Blogs about Nvidia Corporation
2007-11-05 20:56 Por favor revisen mi log no puedo entrar a una pag de internet
Bueno mi problema es q no quiere entrar a una sola pag de internet pero probe en otra pc y entra lo mas bien... aqui dejo el log a ver si me pueden dar una mano.. grax Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:45:15 p.m., on 05/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass. …
Read more on “Foro de Spyware”
|
Tags:
|
ADA NameServer,
ActiveScan Installer Class,
Adobe Systems,
Ahead Lib NeroCheck,
Apple Computer Inc,
Archivo,
Bonjour,
Bonjour Service,
CKAVWebScan Object,
Consola,
Control,
EDFD DCD NameServer,
Eset,
Extra,
Extra Tools,
IntelAudioStudio,
Internet Explorer,
Java,
LClock,
LClock LClock,
LinkId,
Logfile,
MSN Messenger,
MSN PUpld,
Macrovision Corporation,
Macrovision Europe Ltd,
Messenger,
MessengerStat,
MessengerStatsClient Class,
Microsoft Excel,
MineSweeper,
NVIDIA Corporation,
NameServer,
Nero AG,
NeroFilterCheck,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
Referencia,
Service Boonty Games,
Service Id String,
Service NBService,
Settings ProxyOverride,
SigmatelSysTrayApp,
Sun Java,
SunJavaUpdateSched,
Trend Micro HijackThis,
UnoCtrl Class,
User Default,
User SERVICIO LOCAL,
User SYSTEM,
User Servicio,
WINDOWS Explorer,
WINDOWS System,
WUWebControl Class,
Winamp,
Windows Messenger,
..
|
2007-11-05 20:44 tengo algun problema en windows
hola a todos quisiera saber si tengo algún problema en mi windows o en alguna parte del ordenador de mi pc, bueno este es lo que me da el HijackThis -------------------------------------------------------------------- Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:38:44, on 05/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\sys …
Read more on “Foro de Spyware”
|
Tags:
|
ARCHIV Grisoft AVG,
ARCHIV SPYBOT SDHelper,
AVG Run,
AcroRd,
Adobe PDF Reader,
Adobe Reader,
Archivo,
Are,
Ares Development Group,
AresChatServer,
AudioDeck,
BHO Aplicación,
BHO SSVHelper Class,
Bueno,
CACE Technologies,
Consola,
Control,
Descargar,
Enviar,
Extra,
Extra Tools,
Flas,
FlashGet,
FlashGet FlashGet,
HP Digital Imaging,
HPZipm,
Hewlett-Packard Company,
HijackThis,
Internet Explorer,
Java,
LightScribe LSSrvc,
LinkId,
Logfile,
MSN Messenger,
Macrovision Corporation,
Messenger,
MessengerStat,
MessengerStatsClient Class,
Microsoft Excel,
Mozilla Firefox,
NVIDIA Corporation,
NameServer,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvStartup,
OneNote,
PhotoUpload MsnPUpld,
Protocol,
Reader,
Research,
Service Ares Chatroom,
Service STI Simulator,
Sun Java,
Trend Micro HijackThis,
Unknown,
UnoCtrl Class,
User Default,
User SERVICIO LOCAL,
User SYSTEM,
User Servicio,
VIAudioi SBADeck ADeck,
WINDOWS Explorer,
WINDOWS Network Diagnostic,
WINDOWS System,
WINDOWS System PAStiSvc,
WUWebControl Class,
WinPcap,
Windows Messenger,
Yodm,
..
|
2007-10-15 19:26 ayuda kontra un spyware
olas, ncesito vuestra ayuda porfa hay una specie de espia (spywarerning.mht) y en el spacio de la URL figura esto,C:\WINDOWS\systen32\spywarerning.mht, ademas comence a leer los mensajes del foro y segui algunos pasos, komo desactivar el restaurador de sistema y iniciar en modo aprueba de fallos, y descargue, todo lo que decia en el foro, pero = sigue el problema aka les dejo los reportes k salieron de los programas k ejecute. esto es lo que bot el Fixwareout Username "user" - 15/10/2007 12:49:4 …
Read more on “Foro de Spyware”
|
Tags:
|
ATI Technologies Inc,
AcroIEHelper,
Adobe Acrobat,
Analog Devices Inc,
Archivo,
Asistente,
BHO Complemento,
BHO SSVHelper Class,
BHO Yahoo,
Barra,
CCleaner,
CONFIG Temp,
Click,
Consola,
Current,
CyberLink PowerDVD PDVDServ,
CyberLink Shared,
DelPSGuard,
Desktop Component,
Encarta,
Extra,
Extra Tools,
FIX Cheked,
FileASSASSIN,
Fixwareout,
Fixwareout Username,
Global Startup Actualización,
HKLM SOFTWARE Winlogon,
Helper,
HijackThis,
Install,
Internet,
Internet Explorer,
Java,
LanguageShortcut,
Lexmark International Inc,
Logfile,
MSConfig,
MSN Messenger MsnMsgr,
Messenger,
Microsoft Excel,
NVIDIA Corporation,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvStartup LanguageShortcut,
NvTaskbarInit,
NvTaskbarInit NvCplDaemon RUNDLL,
PER Antivirus,
PER Systems,
Persystems Perav PAVSS,
Persystems Perav PERUPD,
Persystems Perav PERVACNT,
Photodex ProShowGold ScsiAccess,
Prerun,
Referencia,
RemoteControl,
RichVideo,
Run SsAAD,
Run Yahoo,
Running,
SSODL Internet Explorer,
SSODL TIozoSL,
SUPERAntiSpyware,
SUPERAntiSpyware SASWINLO,
SUPERAntiSpyware SUPERAntiSpyware,
Safe,
Service ATI Smart,
Service FCI,
Service ICF,
Service MSCSPTISRV,
Service PACSPTISVR,
Service PER Antivirus,
Service ScsiAccess,
Sony Corporation,
SoundMAX,
SoundMAXPnP,
SsAAD,
Startup Webshots,
Sun Java,
System,
Toolbar Asistente,
Toolbar Barra Yahoo,
Trend Micro HijackThis,
URLSearchHook Barra Yahoo,
Unknown,
User Default,
User SYSTEM,
User Servicio,
UserInit,
WINDOWS Explorer,
WINDOWS System,
Webshots WebshotsTray,
WinZip WZQKPICK,
Window,
Windows Live Search,
Windows Live Toolbar,
Windows Messenger,
Winlogon Notify,
Winsock LSP,
YInstStarter Class,
Yahoo,
YahooMessenger,
Zone Labs LLC,
Zone Labs ZoneAlarm,
ZoneAlarm Client,
ZoneLabs,
..
