Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Possible virus activity targeting my video


  • Please log in to reply

#16
Tigersmoondiva

Tigersmoondiva

    Member

  • Topic Starter
  • Member
  • PipPip
  • 17 posts
Process PID CPU Private Bytes Working Set Description Company Name Verified Signer
System Idle Process 0 92.24 0 K 24 K
procexp.exe 3212 6.21 19,680 K 28,336 K Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
explorer.exe 1384 1.55 37,796 K 51,880 K Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 300 < 0.01 9,624 K 10,484 K Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
System 4 < 0.01 0 K 3,292 K
wmpnetwk.exe 3716 < 0.01 15,872 K 22,468 K Windows Media Player Network Sharing Service Microsoft Corporation (Verified) Microsoft Windows
AvastSvc.exe 1376 < 0.01 26,480 K 29,360 K avast! Service AVAST Software (Verified) AVAST Software
SearchIndexer.exe 3560 < 0.01 40,972 K 21,440 K Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 8172 < 0.01 1,676 K 5,948 K Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 3808 < 0.01 67,380 K 105,732 K Google Chrome Google Inc. (Verified) Google Inc
AvastUI.exe 1928 < 0.01 6,500 K 3,904 K avast! Antivirus AVAST Software (Verified) AVAST Software
svchost.exe 2348 < 0.01 4,028 K 8,256 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
audiodg.exe 896 < 0.01 12,140 K 14,088 K Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 648 < 0.01 2,880 K 6,128 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 4556 < 0.01 50,136 K 72,556 K Google Chrome Google Inc. (Verified) Google Inc
svchost.exe 736 < 0.01 13,656 K 11,664 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 764 < 0.01 70,308 K 74,624 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 776 < 0.01 56,888 K 65,396 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
spoolsv.exe 1524 < 0.01 5,248 K 9,920 K Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
Interrupts n/a < 0.01 0 K 0 K Hardware Interrupts and DPCs
wuauclt.exe 5992 2,792 K 5,984 K Windows Update Microsoft Corporation (Verified) Microsoft Windows
wmpnscfg.exe 3360 1,984 K 5,720 K Windows Media Player Network Sharing Service Configuration Application Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 3032 3,172 K 5,956 K WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
WLIDSVCM.EXE 3352 1,124 K 3,152 K Microsoft® Windows Live ID Service Monitor Microsoft Corporation (Verified) Microsoft Corporation
WLIDSVC.EXE 2760 4,336 K 9,820 K Microsoft® Windows Live ID Service Microsoft Corporation (Verified) Microsoft Corporation
winlogon.exe 348 1,916 K 5,464 K Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 308 1,212 K 3,936 K Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows
TrustedInstaller.exe 6040 6,868 K 10,200 K Windows Modules Installer Microsoft Corporation (Verified) Microsoft Windows
taskeng.exe 4256 2,060 K 5,996 K Task Scheduler Engine Microsoft Corporation (Verified) Microsoft Windows
taskeng.exe 1476 8,976 K 9,720 K Task Scheduler Engine Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 1136 15,264 K 15,220 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 972 5,844 K 11,556 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 576 2,608 K 5,832 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 1572 13,676 K 17,840 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2396 1,092 K 3,464 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2560 952 K 3,148 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2572 2,356 K 5,860 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2604 3,732 K 7,004 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2704 708 K 2,460 K Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
smss.exe 8080 256 K 712 K Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows
SLsvc.exe 932 4,916 K 9,548 K Microsoft Software Licensing Service Microsoft Corporation (Verified) Microsoft Windows
services.exe 388 2,192 K 6,336 K Services and Controller app Microsoft Corporation (Verified) Microsoft Windows
mobsync.exe 3068 3,024 K 5,984 K Microsoft Sync Center Microsoft Corporation (Verified) Microsoft Windows
lsm.exe 408 1,568 K 3,680 K Local Session Manager Service Microsoft Corporation (Verified) Microsoft Windows
lsass.exe 400 3,792 K 2,220 K Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows
dwm.exe 1348 1,328 K 4,488 K Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 1584 30,624 K 50,840 K Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 4812 23,216 K 45,852 K Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 4028 15,540 K 38,536 K Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 4232 29,804 K 40,208 K Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 4512 4,820 K 35,256 K Google Chrome Google Inc. (Verified) Google Inc
  • 0

