PDA

View Full Version : Easy HJT log


Sylvander
05-12-2004, 04:28 PM
I've already had my HJT log checked and put all the OK'd settings on an ignorelist.
A new scan produces the 2 additional detected items at the bottom of the list.
I assume the first one is due to the installation of "Script Sentry".
I don't know what the second one is.


Logfile of HijackThis v1.97.7
Scan saved at 20:19:07, on 12/05/04
Platform: Windows 98 (Win9x 4.10.1998)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\GRISOFT\AVG6\AVGSERV9.EXE
C:\WINDOWS\EXPLORER.EXE
C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\GRISOFT\AVG6\AVGCC32.EXE
C:\PROGRAM FILES\CD-WRITER PLUS\DIRECTCD\DIRECTCD.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\MSOFFICE.EXE
C:\PROGRAM FILES\SPYWAREGUARD\SPYWAREGUARDCP.EXE
C:\PROGRAM FILES\MAILWASHER\MAILWASHER.EXE
C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE

O4 - HKLM\..\Run: [ScriptSentry] C:\PROGRAM FILES\SCRIPT SENTRY\SCRIPTSENTRY.exe /check
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

By the way, HJT was "Not Responding".
After 3 or 4 attempts it finally completed the scan without freezing.

Steve
05-12-2004, 05:21 PM
It looks like you needed to download the Shockwave Flash player to view a game or some other animation at a site you visited.

Here (http://www.macromedia.com/software/shockwaveplayer/) is some info. Straight from the horses mouth...so to speak.

:)

Sylvander
05-14-2004, 12:13 PM
I deleted "Hijack This.exe", copied a new copy of the ".zip" file into the folder, and extracted it.
Then deleted the zip file.

That new copy works fine.

So I used "Eraser" to irrecoverably eliminate the contents of the Recycle Bin. It only held those 2 "Hijack This" files and an old log file.
Eraser is a great little program. ;)