TheWarCenter
March 15, 2010, 12:20:03 PM*

Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News:
Advanced search  
Pages: [1]   Go Down
Print
Author Topic: Zango?  (Read 232 times)
0 Members and 1 Guest are viewing this topic.
StorminNormin
Probe


Warning: 0
Offline Offline

Posts: 3



« on: September 11, 2009, 03:53:11 PM »

The other day my brother tried to download this, http://www.dragonballonlinegame.net/. It came with some program called Zango. I used my anti virus and removed Zango but now my computer is constantly working overtime, the fans always on full blast and the computer is always super hot and it wasnt like this before. so I think it may have left something on my computer that my anti virus did not get. I used Malware sens i saw your highly recommend it and here is the hijack log.


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:52:10 PM, on 9/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16876)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\AppleOSSMgr.exe
C:\WINDOWS\system32\AppleTimeSrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Documents and Settings\Ryan Storment\Local Settings\Application Data\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trillian\trillian.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?o=13920&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ddoctorv2] "C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Ryan Storment\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [AROReminder] C:\Program Files\Advanced Registry Optimizer\aro.exe -rem
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{2E244FD0-ED57-418A-800E-C4920F33C015}: NameServer = 192.168.2.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Apple OS Switch Manager (AppleOSSMgr) - Unknown owner - C:\WINDOWS\system32\AppleOSSMgr.exe
O23 - Service: Apple Time Service (AppleTimeSrv) - Apple Inc. - C:\WINDOWS\system32\AppleTimeSrv.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe

--
End of file - 5557 bytes
Logged
Avohir
Modders
Colossus
*

Warning: 0
Offline Offline

Posts: 6520




Ballo
« Reply #1 on: September 11, 2009, 04:03:51 PM »

have you looked in task manager to see if any particular process is hogging the CPU?
Logged

Lightning's Blade (H) - Entropy

Got computer problems? The doctor is in.
StorminNormin
Probe


Warning: 0
Offline Offline

Posts: 3



« Reply #2 on: September 11, 2009, 05:19:20 PM »

yea, it seems like its always running at 50-75% cpu usage even when theres nothing open. I dont know what the computer use to run at...
Logged
Avohir
Modders
Colossus
*

Warning: 0
Offline Offline

Posts: 6520




Ballo
« Reply #3 on: September 11, 2009, 05:29:17 PM »

which process is using the CPU?
Logged

Lightning's Blade (H) - Entropy

Got computer problems? The doctor is in.
StorminNormin
Probe


Warning: 0
Offline Offline

Posts: 3



« Reply #4 on: September 11, 2009, 05:42:06 PM »

I am at work right now and the computer just died, so I will let you know once I am at home, ill be home around 8 p.m.
Logged
Cdude201
Siege Tank
****

Warning: 3
Offline Offline

Posts: 3050




Amira StormthehouseXec Frogger2 Tetris Dolphindash Duckhunt Sagaofsai Rsnake
« Reply #5 on: September 14, 2009, 06:44:30 PM »

and who doesn't like 1st post tech support questions Wink
Logged

fox news is more credible than the other news sources. u know that right?
LK is contributing problems, not solutions, that's like saying Ortus is contributing to general chat
crzynub
TWC Dev Team
Siege Tank
****

Warning: 0
Offline Offline

Posts: 1211




« Reply #6 on: September 14, 2009, 07:52:32 PM »

we're now a tech support forum and avo is our only true contributing member, didnt you get the memo cdude?
Logged
7_SeCoND_KiLL
TWC Dev Team
Siege Tank
****

Warning: 0
Offline Offline

Posts: 1522

rien peut m'arreter maintenant



« Reply #7 on: September 14, 2009, 08:14:14 PM »

You forget LK
Logged

HEMA
Blizzard Grand Inquisitor
Staffers
Siege Tank
*

Warning: 0
Online Online

Posts: 4819




« Reply #8 on: September 15, 2009, 10:24:10 AM »

You forget LK

LK is contributing problems, not solutions, that's like saying Ortus is contributing to general chat
Logged


LK:
On that note, it is ironic that I ask for relationship advice on a video gaming message board, speak about myself in third person, and make penis jokes in my own made up language, yet still find others much more immature than me? hew hew hew
Cdude201
Siege Tank
****

Warning: 3
Offline Offline

Posts: 3050




Amira StormthehouseXec Frogger2 Tetris Dolphindash Duckhunt Sagaofsai Rsnake
« Reply #9 on: September 15, 2009, 11:36:35 AM »

You forget LK

LK is contributing problems, not solutions, that's like saying Ortus is contributing to general chat

zing
Logged

fox news is more credible than the other news sources. u know that right?
LK is contributing problems, not solutions, that's like saying Ortus is contributing to general chat
Pages: [1]   Go Up
Print
Jump to:  

  Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC
TinyPortal v0.9.8 © Bloc