Hijackthis log file thing. Please help

Discussion in 'Windows - Virus and spyware problems' started by RickJames, Aug 7, 2006.

  1. RickJames

    RickJames Member

    Joined:
    Nov 19, 2004
    Messages:
    98
    Likes Received:
    0
    Trophy Points:
    16
    This is my log file. Please some expert help me out as to what to give a check mark to. Please and thank you.

    Logfile of HijackThis v1.99.1
    Scan saved at 12:50:57 PM, on 8/7/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
    C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WLService.exe
    C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WMP54Gv4.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.0.711.1664\GoogleToolbarNotifier.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\CCleaner\ccleaner.exe
    C:\WINDOWS\System32\svchost.exe
    C:\HJT\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
    O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.0.711.1664\GoogleToolbarNotifier.exe
    O4 - Global Startup: Catalyst System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
    O17 - HKLM\System\CCS\Services\Tcpip\..\{065FB8D6-72CB-4C79-8163-9BCCA6AA09E0}: NameServer = 192.168.1.1
    O17 - HKLM\System\CCS\Services\Tcpip\..\{30D15150-345A-49F4-9956-B5C4AA7D2CC4}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS1\Services\Tcpip\..\{065FB8D6-72CB-4C79-8163-9BCCA6AA09E0}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS2\Services\Tcpip\..\{065FB8D6-72CB-4C79-8163-9BCCA6AA09E0}: NameServer = 192.168.1.1
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
    O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing)
    O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
    O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
    O23 - Service: WMP54Gv4SVC - Unknown owner - C:\Program Files\Linksys Wireless-G PCI Wireless Network Monitor\WLService.exe" "WMP54Gv4.exe (file missing)
     
  2. RickJames

    RickJames Member

    Joined:
    Nov 19, 2004
    Messages:
    98
    Likes Received:
    0
    Trophy Points:
    16
    I keep getting the BSOD (blue screen) Some of the messages it gives me are Kernal_stack_inpage_error, but i think i fixed that.
    0x00000077 (0xc0000185, 0xc0000185, 0x00000000, 0x02ca9000.

    Then it gave me this
    Nvata.sys error.
    IRQ_Not_Equal or somin like that.
    Every time im idle for about 18 minutes it restarts and goes to a page where it says Disk boot failed. insert system disk and press enter. I dont know why. but i can restart and it works. When i am decrypting sometimes it gives me bsod. Those are the only problems it has, but are very very annoying. Please someone help. and please dont just tell me to scan with any virus scanner you can think of as i have tried it with alot of stuff, online stuff too. Yes i only have 1 antivirus. I have adaware and search and destroy.
     
  3. Niobis

    Niobis Active member

    Joined:
    Jan 30, 2005
    Messages:
    2,326
    Likes Received:
    0
    Trophy Points:
    66
  4. RickJames

    RickJames Member

    Joined:
    Nov 19, 2004
    Messages:
    98
    Likes Received:
    0
    Trophy Points:
    16
    did you read my post. My second post. I have a firewall. I have search and destroy. I have avg.... I will scan it one more gain. then give you the log... Thanks for the reply bro.
     
  5. Niobis

    Niobis Active member

    Joined:
    Jan 30, 2005
    Messages:
    2,326
    Likes Received:
    0
    Trophy Points:
    66
    Sorry mate, I really over-looked that one.

    [Edited] I've lost it.

    Also, run AVG and Spybot in safe mode.
     
    Last edited: Aug 7, 2006
  6. maca1

    maca1 Regular member

    Joined:
    Mar 15, 2006
    Messages:
    630
    Likes Received:
    0
    Trophy Points:
    26
    No don't!
    That's a valid LSP
     
  7. RickJames

    RickJames Member

    Joined:
    Nov 19, 2004
    Messages:
    98
    Likes Received:
    0
    Trophy Points:
    16
    It is really irritating the hell outta me. I am trying to decrypt a couple of dvds and bam its bsod. This computer I got Custom from like 3 months ago... How do i reformat it... ITS NOT LETTING ME!!!. lol. I tried putting the xp cd in and when it goes to a screen saying which drive you want to install xp on it says i cannot delete my drive. I even tried repairing it... I am losing it. I have probably scanned my computer 3 times a day.. Just tell me how to format my C:\ drive...
     

Share This Page