Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Help removing services from a win 2k3 sbs

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Help removing services from a win 2k3 sbs

Unread postby coreyf » December 1st, 2008, 7:37 pm

I have several process on the my server that are suspect...

I tried removing with Malwarebytes myself, but admittedly I don't think I did enough to get rid of them permanently.

Thanks for any help.

-Corey

My HijackThis log follows:


Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 3:49:51 PM, on 12/1/2008
Platform: Windows 2003 SP2 (WinNT 5.02.3790)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Verizon\Verizon Internet Security Suite\fws.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\Dfssvc.exe
C:\WINDOWS\System32\dns.exe
C:\Program Files\DynDNS Updater\DynUpSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$SBSMONITORING\Binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\MSSQL$SHAREPOINT\Binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\WINDOWS\system32\ntfrs.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Symantec\DeployCenter 5.7.0\PXE Server\PXEMTFTP.exe
C:\Program Files\Symantec\DeployCenter 5.7.0\PXE Server\PXEService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec\DeployCenter 5.7.0\UcService.exe
C:\WINDOWS\System32\wins.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\Program Files\Common Files\System\MSSearch\Bin\mssearch.exe
C:\Program Files\Microsoft SQL Server\MSSQL$SBSMONITORING\Binn\sqlagent.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe
C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
C:\WINDOWS\SYSTEM32\3cmlink.exe
C:\WINDOWS\SYSTEM32\3cshtdwn.exe
C:\WINDOWS\SYSTEM32\3cmlink.exe
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
C:\Program Files\DynDNS Updater\DynTray.exe
C:\Program Files\U.S. Robotics\ControlCenter\Reminder.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\WINDOWS\system32\netdde.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\rdpclip.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spool\DRIVERS\W32X86\3\E_FATIAFA.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe
C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
C:\Program Files\DynDNS Updater\DynTray.exe
C:\Program Files\U.S. Robotics\ControlCenter\Reminder.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\WINDOWS\system32\mmc.exe
C:\WINDOWS\system32\noytcyr.exe
C:\WINDOWS\system32\wsldoekd.exe
C:\WINDOWS\system32\afisicx.exe
C:\WINDOWS\system32\roytctm.exe
C:\WINDOWS\system32\tdydowkc.exe
c:\windows\system32\inetsrv\w3wp.exe
c:\windows\system32\inetsrv\w3wp.exe
C:\WINDOWS\system32\mabidwe.exe
C:\WINDOWS\system32\soxpeca.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\WINDOWS\system32\logon.scr
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\rdpclip.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
C:\WINDOWS\system32\dumprep.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DynDNS Updater\DynTray.exe
C:\Program Files\U.S. Robotics\ControlCenter\Reminder.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Documents and Settings\Administrator\Desktop\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://companyweb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://companyweb
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Pop-Up Blocker BHO - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\Verizon\Verizon Internet Security Suite\pkR.dll
O2 - BHO: Form Filler BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Verizon\Verizon Internet Security Suite\FBHR.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [DWPersistentQueuedReporting] C:\PROGRA~1\COMMON~1\MICROS~1\DW\DWTRIG20.EXE -a
