Options

Minervi - Problem with trojan horse Collected.5.L

Hello, i'm new to this forum, and i'm expect that you can help me, i really aprecciate it.
Well, a few days ago, i was installed ADSL an then begun
the problems.
I have now several viruses (Dropper.Agent.4.AM, BackDoorSmall27AQ) but i specially concerned about the Trojan
Collected.5.L (in the file msdirectx.sys)

When i attempt to connect to internet, the firewall stops run (he was in the list of process, but he wasn't run).
So i unistall the firewall.
Then i realize that i cannot run the configuration utilities (msconfig, regedit) and i cannot see the list of tasks when i pressed the CTRl-ALT-DEL (the windows close so fast). I tell you that i have the spybot and ad-aware and AVG 7 up-to-date, but i realize that's not enought. (I delete the spyware, but the problems still there)

WELL, i downloaded hijackthis and killbox, but when i tried to run hijackthis, guest what, this one also close, like when i pressed CTRL-ALT-DEL. So i run KillBox, and put the path to msdirectx and delete on reboot, but when i started my Windows XP, the file still was there.
I can run hijackthis on safe mode, and here is the log (i'm believe that in safe mode the log is very unuseful).
So, i expect that you can help me.
Thanks a lot. See ya.

P.D.: my internet connection works very unstable and slowly in this moment, specially the ADSL, so it's too dificult to downloads programs or to view a page. I forget, my system restore, of course, is disabled, but that no helps so much.

Logfile of HijackThis v1.99.1
Scan saved at 23:21:48, on 25/04/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\userinit32.exe
C:\WINDOWS\Explorer.EXE
C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\fxssvc.exe
D:\Programas\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Archivos de programa\MyWebSearch\SrchAstt\6.bin\MWSSRCAS.DLL
F2 - REG:system.ini: UserInit=userinit.exe,userinit32.exe
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Archivos de programa\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Archivos de programa\Winamp5\winampa.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [Compaq32 Service Drivers] msnt32.exe
O4 - HKLM\..\Run: [Windows Workstation] mpci.exe
O4 - HKLM\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
O4 - HKLM\..\RunServices: [Windows Workstation] mpci.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Compaq32 Service Drivers] msnt32.exe
O4 - HKCU\..\Run: [Windows Workstation] mpci.exe
O4 - HKCU\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Archivos de programa\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZN
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe

Comments

  • Buckeye_SamBuckeye_Sam Columbus, Ohio
    edited April 2005
    Please make sure that you can view all hidden files. Instructions on how to do this can be found here:

    How to see hidden files in Windows

    Place a checkmark next to these entries, close all browsers and windows, and have HijackThis fix them by clicking Fix Checked:

    R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Archivos de programa\MyWebSearch\SrchAstt\6.bin\MWSSRCAS.DLL
    F2 - REG:system.ini: UserInit=userinit.exe,userinit32.exe
    O4 - HKLM\..\Run: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKLM\..\Run: [Windows Workstation] mpci.exe
    O4 - HKLM\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKLM\..\RunServices: [Windows Workstation] mpci.exe
    O4 - HKCU\..\Run: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKCU\..\Run: [Windows Workstation] mpci.exe
    O4 - HKCU\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
    O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZN


    Reboot your computer into Safe Mode

    Then delete these files or directories (Do not be concerned if they do not exist):

    userinit32.exe
    msnt32.exe
    mpci.exe


    Reboot your computer to go back to normal mode.


    Please run at least two of these online scans.
    Make sure they are set to clean automatically:

    http://www.pandasoftware.com/activescan/com/activescan_principal.htm

    http://www.bitdefender.com/scan/licence.php

    http://housecall.trendmicro.com/housecall/start_corp.asp

    There will be files that these scans will not remove. Please include that information in your next post.


    Reboot and post a new hijackthis log.
  • edited April 2005
    HI!
    Well, i have already fix my problem (that was i think),
    i really fixed, but today i read the reply in the forum and i
    realize that "MyWebSearch" (supossed don't exists anymore)

    still was there.
    Yesterday i can identify the launcher of the virus. I suspect

    of two files ('cause there was 2 "drivers" that were loaded

    into the safe mode and the normal mode; so i think, ¿why this

    things load in the 2 modes?; so i still looking info in

    another forum and i founded a program "Itty Bitty Process

    Manager", so with this program i can saw the tasks, then i

    kill mpci (this "aplication" attempt too many times to

    establish an incoming connection, so i think, ¿why?, then i

    killed; but notting happens, the hijackthis still not open,

    so i sayed "it's not a virus".
    Then i killed msnt32 (i think, ¿why i should run Compaq32 if

    my computer is a clon?), and guest what?, the hijackthis

    opened. Yeah! i sayed, i founded you piece of s***!!.
    So thanks to this forum, i proceed to mark msnt32 in the

    hijack this and "Fix it", then i deleted the file, and

    problem resolved).

    But today, like i mencioned before, i saw the reply, then i

    proceed with the instructions and here is my log.

    Note: i install 2 more antivirus, a good firewall, and

    spyware blaster, so you'll see more processes in my log.

    Thanks, see ya.

    In this momments i'm in internet. Here my log:

    Logfile of HijackThis v1.99.1
    Scan saved at 20:41:50, on 27/04/2005
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
    C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\WINDOWS\System32\igfxtray.exe
    C:\WINDOWS\System32\pctspk.exe
    C:\WINDOWS\System32\PV92Tray.exe
    C:\Archivos de programa\Winamp5\winampa.exe
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Archivos de programa\Kerio\Personal Firewall 4\kpf4ss.exe
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Archivos de programa\Huawei Technologies\Huawei SmartAX MT810\dslmon.exe
    C:\Archivos de programa\Kerio\Personal Firewall 4\kpf4gui.exe
    C:\Archivos de programa\Kerio\Personal Firewall 4\kpf4gui.exe
    C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe
    C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe
    C:\ARCHIV~1\MOZILL~1\FIREFOX.EXE
    D:\Programas\hijackthis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
    O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Archivos de programa\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll__SpybotSDDisabled (file missing)
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll__SpybotSDDisabled (file missing)
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
    O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe
    O4 - HKLM\..\Run: [WinampAgent] C:\Archivos de programa\Winamp5\winampa.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [AVG7_EMC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgemc.exe
    O4 - HKLM\..\Run: [avast!] C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Archivos de programa\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: DSLMON.lnk = ?
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
    O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{D202AB03-DE72-428D-9652-A47F62A012CD}: NameServer = 200.45.191.35 200.45.191.40
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Archivos de programa\Kerio\Personal Firewall 4\kpf4ss.exe
  • Buckeye_SamBuckeye_Sam Columbus, Ohio
    edited April 2005
    Your log is clean, but it's not a good idea to run two antivirus programs at the same time. I would pick on to keep and uninstall the other one.
  • edited April 2005
    Why do you say that isn't good idea run 2 antivirus at the same time? If you say it for the slow down i not really aprecciate it.
    Let me know if is for this or not.
    Thanks a lot. Bye.
  • SpywareShooterSpywareShooter 127.0.0.1
    edited April 2005
    Having two or more AntiVirues (AVs) running at the same time can cause them to conflict. One or both may not work properly if they are running simultaneously, and may not detect or remove items properly, or may detect one of the AVs as a virus.
  • edited August 2005
    minervi wrote:
    Hello, i'm new to this forum, and i'm expect that you can help me, i really aprecciate it.
    Well, a few days ago, i was installed ADSL an then begun
    the problems.
    I have now several viruses (Dropper.Agent.4.AM, BackDoorSmall27AQ) but i specially concerned about the Trojan
    Collected.5.L (in the file msdirectx.sys)

    When i attempt to connect to internet, the firewall stops run (he was in the list of process, but he wasn't run).
    So i unistall the firewall.
    Then i realize that i cannot run the configuration utilities (msconfig, regedit) and i cannot see the list of tasks when i pressed the CTRl-ALT-DEL (the windows close so fast). I tell you that i have the spybot and ad-aware and AVG 7 up-to-date, but i realize that's not enought. (I delete the spyware, but the problems still there)

    WELL, i downloaded hijackthis and killbox, but when i tried to run hijackthis, guest what, this one also close, like when i pressed CTRL-ALT-DEL. So i run KillBox, and put the path to msdirectx and delete on reboot, but when i started my Windows XP, the file still was there.
    I can run hijackthis on safe mode, and here is the log (i'm believe that in safe mode the log is very unuseful).
    So, i expect that you can help me.
    Thanks a lot. See ya.

    P.D.: my internet connection works very unstable and slowly in this moment, specially the ADSL, so it's too dificult to downloads programs or to view a page. I forget, my system restore, of course, is disabled, but that no helps so much.

    Logfile of HijackThis v1.99.1
    Scan saved at 23:21:48, on 25/04/2005
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\userinit32.exe
    C:\WINDOWS\Explorer.EXE
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\WINDOWS\system32\fxssvc.exe
    D:\Programas\hijackthis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
    R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Archivos de programa\MyWebSearch\SrchAstt\6.bin\MWSSRCAS.DLL
    F2 - REG:system.ini: UserInit=userinit.exe,userinit32.exe
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Archivos de programa\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
    O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe
    O4 - HKLM\..\Run: [WinampAgent] C:\Archivos de programa\Winamp5\winampa.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [AVG7_EMC] C:\ARCHIV~1\Grisoft\AVGFRE~1\avgemc.exe
    O4 - HKLM\..\Run: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKLM\..\Run: [Windows Workstation] mpci.exe
    O4 - HKLM\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKLM\..\RunServices: [Windows Workstation] mpci.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [Compaq32 Service Drivers] msnt32.exe
    O4 - HKCU\..\Run: [Windows Workstation] mpci.exe
    O4 - HKCU\..\RunServices: [Compaq32 Service Drivers] msnt32.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Archivos de programa\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: DSLMON.lnk = ?
    O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZN
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\ARCHIV~1\YAHOO!\MESSEN~1\YPAGER.EXE
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARCHIV~1\Grisoft\AVGFRE~1\avgupsvc.exe
Sign In or Register to comment.