![]() O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe ![]() O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C:\Program Files\Dantz\Retrospect\retrorun.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe ![]() O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O2 - BHO: Adobe PDF Reader Link Helper - C:\WINDOWS\system32\WPDShServiceObj.dll R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1į2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\ntos.exe, R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = MSIE: Internet Explorer v6.00 SP2 (.2180)Ĭ:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeĬ:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeĬ:\Program Files\Creative\Sound Blaster Live! 24-bit\Surround Mixer\CTSysVol.exeĬ:\Program Files\Common Files\Symantec Shared\ccApp.exeĬ:\Program Files\Common Files\Real\Update_OB\realsched.exeĬ:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exeĬ:\Program Files\Common Files\InstallShield\UpdateService\issch.exeĬ:\Program Files\MUSICMATCH\Musicmatch Jukebox\mim.exeĬ:\Program Files\Symantec AntiVirus\DefWatch.exeĬ:\Program Files\ewido anti-spyware 4.0\guard.exeĬ:\Program Files\Intel\Intel Application Accelerator\iaantmon.exeĬ:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXEĬ:\Program Files\Dantz\Retrospect\retrorun.exeĬ:\Program Files\Analog Devices\SoundMAX\spkrmon.exeĬ:\Program Files\Symantec AntiVirus\Rtvscan.exeĬ:\Program Files\Viewpoint\Common\ViewpointService.exeĬ:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exeĬ:\Program Files\Internet Explorer\iexplore.exeĬ:\Documents and Settings\User\My Documents\Other Tools\HijackThis.exe The file oringinated in C:\WINDOWS\system32\. I disabled system restored, updated virus definitions, and did a full system scan under safe mode. ![]() Wanted to know how to remove Trojan.Goldun from my computer.
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |