Computing.Net > Forums > Security and Virus > Hi this is kinda hard...(for me)

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

Hi this is kinda hard...(for me)

Reply to Message Icon

Name: akari
Date: September 30, 2006 at 03:50:26 Pacific
OS: xp
CPU/Ram: pent4 i guess
Comment:

hi i have networm-i.virus@fp and spybot and my norton dont seem to have any idea about anything

Would you....
thanks

Hi I have networm-ivirus@fp and spybot
I want to know how to you knows



Sponsored Link
Ads by Google

Response Number 1
Name: Bob (by BigBob)
Date: September 30, 2006 at 05:06:07 Pacific
Reply:

Download and run Hijack This and you can paste your log to the Analyzer Page to see what nastys you have on your system
If you need further help post back

" Please Post back to let us know if we helped "


0

Response Number 2
Name: Bob (by BigBob)
Date: September 30, 2006 at 05:15:15 Pacific
Reply:

Also you can download a trial of EWIDO Anti-Malware
Boot to safe mode (F8 at boot up) and run a complete scan

" Please Post back to let us know if we helped "


0

Response Number 3
Name: akari
Date: September 30, 2006 at 14:20:05 Pacific
Reply:

Again in here this are my buggies:
Logfile of HijackThis v1.99.1
Scan saved at 04:18:24 p.m., on 30/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec

Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec

Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec

Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec

Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec

Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program

Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\WinMediaCodec\pmsngr.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Lexmark 7100 Series\lxbxmon.exe
C:\Program Files\WinMediaCodec\pmmon.exe
C:\Program Files\Lexmark 7100 Series\ezprint.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\Program Files\Common Files\Symantec

Shared\ccApp.exe
C:\Program Files\MSN Messenger\MsnMsgr.exe
C:\WINDOWS\system32\lxbxcoms.exe
C:\Program Files\Common Files\Symantec

Shared\Security Console\NSCSRVCE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet

Explorer\Main,Local Page = \blank.htm
R3 - URLSearchHook: ScriptInocUI Class - - (no file)
O2 - BHO: Yahoo! Toolbar Helper -

{02478D38-C3F9-4EFB-9B51-7695ECA05670} -

C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper -

{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -

C:\Program Files\Adobe\Acrobat

7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper -

{9030D464-4C02-4ABF-8ECC-5164760863C6} -

C:\Program Files\Common Files\Microsoft

Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper -

{A8F38D8D-E480-4D52-B7A2-731BB6995FDD} -

C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus -

{C4069E3A-68F1-403E-B40E-20066696354B} -

C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar -

{EF99BD32-C1FB-11D2-892F-0090271D4F88} -

C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [IgfxTray]

C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds]

C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [LXBXCATS] rundll32

C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\L

XBXtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxbxmon.exe] "C:\Program

Files\Lexmark 7100 Series\lxbxmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark

7100 Series\ezprint.exe"
O4 - HKLM\..\Run: [ezShieldProtector for Px]

C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common

Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program

Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [vb] C:\Program Files\vb\vb.exe /h
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN

Messenger\MsnMsgr.exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk

= C:\Program Files\Adobe\Acrobat

7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search -

http://edits.mywebsearch.com/toolba...

.jhtml?p=ZCxdm490YYMX
O15 - Trusted Zone: *.passpaort.net
O15 - Trusted Zone: *.passport.com
O15 - Trusted Zone: *.Windowsoncare.com
O16 - DPF:

{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}

(Symantec AntiVirus scanner) -

http://security.symantec.com/sscv6/...

in/AvSniff.cab
O16 - DPF:

{644E432F-49D3-41A1-8DD5-E099162EEEC5}

(Symantec RuFSI Utility Class) -

http://security.symantec.com/sscv6/...

mon/bin/cabsa.cab
O17 -

HKLM\System\CCS\Services\Tcpip\..\{7F6A4323-CFF2

-4FC7-94A0-F93168D3D85E}: NameServer =

200.52.11.157 200.52.12.131
O18 - Protocol: livecall -

{828030A1-22C1-4009-854F-8E305202313F} -

C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim -

{828030A1-22C1-4009-854F-8E305202313F} -

C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui -

C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon -

C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj -

{AAA288BA-9A4C-45B0-95D7-94D524869DB5} -

C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Automatic LiveUpdate Scheduler -

Symantec Corporation - C:\Program

Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) -

Symantec Corporation - C:\Program Files\Common

Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr)

- Symantec Corporation - C:\Program Files\Common

Files\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) -

Macrovision Corporation - C:\Program Files\Common

Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation -

C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.exe
O23 - Service: lxbx_device - Lexmark International, Inc.

- C:\WINDOWS\system32\lxbxcoms.exe
O23 - Service: Norton AntiVirus Auto-Protect Service

(navapsvc) - Symantec Corporation - C:\Program

Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor

Service (NPFMntor) - Symantec Corporation -

C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service

(NSCService) - Symantec Corporation - C:\Program

Files\Common Files\Symantec Shared\Security

Console\NSCSRVCE.exe
O23 - Service: PACSPTISVR - Sony Corporation -

C:\Program Files\Common Files\Sony

Shared\AVLib\PACSPTISVR.exe
O23 - Service: Symantec AVScan (SAVScan) -

Symantec Corporation - C:\Program Files\Norton

AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service

(SNDSrvc) - Symantec Corporation - C:\Program

Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation -

C:\Program Files\Common Files\Symantec

Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony

Corporation - C:\Program Files\Common Files\Sony

Shared\AVLib\SPTISRV.exe
O23 - Service: Symantec Core LC - Symantec

Corporation - C:\Program Files\Common

Files\Symantec Shared\CCPD-LC\symlcsvc.exe

Hi I have networm-ivirus@fp and spybot
I want to know how to you knows


0

Response Number 4
Name: Johnw
Date: September 30, 2006 at 17:16:01 Pacific

Response Number 5
Name: akari
Date: October 3, 2006 at 01:17:52 Pacific
Reply:

didn“t i made the right thing?i used the hijack and i posted the doc is that wrong??


Hi I have networm-ivirus@fp and spybot
I want to know how to you knows


0

Related Posts

See More



Response Number 6
Name: akari
Date: October 3, 2006 at 02:15:34 Pacific
Reply:

this is whst i got from ewido..

C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP179\A0017349.exe -> Adware.180Solutions : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP198\A0020323.dll -> Adware.Comet : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP188\A0018390.DLL -> Adware.FunWeb : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP198\A0020335.DLL -> Adware.FunWeb : Omitidos.
HKLM\SOFTWARE\Classes\AppID\{70F17C8C-1744-41B6-9D07-575DB448DCC5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{020B1227-417D-4682-9AC3-61F43CB5B6B1} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{125494B2-ACAD-414c-98B9-452F3EF7703A} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{20A3D913-30EF-4e69-B3F7-93B3F1FB9D5C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{3D00A39C-655B-428b-AEB2-2FBA03DCC49C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{408F660A-9465-44a3-B557-8709DFD992BC} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{479fd0cf-5be9-4c63-8cda-b6d371c67bd5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{5F6BBD8A-18CF-4d55-8B4C-C9B4C9328DFE} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{8C56B6CE-C53F-44c4-9BDC-A9BC1711D05A} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{8EE6BF73-B370-4d13-9126-EB0071178F2E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{97F56E12-C706-4aeb-9FFB-133C05EE5D38} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{9BB7E700-4E48-476d-B75C-6F47606BE988} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{C65C3770-598C-A2FD-DBAA-C7A45C50338E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{CBCACA58-1AEE-4600-8CF0-E8B30BFF1535} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{CCFB2B33-F4DB-B63D-ABDC-C7384ED93B34} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\CLSID\{D6D64CDF-0363-4261-B723-29A3AF365E1D} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{27ED4AC2-B6D8-4079-9831-017A100B391E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{3F6D6C35-FB73-45E6-9473-BB4CC25CE019} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{715D709B-2B10-42FA-A069-297D25D93601} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{872C1B1E-3CF0-4D3A-95E5-A0C662D2854C} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{886B1D08-B404-40F0-AA18-4E416682A2E9} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{8B5F65CF-0B0A-4291-8DA2-86D7F7B0A6DB} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{925B0211-A1C1-4712-8FCA-5F5B8101736D} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{B01E37C4-5497-4D58-9FFD-D5653B8DC866} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CCAA201C-C48D-48A8-A1E8-846562CBF1C1} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{D483521B-D5CC-43FF-A45A-9BE4A8E6606E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{ED2AFF47-B7BE-4273-A203-C796E87F72D2} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{F0FA7ED9-5A0A-4374-B63E-BEBAFD52192E} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{F5DEE77C-87EB-4E00-BBF9-8CBF3BDEA7AF} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FB5DDAB7-6AA5-4E97-9541-5A75ADDF4ABA} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FDDF521B-0EBE-4D15-838C-73E2D851161B} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FF609434-EB47-481B-BA0E-1D2B467629A5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Classes\TypeLib\{60F94D7D-563E-4942-B5EC-2DE9C135C139} -> Adware.Generic : Omitidos.
HKU\S-1-5-21-1993962763-1214440339-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{479FD0CF-5BE9-4C63-8CDA-B6D371C67BD5} -> Adware.Generic : Omitidos.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Public Messenger ver 2.03 -> Adware.IntCodec : Omitidos.
HKU\S-1-5-21-1993962763-1214440339-839522115-1003\Software\Internet Security -> Adware.IntCodec : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020639.DLL -> Adware.IWon : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020678.exe -> Adware.MyWebSearch : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{0354A901-C606-4DCC-8EA3-4F3383ECE67C} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{11ED5DDF-90D0-45C1-BE2B-C9C4F98CCFE2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{1FEB28BA-21B6-46F3-948A-D7CA11654FE9} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{340B5D33-4A0C-4673-94FA-B88ECC48773E} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{453B991D-6B23-48CF-A3B0-2214F437CCB0} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{5AC65D7D-C00C-47A4-83F7-F81073C39B25} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{657D5DE0-6497-4040-B604-F38C9411F64D} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{8A7D5862-7B00-4270-B456-CDC6779A79DD} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{940664C7-DE44-4B8F-A05D-FD70CAB75F2C} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{B7512CD1-CFDE-4498-ADBD-14B38062A478} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CABABC4B-5B0F-4297-9D85-72E93616ED55} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CCA1E17E-2BEE-4D53-8D00-7ADB5B35145A} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{CF1D16BA-2CE6-429A-A63A-3CF44D81A950} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{E56B4B91-E548-4E89-97AC-E9630D22A2E2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FC105E0D-AE24-43F2-89AA-E8AB8F96EF6E} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\Interface\{FD99520A-E900-4F8D-9092-22705622D2D2} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\Classes\TypeLib\{03F89BF1-127B-44F3-B6F4-5A18FEA674CD} -> Adware.VirusBuster : Omitidos.
HKLM\SOFTWARE\vb -> Adware.VirusBuster : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP204\A0020628.DLL -> Downloader.IstBar : Omitidos.
C:\Program Files\WinMediaCodec\pmsngr.exe -> Downloader.Zlob.and : Omitidos.
C:\Program Files\WinMediaCodec\pmuninst.exe -> Downloader.Zlob.and : Omitidos.
C:\Documents and Settings\owner\Application Data\winantiviruspro2006freeinstall_es[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Omitidos.
C:\System Volume Information\_restore{709D38CA-400B-46B2-BD91-4E0D967535F9}\RP208\A0021094.dll -> Not-A-Virus.Hoax.Win32.Renos.er : Omitidos.
C:\Documents and Settings\owner\Local Settings\Temp\tmp7A.tmp -> Not-A-Virus.Hoax.Win32.Renos.fa : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@2o7[2].txt -> TrackingCookie.2o7 : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@casalemedia[2].txt -> TrackingCookie.Casalemedia : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@doubleclick[1].txt -> TrackingCookie.Doubleclick : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@fastclick[1].txt -> TrackingCookie.Fastclick : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@revenue[1].txt -> TrackingCookie.Revenue : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@statcounter[2].txt -> TrackingCookie.Statcounter : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Omitidos.
C:\Documents and Settings\owner\Cookies\owner@zedo[1].txt -> TrackingCookie.Zedo : Omitidos.
C:\Documents and Settings\owner\Local Settings\Temp\NI.UWA6PY_0001_N91M2107\setup.exe -> Trojan.Fakealert : Omitidos.


::Fin del informe


Hi I have networm-ivirus@fp and spybot
I want to know how to you knows


0

Sponsored Link
Ads by Google
Reply to Message Icon

www.socialuser.com keep l... New Malware.j infection



Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home


Sponsored links

Ads by Google


Results for: Hi this is kinda hard...(for me)

NAV is closing down on me! www.computing.net/answers/security/nav-is-closing-down-on-me/9644.html

Winantivirus popup www.computing.net/answers/security/winantivirus-popup/19725.html

Spyware & System32 folder www.computing.net/answers/security/spyware-amp-system32-folder/10321.html