| View previous topic :: View next topic |
| Author |
Message |
Psy Grandmaster Cheater Supreme
Reputation: 1
Joined: 27 Mar 2008 Posts: 1366
|
Posted: Sat Mar 29, 2008 3:10 pm Post subject: |
|
|
They are guys with quite skilled jobs..may work irregular hours. You need to give one of the analysts a few days.
Given it be a couple of years back i'd be about to help ya
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 3:15 pm Post subject: |
|
|
w00t a year, man i cant wait that long i cant use alt-tab all day for
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 3:34 pm Post subject: |
|
|
| Code: |
C:\Archivos de programa\Microsoft LifeCam\MSCamS32.exe
C:\Archivos de programa\RealVNC\VNC4\WinVNC4.exe
C:\Archivos de programa\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Archivos de programa\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Archivos de programa\Java\jre1.6.0_05\bin\jusched.exe
C:\Archivos de programa\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
C:\Archivos de programa\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Archivos de programa\Internet Explorer\IEXPLORE.EXE
C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe |
Start > Run type msconfig then go to startup tab and untick any of the above if found they shouldnt be needed at startup
also i see that IE is running there and your using firefox did you have IE open when you ran this scan? if not there is spyware in your machine.
| Code: |
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = VĂnculos
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: (no name) - {67982BB7-0F95-44C5-92DC-E3AF3DC19D6D} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: Protection Bar - {84938242-5C5B-4A55-B6B9-A1507543B418} - C:\Archivos de programa\Video Access ActiveX Object\iesplugin.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [I downloaded pirated Software from P2P ] C:\WINDOWS\system32\World of Warcraft Burning Crusade.exe
O20 - Winlogon Notify: ddcbxuu - ddcbxuu.dll (file missing)
O20 - Winlogon Notify: ShellCompatibility - C:\WINDOWS\system32\LjgitCheckControl.DLL (file missing)
O21 - SSODL: eitheror - {2016a466-91a2-43c6-97d8-2fd380f065ef} - (no file)
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Archivos de programa\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: iPodService - Unknown owner - C:\Archivos de programa\iPod\bin\iPodService.exe (file missing)
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Archivos de programa\Archivos comunes\Macromedia Shared\Service\Macromedia Licensing.exe (file missing)
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - (no file)
O23 - Service: StyleXPService - Unknown owner - C:\Archivos de programa\TGTSoft\StyleXP\StyleXPService.exe (file missing)
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Archivos de programa\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
|
i recommend you format your pc it looks like there is a virus in there, the WoW rite in the middle thats an unusual one.
if you dont format i suggest removing all the programs in this list and reinstalling them they are all missing files probably cause of a virus.
also you dont really need all those toolbars now do you?
toolbars are just more spyware and slow down your browser.
after removing them run a scan and remove anything in the code above especially those no name no file registrys no need for them they just clog up your reg.
download and run CCleaner clean out your registry and then all your temps and stuff make sure not to remove anything you use.
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 3:41 pm Post subject: |
|
|
| runer262 wrote: | | Code: |
C:\Archivos de programa\Microsoft LifeCam\MSCamS32.exe
C:\Archivos de programa\RealVNC\VNC4\WinVNC4.exe
C:\Archivos de programa\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Archivos de programa\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Archivos de programa\Java\jre1.6.0_05\bin\jusched.exe
C:\Archivos de programa\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
C:\Archivos de programa\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Archivos de programa\Internet Explorer\IEXPLORE.EXE
C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe |
Start > Run type msconfig then go to startup tab and untick any of the above if found they shouldnt be needed at startup
also i see that IE is running there and your using firefox did you have IE open when you ran this scan? if not there is spyware in your machine.
| Code: |
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = VĂnculos
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: (no name) - {67982BB7-0F95-44C5-92DC-E3AF3DC19D6D} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: Protection Bar - {84938242-5C5B-4A55-B6B9-A1507543B418} - C:\Archivos de programa\Video Access ActiveX Object\iesplugin.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [I downloaded pirated Software from P2P ] C:\WINDOWS\system32\World of Warcraft Burning Crusade.exe
O20 - Winlogon Notify: ddcbxuu - ddcbxuu.dll (file missing)
O20 - Winlogon Notify: ShellCompatibility - C:\WINDOWS\system32\LjgitCheckControl.DLL (file missing)
O21 - SSODL: eitheror - {2016a466-91a2-43c6-97d8-2fd380f065ef} - (no file)
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Archivos de programa\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: iPodService - Unknown owner - C:\Archivos de programa\iPod\bin\iPodService.exe (file missing)
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Archivos de programa\Archivos comunes\Macromedia Shared\Service\Macromedia Licensing.exe (file missing)
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - (no file)
O23 - Service: StyleXPService - Unknown owner - C:\Archivos de programa\TGTSoft\StyleXP\StyleXPService.exe (file missing)
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Archivos de programa\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
|
i recommend you format your pc it looks like there is a virus in there, the WoW rite in the middle thats an unusual one.
if you dont format i suggest removing all the programs in this list and reinstalling them they are all missing files probably cause of a virus.
also you dont really need all those toolbars now do you?
toolbars are just more spyware and slow down your browser.
after removing them run a scan and remove anything in the code above especially those no name no file registrys no need for them they just clog up your reg.
download and run CCleaner clean out your registry and then all your temps and stuff make sure not to remove anything you use. |
i did the Start > Run type msconfig already if u read well [Psych] already told me that oh and i had IE opened and wow it World of warcraft... plus i dont need to clean my pc if its slow or anything i have 2 local discs i have C and E
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 3:51 pm Post subject: |
|
|
i know what WoW is hence the caps on the W's but i also know for a fact that the file in your log is a virus otherwise blizzard is kinda going overboard putting their files into the system32 folder...
2 local discs doesnt change the speed of your machine come on get some common sense they are only for storing data unless they are both on sata and used for page filing.
what about the other stuff i mentioned why all the tool bars and you still need to reinstall those programs they arent gonna fix them selves if their files have been deleted.
ccleaner isnt just to speed up your pc even with 2 hdds i still run it both my hdds are 500gb sata so of course i dont really need the extra space but it cleans out the history and temp files that other programs that crashed left behind.
|
|
| Back to top |
|
 |
Psy Grandmaster Cheater Supreme
Reputation: 1
Joined: 27 Mar 2008 Posts: 1366
|
Posted: Sat Mar 29, 2008 4:16 pm Post subject: |
|
|
There is no virus on his machine so far as the information from that log indicates.
Unless you're an expert in the subject area, I suggest you leave the topic runer262. Thanks for the help for ulhin anyway
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 4:37 pm Post subject: |
|
|
ill check does sites to make sure its a virus but im convinced that its my worldofwarcaft game
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 4:40 pm Post subject: |
|
|
well i dunno why but my world of warcraft.exe is in blizzard folder in program files the only way it would work from system32 folder would be if thats where you set it up to install to.
edit: O4 - HKLM\..\Run: [I downloaded pirated Software from P2P] C:\WINDOWS\system32\Battlefield2 .exe
have a look at that one, also named after a game so something tells me its a virus that uses a the name of a common file thats opened quite often to not arouse suspicion.
anyway i think you should install the new zonealarm and setup some form of registry watcher so it informs you when something is trying to modify your registry, zonealarm is the only security program i really know of i dont really use any programs as such. im careful on my computer not to download virus's.
ok just checked my wow folder i also have bc installed and the only exe that i have in there are launcher.exe , wow.exe , BackgroundDownloader.exe couldnt find the wow file in my system32 folder
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 5:19 pm Post subject: |
|
|
So wat you recomend me to do?
But just to kill the virus not cleaning all my stuff like my wow and my other things (you know wats my point right?).
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 5:25 pm Post subject: |
|
|
ok just tick the box beside the wow registry in hijack this and press fix.
also you should think about reinstalling the programs as i said before cause it seems as some files are missing according to the log.
maybe read my previous post and do some of the stuff i mentioned before.
and as for the topic... does your pc still give you the problem with your taskbar if so then just ctrl alt and del then end the explorer.exe process then file > new and type explorer and press ok to get it back on.
and be careful of what you download on p2p..
i still think a format would be best.
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 5:30 pm Post subject: |
|
|
i booted my computer 2 times in a row and my task bar is working but im gona do wat u sayed to me and see if it works. Btw i will think a lot about formating it, since i have a lot of stuffs...
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 5:44 pm Post subject: |
|
|
well if your not going to format i suggest not to use the computer for online banking or anything really important just in case.
little thing i do with all my downloads.
i have virtual pc installed on my machine with 3 different operating systems installed on it, when i download something (usually cracks and software of p2p) on my computer i run it in those three before i use it on my computer just for security reasons, 1 of them has no security all and 1 does then the other is just vista lol i just like to compare and see what runs on xp that doesnt run on vista.
|
|
| Back to top |
|
 |
ulhin Expert Cheater
Reputation: 0
Joined: 29 Jul 2007 Posts: 205 Location: flushing the toilet
|
Posted: Sat Mar 29, 2008 5:48 pm Post subject: |
|
|
cool how do i do that?!
If i manage to do that then ill "start all over"/format it and do that to have a more secure my computer.
_________________
|
|
| Back to top |
|
 |
runer262 Expert Cheater
Reputation: 0
Joined: 04 Sep 2006 Posts: 241
|
Posted: Sat Mar 29, 2008 6:16 pm Post subject: |
|
|
| just read up on virtual pc from microsoft, and download it on their website its a free program for windows users.
|
|
| Back to top |
|
 |
|