|
|
#1 (permalink) |
|
Bronze Member
![]() Join Date: Aug 2004
Posts: 40
|
bfhaxh.exe
tmotbozp.exe winitr32.exe regsrv32.exe serm32.exe winmon32.exe asetup32.exe I'm under the impression that most unfamiliar files that crop up with '32' in their title are unwelcome. And can anyone recommend a really good downloadable firewall (free, preferably). Thanks. |
|
|
|
|
|
#2 (permalink) |
|
VIP Member
![]() Join Date: Dec 2003
Location: Bucharest
Age: 41
Posts: 3,042
|
You probably have a virus. So first run a virus check (http://housecall.trendmicro.com).
A good (and free) firewall is ZoneAlarm (http://www.download.com/3000-2092-10...age&tag=button). |
|
|
|
|
|
#3 (permalink) |
|
Administrator
![]() Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
|
The only one there that should be there is regsvr32 which is just a DLL/OCX registry tool
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8 4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400 5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10 OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI |
|
|
|
|
|
#4 (permalink) |
|
VIP Member
![]() Join Date: Dec 2003
Location: Bucharest
Age: 41
Posts: 3,042
|
It depends on how it was executed. The W32/Rbot-GM worm (http://www.sophos.com/virusinfo/analyses/w32rbotgm.html) copies itself to regsrv32.exe in the Windows system folder.
|
|
|
|
|
|
#5 (permalink) |
|
Administrator
![]() Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
|
Ya that too.. odds are, regarding regsvr32, it'll finish so fast you'll never see it in the taskmanager for long.
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8 4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400 5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10 OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI |
|
|
|
|
|
#6 (permalink) | |
|
Bronze Member
![]() Join Date: Aug 2004
Posts: 40
|
Quote:
I've had trouble with lsasss, avserve2, etc. But all of a sudden these weird processes are popping up, like I have something on my computer that's randomly generating them. The list of new processes is now: bfhaxh.exe tmotbozp.exe winitr32.exe regsrv32.exe serm32.exe winmon32.exe asetup32.exe cwcvcw.exe tiujpu.exe wowexec.exe ntvdm.exe syscfg32.exe I got Process Explorer, which allows me to close them on startup. But they keep coming. |
|
|
|
|
|
|
#7 (permalink) |
|
Administrator
![]() Join Date: Jul 2004
Location: Canada
Age: 24
Posts: 19,946
|
- Run a spyware check (while not online)?
- Consider Agnitum's Outpost firewall (free and quite effective)
__________________
ASUS P5K Premium WiFi-AP, Q6600@3.7 / ASUS P5ND, E6400@3.8 4GB OCz Platinum XTC 8500 / 4GB CorsairXMS2 6400 5x500GB Seagate 7200.10 / 2x500 Seagate 7200.10 OCz 8800GTX 768MB @ 630/800 / 2x Galaxy 8800GT SLI |
|
|
|