Page 1 of 3 123 LastLast
Results 1 to 10 of 25
  1. #1
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default ErrorSafe and a few other virus

    Hi can you guys help me . My computer is slow and I wonder if my hijackthis log looks clean

    Logfile of HijackThis v1.99.1
    Scan saved at 22:35:59, on 2006-03-27
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe
    C:\Program\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
    C:\WINDOWS\system32\Rundll32.exe
    G:\Program\D-Tools\daemon.exe
    C:\Program\cFosSpeed\cFosSpeed.exe
    C:\Program\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program\Microsoft AntiSpyware\gcasServ.exe
    C:\Program\MessengerPlus! 3\MsgPlus.exe
    C:\Program\Delade filer\InstallShield\UpdateService\issch.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program\Globe Software\StatBar\StatBar.exe
    C:\Documents and Settings\SilverGirl\Skrivbord\client.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0H2.EXE
    C:\Program\MSN Messenger\msnmsgr.exe
    C:\Program\Delade filer\Autodata Limited Shared\Service\ADCDLicSvc.exe
    C:\Program\cFosSpeed\spd.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program\Norton AntiVirus\navapsvc.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program\Delade filer\Symantec Shared\Security Center\SymWSC.exe
    C:\WINDOWS\System32\svchost.exe
    G:\mIRC\mirc.exe
    G:\Program\BitComet\BitComet.exe
    C:\Program\Microsoft AntiSpyware\gcasDtServ.exe
    C:\Program\Microsoft AntiSpyware\GIANTAntiSpywareMain.exe
    C:\Program\Mozilla Firefox\firefox.exe
    C:\Program\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dreamhack.se/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = about:blank
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page_bak = about:blank
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program\SPYBOT~1\SDHelper.dll
    O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - G:\Program\SPYWAR~1\tools\iesdsg.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - G:\Program\SPYWAR~1\tools\iesdpb.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\sv\msntb.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program\Norton AntiVirus\NavShExt.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - I:\Program\FlashFXP\IEFlash.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\sv\msntb.dll
    O4 - HKLM\..\Run: [CTSysVol] C:\Program\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
    O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
    O4 - HKLM\..\Run: [DAEMON Tools-1033] "G:\Program\D-Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [ccApp] "C:\Program\Delade filer\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [ccRegVfy] "C:\Program\Delade filer\Symantec Shared\ccRegVfy.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\Program\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [NetLimiter] C:\Program\NetLimiter\NetLimiter.exe /s
    O4 - HKLM\..\Run: [cFosSpeed] C:\Program\cFosSpeed\cFosSpeed.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [gcasServ] "C:\Program\Microsoft AntiSpyware\gcasServ.exe"
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\Program\DELADE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program\Delade filer\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [WinService32] svchost
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0H2.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Steam] "I:\Program\Steam\Steam.exe" -silent
    O4 - HKCU\..\Run: [Creative Detector] C:\Program\Creative\MediaSource\Detector\CTDetect.exe /R
    O4 - HKCU\..\Run: [StatBar] C:\Program\Globe Software\StatBar\StatBar.exe
    O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program\MessengerPlus! 3\MsgPlus.exe" /WinStart
    O4 - HKCU\..\Run: [Uptime-Project] C:\Documents and Settings\SilverGirl\Skrivbord\client.exe
    O4 - HKCU\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0H2.EXE /P30 "EPSON Stylus Photo R200 Series" /M "Stylus Photo R200" /EF "HKCU"
    O4 - HKCU\..\Run: [SystemMonitor] "C:\Program\System Monitor\System Monitor.exe" /i
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program\MSN Messenger\msnmsgr.exe" /background
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - G:\Program\SPYWAR~1\tools\iesdpb.dll
    O9 - Extra button: Panda ActiveScan - {653D93AF-C741-4e5e-8C1B-59BA43F93E16} - http://www.pandasoftware.com/activescan (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe
    O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://creative.com/su/ocx/15015/CTSUEng.cab
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=48835
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn.co...s/MsnPUpld.cab
    O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX 6.5) - http://housecall65.trendmicro.com/ho...vex/hcImpl.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://creative.com/su/ocx/15016/CTPID.cab
    O18 - Protocol: bw+0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\Program\MSNMES~1\msgrapp.dll" (file missing)
    O18 - Protocol: offline-8876480 - {52B95911-EC10-44EB-B903-B9ECA1A8B03E} - C:\Program\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Program\Delade filer\Autodata Limited Shared\Service\ADCDLicSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccPwdSvc.exe
    O23 - Service: cFosSpeed System Service (cFosSpeedS) - Unknown owner - C:\Program\cFosSpeed\spd.exe" -service (file missing)
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program\Delade filer\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program\Norton AntiVirus\navapsvc.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\Program\DELADE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SNDSrvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\Security Center\SymWSC.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - G:\Program\TuneUp Utilities 2006\WinStylerThemeSvc.exe


    Thanks

  2. #2
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default

    My computer is slow and Norton finds a virus but i cant fix it. Andd i have alot of spyware


    Is my log clean?

