

Start HijackThis, close all open windows leaving only HijackThis running. If you have any queries about the process or just general questions, just ask. You may also like to save these instructions in word/notepad to the desktop where they can be easily found for the same reasons as above.Ī print out of the instructions would be a good reference to make sure you don't yet lost.Īlso, it is important that you complete the instructions in the right order, and also that you don't miss any steps out! This will be useful as there is a possibility some of the instructions will need to be carried out where internet access is not available. It is a good idea to print off these instructions: The p2pnetworking.exe file is related to the W32/Rbot-AFL worm. My name is David, I will be helping you with your log today. Hello there and welcome to Bleeping Computer's security forum. C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. C:\Program Files\iPod\bin\iPodService.exe O23 - Service: iPodService - Apple Computer, Inc. O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O20 - Winlogon Notify: winjgf32 - C:\WINDOWS\SYSTEM32\winjgf32.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O2 - BHO: Trend Micro Antifraud Toolbar - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSIE: Internet Explorer v6.00 SP2 (.2180)Ĭ:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exeĬ:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXEĬ:\PROGRA~1\TRENDM~1\INTERN~1\PCCTLCOM.EXEĬ:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exeĬ:\PROGRA~1\TRENDM~1\INTERN~1\TMPROXY.EXEĬ:\Program Files\Common Files\Real\Update_OB\realsched.exeĬ:\Program Files\Synaptics\SynTP\SynTPLpr.exeĬ:\Program Files\Synaptics\SynTP\SynTPEnh.exeĬ:\Program Files\Java\jre1.5.0_06\bin\jusched.exeĬ:\Program Files\Trend Micro\Internet Security 2006\pccguide.exeĬ:\Program Files\Launch Manager\QtZgAcer.EXEĬ:\Program Files\iPod\bin\iPodService.exeĬ:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exeĬ:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\TASKMGR.EXEĬ:\Program Files\acer\eRecovery\Monitor.exeĬ:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXEĬ:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPLAYER.EXEĬ:\Program Files\HijackThis\HijackThis.exe I used HijackThis and this is the log file from it: Also, I can't seem to access my Windows Task Manager either - could this virus also affected this? I can't remember the name of the virus - I'll post it up once I find out. I think it's affecting Bearshare which I have on my computer because whenever I tried to close the program, it instantly restarts up again. I did a quick search over the net and found that it could be potentially dangerous. I recently found a virus or something on my laptop - the filename "p2pnetworking.exe".
