<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>Webmaster Widget &#187; HijackThis Logs</title> <atom:link href="http://www.webmasterwidget.com/topic/hijackthis-logs/feed" rel="self" type="application/rss+xml" /><link>http://www.webmasterwidget.com</link> <description>best resource for webmasters and web developers</description> <lastBuildDate>Sun, 28 Aug 2011 10:34:50 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.1</generator> <item><title>Ai Enabled Antivirus Software</title><link>http://www.webmasterwidget.com/article/ai-enabled-antivirus-software</link> <comments>http://www.webmasterwidget.com/article/ai-enabled-antivirus-software#comments</comments> <pubDate>Sun, 14 Mar 2010 18:25:34 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/ai-enabled-antivirus-software</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/ai-enabled-antivirus-software'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs5-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis Logs' title='HijackThis Logs' border='0'/></a>This article provides an idea of developing Artificially Intelligent Antivirus Software.No related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>Muhammad Usman Iqbal</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p>Artificially Intellegent Antivirus Systems</p><p>WEB 2.0 base application like Forums/Blogs are proving to be the ultimate solution to provide rapid reporting of viruses, spyware and other threats.</p><p>How People Get Helped These Days</p><p>An ordinary user usually posts some problems with his/her system in a very non-technical way. Usually, Geeks at the forums/Blogs try to understand this and they try to help the poor guy/girl. There has been a great use of an application called &#8220;HijackThis&#8221; on windows systems. HijackThis or IceSword inspect the compromised system and produce a log file which can help those geeks to understand the behavior of the problem.</p><p>On the basis of previous experiences or their own trust of any antivirus/antispyware application, people try to help others on such social websites. Most of the times, this solves their problem.</p><p>Antivirus Should Behave Like a Forum Geek</p><p>This whole process can be formalized in a manner that software vendors can build such applications which try to mimic behavior of the helper on those blogs/forums. This is not too complex; the process can be as simple as to extract information from a forum thread.</p><p>On the basis of keywords in the thread/question; and a log generated by HijackThis, IceSword or similar programs can produce a formatted report to the software vendors. The functionality of log generators mentioned earlier can also be integrated inside the antivirus tool.</p><p>A user may have a reporting facility inside the application and they may auto-format<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs5.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs5.jpg" alt='HijackThis Logs' /></a></div>and classify problem, most of the times, the existing virus defs may solve the problem, and detect any variants of a similar virus.</p><p>They should be smart enough to build their knowledgebase from the given input which may be poorly formatted as mentioned earlier.</p><p>For instance, a user may see ‘my computer’ changed to something else in a windows environment, this is not harmful but could be a virus activity, A.V. system should be able to fix registry entries and may record this as a viral activity and may keep this in their knowledgebase and should prevent this from happening again.</p><p>Don’t remove the virus only</p><p>Many antiviruses today do detect most of the harmful entities and they can eliminate them as well, but they never have any idea how to fix the damage that has been caused by the virus they have deleted/eliminated from a computer system, e.g. On a windows system, many times when a virus is detected by a A.V. system, its rare that they fix say, corrupted registry values. I hope A.V. Companies should think about these features in the near future.</p><p><p>Software Engineer, Working in a well-known Organization.<br
/> Im found on <a
href="http://studentsown.com">Right Here</a></p></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/ai-enabled-antivirus-software/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Funny Scandal Ust Virus</title><link>http://www.webmasterwidget.com/article/funny-scandal-ust-virus</link> <comments>http://www.webmasterwidget.com/article/funny-scandal-ust-virus#comments</comments> <pubDate>Sun, 14 Mar 2010 13:37:57 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category> <category><![CDATA[C Program]]></category> <category><![CDATA[Common Files]]></category> <category><![CDATA[E Mail]]></category> <category><![CDATA[Fake Avi]]></category> <category><![CDATA[Hijackthis]]></category> <category><![CDATA[Internet Explorer V7]]></category> <category><![CDATA[Network