Advertisements


#17
Tigersmoondiva

Tigersmoondiva

    Member

  • Topic Starter
  • Member
  • PipPip
  • 17 posts
Java 6 updates 30 and 5 are not letting me uninstall - they are asking for a disc.
  • 0

#18
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,799 posts
  • MVP
Does it say what disk they want?

Skip them for now. Do the other stuff then try:

1. Double-click My Computer, and then right-click the hard disk that you want to check. C:
2. Click Properties, and then click Tools.
3. Under Error-checking, click Check Now. A dialog box that shows the Check disk options is displayed,
4. Check both boxes and then click Start.
You will receive the following message:
The disk check could not be performed because the disk check utility needs exclusive access to some Windows files on the disk. These files can be accessed by restarting Windows. Do you want to schedule the disk check to occur the next time you restart the computer?
Click Yes to schedule the disk check, reboot.

The disk check will run and will probably take an hour or more to finish.
  • 0

#19
Tigersmoondiva

Tigersmoondiva

    Member

  • Topic Starter
  • Member
  • PipPip
  • 17 posts

When you finish with the other stuff:

Clear the Java Cache by following the instructions on
http://www.java.com/...lugin_cache.xml

You do not have the latest Java.
First go into Control Panel, Add/Remove Software and remove any old versions (which may call themselves: Java Runtime, Runtime Environment, Runtime, JRE, Java Virtual Machine, Virtual Machine, Java VM, JVM, VM, J2RE, J2SE)
I see:
Java™ 6 Update 30
Java™ 6 Update 5

Get the latest Java at:
http://www.java.com/en/




1. Can't uninstall Java




:OTL
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No CLSID value found.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_30)
MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk - - File not found
MsConfig - StartUpFolder: C:^Users^fred^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CurseClientStartup.ccip - Reg Error: Value error. - File not found
MsConfig - StartUpReg: Windows Defender - hkey= - key= - File not found
[2009/06/09 16:02:28 | 000,000,000 | -H-- | C] () -- C:\ProgramData\pjwllw

:files
sc config osppsvc start= disabled /c
sc config AMPingService start= disabled /c
sc config SmartDefragDriver start= disabled /c
net share Turbine Download Manager /delete /c
net share raw /delete /c
net share en2 /delete /c
net share Licenses /delete /c
net share chrome /delete /c
net share components /delete /c
net share plugins /delete /c
net share dtd /delete /c
net share entityTables /delete /c
net share fonts /delete /c
net start /c

:reg
[-HKEY_CURRENT_USER\SOFTWARE\Classes\.bat]
[-HKEY_CURRENT_USER\SOFTWARE\Classes\.html]
     
:Commands
[EMPTYTEMP]
[Reboot]


then Rightclick on OTL and select Run As Administrator to start. Under the Custom Scans/Fixes box at the bottom, paste (ctrl +v) the text. Verify that you got it all and Then click the RUN FIX button (NOT THE QUICK SCAN button!) at the top
Let the program run unhindered, OTL will reboot the PC when it is done. Please save the log and copy and paste it into a reply.




OTL ran fine until it got to the last TWO commands - then it went unresponsive for over half an hour. I finally rebooted. I hope I didn't mess anything up!
  • 0

#20
Tigersmoondiva

Tigersmoondiva

    Member

  • Topic Starter
  • Member
  • PipPip
  • 17 posts
About to run check disc now.
  • 0

#21
Tigersmoondiva

Tigersmoondiva

    Member

  • Topic Starter
  • Member
  • PipPip
  • 17 posts
ok check disc done;D
  • 0

#22
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,799 posts
  • MVP
OK. Run OTL, Quickscan and post the log. Also run VEW again as before and post the logs. Is it running any better now?

Ron
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP