PDA

View Full Version : vamp already knows



oxynerd
11-30-2006, 10:24 PM
here is the hijack this log. currently in vista (not my pc). the avg antispyware thing doesn't run. just errors out. the aol/itunes stuff is for dad/sister. and i know the dwm is the desktop window manager, im guessing kinda like the linux thing. ive taken off everything I know I can, or more so i know is not soposed to be there.

Logfile of HijackThis v1.99.1
Scan saved at 12:21:34 AM, on 12/1/2006
Platform: Unknown Windows (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16386)

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\include\svchost.exe
C:\Program Files\Common Files\AOL\1164672331\ee\aolsoftware.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\explorer.exe
\192.168.1.100\Joe drive E\temp download\hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://zzz.lx.ro/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F3 - REG:win.ini: run=C:\Windows\system32\include\svchost.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1164672331\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [MSConfig] "C:\Windows\system32\msconfig.exe" /auto
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

pc-Tec-Mr.wizzer
12-12-2007, 10:23 PM
holy crap thats one of the worst starts I have seen in a while to much crap loading and way to many internet junk loading for starters delete over 80 percent of whats in there and it will run better del vista and it will run 100 percent better:lmao:

Run etrust pestpatrol and spybot search and destroy and adaware 6.0 on it also try http://www.spywareterminator.com/download/download.aspx spywareterminator its pretty good and a pest about who and what gets to run meaning it watches preaty close but the user is the only good protection

stay off porn stay off ***** be smart if you go to bad or ify sites use a browser like Avante that has a toolbar that shuts off flash animation active x java scripts and the rest of the crap that lets the pests in so you can browse those sites and just watch how your pc is running catch it early
And I always say do a Norton Ghost dvd backup once a week of your pc so you can just start where you left off if a problem happens!

Aniviel
12-13-2007, 01:04 AM
Oxy staying off porn? hehe

VampYre
12-13-2007, 06:54 AM
That anti spyware site looks like a big sales ad. lol. I doubt I would touch that software. I will look at the log when i get to work, not sure how I missed it before.