Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Virus Struggle  (Read 7485 times)

0 Members and 1 Guest are viewing this topic.

listoparacristo

  • Guest
Virus Struggle
« on: May 22, 2005, 12:18:45 PM »
i'm having some problems .... i've run antiVir, ad-aware, hijack this and spyware search and destroy however i havn't posted my hijack list. and antivir found a number of viruses which have been deleted. now one of the problems i've been having is that my norton antivirus will no longer work second any java or activeX programs on the internet will not load. i cannot add any new hardware drivers such as a digital camera and at startup no programs will run for about 5 minutes. anyhelp will be greatly appreciated.

dl65

  • R.I.P.


  • Prodigy

    Thanked: 18
    Re: Virus Struggle
    « Reply #1 on: May 22, 2005, 12:28:02 PM »
    listoparacristo  ......Well first off.......which operating system are you using ?

    Which version of Norton are you using .......and more important ....one of the viruses may have disabled it ....are you sure it's enabled ......... ?

    Is Nortons subscription and updates current ?

    Have you checked to see if "Java" is still loaded ?

    let us know

    dl65  ::)
    If you don't know the answer, it isn't a dumb question.

    listoparacristo

    • Guest
    Re: Virus Struggle
    « Reply #2 on: May 23, 2005, 01:05:46 PM »
    i'm running windows XP... norton is the 2003 antivirus... and it's disabled and no java is not running either.

    dl65

    • R.I.P.


    • Prodigy

      Thanked: 18
      Re: Virus Struggle
      « Reply #3 on: May 23, 2005, 01:41:07 PM »
       listoparacristo..........  Is Nortons subscription and updates current  ?  or has it expired ?
      You say its disabled ....cant you turn it back on ?

      Have you tried to uninstall Java and then D/L it and installing it again ?

      Let us know

      dl65  ::)
      « Last Edit: May 23, 2005, 01:42:00 PM by dl65 »
      If you don't know the answer, it isn't a dumb question.

      Raptor

      • Guest
      Re: Virus Struggle
      « Reply #4 on: May 23, 2005, 01:43:27 PM »
      If you can no longer install drivers, I suggest you reformat and take precautionary measures before or directly after connecting to the Internet.

      dl65

      • R.I.P.


      • Prodigy

        Thanked: 18
        Re: Virus Struggle
        « Reply #5 on: May 23, 2005, 01:50:18 PM »
        listoparacristo....Could you please explain what you mean by ......
        "and at startup no programs will run for about 5 minutes."

        are you saying that after this time lapse everything is ok ?

        let us know

        dl65 ::)
        If you don't know the answer, it isn't a dumb question.

        listoparacristo

        • Guest
        Re: Virus Struggle
        « Reply #6 on: May 23, 2005, 02:11:08 PM »
        no cannot start norton and yes it was up to date before it went down.... but i cannot up date it or start it anymore.... there is a lag period at start up where i cannot open any programs ie. explorer, Word. after that i can get programs to open but java and ActiveX still do not run.

        dl65

        • R.I.P.


        • Prodigy

          Thanked: 18
          Re: Virus Struggle
          « Reply #7 on: May 23, 2005, 02:16:28 PM »
          listoparacristo...... How about posting your hijackthis log ...it may hold the key to whats going on with your pc ....


          dl65  ::)
          If you don't know the answer, it isn't a dumb question.

          listoparacristo

          • Guest
          Re: Virus Struggle
          « Reply #8 on: May 23, 2005, 02:41:45 PM »
          here it is:

          Logfile of HijackThis v1.99.0
          Scan saved at 11:39:21 PM, on 5/21/2005
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
          C:\WINDOWS\Explorer.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\Program Files\AVPersonal\AVGUARD.EXE
          C:\Program Files\AVPersonal\AVWUPSRV.EXE
          C:\WINDOWS\System32\CTSVCCDA.EXE
          C:\Program Files\Norton AntiVirus\navapsvc.exe
          C:\WINDOWS\System32\nvsvc32.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\CTHELPER.EXE
          C:\Program Files\Creative\ShareDLL\CtNotify.exe
          C:\Program Files\Messenger Plus! 3\MsgPlus.exe
          C:\Program Files\AVPersonal\AVGNT.EXE
          C:\Program Files\Creative\ShareDLL\MediaDet.exe
          C:\Program Files\RSNet\RSEDNClient.exe
          C:\Program Files\MSN Messenger\msnmsgr.exe
          C:\WINDOWS\system32\devldr32.exe
          C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
          C:\Program Files\Internet Explorer\iexplore.exe
          C:\PROGRA~1\WINZIP\wzqkpick.exe
          C:\Program Files\HijackThis\HijackThis.exe

