<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2" -->
<rss version="2.0">
    <channel>
        <title>Lowyat.NET: Latest topics by turk-s-</title>
        <description></description>
        <link>http://forum.lowyat.net/</link>
        <lastBuildDate>Wed, 17 Jun 2026 13:25:39 +0800</lastBuildDate>
        <generator>FeedCreator 1.7.2</generator>
        <item>
            <title>virus/trojan whatever</title>
            <link>http://forum.lowyat.net/topic/670909</link>
            <description>i update my virus database for nod32 still can&amp;#39;t detect the virus...&lt;br /&gt;the virus come from my friend thumbdrive ,&lt;br /&gt;here the hijackthis log &lt;br /&gt;Logfile of HijackThis v1.99.1&lt;br /&gt;Scan saved at 5:05:15 PM, on 4/10/2008&lt;br /&gt;Platform: Windows XP SP2 (WinNT 5.01.2600)&lt;br /&gt;MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)&lt;br /&gt;&lt;br /&gt;Running processes:&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;smss.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;winlogon.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;services.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;lsass.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;spoolsv.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;bgsvcgen.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;WIDCOMM&amp;#092;Bluetooth Software&amp;#092;bin&amp;#092;btwdins.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Eset&amp;#092;nod32krn.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Analog Devices&amp;#092;SoundMAX&amp;#092;SMAgent.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;Explorer.EXE&lt;br /&gt;C:&amp;#092;windows&amp;#092;system32&amp;#092;V3-Force.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Eset&amp;#092;nod32kui.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;ctfmon.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;WIDCOMM&amp;#092;Bluetooth Software&amp;#092;BTTray.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;WL230USB Wireless B+G Utility&amp;#092;WLANUTL.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Rainlendar&amp;#092;Rainlendar.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;BricoPacks&amp;#092;Vista Inspirat&amp;#092;YzShadow&amp;#092;YzShadow.exe&lt;br /&gt;C:&amp;#092;PROGRA~1&amp;#092;WIDCOMM&amp;#092;BLUETO~1&amp;#092;BTSTAC~1.EXE&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Mozilla Firefox&amp;#092;firefox.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;mspaint.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;svchost.exe&lt;br /&gt;D:&amp;#092;HijackThis&amp;#092;HijackThis.exe&lt;br /&gt;&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [IMJPMIG8.1] &amp;quot;C:&amp;#092;WINDOWS&amp;#092;IME&amp;#092;imjp8_1&amp;#092;IMJPMIG.EXE&amp;quot; /Spoil /RemAdvDef /Migration32&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [PHIME2002ASync] C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;IME&amp;#092;TINTLGNT&amp;#092;TINTSETP.EXE /SYNC&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [PHIME2002A] C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;IME&amp;#092;TINTLGNT&amp;#092;TINTSETP.EXE /IMEName&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [NvCplDaemon] RUNDLL32.EXE C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;NvCpl.dll,NvStartup&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [nwiz] nwiz.exe /install&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [NvMediaCenter] RUNDLL32.EXE C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;NvMcTray.dll,NvTaskbarInit&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [nod32kui] &amp;quot;C:&amp;#092;Program Files&amp;#092;Eset&amp;#092;nod32kui.exe&amp;quot; /WAITSERVICE&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [ctfmon.exe] C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;ctfmon.exe&lt;br /&gt;O4 - Startup: Shortcut to Rainlendar.lnk = C:&amp;#092;Program Files&amp;#092;Rainlendar&amp;#092;Rainlendar.exe&lt;br /&gt;O4 - Startup: Y&amp;#39;z Shadow.lnk = C:&amp;#092;WINDOWS&amp;#092;BricoPacks&amp;#092;Vista Inspirat&amp;#092;YzShadow&amp;#092;YzShadow.exe&lt;br /&gt;O4 - Global Startup: Bluetooth.lnk = ?&lt;br /&gt;O4 - Global Startup: WL230USB Wireless B+G Utility.lnk = ?&lt;br /&gt;O7 - HKCU&amp;#092;Software&amp;#092;Microsoft&amp;#092;Windows&amp;#092;CurrentVersion&amp;#092;Policies&amp;#092;System, DisableRegedit=1&lt;br /&gt;O8 - Extra context menu item: Download All by FlashGet - C:&amp;#092;Program Files&amp;#092;FlashGet&amp;#092;jc_all.htm&lt;br /&gt;O8 - Extra context menu item: Download using FlashGet - C:&amp;#092;Program Files&amp;#092;FlashGet&amp;#092;jc_link.htm&lt;br /&gt;O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:&amp;#092;Program Files&amp;#092;WIDCOMM&amp;#092;Bluetooth Software&amp;#092;btsendto_ie.htm&lt;br /&gt;O9 - Extra &amp;#39;Tools&amp;#39; menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:&amp;#092;Program Files&amp;#092;WIDCOMM&amp;#092;Bluetooth Software&amp;#092;btsendto_ie.htm&lt;br /&gt;O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:&amp;#092;PROGRA~1&amp;#092;FlashGet&amp;#092;flashget.exe&lt;br /&gt;O9 - Extra &amp;#39;Tools&amp;#39; menuitem: &amp;amp;FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:&amp;#092;PROGRA~1&amp;#092;FlashGet&amp;#092;flashget.exe&lt;br /&gt;O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&amp;#092;Program Files&amp;#092;Messenger&amp;#092;msmsgs.exe&lt;br /&gt;O9 - Extra &amp;#39;Tools&amp;#39; menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&amp;#092;Program Files&amp;#092;Messenger&amp;#092;msmsgs.exe&lt;br /&gt;O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:&amp;#092;PROGRA~1&amp;#092;WI1F86~1&amp;#092;MESSEN~1&amp;#092;MSGRAP~1.DLL&lt;br /&gt;O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:&amp;#092;PROGRA~1&amp;#092;WI1F86~1&amp;#092;MESSEN~1&amp;#092;MSGRAP~1.DLL&lt;br /&gt;O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;WPDShServiceObj.dll&lt;br /&gt;O23 - Service: B&amp;#39;s Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;bgsvcgen.exe&lt;br /&gt;O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:&amp;#092;Program Files&amp;#092;WIDCOMM&amp;#092;Bluetooth Software&amp;#092;bin&amp;#092;btwdins.exe&lt;br /&gt;O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset  - C:&amp;#092;Program Files&amp;#092;Eset&amp;#092;nod32krn.exe&lt;br /&gt;O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;nvsvc32.exe&lt;br /&gt;O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:&amp;#092;Program Files&amp;#092;Analog Devices&amp;#092;SoundMAX&amp;#092;SMAgent.exe&lt;br /&gt;&lt;br /&gt;and the screenshot got 1 &amp;quot;51&amp;quot; trayicon ,double click on it will pop up mirc window(i didn&amp;#39;t install any mirc) , comfirm its virus/trojan  ,&lt;br /&gt;now my pc can&amp;#39;t use registry , seach , task manager ......&lt;br /&gt;and i wonder why my hijackthis unable to see &amp;quot;C:&amp;#092;windows&amp;#092;system32&amp;#092;V3-Force.exe&amp;quot; but able to see it with log file , and i can&amp;#39;t disable it with hijackthis because its not in the list</description>
            <author>turk-s-</author>
            <category>Technical Support</category>
            <pubDate>Thu, 10 Apr 2008 17:14:36 +0800</pubDate>
        </item>
    </channel>
</rss>