|
2007-09-05 13:58 Pc Se Reinicia Solo
Este es mi log, a ver si me podeis ayudar!...: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:57:28, on 05/09/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Archivos de programa\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\W …
Read more on “Foro de Spyware”
|
Tags:
|
ANIWZCS Service,
Adobe PDF Reader,
Alcmtr ALCMTR,
Alpha Networks Inc,
Archivo,
BHO Aplicación,
BHO SSVHelper Class,
Consola,
Descargar,
Extra,
Extra Tools,
Flas,
FlashGet,
FlashGet FlashGet,
Google,
Google GoogleToolbarNotifier,
Google GoogleToolbarNotifier GoogleToolba,
Internet Explorer,
Java,
Kaspersky Lab,
LVPrcSrv,
LaunchINFSectionEx,
LinkId,
Logishrd LQCVFX COCIManager,
Logitech Inc,
Logitech LComMgr LVComSX,
Logitech QuickCam QuickCam,
Logitech SrvLnch SrvLnch,
LogitechCommunicationsManager,
LogitechQuickCamRibbon,
LogitechSetup,
Microsoft Excel,
NVIDIA Corporation,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
Referencia,
Se Reinicia Solo,
Search Destroy SDHelper,
Service Kaspersky Anti-Virus,
Service LVSrvLauncher,
Setup Setup,
SkyTel SkyTel,
Spybot,
Sun Java,
Toolbar Google,
Trend Micro HijackThis,
Unknown,
User Default,
User SERVICIO LOCAL,
User SYSTEM,
User Servicio,
WINDOWS Explorer,
WINDOWS Network Diagnostic,
WINDOWS System,
WLSetupSvc,
Web Anti-Virus,
Windows Defender,
Windows Defender MSASCui,
Windows Defender MsMpEng,
Windows Live,
Windows Live Messenger,
..
|
2007-09-03 17:53 Save Sky Eclipse, crasher of sims: SL Jira VWR-2281 [Anonymoused]
Second Life user Sky Eclipse has a problem: something about their account or their avatar causes the sim they are in to crash. The sim they are in crashes as soon as they log in to it, if I understand the problem correctly, leaving them no way to do anything like remove attachments or delete the last few items they acquired. The only solution for this problem lies in the hands of Linden Lab: either fix Sky Eclipse's account, or fix the sim crash problem such that Sky Eclipse's account remains j …
Read more on “Unable To Connect - SuezanneC Baskerville [Anonymoused]”
|
Tags:
|
Asia,
Blogger,
Crashes Affects Version,
Jira,
Life,
Linden Lab,
Metaversed,
None File Attachments,
SL Jira,
Second Life,
Second Life Jira,
Second Life Viewer,
Sky Eclipse,
Sky Eclipse Jira,
Unknown,
VWR Sky Eclipse,
Version,
Windows Spaces Live,
Wordpress,
..
|
2007-09-01 12:08 New video driver install fails because of possible bad registry ke
I tried to load new NVIDIA drivers on my machine and keep failing during the install. This happens no matter what version video driver I try to install. I even used Driver Cleaner Pro to ry and make sure all NVIDIA driver data was removed from my system. So I opened up regedit.exe and started searching for and deleteding all occurences of the phrase NVIDIA. When I got to a specific key, thie key would not delete. I could not open the key or change the key'e permissions. This key was HKEY_LOCAL_M …
Read more on “Web Hosting Forum - Industry Discussion, Webmaster Forum, Web Host Reviews and Deals”
2007-08-31 16:42 NVIDIA Corporation (NVDA) and the day before Labor Day weekend
The day before Labor Day weekend is known to be one with light volume and choppy prices. But I guess not for NVDA, which broke through the round number $50 to new all-time highs : Way to go NVDA.
Read more on “uglychart.com”
2007-08-20 04:12 clean bill of health 2
Hi I work away all week and my wife says the PC going very slow (again)! with the screen blaning out now and again for 2-3 seconds Would like to know if there is anything amiss here done on-line scan, run spybot in safe mode results below many thanks ------------------------------------------------------------------------------- KASPERSKY ONLINE SCANNER REPORT Sunday, August 19, 2007 6:29:44 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky Online Scan …
Read more on “Safer Networking Forums”
|
Tags:
|
AcroIEHelper,
Anti-Virus,
AppEvent,
CKAVWebScan Object,
CatRoot,
Critical Areas,
Duration,
Extra,
Extra Tools,
FC MUWebControl Class,
Google,
HijackThis,
INTERNATIONAL International,
Internet,
Internet Explorer,
Kaspersky Anti-Virus,
LOCALS Temp DFC,
LinkId,
Messenger,
NVIDIA Corporation,
Network Diagnostic,
Number,
NvCplDaemon RUNDLL,
NvStartup,
Object,
Option,
PROGRA Grisoft AVG,
PROGRA SPYBOT SDHelper,
Program Files Messenger,
Program Files Spybot,
Repository FS INDEX,
Repository FS MAPPING,
Repository FS OBJECTS,
SAM Object,
SECURITY Object,
Scan,
Scan Archives,
Scan Mail Bases,
Scan Settings Scan,
Scan Target,
Search Destroy SpybotSD,
Search Destroy TeaTimer,
SecEvent,
Service MATLAB Server,
Service WLTRYSVC,
Shockwave Flash Object,
Sony Corporation,
SpybotSD TeaTimer,
SpybotSnD,
SymDlBrg,
SysEvent,
Toolbar,
Toolbar Google,
URLSearchHook Yahoo,
Uniblue RegistryBooster,
Unknown,
WINDOWS Debug PASSWD,
WINDOWS Explorer,
WINDOWS SYSTEM WgaLogon,
WINDOWS SchedLgU,
WINDOWS SoftwareDistribution EventCache,
WINDOWS SoftwareDistribution ReportingEvents,
WINDOWS Sti Trace,
WINDOWS System,
WINDOWS System NvCpl,
WINDOWS WindowsUpdate,
WUWebControl Class,
Windows Messenger,
Winlogon Notify WgaLogon,
Would,
..
|
2007-08-09 22:35 Ultimate Cleaner Headache!
Hi all, Seems my PC is riddled with this Ultimate Cleaner. My desktop background has been changed to one big link "Protecting my Privacy", Theres so many popups and fake alerts its hard to get through a sentence without 10 more! :banghead: Im not so good with these types of things but having read through, heres the HJT report: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 11:21:50 PM, on 8/9/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal Running processes: C:\W …
Read more on “Safer Networking Forums”
|
Tags:
|
ALUAlert,
AVG Run,
AcRdB,
AcroIEHelper,
ActiveX Control,
AdobeUpdateManager,
AntiSpyWare Guard,
Apple Inc,
AppleMobileDeviceService,
BHO MSVPS System,
BHO SSVHelper Class,
Backward Links,
C-Media Mixer Mixer,
Cached Snapshot,
Cleaner Headache,
Document,
ESC Trusted Zone,
English,
Extra,
Extra Tools,
Global Startup DSLMON,
Google Search,
GoogleToolbar,
Hewlett-Packard Company,
InCD,
KEMailKb,
Logfile,
Macrovision Corporation,
Messenger,
MsnMsgr,
MsnPUpld,
NVIDIA Corporation,
Nero AG,
NeroCheck,
NeroFilterCheck,
Nicosia,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
PROGRA Grisoft AVG,
PROGRA KEMailKb KEMailKb,
Page,
Plugin,
PnkBstrA,
PnkBstrB,
Privacy Theres,
Program Files,
Program Files Java,
Program Files Messenger,
Program Files Spybot,
Program Files Yahoo,
Protecting,
QuickTime Task,
Scan,
Search Destroy SDHelper,
Seem,
Service,
Service MSCSPTISRV,
Service Memeo BMUService,
Service PACSPTISVR,
Service PnkBstrA,
Service PnkBstrB,
SharedTaskScheduler Browseui,
SharedTaskScheduler Component Categories,
Similar Pages,
Sony Corporation,
SpySweeper,
SpybotDeletingA,
SpybotDeletingB,
SpybotDeletingC,
SpybotDeletingD,
Startup Memeo Launcher,
Sun Java Console,
SunJavaUpdateSched,
Symantec Corporation,
SystemTray SysTray,
System,
Tanagra Inc,
Thank,
Toolbar,
Toolbar Google,
Translate English Word,
Translate Page,
Trend Micro HijackThis,
Ultimate Cleaner,
Unknown,
User Default,
User SYSTEM,
VTTimer,
VTTimer VTTimer,
VTTrayp VTtrayp,
WINDOWS Explorer,
WINDOWS Mixer,
WINDOWS System,
Webroot Software Inc,
Windows Messenger,
Wireless Assistant,
Yahoo,
YahooMessenger,
..
|
2007-07-29 13:35 Linux Newbie - Just installed Ubuntu 7.04
All I can say is wow, that was a breeze. I've been having troubles with my XP system lately, it just freezes up whenever it feels like it. It's had it's time, and a new machine is on the way. But I had a bright idea (haha) the other day. I have a zillion SATA drives laying around, why not install Ubuntu So I did. It was a breeze. I didn't need to follow any tutorials. It was all common sense. So right now, I'm posting this in Ubuntu. I'm definitely a newbie in Linux, so I'm learning everything f …
Read more on “IT Techno Babble v.2”
|
Tags:
|
Apache,
Configuration,
Debian,
Fedora Core,
FontPath,
Identifier,
Just,
Linux,
Load,
Newbie,
Option Device,
Option Type,
Option XkbLayout,
Option XkbModel,
Section Files FontPath,
SendCoreEvents InputDevice,
This,
TwinView,
Type FontPath,
Ubuntu,
Ubuntu So,
ViewSonic VG,
Vison,
Window System,
..
|
2007-07-27 12:41 Possible Graphics Speed Up
HKLM \ Software \ NVIDIA Corporation \ NVDDI ENHANCE_2D_PERF was originally set to 0, i changed it to 1 and im sure there is an improvement, specially when playing movies, i think this is the nvida decoder software. i need to research it up but please test it out and tell me if you've notice improvements
Read more on “myG900.com”
2007-07-25 09:43 "Your computer is infected" HELP!
I know this is spyware or whatever and i have tried everything i can to get rid of it but it just wont go. I downloaded that highjackthis program and made a log file and from what i can gather i just post it here right and one of you kind people will help me It would be very much apreciated. Logfile of HijackThis v1.99.1 Scan saved at 7:37:04 PM, on 25/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss …
Read more on “Safer Networking Forums”
|
Tags:
|
AcroIEAppend,
AcroIEAppendSelLinks,
AcroIECapture,
AcroIECaptureSelLinks,
AcroIEFavClient,
Acrobat Assistant,
Acrotray,
Adobe PDF,
Adobe Systems,
Ai Nap,
AnyDVD,
Apple Inc,
AppleMobileDeviceService,
AsusServiceProvider,
Configure,
Convert,
ElbyCheckAnyDVD,
Extra,
Extra Tools,
HijackThis,
Internet Explorer,
JMRaidTool,
Lavasoft AB,
Magicantispy,
MemoryManager,
Messenger,
Microsoft Excel,
NVIDIA Corporation,
NameServer,
NeroCheck,
NeroFilterCheck,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
PROGRA SYMANT VPTray,
Plugin,
Program Files,
Program Files Java,
Program Files Messenger,
Protocol,
QuickTime Task,
Research,
Service,
Service Ad-Aware Service,
Service SAVRoam SavRoam,
Service Symantec AntiVirus,
SoundMAX,
SoundMAXPnP,
Sun Java Console,
SunJavaUpdateSched,
Symantec Corporation,
Toolbar Adobe PDF,
Ttoa,
WINDOWS Explorer,
WINDOWS System,
Window,
Windows Messenger,
..
|
2007-07-25 05:41 Ultimate Cleaner, Ultimate Defender, Ultimate Fixer, Security Monitor
Hello, I noticed today that I have been infected with this. I have researched the forums and tried several things, hijack this, spyware doctor, and the online scan at http://www.kaspersky.com/downloads/kws/kavwebscan.htm. Below are my logs as I have not yet gotten rid of it. Any help is greatly appreciated. P.S. I will post the kaspersky log as soon as it is done. Hijack This Log: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 1:29:42 AM, on 7/25/2007 Platform: Windows XP SP2 (Win …
Read more on “Safer Networking Forums”
|
Tags:
|
AVG Run,
AcRdB,
AcroIEHelper,
Adobe Systems,
AdobeUpdateManager,
Apple Inc,
BHO SSVHelper Class,
CACE Technologies,
CKAVWebScan Object,
Desktop Component,
Document,
ED Support,
EFFAEF NCWeb,
EPSON Stylus Photo,
Extra,
Extra Tools,
Hewlett-Packard Company,
INCA Internet Co,
InCD,
Init,
Installer,
LinkID,
MSWindowsUpdate,
Macrovision Corporation,
MemoryManager,
Messenger,
MetaStreamCtl Class,
Microsoft Excel,
MsPMSPSv,
NVIDIA Corporation,
Name,
NameServer,
Nero AG,
NeroCheck,
NeroFilterCheck,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
PC Tools,
PROGRA Grisoft AVG,
Program,
Program Files,
Program Files AIM,
Program Files Java,
Program Files Messenger,
Program Files QuickTime,
Program Files USoft,
Program Files WinPcap,
QuickTime Task,
Registration,
RemoteControl,
Rodolofo,
SDTray,
Scan,
Serie,
Service,
Service MySQL,
SharedTaskScheduler Browseui,
SharedTaskScheduler Component Categories,
Sothink SWF Catcher,
SoundMan SOUNDMAN,
SpyHunter,
Startup Adobe Gamma,
Startup Epson,
Stylus Photo,
Sun Java Console,
SunJavaUpdateSched,
This Log Logfile,
Titles Ereg EPSONREG,
Trend Micro HijackThis,
Unknown,
User Default,
User SYSTEM,
WINDOWS Explorer,
WINDOWS System,
WgaTray,
Windows Messenger,
Windows Update Host,
WindowsFirewallSvc,
Winlogon Notify,
Zune Launcher,
..
|
2007-07-20 22:48 Hijackthis - Spyware, Viruses, Worms, Trojans Oh My! :: getting pop up messages.
Author: hasnain721 Subject: getting pop up messages. Posted: Fri Jul 20, 2007 10:48 pm (GMT 0) Hi, My friends has recently installed windows xp home from the toshiba recovery cd on his laptop. After the installation, he connected to the internet and he was getting pop ups and the title was messenger service. It wanted the user to go to some website to download some registry cleaner. The message was like a message send from one user to another user on a network (it did not have any images). So, m …
Read more on “CastleCops Recent Posts”
|
Tags:
|
Anti-Spyware,
Apntex,
Apoint,
AppInit DLLs,
Code Logfile,
Default URLSearchHook,
Extra,
Extra Tools,
Fri Jul,
GMT Hi My,
HijackThis,
IMEName,
Internet Explorer,
Messenger,
NVIDIA Corporation,
NvCplDaemon RUNDLL,
NvQTwk NvCplDaemon,
PHIME ASync,
PROGRA Grisoft AVG,
Plugin,
Program Files Apoint,
Program Files Messenger,
Related,
Show Related Links,
Spoil RemAdvDef Migration,
StTHK StTHK,
Subject,
TFncKy TFncKy,
THotkey,
Thank,
Toolbar Radio,
TosHKCW,
TouchED,
Tpwrtray TPWRTRAY,
Type,
WINDOWS Explorer,
WINDOWS System,
WINDOWS System TFNF,
WINDOWS System THotkey,
WINDOWS System TPWRTRAY,
Windows Messenger,
..
|
2007-07-20 22:27 Hijackthis - Spyware, Viruses, Worms, Trojans Oh My! :: RE: ZA working overtime...winzzxx\bot.exe
Author: emo44jeep Posted: Fri Jul 20, 2007 10:27 pm (GMT 0) Hi magictouch! Thanks for the quick reply. Your link to the Dr.Web-Cureit is linked to an out-of-date version but I downloaded the current version anyway. Here are the log files. Current HijackThis log Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 5:18:12 PM, on 7/20/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C …
Read more on “CastleCops Recent Posts”
|
Tags:
|
AHQInit,
AVG Run,
AdobeCollabSync,
Alex Feinman,
Apple Inc,
Applications Tool,
BC MessengerStatsClient Class,
BHO Ipswitch,
BHO MSNToolBandBHO,
BgMonitor,
BigDogPath,
CDROM Access,
CRAVOnline Object,
Conferencing,
Creative Technology Ltd,
Current Dr,
Current SuperAntiSpyware,
DC- ZoneIntro Class,
Deleted,
DellTouch,
Excursion,
ExcursionXBeta Program,
Extra,
Extra Tools,
File,
GMT Hi,
Generated,
GeoShell,
HJT HiJackThis,
HPDJ Taskbar Utility,
HijackThis,
Host,
HouseCall Control,
Internet Explorer,
KodakCCS,
Lexmark International Inc,
Lexmark Series,
LinkId,
Logfile,
MSN Chat Control,
Memory,
Messenger,
MessengerStatsPAClient,
Microsoft Excel,
MoneySide,
NMBgMonitor,
NVIDIA Corporation,
NeroFilterCheck,
Network VNCServer Program,
Normal Running,
Nukenabber Program,
NvCplDaemon RUNDLL,
NvQTwk NvCplDaemon,
PM Application Version,
PROGRA Grisoft AVGFRE,
PROGRA MICAC System,
PartyPoker,
PartyPokerNet RunPF,
Posted Fri Jul,
Privoxy,
Probably BINARYRES Incurable,
Program,
Program Files,
Program Files Java,
Program Files Messenger,
Program Files PartyGaming,
Program Files QuickTime,
Program Files ScrubXP,
Program Files Spybot,
QuickTime Task,
Registry,
Research,
SUPERAntiSpyware Scan Log,
SYSTEM Program,
Search Destroy,
Service,
Service Creative Service,
Service Imapi Helper,
Startup Privoxy,
Sun Java Console,
SunJavaUpdateSched,
Toolbar MSN,
TorCP,
Trend Micro HijackThis,
UBCD WinA,
UBCD WinA BartPE,
USB VGA Camera,
Unknown,
UpdReg,
User Default,
User SYSTEM,
Video Multimedia Driver,
WINDOWS Explorer,
WINDOWS Network Diagnostic,
WINDOWS Nhksrv,
WINDOWS Probably DLOADER,
WINDOWS SYSTEM ZoneLabs,
WINDOWS System,
WINDOWS System CTsvcCDA,
WINDOWS System MsPMSPSv,
WINDOWS Updreg,
Windows Messenger,
Winlogon Notify,
Yahoo,
ZIntro,
Zone Labs Client,
Zone Labs Inc,
..
|
2007-07-15 18:59 Virtumonde infection not going away
Managed to recieve a trojan which was narrowed down by another forum to being a Virtumonde infection. Ran all sorts of programs, including Spybot (natch), Vundofix, CleanUp!, and HiJackThis, amongst others. This seemed to just make the problem change which files it used to present itself. After having success on this forum in the past, I decided to try here instead. My HiJackThis log follows: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 19:44:02, on 15/07/2007 Platform: Windows …
Read more on “Safer Networking Forums”
|
Tags:
|
ASUS Probe,
Apple Computer Inc,
BC MessengerStatsClient Class,
BHO SSVHelper Class,
Ben Woodman,
BinFrameWork,
BluetoothAuthenticationAgent,
CDROM Access,
CE CBankshotZoneCtrl Class,
CTHelper CTHELPER,
CTSysVol,
CTsvcCDA,
CTxfiHlp CTXFIHLP,
Creative SoundFont Synthesizer,
Creative Technology Ltd,
DC- ZoneIntro Class,
DD Crucial,
Document,
Eastman Kodak Company,
Extra,
Extra Tools,
FC MUWebControl Class,
Hewlett-Packard Company,
HiJackThis,
ICQ Pro,
KodakCCS,
Learning Edition,
LinkId,
Logfile,
Macrovision Corporation,
Messenger,
MsPMSPSv,
MsnMsgr,
NVIDIA Corporation,
Name,
NameServer,
Nero AG,
NeroFilterCheck,
Network Diagnostic,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
PROGRA SPYBOT SDHelper,
Plugin,
Program Files,
Program Files Java,
Program Files Messenger,
Reader,
SBDrvDet,
Scan,
Service,
Service Creative Service,
Service NBService,
SetDefaultMIDI MIDIDEF,
SharedTaskScheduler Browseui,
SharedTaskScheduler Component Categories,
Shockwave Flash Object,
Spybot,
StagingUI Object,
Sun Java Console,
SunJavaUpdateSched,
TkBellExe,
Trend Micro HijackThis,
Trend Micro Inc,
Trend Micro Incorporated,
Unknown,
UpdReg,
User Default,
User LOCAL SERVICE,
User NETWORK SERVICE,
User SYSTEM,
Virtumonde,
Vundofix CleanUp,
WINDOWS Explorer,
WINDOWS System,
WINDOWS System CTFMON,
WINDOWS UpdReg,
WUWebControl Class,
Windows Messenger,
Winlogon Notify,
XboxStat,
ZoneBuddy Class,
ZonePAChat Object,
..
|
2007-07-12 20:36 Am I still Infected Help
Ran S&D cleaned out something called virtumondo came back came to this forum and followed instructions ran S&D in safe mode etc seemes to be ok now want to bsure can you Help me. Thanks: Cart -------------------------------------------------------------------------- CA Online Scan axpqcitw.dll.vir Win32/Vundo cannot cure C:\QooBox\Quarantine\C\WINDOWS\system32\ cowfoojm.exe.vir Win32/Secdrop.OC cannot cure C:\QooBox\Quarantine\C\WINDOWS\system32\ fxouhvlm.dll.vir Win32/Vundo cannot cure C:\QooBo …
Read more on “Safer Networking Forums”
|
Tags:
|
Acronis,
Acronis Scheduler Service,
AcronisTimounterMonitor,
BHO Catcher Class,
BHO SSVHelper Class,
CA Online Scan,
CDROM Access,
CTHelper CTHELPER,
CTSUEng,
CTsvcCDA,
CTxfiHlp CTXFIHLP,
Cart,
Creative Software AutoUpdate,
Creative Toolbox Plug-in,
Customize Menu,
Document,
EA WScanCtl Class,
Extra,
Extra Tools,
FC MUWebControl Class,
Fill Forms,
Google,
Help,
HpProductDetection Class,
Infected Help,
Ink Monitor,
Lavasoft AB,
LinkId,
Logfile,
Messenger,
Microsoft Excel,
MsPMSPSv,
NVIDIA Corporation,
Nero AG,
Network Diagnostic,
Normal Running,
NvCpl,
NvCplDaemon RUNDLL,
NvMCTray,
NvMediaCenter RunDLL,
NvStartup,
NvTaskbarInit,
OneCareUI,
OneNote,
PROGRA SPYBOT SDHelper,
Program Files Java,
Program Files Messenger,
Pure Networks Inc,
QooBox Quarantine,
Research,
RoboForm,
RoboForm Toolbar,
Save,
Save Form,
Scan,
Send,
Service Ad-Aware Service,
Service Creative Service,
SharedTaskScheduler Browseui,
SharedTaskScheduler Component Categories,
Shockwave Flash Object,
Sun Java Console,
Toolbar RoboForm,
Trend Micro HijackThis,
TrueImageMonitor,
Unknown,
WINDOWS Explorer,
WINDOWS System,
Win Darksma,
Win Secdrop,
Win Vundo,
Windows Messenger,
..
|
2007-07-12 20:14 Help with Virtomonde, pop ups and slow PC
I cannot get rid off the virtomode trojan. I am running with restore disable and Spybot will find and delete it, but it comes back. IE pop up with different sites by itself. The PC is very slow. Please help. Attached is the CA online scan. then I run Spybot in safe mode a couple of times. The first time found and deleted several theats, the second time reported a clean bill of health. and I reboot and run HJT. Thanks in advance for any suggestions. Scan Results: 70476 files scanned. 2 viruses we …
Read more on “Safer Networking Forums”
|
Tags:
|
AB HomePrintingCtrl Class,
AcroIEHelper,
Anti-Spyware,
Apple Computer Inc,
BF DLC Class,
BHO SSVHelper Class,
BHO Yahoo,
Customize Menu,
Document,
EA WScanCtl Class,
Extra,
Extra Tools,
FC MUWebControl Class,
FileMonitor,
Fill Forms,
Google,
GrooveMonitor,
Helper,
InCD,
Infection Status Path,
Install,
Internet Explorer,
Launcher,
Lavasoft AB,
LinkId,
MSN Search,
Macrovision Corporation,
Messenger,
Microsoft Excel,
MsgSys,
NVIDIA Corporation,
Nero AG,
Normal Running,
NvCplDaemon RUNDLL,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
OneNote,
Open,
PROGRA SPYBOT SDHelper,
Picasa Media Detector,
Program Files,
Program Files Java,
Program Files Messenger,
Program Files NavNT,
Program Files QuickTime,
Program Files Yahoo,
Protocol,
QuickTime Task,
RF Toolbar,
Research,
Result,
RoboForm,
Save,
Save Form,
Send,
Service,
Service Ad-Aware Service,
Service DefWatch,
Spybot,
Startup Folding Home,
Sun Java Console,
SunJavaUpdateSched,
Symantec Corporation,
Toolbar Google,
Toolbar RoboForm,
Toolbar Yahoo,
Trend Micro HijackThis,
URLSearchHook Yahoo,
Unknown,
User Default,
User NETWORK SERVICE,
User SYSTEM,
View RTE,
View RTE Class,
Virtomonde,
WINDOWS Explorer,
WINDOWS Network Diagnostic,
WINDOWS SYSTEM Logfile,
WINDOWS SYSTEM ZoneLabs,
WINDOWS System,
WINDOWS System CTFMON,
WINDOWS System NvCpl,
WINDOWS System NvMcTray,
Win Vundo,
Windows Defender,
Windows Messenger,
Winlogon Notify,
YInstStarter Class,
Zone Labs Client,
Zone Labs Inc,
..
|
2007-07-12 17:14 Need Help-HijackThis
Hi, My Dell E1705/9400 laptop has gotten slower. it takes too long to get an IP address when I close the laptop cover. It used to just keep the old IP and now it searches for almost a minute. Sometimes I get an Intel ProSet troubleshooting error. Webshots will not let me download photos using Firefox anymore. I've run SpySweeper, SpyCatcher and SpyBot S&D. I would like to upload the Trend Micro HijackThis file for help. I've never done this before. So, I don't know if I'm giving enough info...bu …
Read more on “Safer Networking Forums”
|
Tags:
|
AdobeActiveFileMonitor,
Apoint,
AppInit DLLs,
Apple Inc,
Attached Files,
BHO CBrowserHelperObject Object,
BHO SSVHelper Class,
CDROM Access,
CTSUEng,
CTSysVol,
CTsvcCDA,
Cisco Systems Inc,
Corporation,
Creative Detector,
Creative Labs,
Creative MediaSource Go,
Creative Software AutoUpdate,
Creative Technology Ltd,
Dell Inc,
Dell QuickSet,
EasyRead,
Engine,
Engine YahooWidgetEngine,
Eset,
EvMon,
EventMonitor,
Extra,
Extra Tools,
FC MUWebControl Class,
Firefox,
Help-HijackThis,
Hijack Log Logfile,
Installation Support,
Intel,
Intel Corporation,
Intel PROSet Wireless,
Intel ProSet,
IntelWireless,
IntelZeroConfig,
Internet Explorer,
MBMon,
MBMon Rundll CTMBHA,
MSConfig,
Macrovision Corporation,
McAfee Inc,
Messenger,
Microsoft Excel,
My Dell,
NVHotkey,
NVIDIA Corporation,
NvCpl,
NvCplDaemon RUNDLL,
NvStartup,
PROSet Wireless Service,
Program Files,
Program Files Apoint,
Program Files DellSupport,
Program Files Eset,
Program Files Java,
Program Files Messenger,
Program Files Yahoo,
Research,
Running,
Safe,
Service,
Service CVPND,
Service Creative Service,
Service DSBrokerService,
Service Intel,
Service NICCONFIGSVC,
Service SiteAdvisor Service,
SetDefaultMIDI MIDIDef,
SiteAdvisor,
SpyBot,
SpySweeper,
SpySweeper SpyCatcher,
Start,
Startup Webshots,
Startup Yahoo,
Sun Java Console,
SunJavaUpdateSched,
SynTPEnh,
Toolbar McAfee SiteAdvisor,
Trend Micro HijackThis,
Unknown,
UpdReg,
WINDOWS Explorer,
WINDOWS Network Diagnostic,
WINDOWS System,
WINDOWS UpdReg,
Webroot Software Inc,
Windows Messenger,
Yinsthelper,
ZCfgSvc,
Zoom In,
Zoom Out,
..
|
2007-07-11 08:04 Twinview stopped working...after 1 month...
Hi all, I have searched, without success on this issue... First, some background: I am fairly new to linux (1-2 months), and after trying a variety of distros, settled on Ubuntu. I had twinview working with my Nvidia 6600 working just fine, and had a backup of the xorg.conf file on my server. due to a different problem, I decided to try one more distro, but wasn't happy with that, so moved back to ubuntu. After installing, and did all the upgrades, then enabled the Nvidia driver and restored my …
Read more on “Ubuntu Forums”
|
Tags:
|
Configuration,
Debian,
Driver,
EndSubSection EndSection,
FontPath,
Load,
Nvidia,
Option Device,
Option MetaModes,
Option SecondMonitorVertRefresh,
Option Type,
Option XkbLayout,
Option XkbModel,
SendCoreEvents InputDevice,
This,
Thu Nov PST,
Type FontPath,
Ubuntu,
Window System,
..
|
2007-07-11 05:39 Can't get rid of VIRTUMONDE
Hello, both adaware and spybot have detected and removed virtumonde, but it sometimes comes back on scans, and pop ups still sporadically occur. It seems to run within the winlogon.exe (which is system-critical) and explorer.exe processes from two recently created files in my system32 folder, mljgh.dll and ssqnlih.dll. Neither of these can be deleted. I have tried using killbox to remove them on reboot, but killbox is unable to this. I receive the error: "PendingFileRenameOperations Registry Dat …
Read more on “Safer Networking Forums”
|
Tags:
|
ALWIL Software,
AdWare,
Anti-Virus,
Antivirus,
AppEvent,
AshWebSv,
CKAVWebScan Object,
Cache CACHE Object,
CatRoot,
Control Service,
DEFAULT Object,
Document,
Duration,
EvMon,
EventMonitor,
External Process,
Extra,
Extra Tools,
Infected,
Infected Trojan-Downloader,
Infected Trojan-Dropper,
Intel Corporation,
Internet Explorer,
Kapersky Online,
Kaspersky Anti-Virus,
Lavasoft AB,
MSConfig,
Messenger,
Microsoft Excel,
My Computer,
NVIDIA Corporation,
Normal Running,
Number,
NvCpl,
NvCplDaemon RUNDLL,
NvStartup,
Object,
PROGRA ALWILS Avast,
PendingFileRenameOperations Registry Data,
PrEz,
Program Files Java,
Program Files Messenger,
Program Files Spybot,
Real,
Removed,
Research,
Resident,
SAM Object,
SECURITY Object,
SOFTWARE Object,
SYSTEM Object,
Scan,
Scan Archives,
Scan Mail Bases,
Scan Settings Scan,
Scan Statistics Total,
Scan Target,
Scanner,
Search Destroy TeaTimer,
SecEvent,
Service,
Service Ad-Aware Service,
Service EvtEng,
Service RegSrvc,
Service WLANKEEPER,
Settings NetworkService,
Settings NetworkService NTUSER,
Settings UserOne,
Settings UserOne Cookies,
Settings UserOne NTUSER,
Shdocvw,
SpybotSD TeaTimer,
Sun Java Console,
Suspicious Password-protected-EXE,
SysEvent,
Temp,
Trend Micro HijackThis,
Trusted Zone,
User,
WINDOWS Debug PASSWD,
WINDOWS Explorer,
WINDOWS Sti Trace,
WINDOWS System,
WINDOWS Temp,
WUWebControl Class,
Webshlock,
Windows Messenger,
Yazzle OinUninstaller,
..
|
2007-07-11 05:00 Command Service can't be removed
Hi there, The past month or so I've had issues with trying to remove the Command Service malware. Spybot S&D and Ad-aware have not been able to remove it, whether I do it in safe mode or not. Since it can't be removed, I end up infected with Smitfraud and a few others. It's also made it so I no longer have my Active Desktop Calendar visable, and I cannot change my background in the display properties. I also receive 5 or 6 pop ups over night...but only overnight. If I can somehow remove this wit …
Read more on “Safer Networking Forums”
|
Tags:
|
A- BD InstaFred,
AC NameServer,
ADUserMon,
Active Desktop Calendar,
Ad-aware,
Adobe Systems,
Apple Computer Inc,
BD AcPreview Control,
BHO Discover,
BHO NAV Helper,
Below,
BhoDshop,
Browser Helper Object,
Code,
Command Service,
Deskup,
EA WScanCtl Class,
Extra,
Extra Tools,
FCC AcDcToday Control,
Gaim,
HiJack This,
HijackThis,
HouseCall Control,
Info Class,
InstallFromTheWeb ActiveX Control,
Internet Explorer,
Iomega Common ImgStart,
Iomega Corporation,
Iomega Drive Icons,
Iomega DriveIcons,
Iomega DriveIcons ImgIcon,
Iomega Startup Options,
LiveMonitor,
Logfile,
Macrovision Corporation,
Microsoft Excel,
NAV Agent,
NVIDIA Corporation,
NeroCheck,
NeroFilterCheck,
NvCpl,
NvCplDaemon RUNDLL,
NvMcTray,
NvMediaCenter RUNDLL,
NvStartup,
NvTaskbarInit,
PROGRA Norton,
PROGRA SPYBOT SDHelper,
PaSystem,
Peer Impact,
Please,
Plugin,
PowerPanel,
Program Files,
Program Files DaisyManSoftware,
Program Files Gaim,
Program Files Norton,
Program Files Spybot,
Qrkzxqv,
QuickTime Task,
Research,
SchedulingAgent,
Search Destroy SpybotSD,
Service,
Service IomegaAccess,
Service Net Agent,
Service ZipToA,
Slrt,
Smitfraud,
SpybotSnD,
Startup Adobe Gamma,
Startup CoolMon Executable,
Stylus Photo RX,
Sun Java Console,
Symantec Corporation,
Synchronization Manager,
Toolbar Norton AntiVirus,
Unknown,
Uploader,
VERITAS Software Corp,
VerizonWirelessUploadControl,
WINNT Explorer,
WINNT System,
WINNT System IomegaAccess,
WINNT System ZipToA,
Win Chepvil,
Win Clspring,
Win Loosky,
Win Oneraw,
Winlogon Notify,
Xtra,
..
|
2007-07-10 17:41 Please check my log
Logfile of HijackThis v1.99.1 Scan saved at 17:12:43, on 2007-07-10 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\WgaTra …
Read more on “Safer Networking Forums”
|
Tags:
|
AVKTray,
AcroIEHelper,
Ad-Watch,
AdBlocker,
Adobe Systems,
Ahead Software AG,
Apple Computer Inc,
BHO AKHelper,
BHO AcroIEHlprObj Class,
BHO Multi Media,
BigDog,
DATA AVKProxy AVKProxy,
DATA Software AG,
Document,
English,
Extra,
Extra Tools,
Gadu-Gadu,
HijackThis,
ISUSPM Startup,
Install,
Internet Explorer,
Lavasoft AB,
Macrovision Corporation,
Messenger,
NVIDIA Corporation,
NameServer,
NeroCheck,
NeroFilterCheck,
NvCpl,
NvCplDaemon RUNDLL,
NvStartup,
Odkurzacz-MCD,
Odkurzacz-QC,
Option,
Outpost Firewall Pro,
OutpostFeedBack,
Polish,
Program Files,
Program Files Gadu-Gadu,
Program Files Messenger,
Program Files Odkurzacz,
Program Files Opera,
Program Files QuickTime,
Program Files Yahoo,
QuickTime,
QuickTime Task,
Save,
Service,
Service AVKProxy,
Service Ad-Aware Service,
Service DomainService,
Settings Domownik Dane,
Settings Domownik Pulpit,
Skype,
Software,
Startup Adobe Gamma,
Startup VP-EYE,
Szybkie,
Tech Mouse Amoumain,
Toolbar Kellyfamily,
Toolbar MEGAUPLOADTOOLBAR,
Toolbar Multi Media,
Toolbar Protection Bar,
Toolbar Yahoo,
Translate,
Translatica,
URLSearchHook Multi Media,
Unknown,
WINDOWS Explorer,
WINDOWS SYSTEM WgaLogon,
WINDOWS System,
WUWebControl Class,
WgaTray,
WheelMouse,
Windows Clean-Up Pro,
Windows Messenger,
Winlogon Notify WgaLogon,
..
|
en.blogoholix.com is a blog search engine in development. The tech and design work is still in progress, so please send an e-mail to info@blogoholix.com if you have any suggestions on how to improve the site.