Jump to content

gorubal

Members
  • Posts

    2
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Hello,I am new here.i use XP SP2.From Last somedays my pc is acting abnormal.It got freezing.I look that time in task manager the cpu uses 100*.it seems it has been infected.I install Malwarebytes and scan all drives.It founds about 100 spyware,torjon,viruses.I delete them all and restart again.when tried to enable protection module it show a pop up.it says that here is my hijack this profile log Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 4:22:42 PM, on 8/13/2012 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Unable to get Internet Explorer version! Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE D:\Program Files\Canon\IJPLM\IJPLMSVC.EXE C:\WINDOWS\runservice.exe D:\Program Files\Banglalion WiMAX CM\cm\ssax226.exe C:\WINDOWS\system32\svchost.exe D:\Program Files\Internet Download Manager\IDMan.exe C:\WINDOWS\system32\ctfmon.exe C:\Documents and Settings\Road Runner\Local Settings\Apps\F.lux\flux.exe D:\Program Files\Avro Keyboard\Avro Keyboard.exe D:\Program Files\Banglalion WiMAX CM\cm\UIExec.exe C:\WINDOWS\system32\wscntfy.exe D:\Program Files\Internet Download Manager\IEMonitor.exe D:\Program Files\Banglalion WiMAX CM\cm\cm.exe D:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\rundll32.exe D:\Program Files\Mozilla Firefox\plugin-container.exe D:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL O2 - BHO: Encarta Web Companion Helper Object - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL O4 - HKLM\..\Run: [startCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [hhjusxwa] C:\WINDOWS\System32\hhjusxwa.exe O4 - HKLM\..\Run: [jocrigvusacl] C:\Documents and Settings\All Users\jocrigvusacl.exe O4 - HKCU\..\Run: [iDMan] D:\Program Files\Internet Download Manager\IDMan.exe /onboot O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [F.lux] "C:\Documents and Settings\Road Runner\Local Settings\Apps\F.lux\flux.exe" /noshow O4 - HKCU\..\Run: [Avro Keyboard] D:\Program Files\Avro Keyboard\Avro Keyboard.exe O4 - HKCU\..\Run: [uIExec] "D:\Program Files\Banglalion WiMAX CM\cm\UIExec.exe" O4 - HKUS\S-1-5-18\..\Run: [hhjusxwa] C:\Documents and Settings\Road Runner\hhjusxwa.exe (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [Windows Time] rundll32.exe "C:\Documents and Settings\All Users\Application Data\IdjudjiLtopj.dll",EntryPoint (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [hhjusxwa] C:\Documents and Settings\Road Runner\hhjusxwa.exe (User 'Default user') O4 - Startup: GameRanger.lnk = C:\Documents and Settings\Road Runner\Application Data\GameRanger\GameRanger\GameRanger.exe O4 - Global Startup: Bijoy Bayanno 2010.lnk = ? O4 - Global Startup: Eyes Relax.lnk = ? O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: Download all links with IDM - D:\Program Files\Internet Download Manager\IEGetAll.htm O8 - Extra context menu item: Download with IDM - D:\Program Files\Internet Download Manager\IEExt.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Encarta Search Bar - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://www.samsungsetup.com O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - D:\Program Files\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner - C:\WINDOWS\runservice.exe O23 - Service: MBAMService - Malwarebytes Corporation - D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Samsung UPD Service2 - Samsung Electronics - C:\WINDOWS\system32\SUPDSvc2.exe O23 - Service: ZTE AX226 WiMAX Modem Switch Service (ssax226) - Unknown owner - D:\Program Files\Banglalion WiMAX CM\cm\ssax226.exe -- End of file - 5893 bytes
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.