Forum Home
Press F1
 
Thread ID: 91679 2008-07-15 07:45:00 No virus scanner how do i get it dunno (1572) Press F1
Post ID Timestamp Content User
689037 2008-07-15 07:45:00 Hi wonderful people, my sister has a virus on her computer which is only a 2.25gb hard drive, tried to download avg but after 2 1/2 hours it came back saying not compatible. is there any where i can run a virus scan on computer with out d/l she has windows 2000.
Cheers
Thanks heaps in advance
dunno (1572)
689038 2008-07-15 07:53:00 Try Avast it should work (avast.com) Speedy Gonzales (78)
689039 2008-07-15 08:04:00 Hi Speedy,

to d/l it is going to take 2hours and half for avast scanner do you think this will work, or should i go to the other links you gave me.
Thanks
Dunno
dunno (1572)
689040 2008-07-15 08:06:00 The other links are in my sig. If you dont want to wait for 2 hrs get Avast

Get hijackthis

Install it run it then click in scan the system and save a log

Copy and paste the log here

But you'll probably have to get it later
Speedy Gonzales (78)
689041 2008-07-15 09:49:00 Hi Speedy, I d/l avast then when it was doing the installation it just disappeared and I can not find it anywhere HELP dunno (1572)
689042 2008-07-15 10:16:00 Please help me i can not even get it hijack this that speedy gave me, the page continually comes up with errors and i can not get to where speedy told me to go dunno (1572)
689043 2008-07-15 10:44:00 Read previous posts dunno (1572)
689044 2008-07-15 11:09:00 Please help me i can not even get it hijack this that speedy gave me, the page continually comes up with errors and i can not get to where speedy told me to go Click on This link here (www.trendsecure.com) - its a direct download of Hijack this, it should download right away wainuitech (129)
689045 2008-07-15 11:15:00 Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:29:06 PM, on 7/15/2008
Platform: Windows 2000 SP2 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP2 (5.00.2920.0000)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\PrevxCSI\prevxcsi.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\Fonts\wmsncs.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\explorer.exe
C:\WINNT\System32\sistray.EXE
C:\WINNT\System32\RunDll32.exe
C:\Program Files\PrevxCSI\prevxcsi.exe
C:\WINNT\System32\csrs.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Clear.net
F2 - REG:system.ini: Shell=explorer.exe "C:\WINNT\Fonts\wmsncs.exe"
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SiS Tray] C:\WINNT\System32\sistray.EXE
O4 - HKLM\..\Run: [SiS KHooker] C:\WINNT\System32\khooker.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINNT\System32\csrs.exe
O4 - HKLM\..\Run: [Wmsncs Service] C:\WINNT\Fonts\wmsncs.exe
O4 - HKLM\..\Run: [NvidMediaCenter] C:\Program Files\Common Files\System\wmsncs.exe
O4 - HKLM\..\Run: [Spool Driver Service] C:\WINNT\System32\spool\drivers\wmsncs.exe
O4 - HKLM\..\Run: [Wins Service] C:\WINNT\System32\wins\wmsncs.exe
O4 - HKLM\..\Run: [PrevxCSI] "C:\Program Files\PrevxCSI\prevxcsi.exe" /bootupreg
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [Wmsncs Service] C:\WINNT\Fonts\wmsncs.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [NvidMediaCenter] C:\Program Files\Common Files\System\wmsncs.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [Spool Driver Service] C:\WINNT\System32\spool\drivers\wmsncs.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [Wins Service] C:\WINNT\System32\wins\wmsncs.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: wmsncs.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\winnt\system32\nwprovau.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{714E928F-D969-4DEF-87A2-C0CDC898B7A7}: NameServer = 203.97.33.1 203.97.37.1
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe

--
End of file - 4130 bytes
dunno (1572)
689046 2008-07-15 11:44:00 i have copy and pasted my hijack this list, can someone please help as to what i do now

thank you
dunno (1572)
1 2 3 4 5