ComputerForum.com ComputerForum.com  
TigerDirect
 
Go Back   Computer Forum > Computer Systems > Desktop Computers

Reply
 
LinkBack Thread Tools Display Modes
Old 08-31-2004, 10:17 PM   #1 (permalink)
Bronze Member
 
Join Date: Aug 2004
Posts: 40
Default Identify these processes?

bfhaxh.exe
tmotbozp.exe
winitr32.exe
regsrv32.exe
serm32.exe
winmon32.exe
asetup32.exe

I'm under the impression that most unfamiliar files that crop up with '32' in their title are unwelcome.

And can anyone recommend a really good downloadable firewall (free, preferably).

Thanks.
Pretorius is offline   Reply With Quote


Old 08-31-2004, 10:25 PM   #2 (permalink)
VIP Member
 
Lorand's Avatar
 
Join Date: Dec 2003
Location: Bucharest
Age: 41
Posts: 3,042
Default

You probably have a virus. So first run a virus check (http://housecall.trendmicro.com).
A good (and free) firewall is ZoneAlarm (http://www.download.com/3000-2092-10...age&tag=button).
Lorand is offline   Reply With Quote
Old 09-01-2004, 01:37 PM   #3 (permalink)
Administrator
 
Praetor's Avatar
 
Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
Default

The only one there that should be there is regsvr32 which is just a DLL/OCX registry tool
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8
4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400
5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10
OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI
Praetor is offline   Reply With Quote
Old 09-01-2004, 02:40 PM   #4 (permalink)
VIP Member
 
Lorand's Avatar
 
Join Date: Dec 2003
Location: Bucharest
Age: 41
Posts: 3,042
Default

It depends on how it was executed. The W32/Rbot-GM worm (http://www.sophos.com/virusinfo/analyses/w32rbotgm.html) copies itself to regsrv32.exe in the Windows system folder.
Lorand is offline   Reply With Quote
Old 09-01-2004, 03:42 PM   #5 (permalink)
Administrator
 
Praetor's Avatar
 
Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
Default

Ya that too.. odds are, regarding regsvr32, it'll finish so fast you'll never see it in the taskmanager for long.
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8
4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400
5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10
OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI
Praetor is offline   Reply With Quote


Old 09-01-2004, 05:17 PM   #6 (permalink)
Bronze Member
 
Join Date: Aug 2004
Posts: 40
Default

Quote:
Originally Posted by Praetor
Ya that too.. odds are, regarding regsvr32, it'll finish so fast you'll never see it in the taskmanager for long.
No, it stays there. And when it's there, Task Manager shuts down the instant it opens.

I've had trouble with lsasss, avserve2, etc. But all of a sudden these weird processes are popping up, like I have something on my computer that's randomly generating them.

The list of new processes is now:

bfhaxh.exe
tmotbozp.exe
winitr32.exe
regsrv32.exe
serm32.exe
winmon32.exe
asetup32.exe
cwcvcw.exe
tiujpu.exe
wowexec.exe
ntvdm.exe
syscfg32.exe

I got Process Explorer, which allows me to close them on startup. But they keep coming.
Pretorius is offline   Reply With Quote
Old 09-01-2004, 05:35 PM   #7 (permalink)
Administrator
 
Praetor's Avatar
 
Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
Default

- Run a spyware check (while not online)?
- Consider Agnitum's Outpost firewall (free and quite effective)
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8
4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400
5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10
OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI
Praetor is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 06:55 AM.


Powered by: vBulletin Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.1.0 ©2007, Crawlability, Inc.
Copyright © 2002-2007 Computer Forum and Web Design Forum