Virus Experts Chalanachithram.com | Topics | Search
Hide Clipart | Log Out | Register | Edit Profile

Last 30 mins | 1 | 2 | 4 hours     Last 1 | 7 Days

Chalanachithram.com DB » TF Industry related » Archive through August 28, 2011 » Virus Experts « Previous Next »

Author Message
Top of pagePrevious messageNext messageBottom of page Link to this message

New_user
Hero
Username: New_user

Post Number: 15649
Registered: 02-2008
Posted From: 170.232.128.10

Rating: N/A
Votes: 0 (Vote!)

Posted on Saturday, August 27, 2011 - 12:46 am:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

STAA meeda oka kannesi unchandi. Last week kondam anukuni, ee year ki vaddu ani aaga. Excellent prospects unnayi. Retract ayithe thappakunda konochchu.
Dear Mr.Manmohan Ji,

Rajiv hatya case lo LTTE valla painaa vicharana 15 yellu pattindhi..
Naa koduku case lo enduku 15 nelallone poorthi jesaaru vicharana ? endukanta speed ?

- Itlu KASAB gaadi AMMA
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1220
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Saturday, August 27, 2011 - 12:26 am:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)


New_user:




thanks, will try - today Sandstorm,EDAP,MAKO,ISRG,ATEC,ARAY all picked up..
Top of pagePrevious messageNext messageBottom of page Link to this message

New_user
Hero
Username: New_user

Post Number: 15648
Registered: 02-2008
Posted From: 170.232.128.10

Rating: N/A
Votes: 0 (Vote!)

Posted on Saturday, August 27, 2011 - 12:22 am:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

EK

NitroPDF reader use cheyyandi.
Dear Mr.Manmohan Ji,

Rajiv hatya case lo LTTE valla painaa vicharana 15 yellu pattindhi..
Naa koduku case lo enduku 15 nelallone poorthi jesaaru vicharana ? endukanta speed ?

- Itlu KASAB gaadi AMMA
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1211
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:46 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

Got rid of the Ask toolbar from control panel - it comes through Foxit Reader, will keep an eye. Y'day a friend sent a PDF file, which I opened. Since then, system is behaving strange. definitely something happened. will see a couple of days and reinstall from DVD.
Top of pagePrevious messageNext messageBottom of page Link to this message

Kuyyo_morro
Side Hero
Username: Kuyyo_morro

Post Number: 2592
Registered: 02-2011
Posted From: 99.32.148.40

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:35 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)


Entikaburlu:

ante, mee lekkalo, all clear yena??


all clear.
Top of pagePrevious messageNext messageBottom of page Link to this message

Kuyyo_morro
Side Hero
Username: Kuyyo_morro

Post Number: 2591
Registered: 02-2011
Posted From: 99.32.148.40

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:35 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)


Entikaburlu:


this is quite pesky - keeps coming back


control panel through chesina kuda?
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1209
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:35 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

ante, mee lekkalo, all clear yena??
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1208
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:34 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

>>C:\Program Files\COMODO\COMODO Internet Security\cfp.exe

idi nenu cheside..

>>Next is uninstall ask.com toolbar.

this is quite pesky - keeps coming back

>>Next thing, check your name in the files while posting in public forums

just saw that.. manalni evadu pattinchukuntadu saar..
Top of pagePrevious messageNext messageBottom of page Link to this message

Kuyyo_morro
Side Hero
Username: Kuyyo_morro

Post Number: 2589
Registered: 02-2011
Posted From: 99.32.148.40

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:26 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

C:\Program Files\COMODO\COMODO Internet Security\cfp.exe

Adi meeru install chesukunda. Antivirus/firewall thing.

Next is uninstall ask.com toolbar.

Next thing, check your name in the files while posting in public forums :-)
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1206
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:18 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

Thanks for looking KM!

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:18:09 PM, on 8/26/2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16839)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SOUNDMAN.EXE
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\explorer.exe
C:\Users\srini\Downloads\HijackThis.exe
C:\Windows\system32\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?gcht=HC&o=101706&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Foxit PDF Creator Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\srini\AppData\Local\Google\Update\GoogleUpdate.exe " /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O17 - HKLM\System\CCS\Services\Tcpip\..{9D24309C-988E-438F-A9DC-40 4D75429647}: NameServer = 8.8.8.8,8.8.4.4
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

--
End of file - 3095 bytes
Top of pagePrevious messageNext messageBottom of page Link to this message

Kuyyo_morro
Side Hero
Username: Kuyyo_morro

Post Number: 2587
Registered: 02-2011
Posted From: 99.32.148.40

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:13 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

Run Hijack this and post the report here.

http://free.antivirus.com/hijackthis/
Top of pagePrevious messageNext messageBottom of page Link to this message

Entikaburlu
Comedian
Username: Entikaburlu

Post Number: 1205
Registered: 07-2011
Posted From: 67.247.83.224

Rating: N/A
Votes: 0 (Vote!)

Posted on Friday, August 26, 2011 - 11:09 pm:   Insert Quote Edit PostDelete PostPrint Post   Move Post (Moderator/Admin Only)Ban Poster IP (Moderator/Admin only)

Guys,

I have a feeling my screen and keyboard are watched by another user via RDT. How do I know/prevent that? I am talking about Win 7.

Add Your Message Here
Post:
Bold text Italics Underline Create a hyperlink Insert a clipart image HASH(0x91c7648){Movie Clipart}
Show / Hide regular icons selection options

Click on following links to open cliparts by Alphabetical Order

 A   B   C   D   E   F   G   H   I   J   K   L   M  

 N   O   P   Q   R   S   T   U   V   W   X   Y   Z  

Show / Hide Filmy icons selection options

Click on following links to open cliparts by Alphabetical Order

 A   B   C   D   E   F   G   H   I   J   K   L   M  

 N   O   P   Q   R   S   T   U   V   W   X   Y   Z  


Username: Posting Information:
This is a public posting area. Enter your username and password if you have an account. Otherwise, enter your full name as your username and leave the password blank. Your e-mail address is optional.
Password:
E-mail:
Options: Enable HTML code in message
Automatically activate URLs in message
Action: