Ares PWNS!
Jengo
Pasco, WA | USA
i reccomend it to anyone, its spyware free and the searches are fast and easy, alot of shareware like Linux ISOs and free trial software.
its a great P2P program! (at least I like it)
Download it here!
- edited by an admin who would like to remind you that discussion of methods for obtaining illegal software is against our policies
its a great P2P program! (at least I like it)
Download it here!
- edited by an admin who would like to remind you that discussion of methods for obtaining illegal software is against our policies
0
Comments
i scanned with McAfee anti-virus (picks up nasty spyware), Adware, and Spybot search and destroy all came up negatory
thats good enough for me
Bear in mind that all anti-spyware apps rely on definition files. If the program you are linking is so new, it may not yet have been analyzed by anti-spyware apps and included in the definitions.
A better way to be sure to is to monitor your running processes, and use a port activity monitor or netstat command to observe your TCP/IP traffic, and check your startup registries for new entries. If you see anything odd in those places, terminate and delete them, then try running the P2P program and see if it works or if it fails.
Dexter...
Right. That's what I meant.
safest thing to do is google it first and see what others have to say about it before you install it.
Scared? No.
Annoyed? Abso-friggin-lutely.
Kanez said it. The crap infests your computer uninvited (or hidden along with something you did invite), slows down everything by clogging up resources, monitors your activities, then tells someone else what unrequested advertising to interrupt your online experience with.
I hate spyware with a passion. Most here do as well. Ask Prime for his thoughts on it
Dexter...
feels clean to me
-Aranyic
Well you can find almost any kind of music on there (including underground rare stuff) as far as programs go, you can find alot on there, but if you are "captain hook the pirate" then maybe try another source if you cant find what you are looking for
yeah, still came up clean man, i usually have a pretty spyware-free system
Logfile of HijackThis v1.97.7
Scan saved at 8:02:59 PM, on 2/6/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\WINNT\system32\svchost.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
c:\program files\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\Program Files\Steam\Steam.exe
C:\WINNT\system32\RUNDLL32.EXE
C:\WINNT\system32\svchost.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Folding@Home\winfah.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\Program Files\Folding@Home\FahCore_65.exe
C:\Program Files\MSN\MSNCoreFiles\msn.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINNT\explorer.exe
C:\Program Files\Yahoo!\Messenger\YPager.exe
C:\Program Files\Winamp\winamp.exe
C:\Documents and Settings\Administrator\My Documents\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gamefaqs.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_12_0.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_12_0.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Steam] C:\Program Files\Steam\Steam.exe -silent
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\ares.exe" -h
O4 - Startup: Folding@home 4.00.lnk = C:\Program Files\Folding@Home\winfah.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: AIM (HKLM)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst0401.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,76/mcinsctl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/28f288719546b08fc420/netzip/RdxIE601.cab
O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/20031216/qtinstall.info.apple.com/mickey/us/win/QuickTimeInstaller.exe
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38014.5073148148
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,16/mcgdmgr.cab
O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
*smiles evily*
im no n00b!!!
MUAHAHAHAHAHAHAHAHAHAHA!!
sorry... but no one i know thinks i actually know anything about Computers... so it feels REAL good when i am right about something....
It's probably run by the RIAA lol
haha, that would be funny if it was
There's no spyware, but there are a few programs loaded that you could kill to free up some resources:
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
The first one is from RealPlayer (one of the worst spyware and bloatware offenders) and is pointless. Go in and rename the extension to bak or something other than exe.
The second is Java's updater. You can rename that one too.
The third is Winamp agent, which can be disabled through Preferences in Winamp.
Finally, the thing that most concerns me is that it appears your homepage has been hijacked. It should point to www.short-media.com, and that's an easy fix.
And, you can kill:
C:\Program Files\QuickTime\qttask.exe
(Quicktime Task Manager, does not need to load at bootup, is just an update checker which you can do manually if you want.)
C:\Program Files\MSN\MSNCoreFiles\msn.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
(Looks like you have 2 versions of MSN Messenger launching at startup. There was an issue with v 4.7 and 6 competing with each other. )
C:\WINNT\system32\regsvc.exe
(not needed by 99% of users. See this: http://www.liutilities.com/products/wintaskspro/processlibrary/regsvc/ )
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
(Mobile Synchronization manager - allows you to force sync downloads of webpages. Unless you are using a laptop or have connectivity issues, you should kill that too. Nees to be done from START -> PROGRAM FILES (or ALL PROGRAMS) -> ACCESSORIES -> SYNCHRONIZATION) then uncheck all sync tasks.)
Also, are you really running MSN Messenger, Yahoo Messenger and AIM all at once? And do you need them to launch at startup? Otherwise you are tying up a lot of resources unneccesarily.
Dexter...
I'm having a differnt problem with Ares... It wont save my options. I went into preferences to set my upload/download limits, and to change the default share directory, but it doesn't save my changes... anybody else having this problem?
I know it's only one flaw, but with that flaw, the program is not useable. Infact, it makes it illegal to use, ya? It's putting up copyrighted material for sharing, whether I want it to or not.
open up ares, look up where it has the "web" icon then look alittle lower then that there should be a share settings icon, click it then click manual selection then just check the only file you want to share, problem solved
thank you too mr.kwitko you helped too
Right, that was obviously the first thing I did. But it changed the setting back to auto-search computer. everytime I go into the settings and change it: the program just changes it back on it's own, it's as if it's having trouble overwriting the default configuration.
Now that I've typed that, it sound like I should check to see if somehow a file got switched to 'read-only' somewhere where it shouldn't have been, ya?... I would check for that, but I already gave up and uninstalled the proggy, so forget it...