          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.ca/
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.websearch.com/ie.aspx?tb_id=50016
          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.msn.ca/
          R3 - URLSearchHook: (no name) - _{8952A998-1E7E-4716-B23D-3DBE03910972} - (no file)
          R3 - URLSearchHook: (no name) - _{0026AD90-C86F-4269-97F3-DAB4897C6D06} - (no file)
          F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
          O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com
          O2 - BHO: BTGrabObj Class - {00000000-F09C-02B4-6EC2-AD0300000000} - C:\WINDOWS\BTGrab.dll
          O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - (no file)
          O2 - BHO: NavErrRedir Class - {0026AD90-C86F-4269-97F3-DAB4897C6D06} - C:\PROGRA~1\INCRED~1\BHO\INCFIN~1.DLL
          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
          O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
          O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)
          O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
          O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
          O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
          O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
          O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
          O4 - HKLM\..\Run: [Register MediaRing Talk] C:\Program Files\MediaRing Talk\register.exe
          O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
          O4 - HKLM\..\Run: [PGStub.exe] C:\Documents and Settings\Albert Elliott\dp-b23011805.exe
          O4 - HKLM\..\Run: [ICQ Net] C:\WINDOWS\winlogon.exe -stealth
          O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
          O4 - HKLM\..\Run: [NAV CfgWiz] C:\PROGRA~1\NORTON~1\Cfgwiz.exe /R
          O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
          O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
          O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
          O4 - HKLM\..\Run: [EbatesMoeMoneyMaker0] "C:\Program Files\Ebates_MoeMoneyMaker\EbatesMoeMoneyMaker0.exe"
          O4 - HKCU\..\Run: [AutoUpdater] C:\WINDOWS\System32\aupdate.exe
          O4 - HKCU\..\Run: [Red Swoosh EDN Client] C:\Program Files\RSNet\RSEDNClient.exe
          O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
          O4 - Startup: Virtual Bouncer.lnk = C:\Program Files\VBouncer\VirtualBouncer.exe
          O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
          O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
          O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

          listoparacristo

          • Guest
          Re: Virus Struggle
          « Reply #9 on: May 23, 2005, 02:41:57 PM »
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra button: Ebates - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.htm (HKCU)
          O16 - DPF: Yahoo! Graffiti - http://download.games.yahoo.com/games/clients/y/grt5_x.cab
          O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt2_x.cab
          O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ubisoft.com/dev/packages/GSManager.cab
          O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/drakken/us/win/QuickTimeInstaller.exe
          O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
          O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://www.skibanff.com/skicam/AxisCamControl.ocx
          O16 - DPF: {E6D5237D-A6C7-4C83-A67F-F9F15586FA62} - http://www.spyblast.com/download/SBFull.cab
          O20 - AppInit_DLLs: MsgPlusLoader.dll
          O23 - Service: AntiVir Service - H+BEDV Datentechnik GmbH - C:\Program Files\AVPersonal\AVGUARD.EXE
          O23 - Service: AntiVir Update - H+BEDV Datentechnik GmbH, Germany - C:\Program Files\AVPersonal\AVWUPSRV.EXE
          O23 - Service: Symantec Event Manager - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
          O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
          O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTSVCCDA.EXE
          O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
          O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
          O23 - Service: ScriptBlocking Service - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
          O23 - Service: System Startup Service  - Unknown - C:\WINDOWS\svcproc.exe (file missing)


          dl65

          • R.I.P.


          • Prodigy

            Thanked: 18
            Re: Virus Struggle
            « Reply #10 on: May 23, 2005, 03:12:39 PM »
            listoparacristo..... Ok I see a few which should be removed .......So mark for removal the following :

            R3 - URLSearchHook: (no name) - _{8952A998-1E7E-4716-B23D-3DBE03910972} - (no file)

            R3 - URLSearchHook: (no name) - _{0026AD90-C86F-4269-97F3-DAB4897C6D06} - (no file)

            O2 - BHO: BTGrabObj Class - {00000000-F09C-02B4-6EC2-AD0300000000} - C:\WINDOWS\BTGrab.dll

            O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - (no file)

            O2 - BHO: NavErrRedir Class - {0026AD90-C86F-4269-97F3-DAB4897C6D06} - C:\PROGRA~1\INCRED~1\BHO\incfin~1.dll

