Forum     

Go Back   Digit Technology Discussion Forum > Software > Software Q&A
Register FAQ Calendar Mark Forums Read

Software Q&A Having trouble with software? Find solutions here


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 26-07-2007, 03:08 PM   #1 (permalink)
In The Zone
 
Join Date: Jul 2005
Posts: 264
Default Fun.exe


Running win xp with service pack 3.Whenever i try to open ie, its giving a message 'fun.exe has generated an error'.Suggest something.
ra_sriniketan is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 26-07-2007, 03:10 PM   #2 (permalink)
Microsoft MVP
 
Vishal Gupta's Avatar
 
Join Date: Jul 2005
Location: AskVG.com
Posts: 5,173
Default Re: Fun.exe

Buddy SP3 isnt officially release by Microsoft. Its a version created by some hackers which contains lots of XP updates, themes and a few virus/spyware as a bonus.

Ur system has been infected by virus/spyware. Download "HikackThis" from http://www.hijackthis.de/ and scan ur system with it and then post the contents of thye log file here.
__________________
:arrow: http://www.AskVG.com/
Vishal Gupta is offline  
Old 27-07-2007, 04:30 PM   #3 (permalink)
In The Zone
 
Join Date: Jul 2005
Posts: 264
Default Re: Fun.exe

Heres the log file:

Logfile of HijackThis v1.99.1
Scan saved at 2:44:10 PM, on 7/27/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system\Fun.exe
C:\WINDOWS\dc.exe
C:\WINDOWS\SVIQ.EXE
C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\bgsmsnd.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\userinit.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\ITFFF1~1.BIT\LOCALS~1\Temp\Rar$EX00.04 7\HijackThis.exe

F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\system32\WinSit.exe
F3 - REG:win.ini: load=C:\WINDOWS\inf\Other.exe
F3 - REG:win.ini: run=C:\WINDOWS\system32\config\Win.exe
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\sw g.dll
O3 - Toolbar: pdfMachine - {56CF4856-ECB4-4e46-A897-A378821F97B9} - C:\WINDOWS\system32\bgstb.dll
O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [bgsmsnd.exe] C:\WINDOWS\system32\bgsmsnd.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [dc2k5] C:\WINDOWS\SVIQ.EXE
O4 - HKCU\..\Run: [Fun] C:\WINDOWS\system\Fun.exe
O4 - HKCU\..\Run: [dc] C:\WINDOWS\dc.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = bitmserver1.com
O17 - HKLM\Software\..\Telephony: DomainName = bitmserver1.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{FA5FF053-6272-41FB-90BA-E605F0E27C66}: NameServer = 223.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = bitmserver1.com
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NNSvc - Net Nanny Software International, Inc. - C:\Program Files\Net Nanny\nnsvc.exe
O23 - Service: wampapache - Unknown owner - c:\wamp\apache2\bin\httpd.exe" -k runservice (file missing)
O23 - Service: wampmysqld - Unknown owner - c:\wamp\mysql\bin\mysqld-nt.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Program Files\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
ra_sriniketan is offline  
Old 27-07-2007, 04:57 PM   #4 (permalink)
Microsoft MVP
 
Vishal Gupta's Avatar
 
Join Date: Jul 2005
Location: AskVG.com
Posts: 5,173
Default Re: Fun.exe

Buddy ur system has become a BIG restaurant for all virus/spyware. Boot into Safe Mode and fix these:

Code:
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\system32\WinSit.exe
F3 - REG:win.ini: load=C:\WINDOWS\inf\Other.exe
F3 - REG:win.ini: run=C:\WINDOWS\system32\config\Win.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [dc2k5] C:\WINDOWS\SVIQ.EXE
O4 - HKCU\..\Run: [Fun] C:\WINDOWS\system\Fun.exe
O4 - HKCU\..\Run: [dc] C:\WINDOWS\dc.exe
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = bitmserver1.com
O17 - HKLM\Software\..\Telephony: DomainName = bitmserver1.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{FA5FF053-6272-41FB-90BA-E605F0E27C66}: NameServer = 223.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = bitmserver1.com
__________________
:arrow: http://www.AskVG.com/
Vishal Gupta is offline  
Old 27-07-2007, 05:36 PM   #5 (permalink)
HELP AND SUPPORT
 
rakeshishere's Avatar
 
Join Date: Jun 2006
Posts: 1,603
Default Re: Fun.exe

Sab SP3 ki Maya
rakeshishere is offline  
Old 28-07-2007, 01:06 PM   #6 (permalink)
In The Zone
 
Join Date: Jul 2005
Posts: 264
Default Re: Fun.exe

Could not log into safe mode.Pressed F8 though.Cleared all the files that u have mentioned by using hijackthis in normal mode.But still whenever trying to use any browser to access the internet its giving the same old problems.
ra_sriniketan is offline  
Old 28-07-2007, 08:32 PM   #7 (permalink)
HELP AND SUPPORT
 
rakeshishere's Avatar
 
Join Date: Jun 2006
Posts: 1,603
Default Re: Fun.exe

Quote:
Originally Posted by ra_sriniketan
Could not log into safe mode.Pressed F8 though.Cleared all the files that u have mentioned by using hijackthis in normal mode.But still whenever trying to use any browser to access the internet its giving the same old problems.
Try running CCleaner and Spybot to clear all the JUNK
rakeshishere is offline  
Old 28-07-2007, 09:33 PM   #8 (permalink)
* Teh Flirt King *
 
Quiz_Master's Avatar
 
Join Date: Dec 2005
Location: Originally From : Ratlam M.P., Currently in: Hyderabad
Posts: 972
Default Re: Fun.exe

Turn off system restore first....
And run a full virus scan, with a fully updated antivirus software..,
Run CCleaner and Spybot as rakesh said and also scan with Ad-Aware.

Do all this in safe mode.
__________________
World is just a Quizzical Reality : Quiz_Master//Ashwin :D

Blog: http://ashwinsaxena.com/blog - Tech, Life and Other Things.
Quiz_Master is offline  
Old 28-07-2007, 10:12 PM   #9 (permalink)
Alive Again...
 
satyamy's Avatar
 
Join Date: May 2005
Location: Mumbai
Posts: 1,668
Default Re: Fun.exe

my comment is that u format ur Windows drive (normally C)
& install a fresh copy of windows XP with SP2
Dont use any fake & rubbish applications like SP3
satyamy is offline  
Old 28-07-2007, 10:38 PM   #10 (permalink)
Distinguished Member
 
anandk's Avatar
 
Join Date: Mar 2005
Location: Pune
Posts: 3,783
Default Re: Fun.exe

Multiple infections there ! some rather nasty. post ur hjt log at www.hijackthis.de to see the complete picture. u may have to schedule a boottime scan of ur av AND anti-spy to clean up ur pc.
__________________
> www.TheWindowsClub.com <
= www.WinVistaClub.com =
Microsoft® MVP
anandk is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Latest Threads
- by clmlbx

Advertisement




All times are GMT +5.5. The time now is 02:49 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2