What Is Navwp32.exe

Here is a fresh log: Logfile of HijackThis v1.99.1Scan saved at 11:16:39 PM, on 4/25/2005Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Successful exploitation does not normally require any interaction and exploits are in the wild. In your c:\windows\inf folder is Sr.inf, right-click it an install in the files needed box browse to Sr.sy_ (i386 folder on XP CD) click open.

TECHNICAL DETAILS File type:PE Memory resident:Yes Size of malware:88,576 Bytes Ports used:Random Vulnerability used:

Every reboot it gets loaded from system restore again.

Logfile of HijackThis v1.99.1Scan saved at 8:23:34 PM, on 4/26/2005Platform: Windows XP SP1 I've been away for a week, and I now REALLY need to use some applications, so this is a bit of an emergency. Here is a fresh log: Logfile of HijackThis v1.99.1Scan saved at 3:56:16 PM, on 3/28/2005Platform: Windows XP SP1 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Although I am not sure they are related, I very suspcisious of all these USB applications in the log. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE. Then click the run cleaner button.When it finishes close ccleaner.Open a command prompt, start run type CMD and hit ok or entertypecd %windir%press enter, type >sc stop SvcProcpress enter , type

Detailed information about this vulnerability is available from the following Microsoft page: Microsoft Security Bulletin MS04-011 This worm steals the CD keys of certain game applications, and the Microsoft Windows Product Click Start>Run, type REGEDIT, then press Enter. The bot allows a remote user to do the following: Change IRC server and channel where this worm connects to Download and execute files Add/remove default network shares Get system information