Forum     

Go Back   Digit Technology Discussion Forum > Portables, Peripherals and Electronics > QnA (read only)
Register FAQ Calendar Mark Forums Read

QnA (read only) Mods please help transfer the contents of this forum to proper sections. :)


 
 
LinkBack Thread Tools Search this Thread Display Modes
Old 23-10-2004, 01:27 AM   #1 (permalink)
Apprentice
 
Join Date: Mar 2004
Location: Pune
Posts: 64
Default my hijack this logfile-plz help


hello ppl
im running a windows xp sp2 operating system
of late my pc has repeatedly started hanging and it does not shut down as well
i have to switch my pc off directly!
this is my hijack this logfile
plz help!



Logfile of HijackThis v1.98.2
Scan saved at 10:11:06 AM, on 10/15/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
G:\WINDOWS\System32\smss.exe
G:\WINDOWS\system32\winlogon.exe
G:\WINDOWS\system32\services.exe
G:\WINDOWS\system32\lsass.exe
G:\WINDOWS\system32\svchost.exe
G:\WINDOWS\System32\svchost.exe
G:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
G:\WINDOWS\Explorer.EXE
G:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
G:\WINDOWS\system32\spoolsv.exe
G:\WINDOWS\system32\cisvc.exe
G:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
G:\Program Files\Norton AntiVirus1\navapsvc.exe
G:\WINDOWS\system32\pctspk.exe
G:\PROGRA~1\QUICKH~1\qhwscsvc.exe
G:\PROGRA~1\QUICKH~1\QHONSVC.EXE
G:\Program Files\Norton AntiVirus1\SAVScan.exe
G:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
G:\Program Files\MSN Messenger\msnmsgr.exe
E:\Program Files\Ares\Ares.exe
G:\WINDOWS\system32\ctfmon.exe
G:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
G:\Program Files\Opera75\opera.exe
G:\Documents and Settings\Sagar\My Documents\utils\hijackthis\HijackThis.exe
G:\Program Files\Symantec\LiveUpdate\AUpdate.exe

O2 - BHO: Google Desktop Search Capture - {7c1ce531-09e9-4fc5-9803-1c2956615786} - G:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll
O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file)
O3 - Toolbar: NavExcel Toolbar - {5AA06644-BC46-4220-A460-47A6EB47C96D} - G:\Program Files\NavExcel Search Toolbar\NavExcelBar.dll
O4 - HKCU\..\Run: [Yahoo! Pager] G:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [msnmsgr] "G:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ares] "E:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [ctfmon.exe] G:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - G:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Download with &DAP - G:\PROGRA~1\DAP1\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - G:\PROGRA~1\DAP1\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://G:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Save with Download Manager... - G:\Program Files\J River\Media Jukebox\DMDownload.htm
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - G:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - G:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - G:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: g:\program files\google\google desktop search\googledesktopnetwork1.dll
O10 - Unknown file in Winsock LSP: g:\program files\google\google desktop search\googledesktopnetwork1.dll
O10 - Unknown file in Winsock LSP: g:\program files\google\google desktop search\googledesktopnetwork1.dll
O10 - Unknown file in Winsock LSP: g:\program files\google\google desktop search\googledesktopnetwork1.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{CA3CD7C7-2646-4778-BDF4-88CAC22D7F15}: NameServer = 61.1.96.65 61.1.128.5
sagar_mutha is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 23-10-2004, 02:23 AM   #2 (permalink)
ice
In The Zone
 
Join Date: Dec 2003
Location: Mumbai
Posts: 270
Default

G:\PROGRA~1\QUICKH~1\qhwscsvc.exe
G:\PROGRA~1\QUICKH~1\QHONSVC.EXE

That i think means ur runnin the QUickheal AV too along with ur Norton.

Id suggest u first try shuttin these files with task manager and then Uninstalling quick heal.

Secondly, im not sure , bout Nav helper, i dont think its spyware, but sounds like a typical spyware program name ,
__________________
ice
ice is offline  
Old 23-10-2004, 11:15 AM   #3 (permalink)
Bewitched!
 
xenkatesh's Avatar
 
Join Date: Feb 2004
Location: chennai
Posts: 468
Default

During Booting Press F8 and get into safe mode and uninstall the Quick heal this help u!
__________________
Keep your friends close and enemy CLOSER!!!
Ragnarok Online: One World, One Million Possibilities.. :)
xenkatesh is offline  
Old 23-10-2004, 11:46 AM   #4 (permalink)
Davislav Ivanuiz!!!
 
Kl@w-24's Avatar
 
Join Date: Apr 2004
Location: Pune
Posts: 1,396
Default

Using 2 antivirus softwares together is NOT recommended and can lead to unforeseen difficulties. I'd suggest that u uninstall one of th antivirus programs. Also, did u uncheck th option to display ads while installing Ares ? It cud cause a few problems if u didn't.
__________________
I was here when the forum's swear filter kept bleeping out the word 'FUNK'. :crazy::censored::eeksign:

www.abhi247.com | The Photohblog A Little Lunacy! [v3]

Flickr!
Kl@w-24 is offline  
Old 24-10-2004, 12:05 AM   #5 (permalink)
Coming back to life ..
 
it_waaznt_me's Avatar
 
Join Date: Nov 2003
Location: A bit closer to heaven
Posts: 1,997
Default Re: my hijack this logfile-plz help

To proceed with your HijackThis log, Run HijackThis again and put a CheckMark next to these entries and Click on Fix Checked.
Please make sure that all Internet Explorer and Windows Explorer windows are closed.
Quote:
Originally Posted by sagar_mutha
O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file)
O3 - Toolbar: NavExcel Toolbar - {5AA06644-BC46-4220-A460-47A6EB47C96D} - G:\Program Files\NavExcel Search Toolbar\NavExcelBar.dll
Btw ... Your log looks pretty clean to me ..
__________________
Sleight of hand and twist of fate...
On a bed of nails she makes me wait...
And I wait without you ...
With or without you ..
----
Batty = Too Busy Now !!!
it_waaznt_me is offline  
Old 24-10-2004, 12:11 AM   #6 (permalink)
Apprentice
 
Join Date: Mar 2004
Location: Pune
Posts: 64
Default

but my norton is corrupt and it doesnt even uninstall....what do i do then
sagar_mutha is offline  
 

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Latest Threads
- by Tenida
- by Charan
- by abhidev
- by Sujeet
- by Sarath

Advertisement




All times are GMT +5.5. The time now is 09:12 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2