pgv1.200 window log

Discussion in 'ProcessGuard' started by the mul, Jan 27, 2004.

Thread Status:
Not open for further replies.
  1. the mul

    the mul Registered Member

    Joined:
    Jul 31, 2003
    Posts:
    1,703
    Location:
    scotland
    Can u please advise me on window log, and please tell me if everything looks ok, or should i make any changes to my settings.
    Everything seems to be working ok.
    the mul

    26 Jan 21:23:13 - Block End Task has been enabled
    26 Jan 21:23:17 - Block AppInit has been enabled
    26 Jan 21:23:20 - Block Drivers has been enabled
    26 Jan 21:23:22 - Block Global Hooks has been enabled
    26 Jan 21:37:21 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2124] was blocked from creating a global hook [00000007][00000002]
    26 Jan 21:37:21 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2124] was blocked from creating a global hook [00000006][00000002]
    26 Jan 21:37:21 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2124] was blocked from creating a global hook [0000000E][00000002]
    26 Jan 21:37:21 - [HOOK] c:\windows\system32\cthelper.exe [1328] was blocked from creating a global hook [0000000A][00000002]
    26 Jan 21:37:21 - Process Guard Protection is ACTIVE
    26 Jan 22:17:08 - Process Guard Protection is ACTIVE
    26 Jan 22:17:09 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [00000007][00000002]
    26 Jan 22:17:09 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [00000006][00000002]
    26 Jan 22:17:09 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [0000000E][00000002]
    26 Jan 22:17:09 - [HOOK] c:\windows\system32\cthelper.exe [1656] was blocked from creating a global hook [0000000A][00000002]
    26 Jan 22:17:52 - Window Log Started
    26 Jan 23:16:29 - Process Guard Protection is ACTIVE
    26 Jan 23:16:30 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2172] was blocked from creating a global hook [00000007][00000002]
    26 Jan 23:16:30 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2172] was blocked from creating a global hook [00000006][00000002]
    26 Jan 23:16:30 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2172] was blocked from creating a global hook [0000000E][00000002]
    26 Jan 23:16:30 - [HOOK] c:\windows\system32\cthelper.exe [1748] was blocked from creating a global hook [0000000A][00000002]
    26 Jan 23:55:35 - [HOOK] c:\program files\aol 8.0\waol.exe [284] was blocked from creating a global hook [00000002][00000002]
    26 Jan 23:55:35 - [HOOK] c:\program files\aol 8.0\waol.exe [284] was blocked from creating a global hook [00000007][00000002]
    26 Jan 23:55:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    26 Jan 23:55:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    26 Jan 23:55:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 14:28:33 - Process Guard Protection is ACTIVE
    27 Jan 14:28:33 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2204] was blocked from creating a global hook [00000007][00000002]
    27 Jan 14:28:33 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2204] was blocked from creating a global hook [00000006][00000002]
    27 Jan 14:28:33 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2204] was blocked from creating a global hook [0000000E][00000002]
    27 Jan 14:28:33 - [HOOK] c:\windows\system32\cthelper.exe [1552] was blocked from creating a global hook [0000000A][00000002]
    27 Jan 14:29:35 - [HOOK] c:\program files\aol 8.0\waol.exe [2556] was blocked from creating a global hook [00000002][00000002]
    27 Jan 14:29:35 - [HOOK] c:\program files\aol 8.0\waol.exe [2556] was blocked from creating a global hook [00000007][00000002]
    27 Jan 14:29:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 14:29:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 14:29:46 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 14:41:44 - Window Log Started
    27 Jan 15:17:08 - Process Guard Protection is ACTIVE
    27 Jan 15:17:08 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [280] was blocked from creating a global hook [00000007][00000002]
    27 Jan 15:17:08 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [280] was blocked from creating a global hook [00000006][00000002]
    27 Jan 15:17:08 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [280] was blocked from creating a global hook [0000000E][00000002]
    27 Jan 15:17:08 - [HOOK] c:\windows\system32\cthelper.exe [240] was blocked from creating a global hook [0000000A][00000002]
    27 Jan 15:17:38 - [HOOK] c:\program files\aol 8.0\waol.exe [2508] was blocked from creating a global hook [00000002][00000002]
    27 Jan 15:17:38 - [HOOK] c:\program files\aol 8.0\waol.exe [2508] was blocked from creating a global hook [00000007][00000002]
    27 Jan 15:17:47 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 15:17:47 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 15:17:51 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 15:17:51 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 17:40:26 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2164] was blocked from creating a global hook [00000007][00000002]
    27 Jan 17:40:26 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2164] was blocked from creating a global hook [00000006][00000002]
    27 Jan 17:40:26 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2164] was blocked from creating a global hook [0000000E][00000002]
    27 Jan 17:40:26 - [HOOK] c:\windows\system32\cthelper.exe [1468] was blocked from creating a global hook [0000000A][00000002]
    27 Jan 17:40:27 - Process Guard Protection is ACTIVE
    27 Jan 17:45:30 - [HOOK] c:\program files\aol 8.0\waol.exe [2820] was blocked from creating a global hook [00000002][00000002]
    27 Jan 17:45:30 - [HOOK] c:\program files\aol 8.0\waol.exe [2820] was blocked from creating a global hook [00000007][00000002]
    27 Jan 17:45:35 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 17:45:35 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 17:45:35 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 17:45:35 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 20:24:12 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [00000007][00000002]
    27 Jan 20:24:12 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [00000006][00000002]
    27 Jan 20:24:12 - [HOOK] c:\program files\browser mouse\browser mouse\1.1\mouse32a.exe [2184] was blocked from creating a global hook [0000000E][00000002]
    27 Jan 20:24:12 - [HOOK] c:\windows\system32\cthelper.exe [1608] was blocked from creating a global hook [0000000A][00000002]
    27 Jan 20:24:12 - Process Guard Protection is ACTIVE
    27 Jan 20:27:01 - [HOOK] c:\program files\aol 8.0\waol.exe [2716] was blocked from creating a global hook [00000002][00000002]
    27 Jan 20:27:01 - [HOOK] c:\program files\aol 8.0\waol.exe [2716] was blocked from creating a global hook [00000007][00000002]
    27 Jan 20:27:09 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 20:27:09 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 20:27:09 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
    27 Jan 20:27:09 - [DRIVER/SERVICE] c:\windows\system32\services.exe [512] Tried to install a driver/service named ATWPKT2
     
