Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
hi i have networm-i.virus@fp and spybot and my norton dont seem to have any idea about anything
Would you....
thanksHi I have networm-ivirus@fp and spybot
I want to know how to you knows

Download and run Hijack This and you can paste your log to the Analyzer Page to see what nastys you have on your system
If you need further help post back" Please Post back to let us know if we helped "

Also you can download a trial of EWIDO Anti-Malware
Boot to safe mode (F8 at boot up) and run a complete scan" Please Post back to let us know if we helped "

Again in here this are my buggies:
Logfile of HijackThis v1.99.1
Scan saved at 04:18:24 p.m., on 30/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\SymantecShared\ccSetMgr.exe
C:\Program Files\Common Files\SymantecShared\ccEvtMgr.exe
C:\Program Files\Common Files\SymantecShared\SNDSrvc.exe
C:\Program Files\Common Files\SymantecShared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\SymantecShared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\ProgramFiles\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\WinMediaCodec\pmsngr.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Lexmark 7100 Series\lxbxmon.exe
C:\Program Files\WinMediaCodec\pmmon.exe
C:\Program Files\Lexmark 7100 Series\ezprint.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\Program Files\Common Files\SymantecShared\ccApp.exe
C:\Program Files\MSN Messenger\MsnMsgr.exe
C:\WINDOWS\system32\lxbxcoms.exe
C:\Program Files\Common Files\SymantecShared\Security Console\NSCSRVCE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hijackthis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet
Explorer\Main,Local Page = \blank.htm
R3 - URLSearchHook: ScriptInocUI Class - - (no file)
O2 - BHO: Yahoo! Toolbar Helper -{02478D38-C3F9-4EFB-9B51-7695ECA05670} -
C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper -{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
C:\Program Files\Adobe\Acrobat
7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper -{9030D464-4C02-4ABF-8ECC-5164760863C6} -
C:\Program Files\Common Files\Microsoft
Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper -{A8F38D8D-E480-4D52-B7A2-731BB6995FDD} -
C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus -{C4069E3A-68F1-403E-B40E-20066696354B} -
C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar -{EF99BD32-C1FB-11D2-892F-0090271D4F88} -
C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [IgfxTray]C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds]C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [LXBXCATS] rundll32C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\L
XBXtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxbxmon.exe] "C:\ProgramFiles\Lexmark 7100 Series\lxbxmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark7100 Series\ezprint.exe"
O4 - HKLM\..\Run: [ezShieldProtector for Px]C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\CommonFiles\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\ProgramFiles\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [vb] C:\Program Files\vb\vb.exe /h
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSNMessenger\MsnMsgr.exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk= C:\Program Files\Adobe\Acrobat
7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search -http://edits.mywebsearch.com/toolba...
.jhtml?p=ZCxdm490YYMX
O15 - Trusted Zone: *.passpaort.net
O15 - Trusted Zone: *.passport.com
O15 - Trusted Zone: *.Windowsoncare.com
O16 - DPF:{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}
(Symantec AntiVirus scanner) -
http://security.symantec.com/sscv6/...
in/AvSniff.cab
O16 - DPF:{644E432F-49D3-41A1-8DD5-E099162EEEC5}
(Symantec RuFSI Utility Class) -
http://security.symantec.com/sscv6/...
mon/bin/cabsa.cab
O17 -HKLM\System\CCS\Services\Tcpip\..\{7F6A4323-CFF2
-4FC7-94A0-F93168D3D85E}: NameServer =
200.52.11.157 200.52.12.131
O18 - Protocol: livecall -{828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim -{828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui -C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon -C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj -{AAA288BA-9A4C-45B0-95D7-94D524869DB5} -
C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Automatic LiveUpdate Scheduler -Symantec Corporation - C:\Program
Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) -Symantec Corporation - C:\Program Files\Common
Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr)- Symantec Corporation - C:\Program Files\Common
Files\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) -Macrovision Corporation - C:\Program Files\Common
Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation -C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.exe
O23 - Service: lxbx_device - Lexmark International, Inc.- C:\WINDOWS\system32\lxbxcoms.exe
O23 - Service: Norton AntiVirus Auto-Protect Service(navapsvc) - Symantec Corporation - C:\Program
Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall MonitorService (NPFMntor) - Symantec Corporation -
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service(NSCService) - Symantec Corporation - C:\Program
Files\Common Files\Symantec Shared\Security
Console\NSCSRVCE.exe
O23 - Service: PACSPTISVR - Sony Corporation -C:\Program Files\Common Files\Sony
Shared\AVLib\PACSPTISVR.exe
O23 - Service: Symantec AVScan (SAVScan) -Symantec Corporation - C:\Program Files\Norton
AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service(SNDSrvc) - Symantec Corporation - C:\Program
Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation -C:\Program Files\Common Files\Symantec
Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - SonyCorporation - C:\Program Files\Common Files\Sony
Shared\AVLib\SPTISRV.exe
O23 - Service: Symantec Core LC - SymantecCorporation - C:\Program Files\Common
Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Hi I have networm-ivirus@fp and spybot
I want to know how to you knows

