Forum Home
Press F1
 
Thread ID: 101520 2009-07-17 18:05:00 Hijackthis log question. AntiVirMan (15107) Press F1
Post ID Timestamp Content User
792579 2009-07-17 22:30:00 You can tick the AVG entry

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program -
Files\AVG\AVG8\avgssie.dll (file missing)

Did you uninstall this first before deleting its folder?? Not a good idea, deleting folders without uninstalling it first. It can stuff things up

The entries in my reply are the entries you tick then click on fix checked

You can post a log, but I got the mods to merge the first post with the 2nd.

Since they were for the same thing. And it makes it easier if its all in the same post/thread.
Speedy Gonzales (78)
792580 2009-07-17 22:45:00 SG

I know I have a keylogger, because I can see the keystrokes counting up as I enter them. What I now do, is compose messages in notepad, then copy and paste,

The app that blocks these keystrokes, is SafeSpace from Artificial Dynamics. I find it very cool, as it virtualises the OS and prevents ALL changes to the files in the OS and the registry, by creating a virtual barrier, a virtual sandbox, and it's from within this virtual environment, that any and all changes are made. The real data and registry are untouched.

So at the end of each session, the app tells me how many renames/deletes/changes etc have been attempted and it blocks them all.

Together with keystrokes, pipes, atoms, mutants etc etc. (I have no idea what those last few are though;))

On shutdown the system purges the 'safe space', leaving the next session with a clean, fresh environment.

It's worth Googling I think, they explain what it does, far better than me.

I shall do as you say and delete or fix those entries and yes, I always do a full scan

Sorry for being so slow.

Regards,
AntiVirMan (15107)
792581 2009-07-17 22:45:00 Sorry, I thought when I found out it was cool for me to post the Hijacklog here, that I had to start a new thread.

How does this apply to new topics then? Do you post a new thread, or add to previous posts by replying?

If I did that though, maybe not many people would see the post?Welcome to PressF1,

If you have created a thread about a problem, then it is best to keep to that thread rather than make a new one when adding more information and answering questions. Saves confusion all round.

New topics (different subject matter) need a new thread. For example, if you have problem with your monitor then make a new thread for it, don't add on to the end of someone else's thread about their similar monitor problem. Likewise, don't add a new question to your existing thread about an entirely different problem.

It's not a major problem if you get it wrong. Someone normally notifies a Moderator and asks the posts/threads to be moved/merged. We are a pretty easy going bunch here. :thumbs:

Hope you get your problem sorted, and enjoy your stay. :)
Jen (38)
792582 2009-07-17 22:51:00 The AVG related stuff, I can't recall. I think I tried to uninstall it, but the system crashed. That's when I had to re-install Windows. I don't normally do it that way. Usually remove from control panel.

I'm going to go and fix thos things with Hijackthis pretty soon.

Good practice to keep same topic in one thread, I won't make that mistake again.

Let me know your opinion on SafeSpace, if you Google it, as you seem to know a lot dude!!

I hope this is no double post coming up here. I'm trying 'quick reply'
AntiVirMan (15107)
792583 2009-07-17 22:54:00 Hi Jen,

Nice to hear your words there;)

Yes, it makes much more sense now

Being out of the forum scene a few years, I seem to have forgotten the etiqeutte.

I'll try to be 'neater' in future.

Regards,
AntiVirMan (15107)
792584 2009-07-17 23:11:00 Thanks folks for your help!

Gotta go offline now for a while, for some downtime in the nighttime.

I like it here, very cool.

I'll come back again some time and who knows? Maybe there is something that I may specialise in, that I could be able to help somebody else out with, and pay it forward.

Au revoir,
AntiVirMan (15107)
792585 2009-07-17 23:20:00 Umm I could check your system from here, but you would have to get a program called teamviewer. So, I can log in remotely. I would have to see what processes are running

You may have a rootkit or something, which wont necessarily show up in a HJT log. It hides. Only way to fix it is to see what processes are running (if a known process is running, you have to kill it first), then use something like trojan remover to pick it up / remove it
Speedy Gonzales (78)
792586 2009-07-17 23:24:00 I'll put a list together of my running processes and post it tomorrow or some time if that's ok?

Thanks for your help though, just downloaded the trojan remover app you posted, thanks again.

Going for a spell now.

Regards,

AntiVirMan
AntiVirMan (15107)
792587 2009-07-17 23:26:00 Plus, you sometimes can't kill some processes in the Windows GUI, I've tried, quite often with various things, C U later

PS You certainly live up to your name.....;)
AntiVirMan (15107)
792588 2009-07-17 23:40:00 Get this install it (technet.microsoft.com) it'll tell you whats running and what file/s its using and where they are.

See if you notice anything strange happening
Speedy Gonzales (78)
1 2 3