User User name Password  
   
Friday 29.8.2025 / 17:28
Search AfterDawn Forums:        In English   Suomeksi   På svenska
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > email worm/slow system - help! hijack log incl.
Show topics
 
Forums
Forums
Email Worm/Slow System - Help! HiJack log incl.
  Jump to:
 
Posted Message
RedBurner
Newbie
_
26. December 2006 @ 07:29 _ Link to this message    Send private message to this user   
I have been having trouble attaching any attachment to emails in Outlook right now. Seems to always have a worm! Scanned for viruses and have had no luck finding any. Also the system is running pretty slow (esp. the internet) and I also have had my computer hibernate on its own when in use.

Here's my HiJack This log:

Logfile of HijackThis v1.99.1
Scan saved at 12:23:03 PM, on 12/26/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00

(7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program

Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program

Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common

Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common

Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program

Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
c:\program

files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1

\MpfService.exe
C:\Program

Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
C:\Program Files\TOSHIBA\TOSHIBA

Applet\TAPPSRV.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TOSHIBA\TOSHIBA

Controls\TFncKy.exe
C:\WINDOWS\system32\TDispVol.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Toshiba\Toshiba

Applet\thotkey.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program

Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program

Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program

Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\Toshiba\Tvs\TvsTray.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\TOSHIBA Zooming

Utility\SmoothView.exe
C:\WINDOWS\system32\dla\DLACTRLW.exe
C:\toshiba\ivp\ism\pinger.exe
C:\Program

Files\McAfee.com\VSO\mcvsshld.exe
C:\Program

Files\McAfee.com\VSO\oasclnt.exe
C:\Program

Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program

Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\PROGRA~1\McAfee.com\PERSON~1

\MpfTray.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\HP\HP Software

Update\HPWuSchd2.exe
C:\Program

Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\McAfee.com\PERSON~1

\MpfAgent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1

\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program

Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\The Weather Channel

FW\Desktop Weather\DesktopWeather.exe
C:\Program Files\HP\Digital

Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\HP\Digital

Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet

Explorer\iexplore.exe
C:\Program Files\Spybot - Search &

Destroy\SpybotSD.exe
C:\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet

Explorer\Main,Start Page =

http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Default_Page_URL =

http://go.microsoft.com/fwlink/?

LinkId=69157
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Default_Search_URL =

http://go.microsoft.com/fwlink/?

LinkId=54896
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Search Page =

http://go.microsoft.com/fwlink/?

LinkId=54896
R0 - HKLM\Software\Microsoft\Internet

Explorer\Main,Start Page =

http://go.microsoft.com/fwlink/?

LinkId=69157
R1 -

HKCU\Software\Microsoft\Windows\CurrentVer

sion\Internet Settings,AutoConfigURL =

192.168.100.1
R3 - URLSearchHook: Yahoo! Toolbar -

{EF99BD32-C1FB-11D2-892F-0090271D4F88} -

C:\Program Files\Yahoo!

\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper -

{02478D38-C3F9-4EFB-9B51-7695ECA05670} -

C:\Program Files\Yahoo!

\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper -

{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -

C:\Program Files\Adobe\Acrobat 7.0

\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-

DAF2-4892-BD1D-73F568BCB24E} - c:\program

files\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee Privacy Service Popup

Blocker - {3EC8255F-E043-4cae-8B3B-

B191550C2A22} - c:\program

files\mcafee.com\mps\popupkiller.dll
O2 - BHO: (no name) - {53707962-6F74-2D53

-2644-206D7942484F} - C:\Program

Files\Spybot - Search &

Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-

1895-11CF-8E15-001234567890} -

C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O3 - Toolbar: McAfee VirusScan -

{BA52B914-B692-46c4-B683-905236F6F655} -

c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-

C1FB-11D2-892F-0090271D4F88} - C:\Program

Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [TDispVol] TDispVol.exe
O4 - HKLM\..\Run: [MCUpdateExe]

C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MCAgentExe]

c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [igfxtray]

C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd]

C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers]

C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ehTray]

C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [THotkey] C:\Program

Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program

Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program

Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program

Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [NDSTray.exe]

NDSTray.exe
O4 - HKLM\..\Run: [Tvs] C:\Program

Files\Toshiba\Tvs\TvsTray.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program

Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program

Files\TOSHIBA\TOSHIBA Zooming

Utility\SmoothView.exe
O4 - HKLM\..\Run: [dla]

C:\WINDOWS\system32\dla\DLACTRLW.exe
O4 - HKLM\..\Run: [Pinger]

c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [VSOCheckTask]

"C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe"

/checktask
O4 - HKLM\..\Run: [VirusScan Online]

C:\Program

Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program

Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [IntelZeroConfig]

"C:\Program

Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless]

"C:\Program

Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf

Intel PROSet/Wireless
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1

\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1

\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [QuickTime Task]

"C:\Program Files\QuickTime\qttask.exe" -

atboottime
O4 - HKLM\..\Run: [HP Software Update]

C:\Program Files\HP\HP Software

Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CFSServ.exe]

CFSServ.exe -NoClient
O4 - HKLM\..\Run: [iTunesHelper]

"C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NeroCheck]

C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [ctfmon.exe]

C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program

Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [DW4] "C:\Program

Files\The Weather Channel FW\Desktop

Weather\DesktopWeather.exe"
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Global Startup: HP Digital Imaging

Monitor.lnk = C:\Program Files\HP\Digital

Imaging\bin\hpqtra08.exe
O4 - Global Startup: Metamail Trust

Manager.lnk = C:\Program Files\Metamail

Inc\Metamail Tray\Metamail Trust

Manager.exe
O4 - Global Startup: Microsoft Office.lnk

= C:\Program Files\Microsoft

Office\Office10\OSA.EXE
O4 - Global Startup: RAMASST.lnk =

C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: E&xport to

Microsoft Excel - res://C:\PROGRA~1

\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-

4FCB-11CF-AAA5-00401C608501} - C:\Program

Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java

Console - {08B0E5C0-4FCB-11CF-AAA5-

00401C608501} - C:\Program

Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Research - {92780B25-

18CC-41C8-B9BE-3C9C571A8263} -

C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-

D8E9-11d2-98FE-00C0F0318AFE} -

C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-

d088-4134-82b7-f2ba38496583} - %windir%

\Network Diagnostic\xpnetdiag.exe (file

missing)
O9 - Extra 'Tools' menuitem:

@xpsp3res.dll,-20001 - {e2e2dd38-d088-

4134-82b7-f2ba38496583} - %windir%\Network

Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-

F110-11d2-BB9E-00C04F795683} - C:\Program

Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows

Messenger - {FB5F1910-F110-11d2-BB9E-

00C04F795683} - C:\Program

Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL]

International*
O14 - IERESET.INF:

START_PAGE_URL=http://www.toshibadirect.co

m/dpdstart
O15 - Trusted Zone:

http://www.babyhomepages.net
O16 - DPF: {0713E8D2-850A-101B-AFC0-

4210102A8DA7} (Microsoft ProgressBar

Control, version 5.0 (SP2)) -

http://download.mcafee.com/molbin/Shared/C

omCtl32/6,0,80,22/ComCtl32.cab
O17 -

HKLM\System\CCS\Services\Tcpip\..\{B15D342

B-DCCC-46C8-887B-776CA9EB3E0B}: NameServer

= 68.87.71.226,68.87.73.242
O20 - Winlogon Notify: igfxcui -

C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon -

C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AOL Connectivity Service

(AOL ACS) - America Online - C:\Program

Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL

TopSpeedMonitor) - America Online, Inc -

C:\Program Files\Common

Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: ASP.NET State Service

(aspnet_state) - Unknown owner -

C:\WINDOWS\Microsoft.NET\Framework\v2.0.50

727\aspnet_state.exe (file missing)
O23 - Service: ConfigFree Service (CFSvcs)

- TOSHIBA CORPORATION - C:\Program

Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service -

Matsushita Electric Industrial Co., Ltd. -

C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless

Event Log (EvtEng) - Intel Corporation -

C:\Program

Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: iPod Service - Apple

Computer, Inc. - C:\Program

Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration

(McDetect.exe) - McAfee, Inc - c:\program

files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield

(McShield) - McAfee Inc. - c:\PROGRA~1

\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler

(McTskshd.exe) - McAfee, Inc -

c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter

Update Manager (mcupdmgr.exe) - McAfee,

Inc - C:\PROGRA~1

\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal firewall

Service (MpfService) - McAfee Corporation

- C:\PROGRA~1\McAfee.com\PERSON~1

\MpfService.exe
O23 - Service: Pml Driver HPZ12 - HP -

C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless

Registry Service (RegSrvc) - Intel

Corporation - C:\Program

Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless

Service (S24EventMonitor) - Intel

Corporation - C:\Program

Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Swupdtmr - Unknown owner -

c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
O23 - Service: TOSHIBA Application Service

(TAPPSRV) - TOSHIBA Corp. - C:\Program

Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
kateman
Senior Member
_
26. December 2006 @ 14:52 _ Link to this message    Send private message to this user   
well, tell me every scanner you have on your computer and i'll see if you have a worm or not. also HijackThis will not find worms as it only finds spyware and some trojans. as far as i can see your log is clean.
RedBurner
Newbie
_
26. December 2006 @ 18:55 _ Link to this message    Send private message to this user   
I have Spybot and McAfee. Can you recommend a free download for worm detection???

My Spybot detected the following:

Spybot - Search & Destroy

Advertising.com
CasaleMedia
DoubleClick
MediaPlex
TagASaurus

I just downloaded and ran AntiVir PE Classic. Here's the log:


AntiVir PersonalEdition Classic
Report file date: Wednesday, December 27, 2006 00:17

Scanning for 608120 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: Admin
Computer name: TOSHIBA_LAPTOP

Version information:
BUILD.DAT : 217 12749 Bytes 12/5/2006 17:00:00
AVSCAN.EXE : 7.0.3.4 208936 Bytes 12/27/2006 05:11:39
AVSCAN.DLL : 7.0.3.1 35880 Bytes 12/27/2006 05:11:39
LUKE.DLL : 7.0.3.2 143400 Bytes 12/27/2006 05:11:40
LUKERES.DLL : 7.0.2.0 9256 Bytes 12/27/2006 05:11:40
ANTIVIR0.VDF : 6.35.0.1 7371264 Bytes 5/31/2006 17:35:27
ANTIVIR1.VDF : 6.36.1.24 2212864 Bytes 11/14/2006 05:11:40
ANTIVIR2.VDF : 6.37.0.56 688128 Bytes 12/22/2006 05:11:40
ANTIVIR3.VDF : 6.37.0.69 61440 Bytes 12/26/2006 05:11:40
AVEWIN32.DLL : 7.3.0.21 1999360 Bytes 12/27/2006 05:11:40
AVPREF.DLL : 7.0.2.0 23592 Bytes 12/27/2006 05:11:39
AVREP.DLL : 6.37.0.5 1007656 Bytes 12/27/2006 05:11:40
AVRPBASE.DLL : 7.0.0.0 2162728 Bytes 3/30/2006 15:43:31
AVPACK32.DLL : 7.2.0.5 368680 Bytes 12/27/2006 05:11:40
AVREG.DLL : 7.0.1.1 30760 Bytes 12/27/2006 05:11:39
NETNT.DLL : 6.32.0.0 6696 Bytes 9/27/2005 14:56:49
RCIMAGE.DLL : 7.0.1.3 2097192 Bytes 12/27/2006 05:11:28
RCTEXT.DLL : 7.0.12.1 77864 Bytes 12/27/2006 05:11:28

Configuration settings for the scan:
Jobname..........................: Local Drives
Configuration file...............: C:\Program Files\AntiVir PersonalEdition Classic\alldrives.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Expanded search settings.........: 0x00007000

Start of the scan: Wednesday, December 27, 2006 00:17

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Modules have been scanned
Scan process 'avcenter.exe' - '1' Modules have been scanned
Scan process 'sched.exe' - '1' Modules have been scanned
Scan process 'avgnt.exe' - '1' Modules have been scanned
Scan process 'avguard.exe' - '1' Modules have been scanned
Scan process 'iexplore.exe' - '1' Modules have been scanned
Scan process 'iexplore.exe' - '1' Modules have been scanned
Scan process 'Dot1XCfg.exe' - '1' Modules have been scanned
Scan process 'dllhost.exe' - '1' Modules have been scanned
Scan process 'alg.exe' - '1' Modules have been scanned
Scan process 'MpfAgent.exe' - '1' Modules have been scanned
Scan process 'ehmsas.exe' - '1' Modules have been scanned
Scan process 'iPodService.exe' - '1' Modules have been scanned
Scan process 'hpqste08.exe' - '1' Modules have been scanned
Scan process 'mcrdsvc.exe' - '1' Modules have been scanned
Scan process 'TAPPSRV.exe' - '1' Modules have been scanned
Scan process 'swupdtmr.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'RegSrvc.exe' - '1' Modules have been scanned
Scan process 'RAMASST.exe' - '1' Modules have been scanned
Scan process 'hpqtra08.exe' - '1' Modules have been scanned
Scan process 'MpfService.exe' - '1' Modules have been scanned
Scan process 'McTskshd.exe' - '1' Modules have been scanned
Scan process 'DesktopWeather.exe' - '1' Modules have been scanned
Scan process 'TOSCDSPD.exe' - '1' Modules have been scanned
Scan process 'ctfmon.exe' - '1' Modules have been scanned
Scan process 'iTunesHelper.exe' - '1' Modules have been scanned
Scan process 'McShield.exe' - '1' Modules have been scanned
Scan process 'CFSServ.exe' - '1' Modules have been scanned
Scan process 'Mcdetect.exe' - '1' Modules have been scanned
Scan process 'hpwuSchd2.exe' - '1' Modules have been scanned
Scan process 'ehSched.exe' - '1' Modules have been scanned
Scan process 'qttask.exe' - '1' Modules have been scanned
Scan process 'mscifapp.exe' - '1' Modules have been scanned
Scan process 'MpfTray.exe' - '1' Modules have been scanned
Scan process 'ehrecvr.exe' - '1' Modules have been scanned
Scan process 'iFrmewrk.exe' - '1' Modules have been scanned
Scan process 'McVSEscn.exe' - '1' Modules have been scanned
Scan process 'TPSBattM.exe' - '1' Modules have been scanned
Scan process 'ZCfgSvc.exe' - '1' Modules have been scanned
Scan process 'oasclnt.exe' - '1' Modules have been scanned
Scan process 'DVDRAMSV.exe' - '1' Modules have been scanned
Scan process 'mcvsshld.exe' - '1' Modules have been scanned
Scan process 'aoltpspd.exe' - '1' Modules have been scanned
Scan process 'pinger.exe' - '1' Modules have been scanned
Scan process 'CFSvcs.exe' - '1' Modules have been scanned
Scan process 'DLACTRLW.EXE' - '1' Modules have been scanned
Scan process 'SmoothView.exe' - '1' Modules have been scanned
Scan process 'aoltsmon.exe' - '1' Modules have been scanned
Scan process 'Toshiba.exe' - '1' Modules have been scanned
Scan process 'TPSMain.exe' - '1' Modules have been scanned
Scan process 'TvsTray.exe' - '1' Modules have been scanned
Scan process 'NDSTray.exe' - '1' Modules have been scanned
Scan process 'agrsmmsg.exe' - '1' Modules have been scanned
Scan process 'ltmoh.exe' - '1' Modules have been scanned
Scan process 'SynTPEnh.exe' - '1' Modules have been scanned
Scan process 'THotkey.exe' - '1' Modules have been scanned
Scan process 'ehtray.exe' - '1' Modules have been scanned
Scan process 'igfxpers.exe' - '1' Modules have been scanned
Scan process 'hkcmd.exe' - '1' Modules have been scanned
Scan process 'igfxtray.exe' - '1' Modules have been scanned
Scan process 'mcagent.exe' - '1' Modules have been scanned
Scan process 'AOLacsd.exe' - '1' Modules have been scanned
Scan process 'TDispVol.exe' - '1' Modules have been scanned
Scan process 'TFncKy.exe' - '1' Modules have been scanned
Scan process 'spoolsv.exe' - '1' Modules have been scanned
Scan process 'explorer.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'S24EvMon.exe' - '1' Modules have been scanned
Scan process 'EvtEng.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'lsass.exe' - '1' Modules have been scanned
Scan process 'services.exe' - '1' Modules have been scanned
Scan process 'winlogon.exe' - '1' Modules have been scanned
Scan process 'csrss.exe' - '1' Modules have been scanned
Scan process 'smss.exe' - '1' Modules have been scanned
80 processes with 80 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( 45 files ).


Starting the file scan:

Begin scan in 'C:\' <SQ004126P01>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <C:\>
The path D:\ could not be found!
The device is not ready.



End of the scan: Wednesday, December 27, 2006 01:30
Used time: 1:13:16 min

The scan has been done completely.

6116 Scanning directories
253521 Files were scanned
0 viruses and/or unwanted programs were found
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
253521 Files not concerned
7285 Archives were scanned
2 Warnings
10 Notes

This message has been edited since posting. Last time this message was edited on 26. December 2006 @ 20:35

Advertisement
_
__
 
_
kateman
Senior Member
_
26. December 2006 @ 23:41 _ Link to this message    Send private message to this user   
so ur basicaly open to pretty much all viruses, trojans, worms, some malware and some spyware.

i dont read what ever your scanner is.

yeah i can tell you some good things to have. okay dowload AVG, avast & ad aware. just keep in mind that avast isnt free but will remove your problems when you use it in trial mode. i think avast will remove your worm. the links below:

http://www.avast.com/eng/download-avast-home.html

http://free.grisoft.com/freeweb.php/doc/2/

http://www.download.com/3000-2144-10045910.html
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > email worm/slow system - help! hijack log incl.
 

Digital video: AfterDawn.com | AfterDawn Forums
Music: MP3Lizard.com
Gaming: Blasteroids.com | Blasteroids Forums | Compare game prices
Software: Software downloads
Blogs: User profile pages
RSS feeds: AfterDawn.com News | Software updates | AfterDawn Forums
International: AfterDawn in Finnish | AfterDawn in Swedish | AfterDawn in Norwegian | download.fi
Navigate: Search | Site map
About us: About AfterDawn Ltd | Advertise on our sites | Rules, Restrictions, Legal disclaimer & Privacy policy
Contact us: Send feedback | Contact our media sales team
 
  © 1999-2025 by AfterDawn Ltd.

  IDG TechNetwork