We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

New Icon on desktop named "Security Antivirus"

2456789

Comments

  • I dunno if it is or not but the log from MBam is huge I only posted about half of it.
  • dogmaryxx
    dogmaryxx Posts: 2,446 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    Give Hitman Pro 3.5 a try. Its free
  • DCFC79
    DCFC79 Posts: 40,641 Forumite
    Part of the Furniture 10,000 Posts Name Dropper
    Yes its the longest 1 ive ever seen, id reinstall xp but that may not get rid of everything,
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    callistris wrote: »
    I think you get the idea this is one huge list

    Ive seen far bigger :p
    :idea:
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    TICK and FIX these ~
    C:\Program Files\Service ADVISOR\SUIR\LightweightIDOL.exe
    C:\Program Files\ProQuestMS\PartsManagerPro\XBaseSrvr\tbkern32.exe **BOTH**
    O1 - Hosts: 74.125.45.100 4-open-davinci.com
    O1 - Hosts: 74.125.45.100 securitysoftwarepayments.com
    O1 - Hosts: 74.125.45.100 privatesecuredpayments.com
    O1 - Hosts: 74.125.45.100 secure.privatesecuredpayments.com
    O1 - Hosts: 74.125.45.100 getantivirusplusnow.com
    O1 - Hosts: 74.125.45.100 secure-plus-payments.com
    O1 - Hosts: 74.125.45.100 www.getantivirusplusnow.com
    O1 - Hosts: 74.125.45.100 www.secure-plus-payments.com
    O1 - Hosts: 74.125.45.100 www.getavplusnow.com
    O1 - Hosts: 74.125.45.100 safebrowsing-cache.google.com
    O1 - Hosts: 74.125.45.100 urs.microsoft.com
    O1 - Hosts: 74.125.45.100 www.securesoftwarebill.com
    O1 - Hosts: 74.125.45.100 secure.paysecuresystem.com
    O1 - Hosts: 74.125.45.100 paysoftbillsolution.com
    O1 - Hosts: 74.125.45.100 protected.maxisoftwaremart.com
    O1 - Hosts: 94.75.207.106 www.google.com
    O1 - Hosts: 94.75.207.106 google.com
    O1 - Hosts: 94.75.207.106 google.com.au
    O1 - Hosts: 94.75.207.106 www.google.com.au
    O1 - Hosts: 94.75.207.106 google.be
    O1 - Hosts: 94.75.207.106 www.google.be
    O1 - Hosts: 94.75.207.106 google.com.br
    O1 - Hosts: 94.75.207.106 www.google.com.br
    O1 - Hosts: 94.75.207.106 google.ca
    O1 - Hosts: 94.75.207.106 www.google.ca
    O1 - Hosts: 94.75.207.106 google.ch
    O1 - Hosts: 94.75.207.106 www.google.ch
    O1 - Hosts: 94.75.207.106 google.de
    O1 - Hosts: 94.75.207.106 www.google.de
    O1 - Hosts: 94.75.207.106 google.dk
    O1 - Hosts: 94.75.207.106 www.google.dk
    O1 - Hosts: 94.75.207.106 google.fr
    O1 - Hosts: 94.75.207.106 www.google.fr
    O1 - Hosts: 94.75.207.106 google.ie
    O1 - Hosts: 94.75.207.106 www.google.ie
    O1 - Hosts: 94.75.207.106 google.it
    O1 - Hosts: 94.75.207.106 www.google.it
    O1 - Hosts: 94.75.207.106 google.co.jp
    O1 - Hosts: 94.75.207.106 www.google.co.jp
    O1 - Hosts: 94.75.207.106 google.nl
    O1 - Hosts: 94.75.207.106 www.google.nl
    O1 - Hosts: 94.75.207.106 google.no
    O1 - Hosts: 94.75.207.106 www.google.no
    O1 - Hosts: 94.75.207.106 google.co.nz
    O1 - Hosts: 94.75.207.106 www.google.co.nz
    O1 - Hosts: 94.75.207.106 google.pl
    O1 - Hosts: 94.75.207.106 www.google.pl
    O1 - Hosts: 94.75.207.106 google.se
    O1 - Hosts: 94.75.207.106 www.google.se
    O1 - Hosts: 94.75.207.106 google.co.uk
    O1 - Hosts: 94.75.207.106 www.google.co.uk
    O1 - Hosts: 94.75.207.106 google.co.za
    O1 - Hosts: 94.75.207.106 www.google.co.za
    O1 - Hosts: 94.75.207.106 www.google-analytics.com
    O1 - Hosts: 94.75.207.106 www.bing.com
    O1 - Hosts: 94.75.207.106 search.yahoo.com
    O1 - Hosts: 94.75.207.106 www.search.yahoo.com
    O1 - Hosts: 94.75.207.106 uk.search.yahoo.com
    O1 - Hosts: 94.75.207.106 ca.search.yahoo.com
    O1 - Hosts: 94.75.207.106 de.search.yahoo.com
    O1 - Hosts: 94.75.207.106 fr.search.yahoo.com
    O1 - Hosts: 94.75.207.106 au.search.yahoo.com
    O4 - Global Startup: Push Client.LNK = C:\Program Files\Interwise\Participant\pull.exe
    O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    O15 - Trusted Zone: *.deere.com (HKLM)
    O23 - Service: LightweightIDOL - Unknown owner - C:\Program Files\Service ADVISOR\SUIR\LightweightIDOL.exe

    Give that HITMAN PRO a try, im intrigued
    :idea:
  • aliEnRIK wrote: »
    Ive seen far bigger :p

    Oh have you lol well I didnt post all of it:p
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    callistris wrote: »
    Oh have you lol well I didnt post all of it:p

    I had one mate with over 3500 (Mostly trojans)
    Another with 4500 (Mostly myweb)
    And another with well over 6500 (That was by far the worst ive ever seen, it had even made it so that the hardrive was constantly full no matter what I did!)
    :idea:
  • ok I'll give you that one lol

    Right I'm just going to do the work in hijack as instructed, do you then need another log posting?

    The partsmanager pro, Deere.com and service advisor ones are all work related to other software installed so they will still be present on future logs.
  • Wel ticked and fixed aall those host ones except the work related ones, rescanned and there all back again!
  • Currently scanning with Hitman Pro 3.5
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.3K Banking & Borrowing
  • 253.6K Reduce Debt & Boost Income
  • 454.3K Spending & Discounts
  • 245.3K Work, Benefits & Business
  • 601K Mortgages, Homes & Bills
  • 177.5K Life & Family
  • 259.1K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.