Computers]]></category> <category><![CDATA[Network Shares]]></category> <category><![CDATA[Spoolsv Exe]]></category> <category><![CDATA[Spyware Programs]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/funny-scandal-ust-virus</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/funny-scandal-ust-virus'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs3-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis Logs' title='HijackThis Logs' border='0'/></a>Funny UST Scandal.exe (Sdbot-DIQ, Imaut-A) is a worm that usually spread by e-mail attachmentsNo related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>srimanigandan</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p><strong>Funny UST Scandal.exe (Sdbot-DIQ, Imaut-A) </strong>is a worm that usually spread by e-mail attachments. After installation Funny UST Scandal.exe turns of antivirus programs. Also it can download different malware programs from Internet and install it without your knowledge. This worm infects Yahoo Messenger and may block every application running on PC. Funny UST Scandal.exe may in fect network computers, through network shares and infected e-mails.</p><p>Software used to build the virus= <strong>AutoIt V3</strong></p><p>he virus, it seems, creates three files on all your root drives: A fake .avi file named &#8220;Funny UST Scandal.avi.exe&#8221;, an smss.exe file, and an autorun.ini to automatically start the virus when it&#8217;s on a new inserted drive.</p><p>Seems this problem is relatively new, as I haven&#8217;t been able to find any sort of help for it anywhere, other than the usual &#8220;scan with AdAware and Norton&#8221;. It automatically closes programs that are &#8220;threats&#8221; to it, it seems: I can&#8217;t keep any anti-spyware programs open long enough to scan for it. AVG Free doesn&#8217;t detect it, either. Safe mode doesn&#8217;t stop it from starting up with the OS either.</p><p>Hoping you guys could help? Here&#8217;s the HJT log:</p><p>Logfile of Trend Micro HijackThis v2.0.2</p><p>Scan saved at 1:19:06 AM, on 11/9/2007</p><p>Platform: Windows XP SP2 (WinNT 5.01.2600)</p><p>MSIE: Internet Explorer v7.00 (7.00.6000.16544)</p><p>Boot mode: Normal</p><p>Running processes:</p><p>C:WINDOWSSystem32smss.exe</p><p>C<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs3.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs3.jpg" alt='HijackThis Logs' /></a></div>:WINDOWSsystem32winlogon.exe</p><p>C:WINDOWSsystem32services.exe</p><p>C:WINDOWSsystem32lsass.exe</p><p>C:WINDOWSsystem32svchost.exe</p><p>C:WINDOWSSystem32svchost.exe</p><p>C:WINDOWSsystem32svchost.exe</p><p>C:Program FilesIntelWirelessBinEvtEng.exe</p><p>C:Program FilesIntelWirelessBinS24EvMon.exe</p><p>C:WINDOWSSystem32ACS.exe</p><p>C:WINDOWSsystem32ZoneLabsvsmon.exe</p><p>C:WINDOWSsystem32spoolsv.exe</p><p>C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe</p><p>C:PROGRA~1GrisoftAVG7avgamsvr.exe</p><p>C:PROGRA~1GrisoftAVG7avgupsvc.exe</p><p>C:PROGRA~1GrisoftAVG7avgemc.exe</p><p>C:Program FilesBonjourmDNSResponder.exe</p><p>C:Program FilesTOSHIBAConfigFreeCFSvcs.exe</p><p>C:WINDOWSSystem32DVDRAMSV.exe</p><p>C:Program FilesIntelWirelessBinRegSrvc.exe</p><p>C:Program FilesAnalog DevicesSoundMAXSMAgent.exe</p><p>C:WINDOWSSystem32svchost.exe</p><p>C:WINDOWSsystem32Wacom_Tablet.exe</p><p>C:Program FilesTOSHIBATOSHIBA AppletTAPPSRV.exe</p><p>C:Program FilesTenableNessusnessusd.exe</p><p>C:WINDOWSExplorer.EXE</p><p>C:WINDOWSsystem32WTabletWacom_TabletUser.exe</p><p>C:WINDOWSsystem32Wacom_Tablet.exe</p><p>C:Program FilesIntelWirelessBinifrmewrk.exe</p><p>C:WINDOWSsystem32TPSBattM.exe</p><p>C:Program FilesiTunesiTunesHelper.exe</p><p>C:Program FilesJavajre1.6.0_03binjusched.exe</p><p>C:Program FilesZone LabsZoneAlarmzlclient.exe</p><p>C:Program FilesHPHP Software UpdateHPWuSchd2.exe</p><p>C:Program FilesDAEMON Toolsdaemon.exe</p><p>C:PROGRA~1IntelWirelessBin1XConfig.exe</p><p>C:WINDOWSsystem32ctfmon.exe</p><p>C:Program FilesHPDigital Imagingbinhpqtra08.exe</p><p>C:WINDOWSsystem32RAMASST.exe</p><p>C:Program FilesiPodbiniPodService.exe</p><p>C:TOSHIBAIVPISMivpsvmgr.exe</p><p>C:Program FilesMediaMonkeyMediaMonkey.exe</p><p>C:Program FilesBitTorrentbittorrent.exe</p><p>C:Program FilesMozilla Firefoxfirefox.exe</p><p>G:smss.exe **Here it is&#8230; strange though, seeing as G was assigned to my USB drive which I&#8217;ve already removed.**</p><p>G:smss.exe</p><p>C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe</p><p>C:WINDOWSSystem32svchost.exe</p><p>C:Program FilesDownloadsaaw2007.exe</p><p>C:WINDOWSsystem32MSIEXEC.exe</p><p>C:WINDOWSSystem32msiexec.exe</p><p>C:WINDOWSSystem32MsiExec.exe</p><p>C:Program FilesSpybot &#8211; Search &amp; DestroySpybotSD.exe</p><p>C:Program FilesSpybot &#8211; Search &amp; DestroyTeaTimer.exe</p><p>C:Program FilesHijackThis!HiJackThis.exe</p><p>R1 &#8211; HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local</p><p>F2 &#8211; REG:system.ini: Shell=explorer.exe, killer.exe</p><p>O2 &#8211; BHO: Adobe PDF Reader Link Helper &#8211; {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} &#8211; C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll</p><p>O2 &#8211; BHO: Spybot-S&amp;D IE Protection &#8211; {53707962-6F74-2D53-2644-206D7942484F} &#8211; C:PROGRA~1SPYBOT~1SDHelper.dll</p><p>O2 &#8211; BHO: Cole2k Media Toolbar Helper &#8211; {5499BCB1-5641-4A4C-9F75-462D4D8D0DA0} &#8211; C:Program FilesCole2k Media Toolbarv3.2.0.0Cole2k_Media_Toolbar.dll</p><p>O2 &#8211; BHO: Groove GFS Browser Helper &#8211; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} &#8211; C:PROGRA~1MICROS~2Office12GRA8E1~1.DLL</p><p>O2 &#8211; BHO: SSVHelper Class &#8211; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} &#8211; C:Program FilesJavajre1.6.0_03binssv.dll</p><p>O3 &#8211; Toolbar: Cole2k Media Toolbar &#8211; {8AE33802-00D3-4F1B-B5C7-6FEE34E402CE} &#8211; C:Program FilesCole2k Media Toolbarv3.2.0.0Cole2k_Media_Toolbar.dll</p><p>O4 &#8211; HKLM..Run: [IntelWireless] C:Program FilesIntelWirelessBinifrmewrk.exe /tf Intel PROSet/Wireless</p><p>O4 &#8211; HKLM..Run: [PINGER] C:TOSHIBAIVPISMpinger.exe /run</p><p>O4 &#8211; HKLM..Run: [TPSMain] TPSMain.exe</p><p>O4 &#8211; HKLM..Run: [Logitech Utility] Logi_MwX.Exe</p><p>O4 &#8211; HKLM..Run: [Adobe Reader Speed Launcher] &#8220;C:Program FilesAdobeReader 8.0ReaderReader_sl.exe&#8221;</p><p>O4 &#8211; HKLM..Run: [SoundMAX] C:Program FilesAnalog DevicesSoundMAXSmax4.exe /tray</p><p>O4 &#8211; HKLM..Run: [AVG7_CC] C:PROGRA~1GrisoftAVG7avgcc.exe /STARTUP</p><p>O4 &#8211; HKLM..Run: [GrooveMonitor] &#8220;C:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe&#8221;</p><p>O4 &#8211; HKLM..Run: [QuickTime Task] &#8220;C:Program FilesQuickTimeqttask.exe&#8221; -atboottime</p><p>O4 &#8211; HKLM..Run: [iTunesHelper] &#8220;C:Program FilesiTunesiTunesHelper.exe&#8221;</p><p>O4 &#8211; HKLM..Run: [SunJavaUpdateSched] &#8220;C:Program FilesJavajre1.6.0_03binjusched.exe&#8221;</p><p>O4 &#8211; HKLM..Run: [ZoneAlarm Client] &#8220;C:Program FilesZone LabsZoneAlarmzlclient.exe&#8221;</p><p>O4 &#8211; HKLM..Run: [HP Software Update] &#8220;c:Program FilesHPHP Software UpdateHPWuSchd2.exe&#8221;</p><p>O4 &#8211; HKCU..Run: [DAEMON Tools] &#8220;C:Program FilesDAEMON Toolsdaemon.exe&#8221; -lang 1033</p><p>O4 &#8211; HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe</p><p>O4 &#8211; HKCU..Run: [Vidalia] &#8220;C:Program FilesVidaliavidalia.exe&#8221;</p><p>O4 &#8211; HKCU..Run: [BitTorrent] &#8220;C:Program FilesBitTorrentbittorrent.exe&#8221; &#8211;force_start_minimized</p><p>O4 &#8211; HKCU..Run: [DietPower 4.4 Update Setup] C:Documents and SettingsJoel CasimirLocal SettingsApplication Data{5C0E52B3-AD33-4D51-B6BF-5B701DDC6CD8}DietPowerSetup.exe /updatesetup</p><p>O4 &#8211; HKCU..Run: [DietPower 4.4 Update Setup for All Users] C:Documents and SettingsAll UsersApplication Data{5C0E52B3-AD33-4D51-B6BF-5B701DDC6CD8}DietPowerSetup.exe /updatesetup</p><p>O4 &#8211; HKCU..Run: [Runonce] C:WINDOWSsmss.exe</p><p>O4 &#8211; HKCU..Run: [SpybotSD TeaTimer] C:Program FilesSpybot &#8211; Search &amp; DestroyTeaTimer.exe</p><p>O4 &#8211; HKUSS-1-5-19..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User &#8216;LOCAL SERVICE&#8217;)</p><p>O4 &#8211; HKUSS-1-5-20..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User &#8216;NETWORK SERVICE&#8217;)</p><p>O4 &#8211; HKUSS-1-5-18..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User &#8216;SYSTEM&#8217;)</p><p>O4 &#8211; HKUS.DEFAULT..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User &#8216;Default user&#8217;)</p><p>O4 &#8211; Global Startup: HP Digital Imaging Monitor.lnk = C:Program FilesHPDigital Imagingbinhpqtra08.exe</p><p>O4 &#8211; Global Startup: lsass.exe</p><p>O4 &#8211; Global Startup: RAMASST.lnk = C:WINDOWSsystem32RAMASST.exe</p><p>O8 &#8211; Extra context menu item: E&amp;xport to Microsoft Excel &#8211; res://C:PROGRA~1MICROS~2Office12EXCEL.EXE/3000</p><p>O9 &#8211; Extra button: (no name) &#8211; {08B0E5C0-4FCB-11CF-AAA5-00401C608501} &#8211; C:Program FilesJavajre1.6.0_03binssv.dll</p><p>O9 &#8211; Extra &#8216;Tools&#8217; menuitem: Sun Java Console &#8211; {08B0E5C0-4FCB-11CF-AAA5-00401C608501} &#8211; C:Program FilesJavajre1.6.0_03binssv.dll</p><p>O9 &#8211; Extra button: Send to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:PROGRA~1MICROS~2Office12ONBttnIE.dll</p><p>O9 &#8211; Extra &#8216;Tools&#8217; menuitem: S&amp;end to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:PROGRA~1MICROS~2Office12ONBttnIE.dll</p><p>O9 &#8211; Extra button: Research &#8211; {92780B25-18CC-41C8-B9BE-3C9C571A8263} &#8211; C:PROGRA~1MICROS~2Office12REFIEBAR.DLL</p><p>O9 &#8211; Extra button: (no name) &#8211; {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} &#8211; C:PROGRA~1SPYBOT~1SDHelper.dll</p><p>O9 &#8211; Extra &#8216;Tools&#8217; menuitem: Spybot &#8211; Search &amp; Destroy Configuration &#8211; {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} &#8211; C:PROGRA~1SPYBOT~1SDHelper.dll</p><p>O9 &#8211; Extra button: (no name) &#8211; {e2e2dd38-d088-4134-82b7-f2ba38496583} &#8211; C:WINDOWSNetwork Diagnosticxpnetdiag.exe</p><p>O9 &#8211; Extra &#8216;Tools&#8217; menuitem: @xpsp3res.dll,-20001 &#8211; {e2e2dd38-d088-4134-82b7-f2ba38496583} &#8211; C:WINDOWSNetwork Diagnosticxpnetdiag.exe</p><p>O9 &#8211; Extra button: Messenger &#8211; {FB5F1910-F110-11d2-BB9E-00C04F795683} &#8211; C:Program FilesMessengermsmsgs.exe</p><p>O9 &#8211; Extra &#8216;Tools&#8217; menuitem: Windows Messenger &#8211; {FB5F1910-F110-11d2-BB9E-00C04F795683} &#8211; C:Program FilesMessengermsmsgs.exe</p><p>O18 &#8211; Protocol: grooveLocalGWS &#8211; {88FED34C-F0CA-4636-A375-3CB6248B04CD} &#8211; C:PROGRA~1MICROS~2Office12GR99D3~1.DLL</p><p>O23 &#8211; Service: Atheros Configuration Service (ACS) &#8211; Unknown owner &#8211; C:WINDOWSSystem32ACS.exe</p><p>O23 &#8211; Service: Apple Mobile Device &#8211; Apple, Inc. &#8211; C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe</p><p>O23 &#8211; Service: AVG7 Alert Manager Server (Avg7Alrt) &#8211; GRISOFT, s.r.o. &#8211; C:PROGRA~1GrisoftAVG7avgamsvr.exe</p><p>O23 &#8211; Service: AVG7 Update Service (Avg7UpdSvc) &#8211; GRISOFT, s.r.o. &#8211; C:PROGRA~1GrisoftAVG7avgupsvc.exe</p><p>O23 &#8211; Service: AVG E-mail Scanner (AVGEMS) &#8211; GRISOFT, s.r.o. &#8211; C:PROGRA~1GrisoftAVG7avgemc.exe</p><p>O23 &#8211; Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) &#8211; Apple Computer, Inc. &#8211; C:Program FilesBonjourmDNSResponder.exe</p><p>O23 &#8211; Service: ConfigFree Service (CFSvcs) &#8211; TOSHIBA CORPORATION &#8211; C:Program FilesTOSHIBAConfigFreeCFSvcs.exe</p><p>O23 &#8211; Service: DVD-RAM_Service &#8211; Matsubleepa Electric Industrial Co., Ltd. &#8211; C:WINDOWSSystem32DVDRAMSV.exe</p><p>O23 &#8211; Service: EvtEng &#8211; Intel Corporation &#8211; C:Program FilesIntelWirelessBinEvtEng.exe</p><p>O23 &#8211; Service: FLEXnet Licensing Service &#8211; Macrovision Europe Ltd. &#8211; C:Program FilesCommon FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe</p><p>O23 &#8211; Service: Google Updater Service (gusvc) &#8211; Google &#8211; C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe</p><p>O23 &#8211; Service: iPod Service &#8211; Apple Inc. &#8211; C:Program FilesiPodbiniPodService.exe</p><p>O23 &#8211; Service: Pml Driver HPZ12 &#8211; HP &#8211; C:WINDOWSsystem32HPZipm12.exe</p><p>O23 &#8211; Service: RegSrvc &#8211; Intel Corporation &#8211; C:Program FilesIntelWirelessBinRegSrvc.exe</p><p>O23 &#8211; Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) &#8211; CACE Technologies &#8211; C:Program FilesWinPcaprpcapd.exe</p><p>O23 &#8211; Service: Spectrum24 Event Monitor (S24EventMonitor) &#8211; Intel Corporation &#8211; C:Program FilesIntelWirelessBinS24EvMon.exe</p><p>O23 &#8211; Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) &#8211; Analog Devices, Inc. &#8211; C:Program FilesAnalog DevicesSoundMAXSMAgent.exe</p><p>O23 &#8211; Service: TabletServiceWacom &#8211; Wacom Technology, Corp. &#8211; C:WINDOWSsystem32Wacom_Tablet.exe</p><p>O23 &#8211; Service: TOSHIBA Application Service (TAPPSRV) &#8211; TOSHIBA Corp. &#8211; C:Program FilesTOSHIBATOSHIBA AppletTAPPSRV.exe</p><p>O23 &#8211; Service: Tenable Nessus &#8211; Tenable Network Security &#8211; C:Program FilesTenableNessusnessusd.exe</p><p>O23 &#8211; Service: TrueVector Internet Monitor (vsmon) &#8211; Zone Labs, LLC &#8211; C:WINDOWSsystem32ZoneLabsvsmon.exe</p><p><strong>Script file </strong></p><p>[autorun]open=smss.exe</p><p>shellOpenCommand=smss.exe</p><p>shellopenDefault=1</p><p>shellExploreCommand=smss.exe</p><p>shellAutoplaycommand=smss.exe</p><p>Remove Funny UST Scandal.exe system processes:</p><p>Funny UST Scandal.exe</p><p>killer.exe</p><p>xmss.exe</p><p>smss.exe</p><p><strong>drop Files-</strong></p><p>killer.exe (4084 kb) in c:windows</p><p>lsass.exe (3920kb) in c:documents and settingsall usersstart menuprogramsstartup</p><p>smss.exe (4088kb) in all root drives and in c:windows</p><p>autorun.inf (1kb) in all root drives with a script</p><p>Funny UST Scandal.avi.exe (228kb)</p><p><strong>Remove Funny UST Scandal.exe files:</strong></p><p>Funny UST Scandal.avi.exe</p><p>Funny UST Scandal.exe</p><p>killer.exe</p><p>xmss.exe</p><p>smss.exe</p><p>Remove Funny UST Scandal.exe registry values:</p><p>HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerAdvancedFolderHiddenSHOWALL</p><p>CheckedValue 0</p><p>HKCUSoftwareMicrosoftWindowsCurrentVersionRun</p><p>Runonce Windows&gt;smss.exe</p><p><p>Currently pursuing final year B.S.c I.T (Information Technology) in Subbalakshimi Lakshimipathi College of Science, madurai-22.</p></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/funny-scandal-ust-virus/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>list of some Best Antivirus</title><link>http://www.webmasterwidget.com/article/list-of-some-best-antivirus</link> <comments>http://www.webmasterwidget.com/article/list-of-some-best-antivirus#comments</comments> <pubDate>Sun, 14 Mar 2010 13:33:22 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category> <category><![CDATA[All Files And Folders]]></category> <category><![CDATA[Antivirus Norton]]></category> <category><![CDATA[Encrypted Viruses]]></category> <category><![CDATA[Eset Nod32]]></category> <category><![CDATA[Integrity Control]]></category> <category><![CDATA[Norton antivirus]]></category> <category><![CDATA[Virus Protection Solution]]></category> <category><![CDATA[Virus Scanner]]></category> <category><![CDATA[Virus Updates]]></category> <category><![CDATA[Virus Vault]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/list-of-some-best-antivirus</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/list-of-some-best-antivirus'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs2-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis Logs' title='HijackThis Logs' border='0'/></a>See the list of anti-virus which helps make your system more up to date and faster...No related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>Rocks</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p>To protect yourself from viruses that crop up all the time, it’s important to update your antivirus software’s data definition files. Am here posting the list of Some top Anti Virus Programs which are very useful to users.</p><p><strong>AVG Free Edition</strong> – AVG Resident Shield provides real-time protection executions of files and programs. It features a smart e-mail scanner, virus updates and virus vault for secure handling of the files which are infected by viruses. The base version for windows is Free for private and non-commercial use.</p><p><strong>BitDefender Online Scan System</strong> – BitDefender Scan Online scans system as memory, boot sector, all files and folders and also comes with automatic file cleaning option. Overall, it scans for over 70,000+ viruses, worms, trojans and other malicious applications. Inexpensive product received excellent scores in our performance tests, although its scan speed was sluggish.</p><p><strong>McAfee VirusScan for Windows:</strong> This antivirus package detects all virus types, including Word and Excel macros; boot-sector infections; and file, multipartite, stealth, polymorphic, and encrypted viruses.</p><p><strong>Kaspersky Anti-Virus Personal Pro</strong> – A commonly used virus protection solution offering full protection against macro-viruses and unknown viruses. It offers reliable data integrity control and protection of e-mails from viruses.</p><p><strong></p><p>ESET NOD32 Antivirus</strong> – ESET NOD32 Anti-virus is available as an anti-virus for small businesses, individuals and for lar<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs2.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs2.jpg" alt='HijackThis Logs' /></a></div>ge networks. The trialware enables the user to try the application for a period of 30 days.</p><p><strong>avast! Home Edition</strong> – A free antivirus solution for scanning disk, CDs, in E-mail, HTTP, NNTP, IM and P2P.</p><p><strong></p><p>Panda Antivirus Platinum</strong> – A complete virus protection package for home and business users. It comes with an easy installation and automatic protection from latest viruses.</p><p><strong>Norton AntiVirus </strong>– Norton AntiVirus is the most popular and secure virus scanner for checking boot sector records at startup. The live update feature automatically installs new updates for regular protection against viruses.</p><p><strong>HandyBits </strong>– A free for personal use virus â€˜scanner integratorâ€™ with features like auto-search which scans for already installed virus scanner. It scans for files using installed virus scanners there by utilizing the strengths of installed programs.</p><p><strong>HijackThis Software</strong> – HijackThis is a small application for scanning and cleaning spyware, malware infections in computer. It enables the user to save the scan log in a txt file which can be examined later for system security analysis.</p><p>And Here are Some Online ScannersÂ</p><p><strong>Stinger</strong> – A stand-alone application for automatic detection and removal of viruses. It acts as more of an assistance for administrators and is not meant to be a full time anti-virus replacement. It is available as freeware for Windows.</p><p><strong></p><p>Avast! Online Scanner </strong>– An online virus scanner from alwil software for scanning files smaller than 512KB.</p><p><strong>Dr. Web </strong>– Dr. Web is an online scanner for curing system viruses. Users can select viruses from system and can scan selected files.</p><p><strong>BitDefender Online Scan System </strong>– BitDefender Scan Online scans systemâ€™s memory, boot sector, all files and folders and also comes with automatic file cleaning option. Overall, it scans for over 70,000+ viruses, worms, trojans and other malicious applications.</p><p><strong></p><p>ESET Online Scanner</strong> – ESET is a powerful user-friendly scanner for removing malware from userâ€™s computer.</p><p><strong>Free online Trojan Scanner </strong>– An online scanner for detection and removal of Trojan horses.</p><p><strong>F-Secure </strong>– An online virus scanner for detecting and clearing viruses.It supports Windows XP and Windows 2000.</p><p><strong></p><p>Kaspersky Online Scanner </strong>– A fast and effective online scanner for checking individual files, folders, drives or even files related to emails.</p><p><strong></p><p>Mcafee Virusscan Online</strong> – A trusted VirusScan service for search and display of infected files. Once the infected files are displayed McAfee scan provides detailed information about the virus, its type and removal instructions.</p><p><strong></p><p>Symantec Security Check</strong> – An effective online scanner for testing various types of viruses and threats on user computers.</p><p><strong>X-Cleaner Micro Edition </strong>– An online scanner from FaceTime Security Labs for different types of adware, keyloggers, Trojans and many other forms of unwanted software.The offline version includes a trial version of X-Cleaner and a deluxe version with a wide range of cleaning solutions.</p><p>Learn more about to anti viruses:</p><p><p>Rocks</p></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/list-of-some-best-antivirus/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Is Your PC Running Slow? Stop the Problem Today!</title><link>http://www.webmasterwidget.com/article/is-your-pc-running-slow-stop-the-problem-today</link> <comments>http://www.webmasterwidget.com/article/is-your-pc-running-slow-stop-the-problem-today#comments</comments> <pubDate>Sat, 13 Mar 2010 16:58:25 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/is-your-pc-running-slow-stop-the-problem-today</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/is-your-pc-running-slow-stop-the-problem-today'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs7-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis_Logs' title='HijackThis_Logs' border='0'/></a>Tired of complaining about loading startup programs that seem to take forever to open? Surfed the Web but you couldn't even make it to the login page without slowing your system down? These are symptoms of a PC running slow, but it doesn't mean that it is already the end...No related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>Kelly Purden</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p>Tired of complaining about loading startup programs that seem to take forever to open? Surfed the Web but you couldn&#8217;t even make it to the login page without slowing your system down? These are symptoms of a PC running slow, but it doesn&#8217;t mean that it is already the end of the world. With a little maintenance procedure and a few good practices to follow in installing programs, you can stop the problem today.</p><p>If your computer finds it very slow to boot up, there might be some startup issues that we need to take care first. Learning how to manage startup processes can solve a case of congested traffic of programs, the most probable cause of a PC running slow. Start by typing &#8220;msconfig&#8221; in the &#8216;Run&#8217; command. Next, deselect all unimportant processes, such as music drivers, games, or adwares that do not need to start right away. This will give extra speed in return, and perform a reboot to see if it works. Get rid of a PC running slow by keeping programs at a manageable number-if you don&#8217;t need it, trash it. Give your hard disk a favor by freeing some disk space which in turn maximizes your system&#8217;s efficiency and minimizes RAM requirements due to a fewer number of processes, thus making your computer run faster.</p><p>A PC running slow can be best prevented by performing a few maintenance actions for your computer. First, there is a Disk Cleanup feature in Windows which fetches the name and size of files that may be deleted without harming your system. You can find it at Accessories, under the System Tools.<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs7.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs7.jpg" title='HijackThis_Logs' alt='HijackThis_Logs' /></a></div> Next, another service under the System Tools is the Disk Defragmenter, which enables you to speed up computer processes by defragging your system, thus making it easier for your computer to fetch the needed information as it compresses and reassembles fragmented files. Make it a habit to empty your Recycle Bin, and to clear the cache. Temporary internet files and cookies are sometimes the cause of a PC running slow especially in internet browsing. It becomes very annoying when these add-ons eat up your memory cache, thus making your computer respond very slowly. Go to &#8216;Internet Options&#8217; and delete these files, and see how your computer improves the next time you open the Web.</p><p>Finally, here is a warning in installing applications: repeated installations of programs congest your Registry, thus compromising your PC performance. A PC running slow can be avoided by refraining from constantly installing and uninstalling applications, as it clogs your Registry with unnecessary entries. Registry entries of an uninstalled program should be deleted in order to optimize your computer speed. You can cure the problem of having a PC running slow by running a registry fix in your system. There a lot of free software in the Internet that can help you spot unwanted registry entries and programs. Run the free software (such as HijackThis) and it will give you a log file that enumerates the entire processes running in the system. You can quit these processes to give your PC a higher amount of available RAM, thus boosting your speed up and optimizing your system operations.</p><p>Do you ask yourself why is my <a
target="_new" href="http://www.ComputerProblemFix.com">pc running slow</a>? You can learn the exact problem and FIX it today at <a
target="_blank" href="http://www.ComputerProblemFix.com">www.ComputerProblemFix.com</a></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/is-your-pc-running-slow-stop-the-problem-today/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>How to Use Free Registry Cleaners to Free your Pc</title><link>http://www.webmasterwidget.com/article/how-to-use-free-registry-cleaners-to-free-your-pc</link> <comments>http://www.webmasterwidget.com/article/how-to-use-free-registry-cleaners-to-free-your-pc#comments</comments> <pubDate>Sat, 13 Mar 2010 16:25:21 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/how-to-use-free-registry-cleaners-to-free-your-pc</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/how-to-use-free-registry-cleaners-to-free-your-pc'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs6-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis_Logs' title='HijackThis_Logs' border='0'/></a>How To Use Free Registry Cleaners To Free Your PC Free Registry Cleaners are a must have tool,this i got to know when i just &#34;bought&#34; f.e.a.r and it had some strange lock ups and crashes on random pointsNo related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>sebastian foss</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p>How To Use Free Registry Cleaners To Free Your PC Free Registry Cleaners are a must have tool,this i got to know when i just &#8220;bought&#8221; f.e.a.r and it had some strange lock ups and crashes on random points .. i had 2.8 ghz , 512 mb ram and geforce 7600 gs (256 mb) , and when i tried to use another video card it worked just fine .. as i had this annoing bug i decided to use a Free Registry Cleaners product</p><p>Scan And Fix Errors In Windows Registry</p><p>scanandfixerrors.blogspot.com Just in case you Suspect any annoying Bug, please reboot your computer in Safe Mode by doing the following :</p><p>Restart your computer</p><p>After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;</p><p>Instead of Windows loading as normal, a menu with options should appear;</p><p>Select the first option, to run Windows in Safe Mode, then press &#8220;Enter&#8221;.</p><p>Choose your usual account.</p><p>Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd</p><p>Select option #2 &#8211; Clean by typing 2 and press &#8220;Enter&#8221; to delete infected files.</p><p>You will be prompted: &#8220;Free Registry Cleaners &#8211; Do you want to clean the registry?&#8221;; answer &#8220;Yes&#8221; by typing Y and press &#8220;Enter&#8221; in order to remove the Desktop background and clean registry keys associated with the infection.</p><p>The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer &#8220;<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs6.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs6.jpg" title='HijackThis_Logs' alt='HijackThis_Logs' /></a></div>Yes&#8221; by typing Y and press &#8220;Enter&#8221;.</p><p>The tool may need to restart your computer to finish the cleaning process; if it doesn&#8217;t, please restart it into Normal Windows.</p><p>A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply along with a new HijackThis log.</p><p>The report can also be found at the root of the system drive, usually at C:rapport.txt</p><p>Scan And Fix Errors In Windows Registry</p><p>scanandfixerrors.blogspot.com !Don&#8217;t spend countless hours searching the web for instructions on how to resolve PC errors or waste your money on computer repairs and calls overseas to help centers!</p><p><p>Cheapest Long Distance Telephone Services Available Here&#8230;<br
/> <a
target="_new" href="http://pennyrates.blogspot.com">http://pennyrates.blogspot.com</a></p></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/how-to-use-free-registry-cleaners-to-free-your-pc/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>What is Windows Log Files?</title><link>http://www.webmasterwidget.com/article/what-is-windows-log-files</link> <comments>http://www.webmasterwidget.com/article/what-is-windows-log-files#comments</comments> <pubDate>Mon, 15 Feb 2010 23:43:03 +0000</pubDate> <dc:creator></dc:creator> <category><![CDATA[HijackThis Logs]]></category><guid
isPermaLink="false">http://www.webmasterwidget.com/article/what-is-windows-log-files</guid> <description><![CDATA[<a
href='http://www.webmasterwidget.com/article/what-is-windows-log-files'><img
style='margin-right:10px;width:60px' src='http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs-60x60.jpg' class='imgtfe' hspace='5' align='left' width='60' alt='HijackThis Logs' title='HijackThis Logs' border='0'/></a>Windows log files are produced by the system to aid w/ troubleshooting potential problems, as they provide reports of everything your system is experiencing, be it protection issues or something else.No related posts.]]></description> <content:encoded><![CDATA[<p><em>By: <b>Jameson Meer</b></em><div
class="ad" style="float:left; padding: 12px"><script type="text/javascript"><!--
google_ad_client = "pub-0091919875977192";
/* 336x280, skapad 2011-04-06 */
google_ad_slot = "0402496911";
google_ad_width = 336;
google_ad_height = 280;
//-->
</script><script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><p>Windows log files are produced by the system to aid w/ troubleshooting potential problems, as they provide reports of everything your system is experiencing, be it protection issues or something else. The various types of log files are comprehensible by certain permission groups. For instance, the protection event log is able to be comprehended by the administrator. Logs made by some applications, like log information software like “HijackThis”, are capable to be comprehended by all users.</p><p>What can I utilize to view these log Files?</p><p>All of the different logs that Windows involuntarily produce may be comprehended by the “Event Viewer” software. This software is easily used over the control panel. For methods on how to run this program, the following are instructions:</p><p>1. Start by pushing the “Start” key that can be seen at the bottom left side of your screen.</p><p>2. After the menu pops up, find and click “Control Panel”. This will open the Control Panel in a new window.</p><p>3. On the left side of the menu, click “Switch to Classic View”.</p><p>4. Click the “Administrative Tools” icon 2 times.</p><p>5. Once you are in the folder of Administrative Tools, click the “Event Viewer” icon twice. This will run the Event viewer software.</p><p>Here you can view all kinds of different logs regarding your computer and its status. Several different choices are as follows:</p><p>• Security</p><p>• Application</p><p>• Internet Explorer</p><p>• System</p><p>Each of these comprise their logs and data report<div
class="new_content"><a
href="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs.jpg"><img
src="http://dgtgjmvkdtza0.cloudfront.net/wp-content/uploads/cc/HijackThis_Logs.jpg" alt='HijackThis Logs' /></a></div>ing, and are good for locating potential troubles your PC may be silently experiencing, causing your PC to reduce speed. Going over your choices and checking for stability is a good way to keep your PC problem free and clean.</p><p>Another method to comprehend the log files is by making use of a built in plain text viewer, like Wndows’ Word pad. Directions on how to do these things are as follows:</p><p>1. Start by pushing the “Start” button at the bottom left side of your screen.</p><p>2. Then click All Program &#8211; Accessories &#8211; WordPad</p><p>3. After you have opened WordPad, click “File” that can be seen at the upper left side.</p><p>4. Then click “Open”</p><p>5. This will bring a “select file box”. Here you will ask to navigate to the file you like to open. Once you have found it, click the file and run it.</p><p>6. WordPad will show the contents of file. If it looks distorted at anytime, it is because it was not meant to be comprehended with WordPad and it maybe is not a system file.</p><p><p>Hopefully this article has answered your questions about <a
href="http://www.symatech.net/read-windows-log-files">WindowsLogFiles</a>. If you like to try some and see what you think, I suggest www.windowslogfiles.com for WindowsLogFiles. www.windowslogfiles.com provides more ideas about <a
href="http://www.windowslogfiles.com/">WindowsLogFiles</a>.</p></p><p>No related posts.</p>]]></content:encoded> <wfw:commentRss>http://www.webmasterwidget.com/article/what-is-windows-log-files/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Content Delivery Network via Amazon Web Services: CloudFront: dgtgjmvkdtza0.cloudfront.net

Served from: www.webmasterwidget.com @ 2012-02-08 16:35:12 -->
