This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Malware Removal Forums

Help with Antivirus Action

1 min read

This thread's last reply is from October 18, 2010, 4:15 AM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

Antivirus Action:::: So its a virus that pretends that it is a virus scanner went through many tutorials and the program finally calmed down the problem is that I'm not sure that it is completely gone so I did a hijackthis scan but have no idea what to remove, or if it is completely clean plus is winwarepro and localhost malware? because thats what I'm understanding but I don't want to just guess and end up removing something that shouldn't be messed around with. So please help me!! :?
1	0.0%	O1	::1 localhost
2 0.0% O1 91.212.127.226 winwarepro.com
3 0.0% O1 91.212.127.226 www.winwarepro.com
4 0.0% O1 91.212.127.226 winwarepro.microsoft.com
43 0.0% O8 E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
54 0.0% P01 C:\WINDOWS\Explorer.EXE
55 0.0% P01 C:\WINDOWS\system32\svchost.exe
56 0.0% P01 C:\WINDOWS\system32\lsass.exe
57 0.0% P01 C:\WINDOWS\system32\winlogon.exe
58 0.0% P01 C:\WINDOWS\system32\services.exe
59 0.0% P01 C:\WINDOWS\System32\smss.exe
60 0.0% P01 C:\WINDOWS\system32\spoolsv.exe
61 0.0% P01 C:\WINDOWS\system32\ctfmon.exe
62 0.0% P01 C:\Program Files\Internet Explorer\iexplore.exe
63 0.0% P01 C:\Program Files\iPod\bin\iPodService.exe
64 0.0% P01 C:\Program Files\iTunes\iTunesHelper.exe
65 0.0% P01 C:\WINDOWS\system32\taskmgr.exe
66 0.0% P01 C:\Program Files\Canon\CAL\CALMAIN.exe
67 0.0% P01 C:\Program Files\Bonjour\mDNSResponder.exe
68 0.0% P01 C:\PROGRA~1\Yahoo!\browser\ycommon.exe
69 0.0% P01 C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\2ML7NIZI\HiJackThis[1].exe
70 0.0% P01 c:\Program Files\Rogers\Update Manager\RogersUpdateManager.exe
71 0.0% P01 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
72 0.0% P01 c:\program files\Rogers\SelfHealing\RogersSelfHelpService.exe
73 0.0% P01 C:\WINDOWS\system32\lxdxcoms.exe
74 0.0% P01 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxdxserv.exe
75 0.0% P01 C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
76 0.0% R0 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
77 0.0% R0 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
78 0.0% R1 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
79 0.0% R1 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
80 0.0% R1 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
81 0.0% R1 HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://ca.red.clientapps.yahoo.com/customize/rogers/defaults/su/*http://www.yahoo.com
Please familiarize yourself with the forum rules: >Forum Posting Rules - Please Read<

In order for us to help you it is necessary that you provide us with a HijackThis log. Please follow the guideline at the link below to start a new topic and post your HijackThis log by pasting it into your post. Do not utilize attachments.

This topic is now closed. Please start a new topic by following the HijackThis Guideline posted here: >Guideline for posting your HijackThis log<