  3. #3
    Member
    Join Date
    Dec 2002
    Posts
    12,000
    Points
    1191

    Default

    What virus is Norton finding, could use a complete file name and location and path ?

    What is telling you that you have Error Safe?

    Are you the only user of this PC ? Really an important question !!!

    A lot of the slow down is probably because of the program StatBar

    "StatBar (system status bar) allows you to quickly get an overview of your system's condition (memory, CPU, uptime, and much more). Due to the sheer number of resources (over 60%) consumed by this program..."

    Go to start>control panel>add or remove programs. If the Stat Bar program is there, please remove it.

    Let us know

    BG

  4. #4
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default

    I Am The Only User and now ErrorSafe is gone , but Norton finds Downloader trojan. And Norton can¨t get rid of it.

  5. #5
    Member
    Join Date
    Dec 2002
    Posts
    12,000
    Points
    1191

    Default

    What does Norton say the name and locations of this "Trojan" ?

    My question should have been better stated like:

    Is this your PC or a work PC, etc, or Owned by YOU?

    BG

  6. #6
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default

    It´s my Pc and Norton says that it´s in my documents but , it isent there


    I own The computer


    I got ride of the virus , but some spyware is doing srange things do my computer.

    is the logfile clean

  7. #7
    Member steamwiz's Avatar
    Join Date
    Sep 2003
    Location
    Yorkshire U.K.
    Posts
    14,022
    Points
    2335

    Default

    Hi SilverGirl

    This entry is Added by the 007_Spy_Software keystroke logger/monitoring program ... if you didn't install it yourself, you need to fix this entry in hijackthis and delete the file I have listed it's location below...

    O4 - HKLM\..\Run: [WinService32] svchost


    If you fix the above, the REBOOT, & delete this file :- (if found)

    C:\Program Files\Common Files\Microsoft Shared\DAO\System32\svchost.exe ... file

    DO NOT delete the svchost.exe file in the C:\WINDOWS\system32 folder

    ---

    Do you know what this program is ?

    O4 - HKCU\..\Run: [SystemMonitor] "C:\Program\System Monitor\System Monitor.exe" /i

    I believe it may be a worm...

    Please go here :-

    http://virusscan.jotti.org/

    Upload this file from your computer :-


    C:\Program\System Monitor\System Monitor.exe

    copy & paste the above bold line into the "File to upload and scan" box...

    or click the browse button and browse to the file on your computer...

    Then click the submit button


    Post back the results

    ---
    Now ... about the virus which Norton found ... Basementgeek has asked you this twice, we do need the name and location of the file...

    Please post the FULL & exact message you are getting from norton...


    cheers

    steam
    Look here for Ways to keep your computer safe
    M'SOFT MVP -Windows Security 2004/8 .member ASAP -

  8. #8
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default

    ok Here is the Virus

    http://securityresponse.symantec.com...er.trojan.html

    And the Virus was in C:\Documents and
    Settings\SilverGirl\Start-meny\Program\ but i didnt find it there

  9. #9
    Member
    Join Date
    Feb 2006
    Location
    Nyköping
    Posts
    32
    Points
    0

    Default

    I fixed the problem with hijackthis but i dident find the virus in program files and i uploaded the file , but it was Ok

  10. #10
    Member steamwiz's Avatar
    Join Date
    Sep 2003
    Location
    Yorkshire U.K.
    Posts
    14,022
    Points
    2335

    Default

    Quote Originally Posted by SilverGirl
    ok Here is the Virus

    http://securityresponse.symantec.com...er.trojan.html

    And the Virus was in C:\Documents and
    Settings\SilverGirl\Start-meny\Program\ but i didnt find it there

    A downloader Trojan is just a generic term for over a million different trojans...

    ....And the Virus was in C:\Documents and Settings\SilverGirl\Start-meny\Program\ ... and it's name was ?

    I would still like to see the full & exact message you get from Norton... even if it is in Swedish.

    steam
    Look here for Ways to keep your computer safe
    M'SOFT MVP -Windows Security 2004/8 .member ASAP -

Page 1 of 3 123 LastLast