Blogs about Nero Ag

2007-11-05 20:56  Por favor revisen mi log no puedo entrar a una pag de internet
Bueno mi problema es q no quiere entrar a una sola pag de internet pero probe en otra pc y entra lo mas bien... aqui dejo el log a ver si me pueden dar una mano.. grax Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:45:15 p.m., on 05/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass. …
Read more on “Foro de Spyware”
Tags:   ADA NameServer, ActiveScan Installer Class, Adobe Systems, Ahead Lib NeroCheck, Apple Computer Inc, Archivo, Bonjour, Bonjour Service, CKAVWebScan Object, Consola, Control, EDFD DCD NameServer, Eset, Extra, Extra Tools, IntelAudioStudio, Internet Explorer, Java, LClock, LClock LClock, LinkId, Logfile, MSN Messenger, MSN PUpld, Macrovision Corporation, Macrovision Europe Ltd, Messenger, MessengerStat, MessengerStatsClient Class, Microsoft Excel, MineSweeper, NVIDIA Corporation, NameServer, Nero AG, NeroFilterCheck, Normal Running, NvCpl, NvCplDaemon RUNDLL, NvMcTray, NvMediaCenter RUNDLL, NvStartup, NvTaskbarInit, Referencia, Service Boonty Games, Service Id String, Service NBService, Settings ProxyOverride, SigmatelSysTrayApp, Sun Java, SunJavaUpdateSched, Trend Micro HijackThis, UnoCtrl Class, User Default, User SERVICIO LOCAL, User SYSTEM, User Servicio, WINDOWS Explorer, WINDOWS System, WUWebControl Class, Winamp, Windows Messenger, ..

2007-10-20 18:16  Pop Ups de publicidad
Estimados amigos: Tengo problemas serios con las ventanas emergente al iniciar internet. Siempre me salen ventanas de publicidad muy diversa. Les anexo mi log para qe por favor me den una mano. Saludos: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:41:38, on 20/10/2007 Platform: Windows Vista (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16546) Boot mode: Normal Running processes: C:\Program Files (x86)\MSN Messenger\msnmsgr.exe C:\Program Files (x86)\Google\GoogleToolba …
Read more on “Foro de Spyware”
Tags:   Adobe PDF Reader, Adobe Reader, Ares Ares, BHO Aplicación, BHO SSVHelper Class, BHO Yahoo, BgMonitor, BrMfcWnd, Brother Brmfcmon BrMfcWnd, Brother ControlCenter, Consola, ControlCenter, DivXBrowserPlugin, DivXBrowserPlugin Object, Eset, Extra, Extra Tools, Google, Google GoogleToolbarNotifier, Gopher Prefix, Helper, Hewlett-Packard Company, Host, IndexSearch, Install, Internet Explorer, Java, KeyIso, LinkId, Locator, Logfile, MSN Messenger, MSN Messenger MsnMsgr, Macrovision Corporation, Microsoft Excel, MsnMsgr, NBKeyScan, Nero AG, Netlogon, Normal Running, Oki Data Corporation, PaperPort PTD, Program Files, ProtectedStorage, QuickTime QTTask, QuickTime Task, Reader, Referencia, RpcLocator, SLsvc, SSBkgdUpdate, SamS, ScanSoft PaperPort, ScanSoft PaperPort IndexSearch, Service, Service HASP Loader, Service NMIndexingService, Service SystemRoot, Service SystemRoot System, Service Systemroot, Sidebar, Speech Recognition, Spooler, Sun Java, SunJavaUpdateSched, Tengo, Toolbar Barra Yahoo, Toolbar Google, Trend Micro HijackThis, UI Detect, URLSearchHook Barra Yahoo, Unknown, User SERVICIO LOCAL, User Servicio, UserInit, WMPNetworkSvc, WinZip WZQKPICK, Window, Windows Live Favorites, Windows Live Search, Windows Live Toolbar, Windows Media Player, Windows Speech Common, Windows SysWOW, Windows System, WindowsWelcomeCenter, WmiApSrv, YInstStarter Class, Yahoo, ..

2007-08-10 08:03  I am wondering if I am infected
My sister downloaded p2p programs and I found a load of adware with Spybot: search and destroy which I deleted. I am wondering if I am infected with anything else Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 09:02:20, on 10/08/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C: …
Read more on “Safer Networking Forums”
Tags:   AlertEng, BHO NAV Helper, BHO RXResultTracker Class, BHO SSVHelper Class, BgMonitor, Express Cleanup, Extra, Extra Tools, Filter, GEAR Software, Internet Explorer, Logfile, Messenger, MsnMsgr, Nero AG, NeroFilterCheck, Normal Running, Norton Ghost, PIFSvc, PROGRA SPYBOT SDHelper, PnkBstrA, PnkBstrB, Program Files Java, Program Files Messenger, Program Files RXToolBar, SUPERAntiSpyware, Service ATI Smart, Service GEARSecurity, Service LiveUpdate, Service NBService, Service Norton Ghost, Service PnkBstrA, Service PnkBstrB, Service SPBBCSvc, Service Speed Disk, SoundMan SOUNDMAN, SpySweeper, Spybot, Startup Xfire, Sun Java Console, SunJavaUpdateSched, Symantec Corporation, Symantec PIF AlertEng, Toolbar Norton AntiVirus, Trend Micro HijackThis, Unknown, User Default, User LOCAL SERVICE, User NETWORK SERVICE, User SYSTEM, User Suzanne, WINDOWS Explorer, WINDOWS System, WINDOWS System GEARSec, Windows Messenger, Winlogon Notify, ..

2007-08-09 22:35  Ultimate Cleaner Headache!
Hi all, Seems my PC is riddled with this Ultimate Cleaner. My desktop background has been changed to one big link "Protecting my Privacy", Theres so many popups and fake alerts its hard to get through a sentence without 10 more! :banghead: Im not so good with these types of things but having read through, heres the HJT report: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 11:21:50 PM, on 8/9/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal Running processes: C:\W …
Read more on “Safer Networking Forums”
Tags:   ALUAlert, AVG Run, AcRdB, AcroIEHelper, ActiveX Control, AdobeUpdateManager, AntiSpyWare Guard, Apple Inc, AppleMobileDeviceService, BHO MSVPS System, BHO SSVHelper Class, Backward Links, C-Media Mixer Mixer, Cached Snapshot, Cleaner Headache, Document, ESC Trusted Zone, English, Extra, Extra Tools, Global Startup DSLMON, Google Search, GoogleToolbar, Hewlett-Packard Company, InCD, KEMailKb, Logfile, Macrovision Corporation, Messenger, MsnMsgr, MsnPUpld, NVIDIA Corporation, Nero AG, NeroCheck, NeroFilterCheck, Nicosia, Normal Running, NvCpl, NvCplDaemon RUNDLL, NvMcTray, NvMediaCenter RUNDLL, NvStartup, NvTaskbarInit, PROGRA Grisoft AVG, PROGRA KEMailKb KEMailKb, Page, Plugin, PnkBstrA, PnkBstrB, Privacy Theres, Program Files, Program Files Java, Program Files Messenger, Program Files Spybot, Program Files Yahoo, Protecting, QuickTime Task, Scan, Search Destroy SDHelper, Seem, Service, Service MSCSPTISRV, Service Memeo BMUService, Service PACSPTISVR, Service PnkBstrA, Service PnkBstrB, SharedTaskScheduler Browseui, SharedTaskScheduler Component Categories, Similar Pages, Sony Corporation, SpySweeper, SpybotDeletingA, SpybotDeletingB, SpybotDeletingC, SpybotDeletingD, Startup Memeo Launcher, Sun Java Console, SunJavaUpdateSched, Symantec Corporation, SystemTray SysTray, System, Tanagra Inc, Thank, Toolbar, Toolbar Google, Translate English Word, Translate Page, Trend Micro HijackThis, Ultimate Cleaner, Unknown, User Default, User SYSTEM, VTTimer, VTTimer VTTimer, VTTrayp VTtrayp, WINDOWS Explorer, WINDOWS Mixer, WINDOWS System, Webroot Software Inc, Windows Messenger, Wireless Assistant, Yahoo, YahooMessenger, ..

2007-07-25 07:00  Virmonde.O
Hi, I have the same problem similar to other users with regards to Virtumonde.O I am getting constant pop ups when using the internet have read similar posts and need help to clean system. Hijack Log is as follows. Thanks guys. Logfile of HijackThis v1.99.1 Scan saved at 4:54:12 PM, on 25/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.e …
Read more on “Safer Networking Forums”
Tags:   ATI Technologies Inc, BgMonitor, DGTx, Dldrv, Document, Domain, DownloadManager Control, DropDisc, EF EPUImageControl Class, Easy-WebPrint Preview, Easy-WebPrint Print, Extra, Extra Tools, FF QOLCheck Control, Hewlett-Packard Company, HijackThis, INTERNATIONAL International, IW Drop Icon, Internet Explorer, KernelFaultCheck, Lavasoft AB, LinkId, Macrovision Corporation, MemoryManager, Messenger, Microsoft Excel, Nero AG, NeroFilterCheck, Network Diagnostic, Option, PROGRA Grisoft AVG, Pinnacle System, Program Files Java, Program Files Messenger, Protocol, QOLCheck, RC AddToList, RC HSPrint, RC Preview, RC Print, Reader, Research, Rocket Division Software, SSODL WPDShServiceObj, Service ATI Smart, Service Ad-Aware Service, Service MSSQL PINNACLESYS, Service NBService, Service SQLAgent PINNACLESYS, Sun Java Console, SunJavaUpdateSched, Toolbar Easy-WebPrint, URLSearchHook Yahoo, Unknown, Virtumonde, WINDOWS Explorer, WINDOWS System, WPDShServiceObj, Windows Defender, Windows Messenger, ..

2007-07-25 05:41  Ultimate Cleaner, Ultimate Defender, Ultimate Fixer, Security Monitor
Hello, I noticed today that I have been infected with this. I have researched the forums and tried several things, hijack this, spyware doctor, and the online scan at http://www.kaspersky.com/downloads/kws/kavwebscan.htm. Below are my logs as I have not yet gotten rid of it. Any help is greatly appreciated. P.S. I will post the kaspersky log as soon as it is done. Hijack This Log: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 1:29:42 AM, on 7/25/2007 Platform: Windows XP SP2 (Win …
Read more on “Safer Networking Forums”
Tags:   AVG Run, AcRdB, AcroIEHelper, Adobe Systems, AdobeUpdateManager, Apple Inc, BHO SSVHelper Class, CACE Technologies, CKAVWebScan Object, Desktop Component, Document, ED Support, EFFAEF NCWeb, EPSON Stylus Photo, Extra, Extra Tools, Hewlett-Packard Company, INCA Internet Co, InCD, Init, Installer, LinkID, MSWindowsUpdate, Macrovision Corporation, MemoryManager, Messenger, MetaStreamCtl Class, Microsoft Excel, MsPMSPSv, NVIDIA Corporation, Name, NameServer, Nero AG, NeroCheck, NeroFilterCheck, Normal Running, NvCpl, NvCplDaemon RUNDLL, NvMcTray, NvMediaCenter RUNDLL, NvStartup, NvTaskbarInit, PC Tools, PROGRA Grisoft AVG, Program, Program Files, Program Files AIM, Program Files Java, Program Files Messenger, Program Files QuickTime, Program Files USoft, Program Files WinPcap, QuickTime Task, Registration, RemoteControl, Rodolofo, SDTray, Scan, Serie, Service, Service MySQL, SharedTaskScheduler Browseui, SharedTaskScheduler Component Categories, Sothink SWF Catcher, SoundMan SOUNDMAN, SpyHunter, Startup Adobe Gamma, Startup Epson, Stylus Photo, Sun Java Console, SunJavaUpdateSched, This Log Logfile, Titles Ereg EPSONREG, Trend Micro HijackThis, Unknown, User Default, User SYSTEM, WINDOWS Explorer, WINDOWS System, WgaTray, Windows Messenger, Windows Update Host, WindowsFirewallSvc, Winlogon Notify, Zune Launcher, ..

2007-07-15 18:59  Virtumonde infection not going away
Managed to recieve a trojan which was narrowed down by another forum to being a Virtumonde infection. Ran all sorts of programs, including Spybot (natch), Vundofix, CleanUp!, and HiJackThis, amongst others. This seemed to just make the problem change which files it used to present itself. After having success on this forum in the past, I decided to try here instead. My HiJackThis log follows: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 19:44:02, on 15/07/2007 Platform: Windows …
Read more on “Safer Networking Forums”
Tags:   ASUS Probe, Apple Computer Inc, BC MessengerStatsClient Class, BHO SSVHelper Class, Ben Woodman, BinFrameWork, BluetoothAuthenticationAgent, CDROM Access, CE CBankshotZoneCtrl Class, CTHelper CTHELPER, CTSysVol, CTsvcCDA, CTxfiHlp CTXFIHLP, Creative SoundFont Synthesizer, Creative Technology Ltd, DC- ZoneIntro Class, DD Crucial, Document, Eastman Kodak Company, Extra, Extra Tools, FC MUWebControl Class, Hewlett-Packard Company, HiJackThis, ICQ Pro, KodakCCS, Learning Edition, LinkId, Logfile, Macrovision Corporation, Messenger, MsPMSPSv, MsnMsgr, NVIDIA Corporation, Name, NameServer, Nero AG, NeroFilterCheck, Network Diagnostic, Normal Running, NvCpl, NvCplDaemon RUNDLL, NvMcTray, NvMediaCenter RUNDLL, NvStartup, NvTaskbarInit, PROGRA SPYBOT SDHelper, Plugin, Program Files, Program Files Java, Program Files Messenger, Reader, SBDrvDet, Scan, Service, Service Creative Service, Service NBService, SetDefaultMIDI MIDIDEF, SharedTaskScheduler Browseui, SharedTaskScheduler Component Categories, Shockwave Flash Object, Spybot, StagingUI Object, Sun Java Console, SunJavaUpdateSched, TkBellExe, Trend Micro HijackThis, Trend Micro Inc, Trend Micro Incorporated, Unknown, UpdReg, User Default, User LOCAL SERVICE, User NETWORK SERVICE, User SYSTEM, Virtumonde, Vundofix CleanUp, WINDOWS Explorer, WINDOWS System, WINDOWS System CTFMON, WINDOWS UpdReg, WUWebControl Class, Windows Messenger, Winlogon Notify, XboxStat, ZoneBuddy Class, ZonePAChat Object, ..

2007-07-13 02:41  My computer happen to have winAntiSpyware 2007 4.0.193.0
Happen to have a lot of popups. Last time problem: http://forums.spybot.info/showthread.phpt=14314 Please help me. Thanks Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 7:19:44 PM, on 7/12/2007 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS …
Read more on “Safer Networking Forums”
Tags:   AcRdB, AcroRd, AdobeUpdateManager, Aida, Autodesk, BgMonitor, Canon Inc, DFE TDServer Control, EA WScanCtl Class, Extra, Extra Tools, FC MUWebControl Class, Groove Control, HotKeysCmds, IPInSightLAN, IPInSightMonitor, IgfxTray, Installation Support, Install, InstantAccess, Internet Explorer, Intuit, Logfile, Macrovision Corporation, Messenger, Microsoft Excel, Motive SmartBridge, Nero AG, NeroFilterCheck, Normal Running, PCMService, PROGRA SYMANT VPTray, PROGRA Yahoo, Please, Program Files WinAntiSpyware, Program Files Yahoo, QuickTimeF, Research, RunNarrator Narrator, Salestart, Service NBService, Service SAVRoam SavRoam, Service Symantec AntiVirus, Sun Java Console, Symantec Corporation, SysPro, SysProWmi Class, TomTomHOME, Toolbar Radio, Toolbar Yahoo, Trend Micro HijackThis, URLSearchHook Yahoo, User Default, User SYSTEM, WAFDownloader Class, WINDOWS Explorer, WINDOWS System, WUWebControl Class, WinAntiSpyware Free, Windows Messenger, Yahoo, Yinsthelper, ..

2007-07-12 20:36  Am I still Infected Help
Ran S&D cleaned out something called virtumondo came back came to this forum and followed instructions ran S&D in safe mode etc seemes to be ok now want to bsure can you Help me. Thanks: Cart -------------------------------------------------------------------------- CA Online Scan axpqcitw.dll.vir Win32/Vundo cannot cure C:\QooBox\Quarantine\C\WINDOWS\system32\ cowfoojm.exe.vir Win32/Secdrop.OC cannot cure C:\QooBox\Quarantine\C\WINDOWS\system32\ fxouhvlm.dll.vir Win32/Vundo cannot cure C:\QooBo …
Read more on “Safer Networking Forums”
Tags:   Acronis, Acronis Scheduler Service, AcronisTimounterMonitor, BHO Catcher Class, BHO SSVHelper Class, CA Online Scan, CDROM Access, CTHelper CTHELPER, CTSUEng, CTsvcCDA, CTxfiHlp CTXFIHLP, Cart, Creative Software AutoUpdate, Creative Toolbox Plug-in, Customize Menu, Document, EA WScanCtl Class, Extra, Extra Tools, FC MUWebControl Class, Fill Forms, Google, Help, HpProductDetection Class, Infected Help, Ink Monitor, Lavasoft AB, LinkId, Logfile, Messenger, Microsoft Excel, MsPMSPSv, NVIDIA Corporation, Nero AG, Network Diagnostic, Normal Running, NvCpl, NvCplDaemon RUNDLL, NvMCTray, NvMediaCenter RunDLL, NvStartup, NvTaskbarInit, OneCareUI, OneNote, PROGRA SPYBOT SDHelper, Program Files Java, Program Files Messenger, Pure Networks Inc, QooBox Quarantine, Research, RoboForm, RoboForm Toolbar, Save, Save Form, Scan, Send, Service Ad-Aware Service, Service Creative Service, SharedTaskScheduler Browseui, SharedTaskScheduler Component Categories, Shockwave Flash Object, Sun Java Console, Toolbar RoboForm, Trend Micro HijackThis, TrueImageMonitor, Unknown, WINDOWS Explorer, WINDOWS System, Win Darksma, Win Secdrop, Win Vundo, Windows Messenger, ..

2007-07-12 20:14  Help with Virtomonde, pop ups and slow PC
I cannot get rid off the virtomode trojan. I am running with restore disable and Spybot will find and delete it, but it comes back. IE pop up with different sites by itself. The PC is very slow. Please help. Attached is the CA online scan. then I run Spybot in safe mode a couple of times. The first time found and deleted several theats, the second time reported a clean bill of health. and I reboot and run HJT. Thanks in advance for any suggestions. Scan Results: 70476 files scanned. 2 viruses we …
Read more on “Safer Networking Forums”
Tags:   AB HomePrintingCtrl Class, AcroIEHelper, Anti-Spyware, Apple Computer Inc, BF DLC Class, BHO SSVHelper Class, BHO Yahoo, Customize Menu, Document, EA WScanCtl Class, Extra, Extra Tools, FC MUWebControl Class, FileMonitor, Fill Forms, Google, GrooveMonitor, Helper, InCD, Infection Status Path, Install, Internet Explorer, Launcher, Lavasoft AB, LinkId, MSN Search, Macrovision Corporation, Messenger, Microsoft Excel, MsgSys, NVIDIA Corporation, Nero AG, Normal Running, NvCplDaemon RUNDLL, NvMediaCenter RUNDLL, NvStartup, NvTaskbarInit, OneNote, Open, PROGRA SPYBOT SDHelper, Picasa Media Detector, Program Files, Program Files Java, Program Files Messenger, Program Files NavNT, Program Files QuickTime, Program Files Yahoo, Protocol, QuickTime Task, RF Toolbar, Research, Result, RoboForm, Save, Save Form, Send, Service, Service Ad-Aware Service, Service DefWatch, Spybot, Startup Folding Home, Sun Java Console, SunJavaUpdateSched, Symantec Corporation, Toolbar Google, Toolbar RoboForm, Toolbar Yahoo, Trend Micro HijackThis, URLSearchHook Yahoo, Unknown, User Default, User NETWORK SERVICE, User SYSTEM, View RTE, View RTE Class, Virtomonde, WINDOWS Explorer, WINDOWS Network Diagnostic, WINDOWS SYSTEM Logfile, WINDOWS SYSTEM ZoneLabs, WINDOWS System, WINDOWS System CTFMON, WINDOWS System NvCpl, WINDOWS System NvMcTray, Win Vundo, Windows Defender, Windows Messenger, Winlogon Notify, YInstStarter Class, Zone Labs Client, Zone Labs Inc, ..

2007-07-12 17:44  Help.. drowned by startup processes
I've tried avg couple of times but it seems like virus just pops up again and again. I'm flooded by all the startup processes that happens everytime i turn on the computer. please help Here's the logfile Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 오후 1:40:58, on 2007-07-12 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDO …
Read more on “Safer Networking Forums”
Tags:   ANIWZCS Service, ATI Technologies Inc, AVG Run, AaladinBoxControl, ActiveDiodeoPlayer, ActiveX AcroIEHelper, ActiveX Public QxConn, AddAllLink, AddLink, AddVideo, AirGCFG, BCABFABF INIwallet Control, BHO AcroIEHlprObj Class, BHO BitComet ClickCapture, BHO Ezcashmall Class, BHO MAgent Class, BHO OTSI Class, BHO PowerLObj Class, BHO RXResultTracker Class, BHO SSVHelper Class, BHO SearchHelper, BHO ShopGuide Class, BHO ShopPoint Class, BitComet, BitCometBHO, Bonjour Service, CNaverImageUploadCtl Object, CashOnUpdate, Cashonupdate, Class, D-Link AirPlus, DAEMON Tools, DB MicroADScanX Control, DirectX Dinput, Document, Download, ESaveshop, Extra, Extra Tools, Filter, FlashGet, GSystemInfo, GSystemInfo Control, Global Startup LCDPlayer, Here, HijackThis HijackThis, IME PINTLGNT ImScInst, IMEName, INIwallet, InCD, Internet Explorer, Logfile, MAAgent, MADanalCtrl, MADanalCtrl Control, Macromed, Macrovision Corporation, Macrovision Europe Ltd, MagicLockOCX Control, Messenger, MessengerStatsClient Class, Micro, Microsoft Excel, Minesweeper Flags Class, MsnMsgr, MyAD, NLSnSSO, NeedWeb, NeffyManSpLauncherCtl Class, Nero AG, NeroCheck, NeroFilterCheck, Netboan, NlsComm Component Class, Normal Running, NowStarter, NowStarter Control, PHIME ASync, PROGRA FlashGet, PROGRA Grisoft AVGFRE, PROGRA SPYBOT SDHelper, Pandora SetUp Control, Plugin, Plus Control, PlusX, PowerL, Program Files, Program Files BitComet, Program Files Bonjour, Program Files CashOn, Program Files FlashGet, Program Files Java, Program Files Messenger, Program Files MonKeyBar, Program Files NetMeeting, Program Files RXToolBar, Pull Control, Qplay Connection Control, RemoteControl, Research, Run IMVU, SKCommAX, SKCommAX Control, SMSTray, SPort, Samsung PanelMgr, SearchHelper, SearchInfoBar, Service ATI Smart, Service Application Manager, Service Clean, Service Distribute Support, Service Id String, Service Security Support, Service Service, Service Session Simulator, Service Web Brower, SetUpAX, Setting, ShopGuide, ShopPoint, Spoil RemAdvDef Migration, Sun Java, SunJavaUpdateSched, Thank, TkBellExe, Toolbar, Toolbar FlashGet, Toolbar RX Toolbar, Trend Micro HijackThis, URLSearchHook SearchHelper, Unknown, UnoCtrl Class, User Default, User SYSTEM, Veoh, VeohHide, WINDOWS Explorer, WINDOWS Samsung PanelMgr, WINDOWS System, WebSearchBar, Windows Messenger, ..

2007-07-10 17:41  Please check my log
Logfile of HijackThis v1.99.1 Scan saved at 17:12:43, on 2007-07-10 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\WgaTra …
Read more on “Safer Networking Forums”
Tags:   AVKTray, AcroIEHelper, Ad-Watch, AdBlocker, Adobe Systems, Ahead Software AG, Apple Computer Inc, BHO AKHelper, BHO AcroIEHlprObj Class, BHO Multi Media, BigDog, DATA AVKProxy AVKProxy, DATA Software AG, Document, English, Extra, Extra Tools, Gadu-Gadu, HijackThis, ISUSPM Startup, Install, Internet Explorer, Lavasoft AB, Macrovision Corporation, Messenger, NVIDIA Corporation, NameServer, NeroCheck, NeroFilterCheck, NvCpl, NvCplDaemon RUNDLL, NvStartup, Odkurzacz-MCD, Odkurzacz-QC, Option, Outpost Firewall Pro, OutpostFeedBack, Polish, Program Files, Program Files Gadu-Gadu, Program Files Messenger, Program Files Odkurzacz, Program Files Opera, Program Files QuickTime, Program Files Yahoo, QuickTime, QuickTime Task, Save, Service, Service AVKProxy, Service Ad-Aware Service, Service DomainService, Settings Domownik Dane, Settings Domownik Pulpit, Skype, Software, Startup Adobe Gamma, Startup VP-EYE, Szybkie, Tech Mouse Amoumain, Toolbar Kellyfamily, Toolbar MEGAUPLOADTOOLBAR, Toolbar Multi Media, Toolbar Protection Bar, Toolbar Yahoo, Translate, Translatica, URLSearchHook Multi Media, Unknown, WINDOWS Explorer, WINDOWS SYSTEM WgaLogon, WINDOWS System, WUWebControl Class, WgaTray, WheelMouse, Windows Clean-Up Pro, Windows Messenger, Winlogon Notify WgaLogon, ..

2007-07-09 10:59  Vundo I think
Go gentle I am new to this but I think I have the Vundo trojan. I ran VundoFix and it comes up clean but spybot keeps finding VirtuMonde and something called albb. Logfile of HijackThis v1.99.1 Scan saved at 11:43:45, on 09/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe …
Read more on “Safer Networking Forums”
Tags:   ATI Technologies Inc, AcroIEAppend, AcroIEAppendSelLinks, AcroIECapture, AcroIECaptureSelLinks, Adaware, Adaware Ad-Aware, Adobe Acrobat AcroIEFavClient, Adobe PDF, Append, Applications Security, AtiPTA, Azureus Azureus, BHO SSVHelper Class, BHO Skype, CDROM Access, COMODO Firewall Pro, CTsvcCDA, Cheer, Convert, Creative Technology Ltd, Customize Menu, Digital Imaging, Diskeeper Corporation, Diskeeper DkService, Extra, Extra Tools, FC MUWebControl Class, Fill Forms, Filter, HPZipm, Hewlett-Packard Company, HijackThis, INTERNATIONAL International, Internet Explorer, Lavasoft AB, LinkId, Macrovision Europe Ltd, Messenger, MicroVision Development Inc, Microsoft Excel, MsPMSPSv, Nero AG, Network Diagnostic, OneNote, Option, PROGRA Grisoft AVG, Program Files Java, Program Files Messenger, Protocol, Research, RoboForm, RoboForm Toolbar, SMSystemAnalyzer, SSODL WPDShServiceObj, Save, Save Form, Send, Service, Service AKYON, Service ATI Smart, Service Ad-Aware Service, Service Creative Service, Service Diskeeper, Service DomainService, Service NBService, Service NMIndexingService, Service Washer AutoComplete, Skype, SnagIt SnagItBHO, SnagIt SnagItIEAddin, SoundMan SOUNDMAN, Spybot SPYBOT SDHelper, Sun Java Console, SunJavaUpdateSched, System Mechanic SMSystemAnalyzer, TABS Tabbed Browsing, Toolbar Adobe PDF, Toolbar RoboForm, Toolbar SnagIt, Unknown, VirtuMonde, Vundo, VundoFix, WINDOWS Explorer, WINDOWS SYSTEM WgaLogon, WINDOWS System, WUWebControl Class, Webroot Software Inc, Windows Messenger, Winlogon Notify, Winlogon Notify WgaLogon, Yeoldcodger, ..



en.blogoholix.com is a blog search engine in development. The tech and design work is still in progress, so please send an e-mail to info@blogoholix.com if you have any suggestions on how to improve the site.