O4 - HKLM\..\Run: [\\OFFICE-2\EPSON Stylus CX7800 Series] C:\WINDOWS\system32\spool\DRIVERS\W32X86\3\E_FATIAFA.EXE /P37 "\\OFFICE-2\EPSON Stylus CX7800 Series" /O6 "USB001" /M "Stylus CX7800"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Verizon Internet Security Suite] C:\Program Files\Verizon\Verizon Internet Security Suite\Rps.exe
O4 - HKLM\..\Run: [EEventManager] C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
O4 - HKLM\..\Run: [3c1807pd] C:\WINDOWS\SYSTEM32\3cmlink.exe RunServices \Device\3cpipe-3c1807pd
O4 - HKLM\..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Program Files\Symantec\Norton Ghost 2003\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1149696332-351338304-4001010716-1134\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Farrel')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - S-1-5-21-1149696332-351338304-4001010716-1134 Startup: Server Management.lnk = C:\Program Files\Microsoft Windows Small Business Server\Administration\LaunchConsole.exe (User 'Farrel')
O4 - S-1-5-21-1149696332-351338304-4001010716-1134 User Startup: Server Management.lnk = C:\Program Files\Microsoft Windows Small Business Server\Administration\LaunchConsole.exe (User 'Farrel')
O4 - Startup: Server Management.lnk = ?
O4 - Global Startup: DynDNS Updater Tray Icon.lnk = C:\Program Files\DynDNS Updater\DynTray.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check(2).lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Instant Update Reminder.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O14 - IERESET.INF: START_PAGE_URL=http://companyweb
O15 - ESC Trusted Zone: http://m.2mdn.net
O15 - ESC Trusted Zone: http://www.56k.com
O15 - ESC Trusted Zone: http://ardownload.adobe.com
O15 - ESC Trusted Zone: http://www.adobe.com
O15 - ESC Trusted Zone: http://www.agere.com
O15 - ESC Trusted Zone: http://network.aptimus.com
O15 - ESC Trusted Zone: http://*.ask-leo.com
O15 - ESC Trusted Zone: http://www.awprofessional.com
O15 - ESC Trusted Zone: http://catalog.belkin.com
O15 - ESC Trusted Zone: http://www.belkin.com
O15 - ESC Trusted Zone: http://www.benedelman.org
O15 - ESC Trusted Zone: http://*.bluefootstudios.com
O15 - ESC Trusted Zone: http://www.brightwork.com
O15 - ESC Trusted Zone: http://www.chatteremail.com
O15 - ESC Trusted Zone: http://www.cnet.com
O15 - ESC Trusted Zone: http://bwp.techrepublic.com.com
O15 - ESC Trusted Zone: http://search.techrepublic.com.com
O15 - ESC Trusted Zone: http://www.ecs.com.tw
O15 - ESC Trusted Zone: http://www.computerhaven.info
O15 - ESC Trusted Zone: http://www.conexant.com
O15 - ESC Trusted Zone: http://images.crucial.com
O15 - ESC Trusted Zone: http://www.crucial.com
O15 - ESC Trusted Zone: http://accessories.us.dell.com
O15 - ESC Trusted Zone: http://i.dell.com
O15 - ESC Trusted Zone: http://img.dell.com
O15 - ESC Trusted Zone: http://reviews-cdn.dell.com
O15 - ESC Trusted Zone: http://search.dell.com
O15 - ESC Trusted Zone: http://support.dell.com
O15 - ESC Trusted Zone: http://www.dell.com
O15 - ESC Trusted Zone: http://www.dellcommunity.com
O15 - ESC Trusted Zone: http://bwp.download.com
O15 - ESC Trusted Zone: http://software-files.download.com
O15 - ESC Trusted Zone: http://www.download.com
O15 - ESC Trusted Zone: http://members.driverguide.com
O15 - ESC Trusted Zone: http://*.dyndns.com
O15 - ESC Trusted Zone: http://buy.ebay.com
O15 - ESC Trusted Zone: http://cgi.ebay.com
O15 - ESC Trusted Zone: http://my.ebay.com
O15 - ESC Trusted Zone: http://offer.ebay.com
O15 - ESC Trusted Zone: http://promo.ebay.com
O15 - ESC Trusted Zone: http://promo.express.ebay.com
