Techware Labs Header

Forums have moved

See this announcement for more details, or just go directly there.

Prev Previous Post   Next Post Next
  #1  
Old 01-16-2005, 04:02 PM
theThinker
 
Posts: n/a
Default crazywinnings, static.topconverter spyware

Can't rid of the last two! Posted my latest HijackThis log.

Logfile of HijackThis v1.97.7
Scan saved at 3:59:09 PM, on 1/16/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Google\Gmail Notifier\G001-1.0.24.0\gnotify.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Labtec Wireless Desktop\MagicKey.exe
C:\WINDOWS\System32\CTSvcCDA.EXE
C:\Program Files\Labtec Wireless Desktop\MulMouse.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Labtec Wireless Desktop\OSD.EXE
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\Documents and Settings\Paul.1R1A1Z1O1R1\My Documents\Hijack This\HijackThis.exe


O15 - Trusted Zone: *.frame.crazywinnings.com
O15 - Trusted Zone: *.static.topconverting.com
Reply With Quote
 


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -5. The time now is 09:08 PM. Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
Forum style by ForumMonkeys.