View Full Version : Omg Gusy I Didnt Write That!
Val_Owns33
05-18-2006, 05:09 AM
the **** you all topic by me i didnt write that i think somene also got in my blizzsectoer account as well as my d2 account sorry for that but i didnt do it im pretty sure someone got into all my accounts im in deep shit help me out here
Additional Comment:
guys im so freaking sorry i think the same guy into my brood war account also and such other accounts please dont mind any flaming
mikea454
05-18-2006, 05:16 AM
Assuming you dont use the same passwords on all your games/forums/mail whatever and you dont use ass passwords (like valrules), you definately got yourself a keylogger. If your current virus scan (if it even exists) didn' pick this up already you definately need to get yourself a new one
Phallock
05-18-2006, 05:18 AM
Someone said before, looks like Val got Owned!
When you get all your $hit together, PM me and I will see what I can do.
mikea454
05-18-2006, 05:22 AM
hahha that was blood who couldn't resist the obvious joke.
Poor Val though, that really sux though, and surprising someone from this forum would hack all your Sh%t
hellsing293
05-18-2006, 05:35 AM
does this mean you guys were ****ing with him?
Bloodangel26
05-18-2006, 05:38 AM
Poor Val though, that really sux though, and surprising someone from this forum would hack all your Sh%t
doesnt mean it was someone from here...the keylogger probably saw that he comes here and decided to have more fun with him
mikea454
05-18-2006, 05:42 AM
Good point blood, it would have captured the Url address if he types it in and doesn' have it in favorites (which I assume pretty much everyone types)
Tiras
05-18-2006, 05:54 AM
what happened?
Venom
05-18-2006, 06:04 AM
more or less val here been hacked to shit and saying thay someone got into his acct and made a thread that he "supposidly" didnt make so he need help or else
btw i would have thought that hacker would have changed your d2S pass?
Phallock
05-18-2006, 06:12 AM
Why would a hacker change his pass on him? If I could, I wouldn't. I would let him get more good stuff then steal it all again! And if it is a keylogger, it doesn't matter if he changes passwords until he gets rid of the logger. Besides, it could be much more fun jerkin' him around and making him look bad.
RaZzor
05-18-2006, 06:37 AM
I still don't like him.
NiCk.
05-18-2006, 07:12 AM
bs why would some1 even ****ing right this val stfu god
Additional Comment:
bs why would some1 even ****ing right this val stfu god
Val_Owns33
05-18-2006, 07:57 AM
i know who it is Vol-Phil i just made a new acc 3 hours ago and he hacked it already and said pwnnoob get off bzsidiot and such... wow u guys are really messed up and i think i changed all passwords what should i scan how does keyloggin work is it a hack or something i wunna stop it now
Additional Comment:
ok dont u need to send me a email to keylog me? i mean how the hel did he know i was on BZSA forums the only person i play with is Siris from forums and for keylogging u need to send me the file right? and i got nothing from anybody so wtf... what do i scam please help me out guys
wm_hunter
05-18-2006, 08:16 AM
This is what I want you to do. I am going to help you get rid of the keylogger.
Download HiJackThis (http://www.merijn.org/files/hijackthis.zip) and extract it from the ZIP. Open the HiJackThis.exe and choose to Do a system scan and save a logfile. You should get a log pop up in notepad. Reply here with it or send me a pm and I can help you get rid of the viruses.
DO NOT REMOVE ANYTHING IT FINDS. IT LISTS BOTH BAD AND GOOD THINGS, AND YOU NEED SOMEONE THAT CAN READ THE LOG FILES LIKE ME TO LOOK OVER IT
Val_Owns33
05-18-2006, 08:35 AM
wm hunter i did it and something in notepad poped up like a WHOLE bunch of stuff wut do i do now?
Additional Comment:
Logfile of HijackThis v1.99.1
Scan saved at 3:19:57 PM, on 5/17/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\ucdhs_is\McafeeVS7\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Iomega\AutoDisk\ADUserMon.exe
C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
D:\Ghost\GhostStartTrayApp.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hphmon05.exe
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\WINDOWS\winsockz.exe
C:\WINDOWS\LEXPP.exe
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
D:\Ghost\GHOSTS~2.EXE
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\ucdhs_is\McafeeVS7\mcshield.exe
C:\ucdhs_is\McafeeVS7\vstskmgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Iomega\AutoDisk\ADService.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\Val\LOCALS~1\Temp\Rar$EX00.403\HijackT his.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.blizzsector.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/sbcydsl/*http://www.yahoo.com/search/ie.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydsl/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/sbcydsl/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O4 - HKLM\..\Run: [ShStatEXE] "C:\ucdhs_is\McafeeVS7\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ADUserMon] C:\Program Files\Iomega\AutoDisk\ADUserMon.exe
O4 - HKLM\..\Run: [Iomega Drive Icons] C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
O4 - HKLM\..\Run: [Deskup] C:\Program Files\Iomega\DriveIcons\deskup.exe /IMGSTART
O4 - HKLM\..\Run: [GhostStartTrayApp] D:\Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [winsock.client] C:\WINDOWS\winsock.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZCxdm492DZUS
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei/CursorManiaFWBInitialSetup1.0.0.15.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O23 - Service: GhostStartService - Symantec Corporation - D:\Ghost\GHOSTS~2.EXE
O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\ucdhs_is\McafeeVS7\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\ucdhs_is\McafeeVS7\vstskmgr.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe
thats wut i got Wm hunter wut do i do next?
Additional Comment:
loool just notived look at my name right under it "val got owned" lol he does have keylogger he can enjoy it 4 now heh well see how he feels when i get my revenge i know who it is to vol-phil and Last_jp heheh
I guess I'll say it too. Val got Owned. Yes. It sucks but hahahaahha.
Val_Owns33
05-18-2006, 08:54 AM
wow it sucks... ima keep the "val got owned" thing under name:D can anyone read script and tell me if there is a keylog on my comp or something w/e wm hunter said
wm_hunter
05-18-2006, 09:15 AM
I'll look over it and get back to you alright? Thanks
Creator123
05-18-2006, 09:23 AM
sum1s looking at to much u no what (****) ^^
Powered by vBulletin® Version 4.2.5 Copyright © 2025 vBulletin Solutions Inc. All rights reserved.