ZiNgA BuRgA Wrote:Get something like Process Explorer NT (much better than Task Manager).
![[Image: 44114809up1.jpg]](http://img248.imageshack.us/img248/7629/44114809up1.jpg)
Look at the process tree. All svchost.exe should be under the SYSTEM tree. Typically, viruses pretending to be svchost don't fall under that tree. If you find some, double-click them, and Process Explorer NT will show you the path to the EXE - just kill the process and delete/move the EXE.
thanks zinga
used this to kill something called : "S
CVHOST.exe" ... prolly got it when my brother used his inf*kted Flash drive ... bugger disabled my task manager ... oh shi- now my psp's stick is full of worms
SCVHOST? I wonder if it has something to do with Starcraft O_O
lol, the SC fever is spreading XD
ZiNgA BuRgA Wrote:SCVHOST? I wonder if it has something to do with Starcraft O_O
i don't think so :D
anyway .. killed it now ... along with more "*.cmd" files ... but now i can't make windows show my hidden files and folders ...

.. still looking for a solution
To show my hidden files and folders I use
ExplorerXP :D You can also have tabbed browsing......
ZiNgA BuRgA Wrote:SCVHOST? I wonder if it has something to do with Starcraft O_O
StarCraftVirtualHOST ??
SCVs are a robotic worker unit in Starcraft... But that works too :P
MehHakker Wrote:To show my hidden files and folders I use ExplorerXP :D You can also have tabbed browsing......
combofix fixed it for me :D
deleted these:
combofix log Wrote:C:\Autorun.inf
C:\Program Files\ActivationManager
C:\Program Files\ActivationManager\ActivationManager.dll
C:\Program Files\ActivationManager\Uninstall.exe
C:\WINDOWS\sysdat.dll
C:\WINDOWS\system32\autorun.ini
C:\WINDOWS\system32\blastclnnn.exe
C:\WINDOWS\system32\kavo.exe
C:\WINDOWS\system32\kavo0.dll
C:\WINDOWS\system32\kavo1.dll
C:\WINDOWS\system32\setting.ini
D:\Autorun.inf
F:\Autorun.inf
Senseito Sakura Wrote:ZiNgA BuRgA Wrote:SCVHOST? I wonder if it has something to do with Starcraft O_O
StarCraftVirtualHOST ??
lulz
