Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed

Outline · [ Standard ] · Linear+

Virus/Malware PC suspected to be Infected by Trojan/Virus, Enclosed Hijackthis File ( Please help )

views
     
TSmoniqee
post Jan 10 2009, 02:31 PM, updated 17y ago

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


Good day everyone

I just formated my pc three days ago and yet still have problem. I cant scan without having my PC being forced shutdown. cry.gif

Please advise. notworthy.gif

Thank You

Here is my logfile



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:28:52 PM, on 1/10/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl.sun.com/webapps/download/AutoDL?BundleId=26688
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 5396 bytes

TSmoniqee
post Jan 10 2009, 03:02 PM

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


hi tan pang,

thanks for your prompt response

i use mcafee site advisor for my internet security. Kaspersky is the only anti virus I have.

i have been trying to scan my backup ie e drive and c drive...always forced aka sudden shut down ( thermal overheating )...for the past three days. I cant seem to scan my pc properly

at the moment i am using anti bytes malware to scan my pc in safe mode

Any advice, please cause I am really a newbie and most of the time, I format my pc if there's problem.


TSmoniqee
post Jan 10 2009, 03:09 PM

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


but the problem only occur when i scan my pc.

Between, I have 2 small fans, 1 cooler master fan facing the processor and i think another in my hard disk.

Does that mean, based on my hijackthis log , I dont have any virus or malware except that I dont have enough cooler for my pc?


Added on January 10, 2009, 3:16 pmT___T

I can't scan using anti malware in safe mode cause my pc again SHUT DOWN halfway through.

Please help.

This post has been edited by moniqee: Jan 10 2009, 03:16 PM
TSmoniqee
post Jan 10 2009, 08:22 PM

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


hi francischuahcw

thanks for your prompt response.

so far, there is no blue screen...just auto shutdown. so far, as long I dont scan my pc using the kaspersky or any anti malware...ie just browsing, downloading...my pc is ok based on the task manager..though its on a high side due to kaspersky file scanning.

could it be because my processor couldnt take kaspersky internet security? Before this, I use Mcafee. FYI, my pc is pentium 4 and 1 GB ram. ( 512 x 2 )

may i know how to "send your system for thermal paste check"?

thank you



TSmoniqee
post Jan 10 2009, 08:37 PM

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


this is when my pc with mirc and kaspersky on. ( in a way kind of idle )

it looks like my CPU is kind on the high side.

This post has been edited by moniqee: Jan 10 2009, 08:38 PM


Attached thumbnail(s)
Attached Image
TSmoniqee
post Jan 10 2009, 10:03 PM

Look at all my stars!!
*******
Senior Member
7,864 posts

Joined: Oct 2006
From: Klang


hi francischuahcw

thanks for your prompt response.

i will try to get new fans... althought it's kinda expensive. thanks for the advise.


Added on January 17, 2009, 8:48 amHi everyone

I just send to a shop to check my pc and the technician confirm that my CPU fan spoilt...I am changing the fan..and hopefully the problem will goes off permanently

Will close the thread

Thank you for all your help

This post has been edited by moniqee: Jan 17 2009, 08:48 AM

Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0155sec    1.46    7 queries    GZIP Disabled
Time is now: 16th December 2025 - 05:35 AM