Hi,
My explorer process is continuously restarting with a Pop up which display VC++ runtime exception Buffer oevrrun message..
Please help me...
Here is the HijackIt log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:11:24 PM, on 3/3/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\WINNT\system32\CCM\CLICOMP\RemCtrl\Wuser32.exe
C:\WINNT\system32\CCM\CcmExec.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Microsoft Office Communicator\Communicator.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\IPMsg\ipmsg.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\MyEclipse 6.0\eclipse\eclipse.exe
C:\MyEclipse 6.0\jre\bin\javaw.exe
C:\Program Files\WinSCP\WinSCP.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINNT\explorer.exe
C:\Program Files\TextPad 5\TextPad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isharenmr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isharenmr
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - HKCU\..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\Communicator.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\Communicator.exe" (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\Communicator.exe" (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\Communicator.exe" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\Communicator.exe" (User 'Default user')
O4 - Startup: IPMSG for Win32.lnk = C:\Program Files\IPMsg\ipmsg.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - Global Startup: VPN Client.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://click.nielsenmedia.com/
O15 - Trusted Zone: *.apdev01
O15 - Trusted Zone: *.apdev02
O15 - Trusted Zone: *.d1uap
O15 - Trusted Zone: *.d2uap
O15 - Trusted Zone: http://*.enterprisenet.org
O15 - Trusted Zone: *.i2uap
O15 - Trusted Zone: *.i7uap
O15 - Trusted Zone: *.iuapdc
O15 - Trusted Zone: *.iuapuatdc
O15 - Trusted Zone: *.nielsen.com
O15 - Trusted Zone: http://*.nielsen.com
O15 - Trusted Zone: communitysharepoint.nielsenmedia.com
O15 - Trusted Zone: coresharepoint.nielsenmedia.com
O15 - Trusted Zone: d1uap.nielsenmedia.com
O15 - Trusted Zone: d2uap.nielsenmedia.com
O15 - Trusted Zone: i2uap.nielsenmedia.com
O15 - Trusted Zone: i7uap.nielsenmedia.com
O15 - Trusted Zone: localsharepoint.nielsenmedia.com
O15 - Trusted Zone: mtssharepoint.nielsenmedia.com
O15 - Trusted Zone: nationalsharepoint.nielsenmedia.com
O15 - Trusted Zone: nlighten.nielsenmedia.com
O15 - Trusted Zone: nmrsharepoint.nielsenmedia.com
O15 - Trusted Zone: p2uap.nielsenmedia.com
O15 - Trusted Zone: p3uap.nielsenmedia.com
O15 - Trusted Zone: umi-c001-m1.nielsenmedia.com
O15 - Trusted Zone: umi-c001-m2.nielsenmedia.com
O15 - Trusted Zone: umi-c001-m3.nielsenmedia.com
O15 - Trusted Zone: umi-c004-m7.nielsenmedia.com
O15 - Trusted Zone: umi-c005-m1.nielsenmedia.com
O15 - Trusted Zone: umi-c005-m2.nielsenmedia.com
O15 - Trusted Zone: umi-c005-m5.nielsenmedia.com
O15 - Trusted Zone: umi-c005-m7.nielsenmedia.com
O15 - Trusted Zone: *.p2uap
O15 - Trusted Zone: *.p3uap
O15 - Trusted Zone: *.puap01
O15 - Trusted Zone: *.puapcr
O15 - Trusted Zone: *.umi-c001-m1
O15 - Trusted Zone: *.umi-c001-m2
O15 - Trusted Zone: *.umi-c001-m3
O15 - Trusted Zone: *.umi-c004-m7
O15 - Trusted Zone: *.umi-c005-m1
O15 - Trusted Zone: *.umi-c005-m2
O15 - Trusted Zone: *.umi-c005-m5
O15 - Trusted Zone: *.umi-c005-m7
O15 - Trusted Zone: iti-sharedservices.vnuinc.org
O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - http://dl.tvunetworks.com/TVUAx.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = enterprisenet.org
O17 - HKLM\Software\..\Telephony: DomainName = enterprisenet.org
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = enterprisenet.org
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = nielsenmedia.com,nmrlan.net,vnuusa.org,securityroot.net,enterprisenet.org
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = enterprisenet.org
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = nielsenmedia.com,nmrlan.net,vnuusa.org,securityroot.net,enterprisenet.org
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = nielsenmedia.com,nmrlan.net,vnuusa.org,securityroot.net,enterprisenet.org
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
--
End of file - 8252 bytes