HijackThis Tutorial - How to Analyse your own log
http://spywarewarrior.com/viewtopic...
http://hometown.aol.co.uk/jrmc137/h...
http://www.bleepingcomputer.com/tut...
http://www.malwarehelp.org/understa...
HijackThis log file analysis ( online )
http://hijackthis.de/index.php?lang...
Or,
http://startup.networktechs.com/pag...
http://hjt.iamnotageek.com

didn“t i made the right thing?i used the hijack and i posted the doc is that wrong??
Hi I have networm-ivirus@fp and spybot
I want to know how to you knows

this is whst i got from ewido..
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP179\A0017349.exe -> Adware.180Solutions : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP198\A0020323.dll -> Adware.Comet : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP188\A0018390.DLL -> Adware.FunWeb : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP198\A0020335.DLL -> Adware.FunWeb : Omitidos.
HKLM\SOFTWARE\Classes\AppID\{70F17C8C-1744-41B6-9D07-575DB448DCC5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{020B1227-417D-4682-9AC3-61F43CB5B6B1} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{125494B2-ACAD-414c-98B9-452F3EF7703A} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{20A3D913-30EF-4e69-B3F7-93B3F1FB9D5C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{3D00A39C-655B-428b-AEB2-2FBA03DCC49C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{408F660A-9465-44a3-B557-8709DFD992BC} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{479fd0cf-5be9-4c63-8cda-b6d371c67bd5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{5F6BBD8A-18CF-4d55-8B4C-C9B4C9328DFE} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{8C56B6CE-C53F-44c4-9BDC-A9BC1711D05A} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{8EE6BF73-B370-4d13-9126-EB0071178F2E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{97F56E12-C706-4aeb-9FFB-133C05EE5D38} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{9BB7E700-4E48-476d-B75C-6F47606BE988} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{C65C3770-598C-A2FD-DBAA-C7A45C50338E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{CBCACA58-1AEE-4600-8CF0-E8B30BFF1535} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{CCFB2B33-F4DB-B63D-ABDC-C7384ED93B34} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{D6D64CDF-0363-4261-B723-29A3AF365E1D} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{27ED4AC2-B6D8-4079-9831-017A100B391E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{3F6D6C35-FB73-45E6-9473-BB4CC25CE019} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{715D709B-2B10-42FA-A069-297D25D93601} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{872C1B1E-3CF0-4D3A-95E5-A0C662D2854C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{886B1D08-B404-40F0-AA18-4E416682A2E9} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{8B5F65CF-0B0A-4291-8DA2-86D7F7B0A6DB} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{925B0211-A1C1-4712-8FCA-5F5B8101736D} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{B01E37C4-5497-4D58-9FFD-D5653B8DC866} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CCAA201C-C48D-48A8-A1E8-846562CBF1C1} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{D483521B-D5CC-43FF-A45A-9BE4A8E6606E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{ED2AFF47-B7BE-4273-A203-C796E87F72D2} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{F0FA7ED9-5A0A-4374-B63E-BEBAFD52192E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{F5DEE77C-87EB-4E00-BBF9-8CBF3BDEA7AF} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FB5DDAB7-6AA5-4E97-9541-5A75ADDF4ABA} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FDDF521B-0EBE-4D15-838C-73E2D851161B} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FF609434-EB47-481B-BA0E-1D2B467629A5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\TypeLib\{60F94D7D-563E-4942-B5EC-2DE9C135C139} -> Adware.Generic : Omitidos.
HKU\S-1-5-21-1993962763-1214440339-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{479FD0CF-5BE9-4C63-8CDA-B6D371C67BD5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Public Messenger ver 2.03 -> Adware.IntCodec : Omitidos.
HKU\S-1-5-21-1993962763-1214440339-839522115-1003\Software\Internet Security -> Adware.IntCodec : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020639.DLL -> Adware.IWon : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020678.exe -> Adware.MyWebSearch : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{0354A901-C606-4DCC-8EA3-4F3383ECE67C} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{11ED5DDF-90D0-45C1-BE2B-C9C4F98CCFE2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{1FEB28BA-21B6-46F3-948A-D7CA11654FE9} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{340B5D33-4A0C-4673-94FA-B88ECC48773E} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{453B991D-6B23-48CF-A3B0-2214F437CCB0} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{5AC65D7D-C00C-47A4-83F7-F81073C39B25} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{657D5DE0-6497-4040-B604-F38C9411F64D} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{8A7D5862-7B00-4270-B456-CDC6779A79DD} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{940664C7-DE44-4B8F-A05D-FD70CAB75F2C} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{B7512CD1-CFDE-4498-ADBD-14B38062A478} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CABABC4B-5B0F-4297-9D85-72E93616ED55} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CCA1E17E-2BEE-4D53-8D00-7ADB5B35145A} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CF1D16BA-2CE6-429A-A63A-3CF44D81A950} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{E56B4B91-E548-4E89-97AC-E9630D22A2E2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FC105E0D-AE24-43F2-89AA-E8AB8F96EF6E} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FD99520A-E900-4F8D-9092-22705622D2D2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\TypeLib\{03F89BF1-127B-44F3-B6F4-5A18FEA674CD} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\vb -> Adware.VirusBuster : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020628.DLL -> Downloader.IstBar : Omitidos.
C:\Program Files\WinMediaCodec\pmsngr.exe -> Downloader.Zlob.and : Omitidos.
C:\Program Files\WinMediaCodec\pmuninst.exe -> Downloader.Zlob.and : Omitidos.
C:\Documents and Settings\owner\Application Data\winantiviruspro2006freeinstall_es[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP208\A0021094.dll -> Not-A-Virus.Hoax.Win32.Renos.er : Omitidos.
C:\Documents and Settings\owner\Local Settings\Temp\tmp7A.tmp -> Not-A-Virus.Hoax.Win32.Renos.fa : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@2o7[2].txt -> TrackingCookie.2o7 : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@casalemedia[2].txt -> TrackingCookie.Casalemedia : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@doubleclick[1].txt -> TrackingCookie.Doubleclick : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@fastclick[1].txt -> TrackingCookie.Fastclick : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@revenue[1].txt -> TrackingCookie.Revenue : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@statcounter[2].txt -> TrackingCookie.Statcounter : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@zedo[1].txt -> TrackingCookie.Zedo : Omitidos.
C:\Documents and Settings\owner\Local Settings\Temp\NI.UWA6PY_0001_N91M2107\setup.exe -> Trojan.Fakealert : Omitidos.
::Fin del informe
Hi I have networm-ivirus@fp and spybot
I want to know how to you knows

![]() |
www.socialuser.com keep l...
|
New Malware.j infection
|

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |