Warning

 

Close
Confirm Action

Are you sure you wish to do this?

Cancel Confirm
AR15.COM
4/30/2008 2:22:18 PM EDT
I've had a sudden increase in odd processes popping up on my firewall.  I've blocked them, but I cannot figure out what they are or how to stop them - or if I even need to.  I've googled around a bit, and run several programs, but they persist.  Does anyone know what these are?

Windows NT Logon Application

LSA Shell (Export Version)

Application Layer Gateway Service

NDIS User mode I/O Driver

Or these even - these look legit (?)

NT Kernel & System

Generic Host Process for Win32 Services

I ran Spybot Search & Destroy and Adaware.  I also used an online virus scan which found and cleaned TROJ_CAIIJING.e.  I also use a Sygate firewall - that's what these processes keep popping up on.

I'd like to eliminate these process if they are unnecessary.  They pop up very frequently, which can interrupt other programs.
4/30/2008 3:38:38 PM EDT
[#1]

Quoted:
I've had a sudden increase in odd processes popping up on my firewall.  I've blocked them, but I cannot figure out what they are or how to stop them - or if I even need to.  I've googled around a bit, and run several programs, but they persist.  Does anyone know what these are?

Windows NT Logon Application

LSA Shell (Export Version) WORM/VIRUS

Application Layer Gateway Service Can be legit, and can be associated with viruses

NDIS User mode I/O Driver  legit

Or these even - these look legit (?)

NT Kernel & System legit

Generic Host Process for Win32 Services legit

I ran Spybot Search & Destroy and Adaware.  I also used an online virus scan which found and cleaned TROJ_CAIIJING.e.  I also use a Sygate firewall - that's what these processes keep popping up on.

I'd like to eliminate these process if they are unnecessary.  They pop up very frequently, which can interrupt other programs.


here is your prescription:

If you have Norton, uninstall it.

Download, Install and update these Programs.  Then Run Windows Update.

Firefox 2 (use this to surf the net, not IE)

No Script add on (follow usage instructions, or you will think you have problems

CCleaner (run once a week)

AVG Free

AVG anti-rootkit free

Avast 4 free (or this alternative to AVG, if you install this...dont install AVG)

And If you must use spyware detector programs, then use these approved versions:
the real ADAWARE can be found here

the real Spybot SD can be found here
4/30/2008 4:08:24 PM EDT
[#2]
LSA Shell is a legit service. Some worms disguise themselves as the LSA shell.

-Foxxz
4/30/2008 4:59:04 PM EDT
[#3]

Quoted:

Quoted:
I've had a sudden increase in odd processes popping up on my firewall.  I've blocked them, but I cannot figure out what they are or how to stop them - or if I even need to.  I've googled around a bit, and run several programs, but they persist.  Does anyone know what these are?

Windows NT Logon Application

LSA Shell (Export Version) WORM/VIRUS

Application Layer Gateway Service Can be legit, and can be associated with viruses

NDIS User mode I/O Driver  legit

Or these even - these look legit (?)

NT Kernel & System legit

Generic Host Process for Win32 Services legit

I ran Spybot Search & Destroy and Adaware.  I also used an online virus scan which found and cleaned TROJ_CAIIJING.e.  I also use a Sygate firewall - that's what these processes keep popping up on.

I'd like to eliminate these process if they are unnecessary.  They pop up very frequently, which can interrupt other programs.


here is your prescription:

If you have Norton, uninstall it.

Download, Install and update these Programs.  Then Run Windows Update.

Firefox 2 (use this to surf the net, not IE)

No Script add on (follow usage instructions, or you will think you have problems

CCleaner (run once a week)

AVG Free

AVG anti-rootkit free

Avast 4 free (or this alternative to AVG, if you install this...dont install AVG)

And If you must use spyware detector programs, then use these approved versions:
the real ADAWARE can be found here

the real Spybot SD can be found here


Thanks gaspain.  I will implement this prescription in the AM.  I'm in an area with crappy download times at the moment.  I've been running the first Firefox for a while now, didn't know there was a new version out.  I've also been running AVG for a long time now.