O15 - ESC Trusted Zone: http://search.ebay.com
O15 - ESC Trusted Zone: http://www.ebay.com
O15 - ESC Trusted Zone: http://us.ebayobjects.com
O15 - ESC Trusted Zone: http://srx.main.ebayrtm.com
O15 - ESC Trusted Zone: http://include.ebaystatic.com
O15 - ESC Trusted Zone: http://www.ecohaul.com
O15 - ESC Trusted Zone: http://www.ecsusa.com
O15 - ESC Trusted Zone: http://files.support.epson.com
O15 - ESC Trusted Zone: http://www.experts-exchange.com
O15 - ESC Trusted Zone: http://www.file.net
O15 - ESC Trusted Zone: http://support.fleetboss.com
O15 - ESC Trusted Zone: http://www.fleetboss.com
O15 - ESC Trusted Zone: http://ui.verizon.freedom.net
O15 - ESC Trusted Zone: http://vc.freedom.net
O15 - ESC Trusted Zone: http://www.verizon.freedom.net
O15 - ESC Trusted Zone: http://www.google-analytics.com
O15 - ESC Trusted Zone: http://pagead2.googlesyndication.com
O15 - ESC Trusted Zone: http://mail.hvacserviceplan.com
O15 - ESC Trusted Zone: http://support.insightdirect.com
O15 - ESC Trusted Zone: http://ws4.insightdirect.com
O15 - ESC Trusted Zone: http://ws5.insightdirect.com
O15 - ESC Trusted Zone: http://www.insightdirect.com
O15 - ESC Trusted Zone: http://developer.intel.com
O15 - ESC Trusted Zone: http://downloadfinder.intel.com
O15 - ESC Trusted Zone: http://downloadmirror.intel.com
O15 - ESC Trusted Zone: http://feeds.downloadcenter.intel.com
O15 - ESC Trusted Zone: http://mysearch.intel.com
O15 - ESC Trusted Zone: http://support.intel.com
O15 - ESC Trusted Zone: http://www.intel.com
O15 - ESC Trusted Zone: http://ittoolbox.us.intellitxt.com
O15 - ESC Trusted Zone: http://windows.ittoolbox.com
O15 - ESC Trusted Zone: http://www.linksys.com
O15 - ESC Trusted Zone: http://www.liutilities.com
O15 - ESC Trusted Zone: http://login.live.com
O15 - ESC Trusted Zone: http://www.maiosuccess.com
O15 - ESC Trusted Zone: http://img.mediaplex.com
O15 - ESC Trusted Zone: http://www.memoryx.net
O15 - ESC Trusted Zone: http://www.merijn.org
O15 - ESC Trusted Zone: http://imageserver.messagelabs.com
O15 - ESC Trusted Zone: http://www.messagelabs.com
O15 - ESC Trusted Zone: http://www.modem-drivers.com
O15 - ESC Trusted Zone: http://www.modem-help.com
O15 - ESC Trusted Zone: http://www.modemsite.com
O15 - ESC Trusted Zone: http://www.msexchange.org
O15 - ESC Trusted Zone: http://ftp-mozilla.netscape.com
O15 - ESC Trusted Zone: http://cnjm.networksolutions.com
O15 - ESC Trusted Zone: http://customersupport.networksolutions.com
O15 - ESC Trusted Zone: http://www.networksolutions.com
O15 - ESC Trusted Zone: http://e.nvero.net
O15 - ESC Trusted Zone: http://mozilla-atl.osuosl.org
O15 - ESC Trusted Zone: http://*.pcitree.de
O15 - ESC Trusted Zone: http://www.petri.co.il
O15 - ESC Trusted Zone: http://castle.pricewatch.com
O15 - ESC Trusted Zone: http://www.pricewatch.com
O15 - ESC Trusted Zone: http://ads.pugetsoundsoftware.com
O15 - ESC Trusted Zone: http://ftp.quicken.com
O15 - ESC Trusted Zone: http://www.rambus.com
O15 - ESC Trusted Zone: http://www.samsung.com
O15 - ESC Trusted Zone: http://www.smallbizserver.net
O15 - ESC Trusted Zone: hxxp://forums.spywareinfo.com
O15 - ESC Trusted Zone: hxxp://www.spywareinfo.com
O15 - ESC Trusted Zone: http://www.starmicro.net
O15 - ESC Trusted Zone: http://forums.techguy.org
O15 - ESC Trusted Zone: http://blogs.technet.com
O15 - ESC Trusted Zone: http://searchexchange.techtarget.com
O15 - ESC Trusted Zone: http://searchwinit.techtarget.com
O15 - ESC Trusted Zone: http://www.tek-tips.com
O15 - ESC Trusted Zone: http://owlnet.temple.edu
O15 - ESC Trusted Zone: http://www.temple.edu
O15 - ESC Trusted Zone: http://hjt-data.trend-braintree.com
O15 - ESC Trusted Zone: http://a.tribalfusion.com
O15 - ESC Trusted Zone: http://cdn5.tribalfusion.com
O15 - ESC Trusted Zone: http://www.upgrade-solution.com
O15 - ESC Trusted Zone: http://www.ureader.com
O15 - ESC Trusted Zone: http://*.verizon.net
O15 - ESC Trusted Zone: http://support.wdc.com
O15 - ESC Trusted Zone: http://www.wdc.com
O15 - ESC Trusted Zone: http://www.weather.com
O15 - ESC Trusted Zone: http://en.wikipedia.org
O15 - ESC Trusted Zone: http://www.windowsitpro.com
O15 - ESC Trusted Zone: http://w4s2.work4sure.com
O15 - ESC Trusted Zone: http://lib.store.yahoo.net
O15 - ESC Trusted Zone: http://l.yimg.com
O15 - ESC Trusted Zone: http://us.js2.yimg.com
O15 - ESC Trusted IP range: http://64.124.27.138
O15 - ESC Trusted IP range: http://192.168.10.100
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {485D813E-EE26-4DF8-9FAF-DEDF2885306E} (NSHelp Class) - http://localhost/ConnectComputer/nshelp.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microso ... 3334741132
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft Terminal Services Client Control (redist)) - http://server-1/tsweb/msrdp.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = Fahrenheit.local
O17 - HKLM\Software\..\Telephony: DomainName = Fahrenheit.local
O17 - HKLM\System\CCS\Services\Tcpip\..\{AAF6070E-E59C-4DAE-9584-A2E5B6E0680B}: NameServer = 192.168.1.10
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = Fahrenheit.local
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: afisicx Service (afisicx) - Unknown owner - C:\WINDOWS\system32\afisicx.exe
O23 - Service: DvpApi (dvpapi) - Authentium, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: DynDNS Updater - Unknown owner - C:\Program Files\DynDNS Updater\DynUpSvc.exe
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: mabidwe Service (mabidwe) - Unknown owner - C:\WINDOWS\system32\mabidwe.exe
O23 - Service: Ms Device Manager Services (mscfcosd) - Unknown owner - C:\WINDOWS\system32\mscfco.exe
O23 - Service: noytcyr Service (noytcyr) - Unknown owner - C:\WINDOWS\system32\noytcyr.exe
O23 - Service: roytctm Service (roytctm) - Unknown owner - C:\WINDOWS\system32\roytctm.exe
O23 - Service: Verizon Internet Security Suite Firewall (RP_FWS) - Radialpoint Inc. - C:\Program Files\Verizon\Verizon Internet Security Suite\fws.exe
O23 - Service: soxpeca Service (soxpeca) - Unknown owner - C:\WINDOWS\system32\soxpeca.exe
O23 - Service: Symantec PXE MTFTP Service - Symantec Corporation - C:\Program Files\Symantec\DeployCenter 5.7.0\PXE Server\PXEMTFTP.exe
O23 - Service: Symantec PXE Services - Symantec Corporation - C:\Program Files\Symantec\DeployCenter 5.7.0\PXE Server\PXEService.exe
O23 - Service: tdydowkc Service (tdydowkc) - Unknown owner - C:\WINDOWS\system32\tdydowkc.exe
O23 - Service: Symantec Unicast Image Server (UcService) - Symantec Corporation - C:\Program Files\Symantec\DeployCenter 5.7.0\UcService.exe
O23 - Service: wsldoekd Service (wsldoekd) - Unknown owner - C:\WINDOWS\system32\wsldoekd.exe

--
End of file - 18207 bytes
coreyf
Active Member
 
Posts: 1
Joined: December 1st, 2008, 7:27 pm
Advertisement
Register to Remove

Re: Help removing services from a win 2k3 sbs

Unread postby Shaba » December 5th, 2008, 5:20 am

Hi coreyf

As said in rules:

"Make sure you have one of the desktop versions of Windows, i.e. Win98, Win98SE, WinMe, Win2000, Windows XP, Windows Media, Vista.
We CANNOT HELP remove malware from any of the Windows Server editions, like Windows 2003."

This thread is now closed.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 55 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware