - Default URLSearchHook is missing O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - C:\Program Files\Microsoft Money\System\mnyviewer.dll O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe O4 - HKLM\..\Run: [CTDVDDet] C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe O4 - HKLM\..\Run: [MoneyStartUp10.0] "C:\Program Files\Microsoft Money\System\Activation.exe" O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe O4 - HKLM\..\Run: [PSoft1] C:\WINDOWS\system32\psoft1.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [b29ee913c569] C:\WINDOWS\system32\bitsprx2.exe O4 - HKLM\..\Run: [G3] C:\WINDOWS\system32\GSMedia3.exe O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe" O4 - Global Startup: America Online 7.0 Tray Icon.lnk = C:\Program Files\America Online 7.0\aoltray.exe O4 - Global Startup: Digital Line Detect.lnk = ? O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: officejet 6100.lnk = ? O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://support.charter.com/sdccommon/download/tgctlcm.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409 O16 - DPF: {2F5B39C5-C6F5-447A-A946-48B382C53985} - http://www.pacimedia.com/install/pcs_0015.exe O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/200310...llInstaller.exe O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab O16 - DPF: {BA14D944-0D8C-4F16-A950-6E53EEBB558F} - http://akamai.downloadv3.com/binaries/P2EC..._1040_EN_XP.cab O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe |
|
|
May 15 2005, 07:46 PM
Post
#30
|
|
|
Member ![]() ![]() Posts: 53 OS: XP Pro |
Somehow I was able to get a HiJackThis Scan before the pop ups stopped me.
Please advise on how I should proceed. Thanks! |
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies / Views | Topic Information | |||||
|---|---|---|---|---|---|---|---|
![]() |
13 / 2,034 | 26th August 2005 - 01:36 AM hava33 started - last by Kat |
|||||
![]() |
6 / 2,097 | 15th June 2005 - 01:47 PM kchute started - last by numbnuts |
|||||
![]() |
2 / 1,219 | 30th May 2005 - 12:48 PM computerdude1985 started - last by don77 |
|||||
![]() |
0 / 0 | 24th May 2005 - 04:18 PM RABB started - last by Andy_veal |
|||||
|
Time is now: 21st November 2009 - 05:06 AM |
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising