Menu
Forum
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Gallery
New media
New comments
Search media
Members
Registered members
Current visitors
Classifieds Member Feedback
SHOP
Shop Head Units
Shop Amplifiers
Shop Speakers
Shop Subwoofers
Shop eBay Car Audio
Log in / Register
Forum
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
Log in / Join
What’s new
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Menu
Reply to thread
Forum
Off-topic Discussion
The Lounge
computer virus
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="sumone" data-source="post: 643449" data-attributes="member: 551481"><p>oh yeah and that hijack-this program has a "delete file on reboot" option if you click the config button at the bottom right, then the misc tools tab...</p><p></p><p>having a clean system is good //content.invisioncic.com/y282845/emoticons/smile.gif.1ebc41e1811405b213edfc4622c41e27.gif</p><p></p><p>Logfile of HijackThis v1.99.0</p><p></p><p>Scan saved at 12:47:24 AM, on 12/17/2004</p><p></p><p>Platform: Windows XP SP1 (WinNT 5.01.2600)</p><p></p><p>MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)</p><p></p><p>Running processes:</p><p></p><p>C:\WINDOWS\System32\smss.exe</p><p></p><p>C:\WINDOWS\system32\winlogon.exe</p><p></p><p>C:\WINDOWS\system32\services.exe</p><p></p><p>C:\WINDOWS\system32\lsass.exe</p><p></p><p>C:\WINDOWS\system32\svchost.exe</p><p></p><p>C:\WINDOWS\System32\svchost.exe</p><p></p><p>C:\WINDOWS\system32\spoolsv.exe</p><p></p><p>C:\WINDOWS\System32\tcpsvcs.exe</p><p></p><p>C:\WINDOWS\System32\svchost.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe</p><p></p><p>C:\WINDOWS\wanmpsvc.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe</p><p></p><p>C:\WINDOWS\Explorer.EXE</p><p></p><p>C:\WINDOWS\System32\VTTimer.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\Pop3trap.exe</p><p></p><p>C:\WINDOWS\SOUNDMAN.EXE</p><p></p><p>C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE</p><p></p><p>C:\WINDOWS\System32\wfxsnt40.exe</p><p></p><p>C:\Program Files\Trend Micro\PC-cillin 2002\WebTrap.EXE</p><p></p><p>C:\WINDOWS\System32\devldr32.exe</p><p></p><p>C:\Program Files\CompuServe 7.0\wcs2000.exe</p><p></p><p>C:\Program Files\Winamp\winamp.exe</p><p></p><p>C:\Program Files\Opera7\opera.exe</p><p></p><p>C:\Documents and Settings\me\Desktop\HijackThis.exe</p><p></p><p>O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll</p><p></p><p>O3 - Toolbar: &amp;Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx</p><p></p><p>O4 - HKLM\..\Run: [VTTimer] VTTimer.exe</p><p></p><p>O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe"</p><p></p><p>O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe"</p><p></p><p>O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\Pop3trap.exe"</p><p></p><p>O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe</p><p></p><p>O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE</p><p></p><p>O4 - HKLM\..\Run: [updReg] C:\WINDOWS\Updreg.exe</p><p></p><p>O4 - HKLM\..\Run: [AHQInit] C:\Program Files\Creative\SBLive\Program\AHQInit.exe</p><p></p><p>O4 - HKLM\..\Run: [AudioHQ] C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE</p><p></p><p>O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe</p><p></p><p>O4 - Global Startup: CompuServe 7.0 Tray Icon.lnk = C:\Program Files\CompuServe 7.0\cstray.exe</p><p></p><p>O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE</p><p></p><p>O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm</p><p></p><p>O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000</p><p></p><p>O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm</p><p></p><p>O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL</p><p></p><p>O9 - Extra button: AOL Instant Messenger (SM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe</p><p></p><p>O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll</p><p></p><p>O16 - DPF: {4E330863-6A11-11D0-BFD8-006097237877} (InstallFromTheWeb ActiveX Control) - <a href="http://tw.msi.com.tw/autobios/client/iftwclix.cab" target="_blank">http://tw.msi.com.tw/autobios/client/iftwclix.cab</a></p><p></p><p>O17 - HKLM\System\CCS\Services\Tcpip\..\{813A3371-9DE7-4515-AD6E-244FF0CC3DC2}: NameServer = 205.188.146.146</p><p></p><p>O23 - Service: PC-cillin PersonalFirewall - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe</p><p></p><p>O23 - Service: Trend NT Realtime Service - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe</p><p></p><p>O23 - Service: WAN Miniport (ATW) Service - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe</p></blockquote><p></p>
[QUOTE="sumone, post: 643449, member: 551481"] oh yeah and that hijack-this program has a "delete file on reboot" option if you click the config button at the bottom right, then the misc tools tab... having a clean system is good [IMG]//content.invisioncic.com/y282845/emoticons/smile.gif.1ebc41e1811405b213edfc4622c41e27.gif[/IMG] Logfile of HijackThis v1.99.0 Scan saved at 12:47:24 AM, on 12/17/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\tcpsvcs.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe C:\WINDOWS\wanmpsvc.exe C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\VTTimer.exe C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe C:\Program Files\Trend Micro\PC-cillin 2002\Pop3trap.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE C:\WINDOWS\System32\wfxsnt40.exe C:\Program Files\Trend Micro\PC-cillin 2002\WebTrap.EXE C:\WINDOWS\System32\devldr32.exe C:\Program Files\CompuServe 7.0\wcs2000.exe C:\Program Files\Winamp\winamp.exe C:\Program Files\Opera7\opera.exe C:\Documents and Settings\me\Desktop\HijackThis.exe O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\pccguide.exe" O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\PCCClient.exe" O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 2002\Pop3trap.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [updReg] C:\WINDOWS\Updreg.exe O4 - HKLM\..\Run: [AHQInit] C:\Program Files\Creative\SBLive\Program\AHQInit.exe O4 - HKLM\..\Run: [AudioHQ] C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe O4 - Global Startup: CompuServe 7.0 Tray Icon.lnk = C:\Program Files\CompuServe 7.0\cstray.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: AOL Instant Messenger (SM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O16 - DPF: {4E330863-6A11-11D0-BFD8-006097237877} (InstallFromTheWeb ActiveX Control) - [URL="http://tw.msi.com.tw/autobios/client/iftwclix.cab"]http://tw.msi.com.tw/autobios/client/iftwclix.cab[/URL] O17 - HKLM\System\CCS\Services\Tcpip\..\{813A3371-9DE7-4515-AD6E-244FF0CC3DC2}: NameServer = 205.188.146.146 O23 - Service: PC-cillin PersonalFirewall - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe O23 - Service: Trend NT Realtime Service - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe O23 - Service: WAN Miniport (ATW) Service - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe [/QUOTE]
Insert quotes…
Verification
Post reply
Forum
Off-topic Discussion
The Lounge
computer virus
Top
Menu
What's new
Forum list