missing java/lang/Object also a Hijack this scan

Discussion in 'other security issues & news' started by gammaweezy, Jan 27, 2004.

Thread Status:
Not open for further replies.
  1. gammaweezy

    gammaweezy Registered Member

    Joined:
    Jan 27, 2004
    Posts:
    2
    Location:
    Hendersonville, NC
    Did a Norton scan and got this error message: "Unable to locate system class:java/lang/Object" also got a lot of 'could not update" results are below.
    The following Symantec products and components are installed on your computer.
    > LiveUpdate
    > Norton AntiVirus
    > Norton AntiVirus Virus Definitions
    > Norton Internet Security Resource Updates
    > Norton Internet Security program updates
    > Norton Internet Security security updates
    > ScriptBlocking
    > Subscription Services
    > Symantec Common Client Updates
    > Symantec Common Driver: SymEvent
    > Symantec Intrusion Detection Signatures
    > Symantec Redirector
    > Symantec Security Response Submission Software Updates
    > Symantec Shared Components

    Initializing...
    Connecting to liveupdate.symantecliveupdate.com...

    Downloading catalog file (1 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (2 of 20), not available.
    Downloading catalog file (3 of 20), not available.
    Downloading catalog file (4 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (5 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (6 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (7 of 20), not available.
    Downloading catalog file (8 of 20), not available.
    Downloading catalog file (9 of 20), not available.
    Downloading catalog file (10 of 20), not available.
    Downloading catalog file (11 of 20), not available.
    Downloading catalog file (12 of 20), not available.
    Downloading catalog file (13 of 20), not available.
    Downloading catalog file (14 of 20), not available.
    Downloading catalog file (15 of 20), not available.
    Downloading catalog file (16 of 20), not available.
    Downloading catalog file (17 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (18 of 20), not available.
    Downloading catalog file (19 of 20), complete.
    Opening update list
    The digital signature found on the catalog file has been signed by Symantec Corporation.
    Processing update list
    Opening update list
    Processing update list
    Downloading catalog file (20 of 20), not available.

    The following updates have been found:
    > Norton AntiVirus Virus Definitions, 301.8 KB
    Total Download 301.8 KB

    The following updates have been aborted:
    > Norton Internet Security program updates has 1 aborted update(s).
    Reason:
    LU1848: Couldn't create callback object.

    > Symantec Intrusion Detection Signatures has 1 aborted update(s).
    Reason:
    LU1848: Couldn't create callback object.

    > Norton Internet Security security updates has 1 aborted update(s).
    Reason:
    LU1848: Couldn't create callback object.


    Downloading Norton AntiVirus Virus Definitions (1 of 1), complete.

    Installing Norton AntiVirus Virus Definitions (1 of 1), complete.

    LiveUpdate session is complete.

    HighJack this scan is attached.(hopefully)
     
  2. gammaweezy

    gammaweezy Registered Member

    Joined:
    Jan 27, 2004
    Posts:
    2
    Location:
    Hendersonville, NC
    This is the High Jack this scan...attachment didn't work..sorry
    Logfile of HijackThis v1.97.7
    Scan saved at 3:53:25 PM, on 1/27/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\System32\ups.exe
    C:\WINDOWS\Explorer.EXE
    C:\windows\system\hpsysdrv.exe
    C:\HP\KBD\KBD.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\PROGRA~1\HPINST~1\Pavilion\XPHNABS3EN\plugin\bin\pchbutton.exe
    C:\Program Files\Hewlett-Packard\AiO\hp officejet v series\Bin\hpoant07.exe
    C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
    C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
    C:\WINDOWS\System32\hpoipm07.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
    C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOFXM07.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Owner.WEEZYSPC\Local Settings\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mymediacomonline.com/hendersonville
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O3 - Toolbar: hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
    O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_12_0.dll
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPINST~1\Pavilion\XPHNABS3EN\plugin\bin\pchbutton.exe
    O4 - Global Startup: HPAiODevice(hp officejet v series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp officejet v series\Bin\hpoant07.exe
    O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
    O9 - Extra button: AIM (HKLM)
    O15 - Trusted Zone: http://group.msn.com
    O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/swdir.cab
    O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst.cab
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2003120501/housecall.antivirus.com/housecall/xscan53.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37862.6935648148
    O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll
    O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by10fd.bay10.hotmail.msn.com/activex/HMAtchmt.ocx
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab

    Any help would be GREATLY appreciated.
     
  3. Pieter_Arntz

    Pieter_Arntz Spyware Veteran

    Joined:
    Apr 27, 2002
    Posts:
    13,332
    Location:
    Netherlands
Loading...
Thread Status:
Not open for further replies.