Menu
Forum
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Gallery
New media
New comments
Search media
Members
Registered members
Current visitors
Classifieds Member Feedback
SHOP
Shop Head Units
Shop Amplifiers
Shop Speakers
Shop Subwoofers
Shop eBay Car Audio
Log in / Register
Forum
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
Log in / Join
What’s new
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Menu
Reply to thread
Forum
Off-topic Discussion
The Lounge
computer virus
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="vosschs" data-source="post: 643235" data-attributes="member: 557249"><p>heres the log if it helps dont know why</p><p></p><p>Logfile of HijackThis v1.99.0</p><p></p><p>Scan saved at 9:45:40 PM, on 12/16/2004</p><p></p><p>Platform: Windows XP SP1 (WinNT 5.01.2600)</p><p></p><p>MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)</p><p></p><p>Running processes:</p><p></p><p>C:\WINDOWS\System32\smss.exe</p><p></p><p>C:\WINDOWS\system32\winlogon.exe</p><p></p><p>C:\WINDOWS\system32\services.exe</p><p></p><p>C:\WINDOWS\system32\lsass.exe</p><p></p><p>C:\WINDOWS\system32\svchost.exe</p><p></p><p>C:\WINDOWS\System32\svchost.exe</p><p></p><p>C:\WINDOWS\system32\spoolsv.exe</p><p></p><p>C:\WINDOWS\system32\drivers\KodakCCS.exe</p><p></p><p>c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe</p><p></p><p>C:\WINDOWS\System32\nvsvc32.exe</p><p></p><p>c:\PROGRA~1\mcafee.com\vso\mcshield.exe</p><p></p><p>C:\WINDOWS\Explorer.EXE</p><p></p><p>C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe</p><p></p><p>C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe</p><p></p><p>C:\PROGRA~1\mcafee.com\agent\mcagent.exe</p><p></p><p>C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe</p><p></p><p>C:\WINDOWS\System32\RUNDLL32.EXE</p><p></p><p>C:\Program Files\MSN Messenger\MsnMsgr.Exe</p><p></p><p>C:\Documents and Settings\kyle\Application Data\ore.exe</p><p></p><p>C:\WINDOWS\System32\??rvices.exe</p><p></p><p>C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe</p><p></p><p>C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe</p><p></p><p>c:\progra~1\mcafee.com\vso\mcvsescn.exe</p><p></p><p>c:\progra~1\mcafee.com\vso\mcvsftsn.exe</p><p></p><p>C:\Program Files\Messenger\msmsgs.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\WINDOWS\System32\wuauclt.exe</p><p></p><p>C:\WINDOWS\system32\rundll32.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\Documents and Settings\kyle\Local Settings\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe</p><p></p><p>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794</p><p></p><p>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794</p><p></p><p>R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://www.yahoo.com/" target="_blank">http://www.yahoo.com/</a></p><p></p><p>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank</p><p></p><p>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794</p><p></p><p>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794</p><p></p><p>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794</p><p></p><p>R3 - URLSearchHook: (no name) - _{CA0E28FA-1AFD-4C21-A8DC-70EB5BE2F076} - (no file)</p><p></p><p>O1 - Hosts: 69.20.16.183 auto.search.msn.com</p><p></p><p>O1 - Hosts: 69.20.16.183 search.netscape.com</p><p></p><p>O1 - Hosts: 69.20.16.183 ieautosearch</p><p></p><p>O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll</p><p></p><p>O3 - Toolbar: &amp;Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx</p><p></p><p>O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll</p><p></p><p>O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll</p><p></p><p>O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup</p><p></p><p>O4 - HKLM\..\Run: [nwiz] nwiz.exe /install</p><p></p><p>O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe"</p><p></p><p>O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe</p><p></p><p>O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime</p><p></p><p>O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask</p><p></p><p>O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"</p><p></p><p>O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe</p><p></p><p>O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe</p><p></p><p>O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe</p><p></p><p>O4 - HKLM\..\Run: [utSenp] C:\documents and settings\kyle\local settings\temp\utSenp.exe</p><p></p><p>O4 - HKLM\..\Run: [P1Bxuv00D] C:\documents and settings\kyle\local settings\temp\P1Bxuv00D.exe</p><p></p><p>O4 - HKLM\..\Run: [4#ADH#D52GY7S7] C:\WINDOWS\System32\Evem14U6.exe</p><p></p><p>O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit</p><p></p><p>O4 - HKCU\..\Run: [warez] "C:\Program Files\Warez P2P Client\warez.exe" -h</p><p></p><p>O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background</p><p></p><p>O4 - HKCU\..\Run: [stot] C:\Documents and Settings\kyle\Application Data\ore.exe</p><p></p><p>O4 - HKCU\..