Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

i dont know if the worm and spyware is in my computer


  • Please log in to reply

#1
tommy619

tommy619

    Member

  • Member
  • PipPip
  • 10 posts
avg anti-spywar remove:
---------------------------------------------------------

+ Created at: 3:16:06 AM 10/16/2006

+ Scan result:



C:\System Volume Information\_restore{D50DAED2-0D7E-44B8-840C-0F5CE726E33F}\RP50\A0001669.dll -> Adware.PurityScan : No action taken.
C:\System Volume Information\_restore{D50DAED2-0D7E-44B8-840C-0F5CE726E33F}\RP51\A0001682.dll -> Adware.PurityScan : No action taken.
C:\Program Files\Common Files\{30AE49CA-0BBE-1033-0909-030130040001}\MyToolBar.dll -> Adware.Softomate : No action taken.
C:\Program Files\Common Files\{D0AE49CA-0BBE-1033-0909-030130040001}\Update.exe -> Adware.Softomate : No action taken.
C:\Program Files\Common Files\{D0AE49CA-0BBE-1033-0909-030130040001}\services.dll -> Adware.Softomate : No action taken.
[1220] C:\Program Files\Common Files\{30AE49CA-0BBE-1033-0909-030130040001}\MyToolBar.dll -> Adware.Softomate : No action taken.
[3492] C:\Program Files\Common Files\{D0AE49CA-0BBE-1033-0909-030130040001}\Update.exe -> Adware.Softomate : No action taken.
C:\Documents and Settings\Tommy Ly\Local Settings\Temporary Internet Files\Content.IE5\SLIJW1EZ\value[1].wmf -> Exploit.MS05-053-WMF : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][1].txt -> TrackingCookie.Adserver : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][2].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][2].txt -> TrackingCookie.Bridgetrack : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][1].txt -> TrackingCookie.Statcounter : No action taken.
C:\Documents and Settings\Tommy Ly\Cookies\tommy [email protected][2].txt -> TrackingCookie.Zedo : No action taken.


::Report end
-----------------------------------------------------------------------------------------------------------------------------
avg anti-virus remove all trogan horse dropper.vb.3.ak that associal with it

i unstall tool888 too

------------------------------------------------------------unstall list------------------------------------------------------
µTorrent
Adobe Download Manager 2.0 (Remove Only)
Adobe Flash Player 9 ActiveX
Adobe Reader 7.0.8
AOL Uninstaller (Choose which Products to Remove)
AVG Anti-Spyware 7.5
AVG Free Edition
CCleaner (remove only)
Counter-Strike: Condition Zero
Creative System Information
GunZ Mouse Re-Binder 1.16
HijackThis 1.99.1
IrfanView (remove only)
K-Lite Mega Codec Pack 1.53
Logitech QuickCam Software
Logitech® Camera Driver
MAIET entertainment - Gunz
Microsoft Office Standard Edition 2003
mIRC
Nero 7 Demo
NVIDIA Drivers
Sound Blaster Audigy 2 ZS
Ventrilo Client
Winamp (remove only)
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Media Format Runtime
WinRAR archiver
Yahoo! Messenger

-----------------------------------------------------------------------------------------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 3:30:16 AM, on 10/16/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe
C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\AOL\1158755182\ee\AOLSoftware.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgwb.dat
C:\Program Files\Winamp\winamp.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\WINDOWS\system32\svchost.exe
c:\program files\common files\aol\1158755182\ee\aim6.exe
C:\Documents and Settings\Tommy Ly\Desktop\Anti\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [CTDVDDET] C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [SBDrvDet] C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe /r
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1158755182\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by110fd.bay11...es/MsnPUpld.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP