Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

redirected + mailer


  • Please log in to reply
No replies to this topic

#1 mj_anu

mj_anu

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:09:42 PM

Posted 06 March 2009 - 02:56 PM

Hello Ml_anu here I'm having some wierd problems I'm an expierenced computer tech and I cant find the problems
but I know they are there I'm being redirected and when I turn of my ZA I get symantic error messages saying the server refused emails to people I never emailed. below is a hijack this log could sombody help me oh ya I'm using winxp mcv sp3.0
I recently removed norton endpoint protection and installed free avg with za.


<?xml version="1.0" encoding="ISO-8859-1" ?>
<ProcessQuery>
<Time>3/6/2009 1:39:30 PM</Time>
<WRPVersion>2.2.0.0</WRPVersion>
<WRFVersion>2.2.0.512</WRFVersion>
<Process>
<Process_ID>3188</Process_ID>
<Process_Name>mantispm.exe</Process_Name>
<File_Name>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe</File_Name>
<User_Name></User_Name>
<Thread_Count>3</Thread_Count>
<Base_Priority>Normal: 8</Base_Priority>
<Parent_Process_ID>2704</Parent_Process_ID>
<Handle_Count>169</Handle_Count>
<Page_Fault_Count>3304</Page_Fault_Count>
<Peak_Working_Set_Size>6944 K</Peak_Working_Set_Size>
<Working_Set_Size>1820 K</Working_Set_Size>
<Quota_Peak_Paged_Pool_Usage>76 K</Quota_Peak_Paged_Pool_Usage>
<Quota_Paged_Pool_Usage>75 K</Quota_Paged_Pool_Usage>
<Quota_Peak_Non-Paged_Pool_Usage>6 K</Quota_Peak_Non-Paged_Pool_Usage>
<Quota_Non-Paged_Pool_Usage>4 K</Quota_Non-Paged_Pool_Usage>
<Page_File_Usage>5180 K</Page_File_Usage>
<Peak_Page_File_Usage>5412 K</Peak_Page_File_Usage>
<Company_Name>SonicWALL, Inc.</Company_Name>
<File_Description>Spam Filter</File_Description>
<File_Version>5, 0, 61, 9957</File_Version>
<Internal_Name>mantispm.exe</Internal_Name>
<Legal_Copyright>© 2002-2007</Legal_Copyright>
<Legal_Trademarks> </Legal_Trademarks>
<Original_Filename>mantispm.exe</Original_Filename>
<Product_Name>SonicWALL Anti-Spam Desktop</Product_Name>
<Product_Version>5, 0, 61, 9957</Product_Version>
<Comments> </Comments>
<Special_Build> </Special_Build>
<Private_Build> </Private_Build>
<Language>English - United States</Language>
<LangID>1033</LangID>
<CodePage>1200</CodePage>
<Creation_Time>3/4/2009 10:09:03 PM</Creation_Time>
<Kernel_Time>00:00:00:406</Kernel_Time>
<User_Time>00:00:00:109</User_Time>
<CPU>0.0</CPU>
<GDI_Objects>29</GDI_Objects>
<USER_Objects>105</USER_Objects>
<Read_Operation_Count>54</Read_Operation_Count>
<Write_Operation_Count>23</Write_Operation_Count>
<Other_Operation_Count>5686</Other_Operation_Count>
<Read_Transfer_Count>55733</Read_Transfer_Count>
<Write_Transfer_Count>4283</Write_Transfer_Count>
<Other_Transfer_Count>188834</Other_Transfer_Count>
<File_Size>808208</File_Size>
<File_Checksum>000D0CBD</File_Checksum>
<Modules>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\ntdll.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\KERNEL32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\COMCTL32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\ADVAPI32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\RPCRT4.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\Secur32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\GDI32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\USER32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\VERSION.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\WS2_32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\msvcrt.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\WS2HELP.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\SHELL32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\SHLWAPI.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\crsrpt.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\DBGHELP.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\ole32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\OLEAUT32.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\MSVCP70.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\MSVCR70.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mtdsdk.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\WININET.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\Normaliz.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\iertutil.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\IMM32.DLL</ModuleRef>
<ModuleRef>C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\MSCTF.dll</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\resources\mbzaenu.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\msctfime.ime</ModuleRef>
<ModuleRef>C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mlfhook.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\RASAPI32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\rasman.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\NETAPI32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\TAPI32.dll</ModuleRef>
<ModuleRef>c:\windows\system32\rtutils.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\WINMM.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\msv1_0.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\iphlpapi.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\USERENV.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\SensAPI.DLL</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\mswsock.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\rasadhlp.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\urlmon.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\DNSAPI.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\winrnr.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\WLDAP32.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\MPRAPI.dll</ModuleRef>
<ModuleRef>c:\windows\system32\ACTIVEDS.dll</ModuleRef>
<ModuleRef>c:\windows\system32\adsldpc.dll</ModuleRef>
<ModuleRef>c:\windows\system32\ATL.DLL</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\SAMLIB.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\SETUPAPI.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\system32\hnetcfg.dll</ModuleRef>
<ModuleRef>C:\WINDOWS\System32\wshtcpip.dll</ModuleRef>
</Modules>
</Process>
</ProcessQuery>

BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users