  2. DolfTraanberg

    DolfTraanberg Registered Member

    Joined:
    Nov 20, 2002
    Posts:
    676
    Location:
    Amsterdam
    hi the mul,
    If you KNOW the programs listed in your logs are ok then you SHOULD give them the rights needed.
    Dolf
     
  3. gkweb

    gkweb Expert Firewall Tester

    Joined:
    Aug 29, 2003
    Posts:
    1,932
    Location:
    FRANCE, Rouen (76)
    i would say you CAN or not :)

    especially for driver installation, you have to know what are they before allowing them.
    I don't know your apps being blocked so i can't advise you, but generaly if all work fine, you can stay like that.
    You can too allow them, but be sure you trust them before.
     
  4. Pilli

    Pilli Registered Member

    Joined:
    Feb 13, 2002
    Posts:
    6,217
    Location:
    Hampshire UK
    Hi Mul,
    You can put moude32.exe (providing you trust) in your PG list, highlight it and allow clobal hooks, this will reduce most a lot of your logs.
    Services.exe should already be on your list
    Not sure about ATWPKT2 or what it relates to - is it to do with AOL?
     
  5. the mul

    the mul Registered Member

    Joined:
    Jul 31, 2003
    Posts:
    1,703
    Location:
    scotland
    Can u please help me, i have allowed global hook for browser mouse, and aol /waol.exe, and also cthelper.exe, but how can i sort out, windows/ system32/services.exe tried to install a driver/ service named atwpk2t and where can i start looking, but what i will say is everything seems to be working ok.


    thanks the mul
     
  6. siliconman01

    siliconman01 Registered Member

    Joined:
    Mar 6, 2003
    Posts:
    780
    Location:
    West Virginia (USA)
    mul,

    Atwpk2t is part of AOL. I had to set services.exe to Options= Allow Driver/Services Installation. No more messages on atwpkt2.

    Atwpkt2.sys can be found in c:\program files\common files\aol\acs\

    Even though you are running AOL 8.0, please refer to the following thread.
    http://www.wilderssecurity.com/showthread.php?t=20549
    It will give you some close clues.
     
  7. the mul

    the mul Registered Member

    Joined:
    Jul 31, 2003
    Posts:
    1,703
    Location:
    scotland
    Thanks for all your help siliconman01, i have followed your advise, i could have done this already, but just wanted to check and see if someone new what the driver was.

    thanks again your help it is appreciated


    the mul
     
  8. Pilli

    Pilli Registered Member

    Joined:
    Feb 13, 2002
    Posts:
    6,217
    Location:
    Hampshire UK
    Glad you have it sorted Mul :D
     
  9. the mul

    the mul Registered Member

    Joined:
    Jul 31, 2003
    Posts:
    1,703
    Location:
    scotland
    Thanks pilli for your help as well.


    the mul
     
Thread Status:
Not open for further replies.