bwear

Members
  • Content Count

    31
  • Joined

  • Last visited

Everything posted by bwear

  1. Also, I am leaving work in about 10-minutes and will be on vacation all of next week, so thanks for all your help and I'll keep working on this when I get back in the office. Thanks again and have a great weekend!
  2. when browsing for that filename, no file by that name was present. I also did a search for that filename on my C: drive and no results came up.
  3. VundoFix V5.1.7 Running as SYSTEM from c:\windows\system32\VundoFix.exe Checking Java version... Java version is 1.5.0.7 Scan started at 11:08:05 AM 8/11/2006 Listing files found while scanning.... No infected files were found. Beginning removal... (I hit Remove Vundo even though it returned a message saying no infected files found.)
  4. I ran VundoFix.exe and it found no Vundo files.
  5. Logfile of HijackThis v1.99.1 Scan saved at 10:15:06 AM, on 8/11/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\syste
  6. Hi guys, First of all, thanks so much for helping everyone out. This is an incredible resource! My machine was recently hijacked and I was wondering if someone could analyze my log and let me know what course of action to take. Thanks in advance for your help! Not sure if my attachment is attached, so I'm copying the log below. Logfile of HijackThis v1.99.1 Scan saved at 9:34:03 AM, on 8/11/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\servic