            O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)

            O4 - HKLM\..\Run: [PGStub.exe] C:\Documents and Settings\Albert Elliott\dp-b23011805.exe

            O4 - HKLM\..\Run: [ICQ Net] C:\WINDOWS\Winlogon.exe -stealth

            O4 - HKLM\..\Run: [EbatesMoeMoneyMaker0] "C:\Program Files\Ebates_MoeMoneyMaker\ebatesmoemoneymaker0.exe"

            O4 - HKCU\..\Run: [AutoUpdater]
            C:\WINDOWS\System32\aupdate.exe

            O4 - HKCU\..\Run: [Red Swoosh EDN Client] C

            O23 - Service: System Startup Service  - Unknown - C:\WINDOWS\svcproc.exe (file missing)

            Ok ........click fix marked ............and then reboot and see how things are ......

            OOPS ....one more thing ........go to ......Sun Systems and D/L java ........ It seems to be missing from your system .

            dl65  ::)

            « Last Edit: May 23, 2005, 03:19:49 PM by dl65 »
            If you don't know the answer, it isn't a dumb question.

            listoparacristo

            • Guest
            Re: Virus Struggle
            « Reply #11 on: May 23, 2005, 06:22:35 PM »
            here is my hijack this log now:

            Logfile of HijackThis v1.99.0
            Scan saved at 6:21:15 PM, on 5/23/2005
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
            C:\WINDOWS\Explorer.EXE
            C:\WINDOWS\system32\spoolsv.exe
            C:\Program Files\AVPersonal\AVGUARD.EXE
            C:\Program Files\AVPersonal\AVWUPSRV.EXE
            C:\WINDOWS\System32\CTSVCCDA.EXE
            C:\Program Files\ewido\security suite\ewidoctrl.exe
            C:\Program Files\ewido\security suite\ewidoguard.exe
            C:\Program Files\Norton AntiVirus\navapsvc.exe
            C:\WINDOWS\System32\nvsvc32.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\CTHELPER.EXE
            C:\Program Files\Creative\ShareDLL\CtNotify.exe
            C:\Program Files\Messenger Plus! 3\MsgPlus.exe
            C:\Program Files\AVPersonal\AVGNT.EXE
            C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
            C:\Program Files\Creative\ShareDLL\MediaDet.exe
            C:\WINDOWS\system32\devldr32.exe
            C:\WINDOWS\system32\msiexec.exe
            C:\Program Files\HijackThis\HijackThis.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.ca/
            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.msn.ca/
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
            O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
            O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
            O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
            O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
            O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
            O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
            O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [Register MediaRing Talk] C:\Program Files\MediaRing Talk\register.exe
            O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
            O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
            O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
            O4 - HKLM\..\Run: [NAV CfgWiz] C:\PROGRA~1\NORTON~1\Cfgwiz.exe /R
            O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
            O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
            O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
            O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
            O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
            O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE

            listoparacristo

            • Guest
            Re: Virus Struggle
            « Reply #12 on: May 23, 2005, 06:22:44 PM »
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
            O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: Yahoo! Graffiti - http://download.games.yahoo.com/games/clients/y/grt5_x.cab
            O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt2_x.cab
            O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ubisoft.com/dev/packages/GSManager.cab
            O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/drakken/us/win/QuickTimeInstaller.exe
            O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
            O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://www.skibanff.com/skicam/AxisCamControl.ocx
            O20 - AppInit_DLLs: MsgPlusLoader.dll
            O23 - Service: AntiVir Service - H+BEDV Datentechnik GmbH - C:\Program Files\AVPersonal\AVGUARD.EXE
            O23 - Service: AntiVir Update - H+BEDV Datentechnik GmbH, Germany - C:\Program Files\AVPersonal\AVWUPSRV.EXE
            O23 - Service: Symantec Event Manager - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
            O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
            O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTSVCCDA.EXE
            O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
            O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
            O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
            O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
            O23 - Service: ScriptBlocking Service - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe


            listoparacristo

            • Guest
            Re: Virus Struggle
            « Reply #13 on: May 23, 2005, 06:23:24 PM »
            my computer is running much better now... however.... i'm still having problems with some programs on the internet.....

            Raptor

            • Guest
            Re: Virus Struggle
            « Reply #14 on: May 24, 2005, 06:12:42 AM »
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [Register MediaRing Talk] C:\Program Files\MediaRing Talk\register.exe
            O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe

            What are these?