|
-
February 23rd, 2009, 11:34 PM
#3
I tried to run Malwarebytes, but it always closes once it opens. I want to run it in safe mode, but I was thinking it might not catch everything since Safe Mode doesn't run everything. Should I anyway?
Here's my hijackthis file as of now. It's in multiple parts since the reply has a limited number of characters:
Part 1:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:37:03 PM, on 2/23/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Nexon\Mabinogi\npkcmsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Owner\Application Data\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ThreatFire\TFTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Owner\Application Data\svchost.exe
C:\Documents and Settings\Owner\Application Data\cogad\cogad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\BigFix\BigFix.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\tvi7vpj2.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\sg15yvf3yk.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\hj1p12io.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\aupoon.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\sqw8ns.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\wawqk8xclqf.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\px88ru8e5emz.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\rgyupt9.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\goavpz386e.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\alrbnlflrfsk.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\nd5w2vg3tkx6.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\c4hxl1v.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\hkhwpxsx7r.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\kiogbclht3k.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\y1ozymnawl3r.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\jd22ac63b.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\yg2mdj9.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\rmelk5kq.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\j3b0rvje.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\ffs70l089scjc.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\b0bq8wq.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\jzspcsnsi3.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\xgislhi5qxvu.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\qyzav4h4.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\q8ykfbjaqxm1.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\efpdntch69.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\hpkgt9.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\x7kfkwbxqx.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\p3c6xsndp3.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\ti8eq0y2.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\amrzpb40c90.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\sdmjp0.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\z7a1iv8m19j3q.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\o3o5ris.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\ofc5bjglya.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\k0v7nk374acm.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\sejqdvtx.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\glv9g4.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\jv9tmkoamg.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\lkvpk04zh.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\rz2s6fxj3m.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
Last edited by lunacat; February 23rd, 2009 at 11:40 PM.
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|