\Run: [Vcrjf] C:\WINDOWS\System32\??rvices.exe</p><p></p><p>O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe</p><p></p><p>O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe</p><p></p><p>O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll</p><p></p><p>O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll</p><p></p><p>O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE</p><p></p><p>O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE</p><p></p><p>O15 - Trusted Zone: *.awmdabest.com</p><p></p><p>O15 - Trusted Zone: *.frame.crazywinnings.com</p><p></p><p>O15 - Trusted Zone: *.awmdabest.com (HKLM)</p><p></p><p>O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM)</p><p></p><p>O15 - Trusted IP range: 206.161.125.149</p><p></p><p>O15 - Trusted IP range: (HKLM)</p><p></p><p>O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab</p><p></p><p>O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - <a href="http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab" target="_blank">http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab</a></p><p></p><p>O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - <a href="http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab" target="_blank">http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab</a></p><p></p><p>O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - <a href="http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab" target="_blank">http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab</a></p><p></p><p>O23 - Service: ISEXEng - Unknown - C:\WINDOWS\System32\angelex.exe (file missing)</p><p></p><p>O23 - Service: Kodak Camera Connection Software - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe</p><p></p><p>O23 - Service: McAfee.com McShield - Unknown - c:\PROGRA~1\mcafee.com\vso\mcshield.exe</p><p></p><p>O23 - Service: McAfee SecurityCenter Update Manager - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe</p><p></p><p>O23 - Service: McAfee.com VirusScan Online Realtime Engine - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe</p><p></p><p>O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe</p></blockquote><p></p>
[QUOTE="vosschs, post: 643235, member: 557249"] heres the log if it helps dont know why Logfile of HijackThis v1.99.0 Scan saved at 9:45:40 PM, on 12/16/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\drivers\KodakCCS.exe c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe C:\WINDOWS\System32\nvsvc32.exe c:\PROGRA~1\mcafee.com\vso\mcshield.exe C:\WINDOWS\Explorer.EXE C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe C:\PROGRA~1\mcafee.com\agent\mcagent.exe C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe C:\WINDOWS\System32\RUNDLL32.EXE C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Documents and Settings\kyle\Application Data\ore.exe C:\WINDOWS\System32\??rvices.exe C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe c:\progra~1\mcafee.com\vso\mcvsescn.exe c:\progra~1\mcafee.com\vso\mcvsftsn.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\System32\wuauclt.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\kyle\Local Settings\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL="http://www.yahoo.com/"]http://www.yahoo.com/[/URL] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\aqsyq.dll/sp.html#37794 R3 - URLSearchHook: (no name) - _{CA0E28FA-1AFD-4C21-A8DC-70EB5BE2F076} - (no file) O1 - Hosts: 69.20.16.183 auto.search.msn.com O1 - Hosts: 69.20.16.183 search.netscape.com O1 - Hosts: 69.20.16.183 ieautosearch O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe" O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe O4 - HKLM\..\Run: [utSenp] C:\documents and settings\kyle\local settings\temp\utSenp.exe O4 - HKLM\..\Run: [P1Bxuv00D] C:\documents and settings\kyle\local settings\temp\P1Bxuv00D.exe O4 - HKLM\..\Run: [4#ADH#D52GY7S7] C:\WINDOWS\System32\Evem14U6.exe O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit O4 - HKCU\..\Run: [warez] "C:\Program Files\Warez P2P Client\warez.exe" -h O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [stot] C:\Documents and Settings\kyle\Application Data\ore.exe O4 - HKCU\..\Run: [Vcrjf] C:\WINDOWS\System32\??rvices.exe O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O15 - Trusted Zone: *.awmdabest.com O15 - Trusted Zone: *.frame.crazywinnings.com O15 - Trusted Zone: *.awmdabest.com (HKLM) O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM) O15 - Trusted IP range: 206.161.125.149 O15 - Trusted IP range: (HKLM) O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - [URL="http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab"]http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab[/URL] O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - [URL="http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab"]http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab[/URL] O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - [URL="http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab"]http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab[/URL] O23 - Service: ISEXEng - Unknown - C:\WINDOWS\System32\angelex.exe (file missing) O23 - Service: Kodak Camera Connection Software - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: McAfee.com McShield - Unknown - c:\PROGRA~1\mcafee.com\vso\mcshield.exe O23 - Service: McAfee SecurityCenter Update Manager - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe O23 - Service: McAfee.com VirusScan Online Realtime Engine - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe [/QUOTE]
Insert quotes…
Verification
Post reply
Forum
Off-topic Discussion
The Lounge
computer virus
Top
Menu
What's new
Forum list