We’d like to remind Forumites to please avoid political debate on the Forum.
This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
The Forum now has a brand new text editor, adding a bunch of handy features to use when creating posts. Read more in our how-to guide
Hijack this ? Virus 01012011 Problem
debitcardmayhem
Posts: 13,422 Forumite
in Techie Stuff
Hello folks, my PC has been slow all year, can interpret this log ?
Logfile of Trend Micro HijackThis v2011.01.01
Scan saved at 00:00:00, on 01/01/2011
Platform: Windows 7 (WinNT 1.01.2011)
MSIE: Internet Explorer v8.01 01..2011)
Boot mode: Normal(01-01-11)
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\2011.1.01\HappyNewYear.exe
C:\Program Files (x86)\Common Files\Acronis\HappyNewYear.exe
C:\Program Files (x86)\BillP Studios\WinPatrol\HappyNewYear.exe
C:\Program Files (x86)\Acronis\OnlineBackupStandalone\HappyNewYear.exe
C:\Program Files (x86)\Acronis\TrueImageHome\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Mozilla Firefox\firefox2011.exe
C:\Program Files (x86)\Stardock\ObjectDockPlus2\I_Object_to_2010_finishing-2010.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HiJackThatLastYear.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://Happy New Year to You
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank 2011
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
- HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=2010(file gone now)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - HAPPY NEW YEAR to ALL
--
End of file - 20110101 bytes
Commit Charge = 1012011 / out of 31/12/2010 (apologies to Closed)
Loads of respect to you guys Happy New Year from the S.O.G. here .....
Personal thanks to those helping out on here - click under your initial to find the results
A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
Happy New Year helping others
Respect and HNY Debit/dcm/Rob
Logfile of Trend Micro HijackThis v2011.01.01
Scan saved at 00:00:00, on 01/01/2011
Platform: Windows 7 (WinNT 1.01.2011)
MSIE: Internet Explorer v8.01 01..2011)
Boot mode: Normal(01-01-11)
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\2011.1.01\HappyNewYear.exe
C:\Program Files (x86)\Common Files\Acronis\HappyNewYear.exe
C:\Program Files (x86)\BillP Studios\WinPatrol\HappyNewYear.exe
C:\Program Files (x86)\Acronis\OnlineBackupStandalone\HappyNewYear.exe
C:\Program Files (x86)\Acronis\TrueImageHome\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Mozilla Firefox\firefox2011.exe
C:\Program Files (x86)\Stardock\ObjectDockPlus2\I_Object_to_2010_finishing-2010.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HiJackThatLastYear.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://Happy New Year to You
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank 2011
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
- HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=2010(file gone now)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - HAPPY NEW YEAR to ALL
--
End of file - 20110101 bytes
Commit Charge = 1012011 / out of 31/12/2010 (apologies to Closed)
Loads of respect to you guys Happy New Year from the S.O.G. here .....
Personal thanks to those helping out on here - click under your initial to find the results
A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
Happy New Year helping others
Respect and HNY Debit/dcm/Rob
4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
CEC Email energyclub@moneysavingexpert.com
CEC Email energyclub@moneysavingexpert.com
0
Comments
-
@ dcm. ..... nice way to start 2011
......Gettin' There, Wherever There is......
I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple
0 -
oh, and BTWQ, use the norton removal tool, mbam, combofix, dr web, hitman pro, and regExe ...... then you may get somewhere


......Gettin' There, Wherever There is......
I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple
0 -
oh, and BTWQ, use the norton removal tool, mbam, combofix, dr web, hitman pro, and regExe ...... then you may get somewhere



Can't do Combofix without wishing Happy New Year to Rik and Browntoa , and waiting them to tell me what to run
Happy New 2011 fellas and the rest too :beer: 4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
CEC Email energyclub@moneysavingexpert.com0 -
Take it to the Tech Guys. They can not ruin it any more than it is already.Signaller, author, father, carer.0
-
save the trip to tech guys I have their secret code
FORMAT C:Ex forum ambassador
Long term forum member0 -
I wonder if they will start sub contracting to MSE members in the long run?Signaller, author, father, carer.0
-
-
Have you tried turning it on, then off again?Move along, nothing to see.0
This discussion has been closed.
Confirm your email address to Create Threads and Reply
Categories
- All Categories
- 353.5K Banking & Borrowing
- 254.2K Reduce Debt & Boost Income
- 455K Spending & Discounts
- 246.6K Work, Benefits & Business
- 602.9K Mortgages, Homes & Bills
- 178.1K Life & Family
- 260.6K Travel & Transport
- 1.5M Hobbies & Leisure
- 16K Discuss & Feedback
- 37.7K Read-Only Boards

