Author Topic: hijack this alayzer log. please help me out  (Read 798 times)

Liron

  • Guest
hijack this alayzer log. please help me out
« on: May 12, 2005, 06:08:16 AM »
Hi,
I have problems with ICQ, and my copmuter seems to run out of virtual memory too many times.
There's a proccess called mdtdev.exe I'm worried about, and also, there are 5 proccesses called svchost.exe in my task manager which seems like too much.
Please help me.

====================================================================
Log was analyzed using KRC HijackThis Analyzer - Updated on 4/1/05
Get updates at http://www.greyknight17.com/download.htm#programs

***Security Programs Detected***


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Logfile of HijackThis v1.99.1
Scan saved at 14:02:38, on 12/05/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\Program Files\Barak013\Barak013_L2TP\fts.exe
C:\Program Files\Barak013\Barak013_L2TP\FWPortal.exe
C:\Program Files\eMule++\eMule.exe
C:\WINDOWS\system32\mdtdev.exe
C:\Program Files\HT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 ME\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: MIME Type Support Dll - {ED045E50-1DD5-4FA1-B468-E624CC585D3A} - C:\WINDOWS\system32\mimtcore.dll
O4 - HKLM\..\Run: [%FP%Barak013 L2TP fts.exe] "C:\Program Files\Barak013\Barak013_L2TP\fts.exe"
O8 - Extra context menu item: &יצא ל- Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: מחקר - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O17 - HKLM\System\CCS\Services\Tcpip\..\{1E4F22C1-F299-4126-B0D4-C8A1B3542B90}: NameServer = 212.150.49.10 206.49.94.234


End of KRC HijackThis Analyzer Log.
===================================