Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
removing trojan(?) virus
   
BullGuard Antivirus Forum > Virus > Virus Questions > removing trojan(?) virus  
Forum Quick Jump
 
New Topic Post reply to : removing trojan(?) virus Printable version of : removing trojan(?) virus
[ << Previous Thread | Next Thread >> ]

hemi
New Member


Date Joined Jun 2004
Total Posts : 1
 
   Posted 6-21-2004 7:21 (GMT +1)    Quote: removing trojan(?) virusAlert an admin about: removing trojan(?) virus
i want to remove a virus bullguard found on my computer. i ran a scan with bullguard and found one virus, but bullguard couldnt disinfect it. i tried deleting it in the quarantine box but when i refresh it is still there. i also tried deleting it in bullguard/infected but it says i cannot.
 hope someone can help!!!:p
 
Logfile of HijackThis v1.97.7
Scan saved at 6:19:45 PM, on 6/21/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Common Files\BullGuard\BullGuard Communicator\xcommsvr.exe
C:\Program Files\Common Files\BullGuard\BullGuard Scan Server\bdss.exe
C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
C:\program files\altnet\points manager\points manager.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Program Files\BullGuard\bdmcon.exe
C:\Program Files\BullGuard\bgnewsag.exe
C:\sp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\BullGuard\vsserv.exe
C:\PROGRA~1\Altnet\DOWNLO~1\asm.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\nl\Local Settings\Temp\Temporary Directory 2 for hijackthis.zip\HijackThis.exe
C:\Documents and Settings\nl\Desktop\IEXPLORE.EXE
C:\WINDOWS\notepad.exe
R3 - URLSearchHook: PerfectNavBHO Class - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - C:\PROGRA~1\PERFEC~1\BHO\PERFEC~1.DLL
O2 - BHO: NavErrRedir Class - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - C:\PROGRA~1\PERFEC~1\BHO\PERFEC~1.DLL
O2 - BHO: myBar BHO - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKLM\..\Run: [KAZAA] C:\Program Files\Kazaa\Kazaa.exe /SYSTRAY
O4 - HKLM\..\Run: [updmgr] C:\Program Files\Common files\updmgr\updmgr.exe
O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [BDMCon] C:\Program Files\BullGuard\\bdmcon.exe
O4 - HKLM\..\Run: [BGNewsAgent] C:\Program Files\BullGuard\bgnewsag.exe
O4 - HKCU\..\Run: [sp] C:\sp.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: {10000000-1000-0000-1000-000000000000} - ms-its:mhtml:file://C:\foo.mht!http://www.free32.com/POP.CHM::/sp.exe
O16 - DPF: {11111111-1111-1111-1111-111111111732} - file://c:\progra~1\pl.exe
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{8E406088-D270-4930-BBC0-256692A3D072}: NameServer = 202.180.64.9 202.180.64.2
 
Back to Top
 

eagle
Senior Member


Date Joined May 2004
Total Posts : 805
 
   Posted 6-21-2004 11:06 (GMT +1)    Quote: removing trojan(?) virusAlert an admin about: removing trojan(?) virus
cool  send your logs to support@bullguard.com
 they can help.
 
                                Eaglesmilewinkgrin
Back to Top
 
New Topic Post reply to : removing trojan(?) virus Printable version of : removing trojan(?) virus
 
Forum Information
Currently it is Saturday, March 13, 2010 5:07 AM (GMT +1)
There are a total of 76.142 posts in 17.592 threads.
In the last 3 days there were 8 new threads and 56 reply posts. View Active Threads
Who's Online
This forum has 31124 registered members. Please welcome our newest member, teddy.
28 Guest(s), 0 Registered Member(s) are currently online.  Details
5 Latest Threads
Redirect Virus (10)12-03-2010 22:42:47 (drewplz)
I suspect ad-divert virus; HiJackThis! log included (8)12-03-2010 21:38:12 (ouiouilee)
Blue Screen on Windows Vista x32 (5)12-03-2010 17:06:01 (markusg)
How to remove a redirect virus that also stops my Antivirus for updating (3)12-03-2010 10:56:27 (markusg)
Internet browser redirect virus (9)12-03-2010 10:48:06 (markusg)