View Single Post
Old 08-19-2005, 01:28 PM   #6 (permalink)
POADB
Moderator, Microsoft Support
 
POADB's Avatar
 
Join Date: Jul 2004
Location: United Kingdom
Posts: 6,481
OS: XP SP2


Quote:
Originally Posted by DM1301
Yes those entries are part of the company website which is hosted by Internet Specialties West, Inc. Just out of curiosity how did you know what files to delete or which files the virus was residing in???
O23 - Service: Microsoft New Game 2 (svehost32) - Unknown owner - C:\WINNT\svehost32.exe
O23 - Service: TCP System Driver (tcpsys) - Unknown owner - C:\WINNT\system32\rsvterm.exe (file missing)
The different sections of HJT help us identify different infections. The 023's above, though they take a keen eye, identy the infection known to ana nalyst as rdriv.sys.

If you're interested in learning, why not join the TSF Academy? Details are in a sticky at the top of this forum.
__________________


POADB is offline