Jump to content

MegadetH

Members
  • Posts

    5
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Logfile of HijackThis v1.99.0 Scan saved at 10:23:45, on 2005-12-06 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\AVASTV~1\ashDisp.exe C:\Avast Virus Protection\aswUpdSv.exe C:\Avast Virus Protection\ashServ.exe C:\Program Files\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe D:\PREVX\PXAgent.exe C:\Avast Virus Protection\ashMaiSv.exe C:\Avast Virus Protection\ashWebSv.exe D:\GX Realm\GxRealm362\GxRealm.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\Jean\LOCALS~1\Temp\se.dll/sp.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\Jean\LOCALS~1\Temp\se.dll/sp.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank O4 - HKLM\..\Run: [soundFusion] RunDll32 hercplgs.cpl,BootEntryPoint O4 - HKLM\..\Run: [HGTXPEI] C:\WINDOWS\System32\FirstReboot.exe O4 - HKLM\..\Run: [avast!] C:\AVASTV~1\ashDisp.exe O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - D:\Jeux\Party Poker\partypokernet.exe O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - D:\Jeux\Party Poker\partypokernet.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: *.media-motor.net O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - http://www.pcpitstop.com/antivirus/PitPav.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{FF8A1051-E13A-4AD9-BD61-AF5135288940}: NameServer = 206.47.244.138 206.47.244.42 O18 - Filter: text/html - {F9426492-BB71-4586-88D5-A61BB3861A1D} - C:\WINDOWS\system32\kaadfa.dll O18 - Filter: text/plain - {F9426492-BB71-4586-88D5-A61BB3861A1D} - C:\WINDOWS\system32\kaadfa.dll O23 - Service: Adobe LM Service - Unknown - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: avast! iAVS4 Control Service - Unknown - C:\Avast Virus Protection\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown - C:\Avast Virus Protection\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Avast Virus Protection\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Avast Virus Protection\ashWebSv.exe O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - C:\WINDOWS\System32\dmadmin.exe O23 - Service: Journal des
  2. 4 guys in a bar, 1 asks "what do u think is the fastest thing in the world?" 2 answers "Thoughts, why? Cause i have about 5000 a day,i don't see em comin, they're just there." 3 answers "Blinking,why? Cause i do it about 7000 times a day and i don't even see em. They just happen." 4 answers "Electricity,why? Cause when i turn on the lights it's instantaneous." 1 answers " I think it's diarrhea." 2,3 and 4 all scream out "Diarrhea??!!How do u figure that???" 1 answers " Well, last night, when it hit me,I didn't have time to think,blink or turn on the lights and it was there." B)
  3. Well i still have popups and that damn se.dll in my windows/temp folder (I,m sure u know what i mean) and still have rundll32.exe in the background. Don't understand cause yesterday i didn't have all this come back. I think i't's firefox thats infected cause under IE i had no popups. Avast is constantly flushing viruses,but obviously i'm doing something wrong as all this crap has comeback. Hopefully u guys can help me out as ive seen uguys know ur stuff. Thanx in advance and thank you for helping us "not so proficient" computer users. B)
  4. yes i am. winxp sp2, avast anti virus and panda software. Panda is the one that tells me intrusion attempt. It says it will block the invading IP for 10 minutes. Seems about 5 diff IPs that are trying to invade me. Wanna know if i can trojan em or crash the user or whatever. Basically want the user to think twice before invading me. And btw, after surfing this website a bit, I did some research and managed to get rid of all my popups! Thanx a bunch
  5. Hello all, was wonderin if anyone knows how to prevent or locate people who try to port scan our pc's. It happens to me at least twice a day and i don't know what i can do about it. As an example, i will post an IP address of an attempt to enter my pc. 61.233.40.205 Thanx in advance to anyone who knows what can be done.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.