| I have One Trojans 2 files, BullGuard cannot take them out.......
Path:
C:\Documents and Settings\Thomas\Local Settings\Temporary Internet Files\Content.IE5\BYCNZ9OP\ultrashim[1].cab
C:\System Volume Information\_restore{9848E7A7-BF16-444A-96A8-383ABE63DC8F}\RP7\A0000196.exe
Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 10:40:12 AM, on 4/15/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal
Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe G:\Program Files\BullGuard\BullGuardUpdate.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\QuickTime\qttask.exe G:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\RunDll32.exe G:\Program Files\PowerISO\PWRISOVM.EXE C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe G:\Program Files\BullGuard\bullguard.exe C:\WINDOWS\System\SmWizard.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\ITE\ITE IT8212 ATA RAID Controller\RaidMgr.exe C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe F:\HJT\HiJackThis_v2.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "G:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [PWRISOVM.EXE] G:\Program Files\PowerISO\PWRISOVM.EXE O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe" O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe" O4 - HKLM\..\Run: [BullGuard] "G:\Program Files\BullGuard\bullguard.exe" -boot O4 - HKCU\..\Run: [BullGuard] "G:\Program Files\BullGuard\bullguard.exe" O4 - Global Startup: Adobe Reader Speed Launch.lnk = G:\Program Files\Adobe Reader\Reader\reader_sl.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = G:\Program Files\Adobe Reader\Reader\AdobeCollabSync.exe O4 - Global Startup: RAID Manager.lnk = ? O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: BullGuard LiveUpdate (BGLiveSvc) - BullGuard Software - G:\Program Files\BullGuard\BullGuardUpdate.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
-- End of file - 2932 bytes
|