iansnooke
-
Content Count
48 -
Joined
-
Last visited
Content Type
Profiles
Forums
Calendar
Posts posted by iansnooke
-
-
Well, the first time that I touched a pc was when I was 17. I'm now 23 and its really just in this past year or so that I really got to play on a pc. So just about 90 percent of my knowledge is thanks to a french guy ( who cant speak a word of english ) who is a computer technician. So Imagine all the dumb moments I'm feeling, trying to learn computers and french!!
Btw I'm from South Africa, and never heard french before untill 18. Immigrated when I was 21.
-
No problem, here we go.
Logfile of HijackThis v1.99.1
Scan saved at 10:28:53 AM, on 2007/05/08
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\WINDOWS\NCLAUNCH.EXe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Documents and Settings\snookedoggydog\Mes documents\Computers\Computer safety\HJT\HJT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.co.za
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [NCLaunch] C:\WINDOWS\NCLAUNCH.EXe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler... - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O17 - HKLM\System\CCS\Services\Tcpip\..\{671C48EE-DB87-49DB-AB92-53ACB6BF0AA1}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS1\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O17 - HKLM\System\CS3\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Program Files\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
You will see that Kaspersky is not on there. I turned it off because its outdated and its asking me for my product key. Problem is, not that long ago my motherboard fried and I replaced it, but in the process cant find my key.
Anyways, thanx!
-
Hi! Well, I was playing around my options in the firfox browser and saw that the sites where the popups comes from, was somehow authorised. So I deleted that lists and no more popups. Dont know how they got athourised, but they gone now.
-
Log is actually looking really good, seems we may have done it with one fell swoop.
I do have a couple of question about 2 of the programs you show installed.
WinVNC4 Did you install this?? If so that's fine I just remember it (or a version of it) used to be installed by some trojans for THEIR manipulation of the computer. If YOU installed it and it's used properly/securly it's a fine program.
SpywareBot...Not a lot of info specifically on this but many reference as "program of dubious origin". It seems it and another program that this is/was based on were, IN THE PAST, listed as rougue/suspect program on MWW. Note the emphesis on in the past....They are not longer listed as such. It just with ALL the known/great Anti-malware programs around using one that has any doubts about it seems.......... you fill in the blank. But if YOU like it and have had no trouble with it feel free to say so. The more good review that a prog like this get will only serve to bring it out of the shadow of suspicion it is under from past assocations.
Take a day or so to see how the computer is running and then post with any comments and complaints and a final (?) HJT log.
Thanks a lot for your help. Avg found a trojan that adaware se didnt or couldnt. I still have the popup problem though. I did install vnc, found it usefull in my neighbourhood ( that meaning my wife who calls me every two minutes to look at something on her pc ) Spywarebot? I installed spybot sd, spywaregaurd ( thats very good against browser hijacking and spywareblaster ( wich I think I will uninstall ).
I will post another log in a few days time and give my pc time to see what happenes. But thanks again! You guys are great!
-
Also, the problem with the spreadsheet is that it runs on the worldcup, i wanna do one for the local team. Thanks anyway!
-
Firstly, thanx a lot! it just goes to show, its not what u know, but who u know ( in my case, met )
new hjt log:
Logfile of HijackThis v1.99.1
Scan saved at 10:43:23 AM, on 2007/05/03
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\NCLAUNCH.EXe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\PROGRA~1\MICROS~2\OFFICE11\WORDVIEW.EXE
C:\Documents and Settings\snookedoggydog\Mes documents\Computers\Computer safety\HJT\HJT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.co.za
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [NCLaunch] C:\WINDOWS\NCLAUNCH.EXe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler... - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O17 - HKLM\System\CCS\Services\Tcpip\..\{671C48EE-DB87-49DB-AB92-53ACB6BF0AA1}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS1\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Program Files\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
And Avg report:
+ Created at: 10:36:53 AM 2007/05/03
+ Scan result:
:mozilla.319:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.320:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.325:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.274:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Clickbank : Cleaned.
:mozilla.326:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Connextra : Cleaned.
:mozilla.327:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Connextra : Cleaned.
:mozilla.296:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.321:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.322:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.333:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.334:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.415:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.416:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.417:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.418:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.419:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.420:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.421:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.422:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.423:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.424:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.425:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.426:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.427:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.428:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.429:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.430:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.431:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.432:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.433:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.434:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.464:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
C:\Documents and Settings\snookedoggydog\Cookies\[email protected][2].txt -> TrackingCookie.Gamershell : Cleaned.
:mozilla.154:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.155:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.158:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.159:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.7:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.8:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.42:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.308:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.166:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.167:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.168:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.169:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.170:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.324:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.383:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.384:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.385:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.386:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.387:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.294:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.398:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.399:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.400:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.401:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
:mozilla.245:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Vegasred : Cleaned.
:mozilla.116:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.117:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.452:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
C:\Documents and Settings\snookedoggydog\Cookies\[email protected][2].txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.412:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.413:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.414:C:\Documents and Settings\snookedoggydog\Application Data\Mozilla\Firefox\Profiles\8nu2q1yl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\WINDOWS\system32\1024 -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld2AB7.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld6A7D.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld7388.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld80E6.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld818C.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld89C9.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ld8ABF.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ldA084.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ldB22A.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ldDD25.tmp -> Trojan.Small : Cleaned.
C:\WINDOWS\system32\1024\ldF342.tmp -> Trojan.Small : Cleaned.
::Report end
Thanks again!
-
Wow! thanx, will have a look!
-
Is this running on linux or windows?
Hi, worked it out in the end. I've got python. Thanks. I will also check on the the other suggestion, to have a skeleton idea. Thanks all!
-
I went to add/remove and searched for python. It was allready checked and they said that its allready installed. But I cant find it!
-
Thanx! u guys rock!
-
Hi guys! I would like to write a program from scratch to keep score and statistics for our cricket team. I have never attemted something like this, but would like to try it as a hobbie, so time is not of the essence. What should I learn and which programs should I use?
I would preferably like to do this on linux.
-
Greetsi !
(oh, wait a moment that's Swiss, I think)
Anywho... thanks for the link... bookmarked (as I'm one of the least techy in this here forum and benefit daily from others' expertise).
I'm not french, can only speak basic french, so imagine how hard it is to learn computers here! Anyway, I'm totally , how shall I put it, dumb at the moment, so sites like these and this forum helps me!
-
Salut! Well I find this site usefull for abreviations that I dont understand. Seeing as I cant spell either its worth the look!
Hope u guys find it helpfull!
-
Hi! I dont know if this will help you but I use it and it gives me all the info on my pc.
http://www.softpedia.com/get/System/System-Info/AIDA.shtml
Hope it helps!
-
Hi guys. Downloaded hjt and did a scan. Here is my log. I dont have any serious problems, just popups that keep pestering me. Thanx in advance!
Logfile of HijackThis v1.99.1
Scan saved at 03:37:44 PM, on 2007/05/02
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\NCLAUNCH.EXe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\Documents and Settings\snookedoggydog\Mes documents\Computers\Computer safety\HJT\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.co.za
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.co.za
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [NCLaunch] C:\WINDOWS\NCLAUNCH.EXe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [spywareBot] C:\Program Files\SpywareBot\SpywareBot.exe -boot
O4 - HKCU\..\Run: [MailSkinner] c:\program files\mailskinner\mailskinner.exe
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler... - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O17 - HKLM\System\CCS\Services\Tcpip\..\{671C48EE-DB87-49DB-AB92-53ACB6BF0AA1}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS1\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O17 - HKLM\System\CS3\Services\Tcpip\..\{621003E4-F62B-4890-9899-CC2257A751FB}: NameServer = 212.27.32.176,212.27.32.177
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter: text/html - (no CLSID) - (no file)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Program Files\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
-
Oops! Sorry about the language.
-
-
I changed from Internet explorer to firefox because for one reason, there was less popups. Now it seems that popups have caught on. Stupid stuff, sites for the french election, online casinos and even online cloths shops. Anyone know why? I update firefox regularly.
-
Man With A Duck
in The Comedy Club
Posted
A man walks into the kitchen with a duck under his arm and says : " This is the pig that I've been doing the last 20 years. " His wife says to him : " Thats not a pig, it's a duck! " He replies: " I was talking to the duck. "
I hope this joke is acceptable.