Jump to content
aberdeen-music

help


Guest haigyman

Recommended Posts

Guest Charity Case
is that what you meant?

yep' date=' heres mine for comparison :D

Logfile of HijackThis v1.99.0

Scan saved at 17:05:08, on 02/01/2005

Platform: Windows XP SP1 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\System32\tcpsvcs.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\System32\wpabaln.exe

C:\Program Files\foobar2000\foobar2000.exe

C:\Program Files\Opera 8 Beta\Opera.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Documents and Settings\Weeze\HijackThis.exe

C:\automation\Perl\bin\perl.exe

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

O4 - Startup: Alcatel Speedtouch Connection.lnk = ?

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll

O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url']http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1103520428440

O17 - HKLM\System\CCS\Services\Tcpip\..\{44E9CDB6-444D-4EBA-8002-7BA6DCB53CE9}: NameServer = 62.241.160.200 158.43.240.4

Im just looking through yours now :)

Link to comment
Share on other sites

Guest Charity Case

C:\Program Files\Messenger Plus! 3\MsgPlus.exe

http://www.liutilities.com/products/wintaskspro/processlibrary/msgplus/

O4 - HKLM\..\Run: [thebrowseeqfind] C:\Documents and Settings\All Users\Application Data\Show Live The Browse\Beep keep.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://web.dwzjtmxwfmpwzjjovq.com/g...YXoOGJxkbO.html

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.widrkhmcmwe.net/g7N_yFgT...P8Yp8wRK3E.html

O4 - HKCU\..\Run: [meowcash] C:\DOCUME~1\Calum\APPLIC~1\STUPID~1\Dent play.exe

Looks extremely dodgy

repair them using hijackthis

Link to comment
Share on other sites

well...i'm not quite sure' date=' but the icons are gone now

[url']http://msgplus.mybboard.com/showthread.php?tid=36163

that's where i found it

You must have recently installed Messenger Plus or Messenger Discovery and chosen to install their sponsor programs aswell. Best bet is to avoid installing such things in the future. Remember to check your processes in task manager at startup to see if there is anything dodgy sounding in there, because there usually is. Even if they are blocked by your firewall, they are still taking up unnecessary memory and processor time, so try getting rid of them if you can

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...