apparently I allowed a virus onto my PC. I noticed something was do by when program after schedule was asking to find the internet. I chose "always block connections from this turn" to all of them except one. I allowed the one to go because i thought i recognized the program. The symptoms i am having is that auto-protect for Norton anti-virus can not load. It says. "internal error auto-protect can not load." my computer then asks me to restart my PC in request to re-load Norton. When i restart i get the same response. I then uninstalled Norton and tried to re-load the whole schedule about 60-70% of the way through installation i get another "internal error" and Norton asks to be unistalled and then re-installed also during the pre-install scan that norton does it came upon a virus i cannot remember the exact name but it had something like "bloodhound" in the file name. I was going to write it down but norton said it saved a txt file with the info. I cannot find this bushel txt file sooooo after 2 nights of re-starting and re-loading i undergo realized this problem is over my continue my affix is too long for a songle affix so ill put my hijack this log in the next affix.
my seize log:my system:P4 @ 3.2 2 GB RAMhijack log:Logfile of HijackThis v1.99.1Scan saved at 1:25:52 AM on 9/20/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16512)Running processes:C:\WINDOWS\System32\smss exeC:\WINDOWS\system32\winlogon exeC:\WINDOWS\system32\services exeC:\WINDOWS\system32\lsass exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\System32\svchost exeC:\schedule Files\Common Files\Symantec Shared\ccProxy exeC:\schedule Files\Common Files\Symantec Shared\ccSetMgr exeC:\schedule Files\Common Files\Symantec Shared\ccEvtMgr exeC:\WINDOWS\system32\spoolsv exeC:\Program Files\Bonjour\mDNSResponder exeC:\WINDOWS\system32\nvsvc32 exeC:\WINDOWS\system32\oodag exeC:\Program Files\Privoxy\vc_console exeC:\WINDOWS\system32\svchost exeC:\Program Files\Viewpoint\Common\ViewpointService exeC:\WINDOWS\Explorer. EXEC:\WINDOWS\system32\RUNDLL32. EXEC:\WINDOWS\system32\RunDll32 exeC:\schedule Files\LClock\LClock exeC:\schedule Files\HP\HP Software Update\HPWuSchd exeC:\Program Files\HP\hpcoretech\hpcmpmgr exeC:\schedule Files\Java\jre1.5.0_09\bin\jusched exeC:\schedule Files\Adobe\Acrobat 8.0\Acrobat\Acrotray exeC:\Program Files\PowerISO\PWRISOVM. EXEC:\Program Files\Common Files\Symantec Shared\ccApp exeC:\schedule Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService exeC:\Program Files\TaskSwitchXP\TaskSwitchXP exeC:\WINDOWS\system32\ctfmon exeC:\Program Files\AIM6\aim6 exeC:\Program Files\AIM6\aolsoftware exeC:\Program Files\MagicDisc\MagicDisc exeC:\schedule Files\Viewpoint\Viewpoint Manager\ViewMgr exeC:\WINDOWS\system32\wuauclt exeC:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc exeC:\WINDOWS\system32\msiexec exeC:\schedule Files\Security\hijackthis exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,examine Bar = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start summon = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,fail_summon_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,fail_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,examine Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyServer = http=127.0.0.1:8118;https=127.0.0.1:8118R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *windowsupdate*;<local>;* localO3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dllO3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt dllO3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt dllO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32. EXE C:\WINDOWS\system32\NvCpl dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32. EXE C:\WINDOWS\system32\NvMcTray dll,NvTaskbarInitO4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg cpl,CMICtrlWndO4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock exeO4 - HKLM\..\Run: [UnlockerAssistant] C:\schedule Files\Unlocker\UnlockerAssistant exe -HO4 - HKLM\..\Run: [VisualTaskTips] C:\Program Files\Utilities\VisualTaskTips\VisualTaskTips exeO4 - HKLM\..\Run: [HP Software modify] "C:\Program Files\HP\HP Software Update\HPWuSchd exe"O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr exe"O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC. EXEO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched exe"O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray exe"O4 - HKLM\..\Run: [Adobe_ID0EYTHM] C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VER SIO~2. EXEO4 - HKLM\..\Run: [PWRISOVM. EXE] C:\Program Files\PowerISO\PWRISOVM. EXEO4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp exe"O4 - HKLM\..\Run: [IS CfgWiz] C:\Program Files\Norton Internet Security\cfgwiz exe /GUID {257BBC47-1B26-432e-9F84-188603799DD3} /MODE CfgWiz /CMDLINE "REBOOT"O4 - HKLM\..\Run: [URLLSTCK exe] C:\Program Files\Norton Internet Security\UrlLstCk exeO4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt exeO4 - HKLM\..\Run: [BootWarn] C:\Program Files\Norton Internet Security\Norton AntiVirus\BootWarn exe /aO4 - HKCU\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP exeO4 - HKCU\..\Run: [ctfmon exe] C:\WINDOWS\system32\ctfmon exeO4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6 exe" /d locale=en-US ee://aol/imAppO4 - Startup: MagicDisc lnk = C:\schedule Files\MagicDisc\MagicDisc exeO8 - Extra context menu item: &NeoTrace It! - C:\PROGRA~1\NEOTRA~1\NTXcontext htmO8 - Extra context menu item: Append to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIEAppend htmlO8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIECapture htmlO8 - Extra context menu item: Convert cerebrate aim to existing PDF - res://C:\schedule Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIEAppend htmlO8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIECaptureSelLinks htmlO8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIEAppendSelLinks htmlO8 - Extra context menu item: alter selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIECapture htmlO8 - Extra context menu item: alter selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIEAppend htmlO8 - Extra context menu item: Convert to Adobe PDF - res://C:\schedule Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient dll/AcroIECapture htmlO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL..
Forex Groups - Tips on Trading
Related article:
http://www.pctools.com/forum/showthread.php?t=49009
comments | Add comment | Report as Spam
|