We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
The Forum now has a brand new text editor, adding a bunch of handy features to use when creating posts. Read more in our how-to guide

Hijack this ? Virus 01012011 Problem

Hello folks, my PC has been slow all year, can interpret this log ?


Logfile of Trend Micro HijackThis v2011.01.01
Scan saved at 00:00:00, on 01/01/2011
Platform: Windows 7 (WinNT 1.01.2011)
MSIE: Internet Explorer v8.01 01..2011)
Boot mode: Normal(01-01-11)

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\2011.1.01\HappyNewYear.exe
C:\Program Files (x86)\Common Files\Acronis\HappyNewYear.exe
C:\Program Files (x86)\BillP Studios\WinPatrol\HappyNewYear.exe
C:\Program Files (x86)\Acronis\OnlineBackupStandalone\HappyNewYear.exe
C:\Program Files (x86)\Acronis\TrueImageHome\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Virtual CD v10\System\HappyNewYear.exe
C:\Program Files (x86)\Mozilla Firefox\firefox2011.exe
C:\Program Files (x86)\Stardock\ObjectDockPlus2\I_Object_to_2010_finishing-2010.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HiJackThatLastYear.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://Happy New Year to You
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank 2011
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
- HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=2011.01.01
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=2010(file gone now)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - HAPPY NEW YEAR to ALL

--
End of file - 20110101 bytes
Commit Charge = 1012011 / out of 31/12/2010 (apologies to Closed)

Loads of respect to you guys Happy New Year from the S.O.G. here .....

Personal thanks to those helping out on here - click under your initial to find the results

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Happy New Year helping others
Respect and HNY Debit/dcm/Rob
4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy

CEC Email energyclub@moneysavingexpert.com

Comments

  • GunJack
    GunJack Posts: 11,947 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    :D @ dcm. ..... nice way to start 2011 ;)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • GunJack
    GunJack Posts: 11,947 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    oh, and BTWQ, use the norton removal tool, mbam, combofix, dr web, hitman pro, and regExe ...... then you may get somewhere :);):D
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • FireFox
    FireFox Posts: 150 Forumite
    GunJack wrote: »
    oh, and BTWQ, use the norton removal tool, mbam, combofix, dr web, hitman pro, and regExe ...... then you may get somewhere

    Sod it ... just delete EVERYTHING!

    You can't beat a fresh start:)

    Happy 2011 all
    :beer::beer::beer::beer:
  • GunJack wrote: »
    oh, and BTWQ, use the norton removal tool, mbam, combofix, dr web, hitman pro, and regExe ...... then you may get somewhere :);):D

    Can't do Combofix without wishing Happy New Year to Rik and Browntoa , and waiting them to tell me what to run ;) Happy New 2011 fellas and the rest too :beer:
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy

    CEC Email energyclub@moneysavingexpert.com
  • Take it to the Tech Guys. They can not ruin it any more than it is already.
    Signaller, author, father, carer.
  • Browntoa
    Browntoa Posts: 49,620 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    save the trip to tech guys I have their secret code

    FORMAT C:
    Ex forum ambassador

    Long term forum member
  • GunJack
    GunJack Posts: 11,947 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    Browntoa wrote: »
    save the trip to tech guys I have their secret code

    FORMAT C:

    you after a job there, B ?!?!? ;):):D
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • I wonder if they will start sub contracting to MSE members in the long run?
    Signaller, author, father, carer.
  • Browntoa wrote: »
    I have their secret code

    FORMAT C:

    I say we take off & nuke the site from orbit - It's the only way to be sure. ;)
  • spud17
    spud17 Posts: 4,451 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Combo Breaker
    Have you tried turning it on, then off again?
    Move along, nothing to see.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 353.5K Banking & Borrowing
  • 254.2K Reduce Debt & Boost Income
  • 455K Spending & Discounts
  • 246.6K Work, Benefits & Business
  • 602.9K Mortgages, Homes & Bills
  • 178.1K Life & Family
  • 260.6K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.