Known Spyware Components in HJT Logs
faq760-4764
I have just got serious about trying to help with these logs. Besides the help I have received from many Guru's at this site and at the security forum at , there is just a lot of information to look at and try to decide what is malicious and what isn't.
But, from varying sources, I have found several sites that help me look at these logs and decide what needs to go or what might just be a resource hog:
- Research known BHO and virus files. (Site down at the moment, moving to a new server, hopefully back soon.)
- List of all known CLSID's ( that ugly long string like "{00000000-0002-53D4-0622-35EA0235778E}" usually in the O16 area. Status of X is bad, O is questionable, L is ok.
- Let's you research file names.
- Let's you research file names. I like this search better.
Not to mention Google... There are also lots of other forums handling HJT logs. Between this site and , I usually find someone has already seen the baddies that are out there.
Just thought I would share...
Terry
**************************
* General Disclaimor - Please read *
**************************
Please make sure your post is in the CORRECT forum, has a descriptive title, gives as much detail to the problem as possible, and has examples of expected results. This will enable me and others to help you faster...
faq760-4764
I have just got serious about trying to help with these logs. Besides the help I have received from many Guru's at this site and at the security forum at , there is just a lot of information to look at and try to decide what is malicious and what isn't.
But, from varying sources, I have found several sites that help me look at these logs and decide what needs to go or what might just be a resource hog:
- Research known BHO and virus files. (Site down at the moment, moving to a new server, hopefully back soon.)
- List of all known CLSID's ( that ugly long string like "{00000000-0002-53D4-0622-35EA0235778E}" usually in the O16 area. Status of X is bad, O is questionable, L is ok.
- Let's you research file names.
- Let's you research file names. I like this search better.
Not to mention Google... There are also lots of other forums handling HJT logs. Between this site and , I usually find someone has already seen the baddies that are out there.
Just thought I would share...
Terry
**************************
* General Disclaimor - Please read *
**************************
Please make sure your post is in the CORRECT forum, has a descriptive title, gives as much detail to the problem as possible, and has examples of expected results. This will enable me and others to help you faster...