Whats BascTray.exe? and...

Discussion in 'Trojan Defence Suite' started by boomansion, Jul 5, 2004.

Thread Status:
Not open for further replies.
  1. boomansion

    boomansion Registered Member

    Joined:
    Jul 5, 2004
    Posts:
    6
    BascTray.exe and PRONOMGR.EXE on are my PC I end their tasks everyday.
    How Do I permently remove them? Iv got a adware remover, and norton fully updated by nothing about it comes up please help!
     
  2. Jooske

    Jooske Registered Member

    Joined:
    Feb 12, 2002
    Posts:
    9,713
    Location:
    Netherlands, EU near the sea
    Hi there, and welcome here.
    Don't know the files of any program, their location on your system don't tell either, nor wehn you look in the properties of the files?
    Then do submit them for possible nastyness submit@diamondcs.com.au
    (zipped if possible)
    help you googling.
     
  3. boomansion

    boomansion Registered Member

    Joined:
    Jul 5, 2004
    Posts:
    6
    They only show up when I press CTRL+ALT+DELETE and go to processes and I have Windows XP. I need help!! Basctray is a trojan I think But I cant find any info on it!
     
  4. Jooske

    Jooske Registered Member

    Joined:
    Feb 12, 2002
    Posts:
    9,713
    Location:
    Netherlands, EU near the sea
    Make sure all processes are showing in the windows explorer, no hidden files allowed.
    Did TDS not see the nasties you posted here and in the other thread?

    I think you should besides doing a full system scan with the fully updated TDS (and other scanners closed temporary during that, also their resident protection to give TDS full access to every file) also after that go to this thread [thread]15913[/thread] about posting your HijackThis log in that forum for expert review as quick as possible with the other infection in mind too, so the nastyness can be stopped in their traces.
    After your TDS scan right click on one of the alarms in the bottom console and save to Scandump.txt, which will be a great help if you post that too with the hijackthis log.
    Please keep us informed how it goes.
     
  5. Boo Mansion

    Boo Mansion Guest

    It didnt find anything...
     
  6. Jooske

    Jooske Registered Member

    Joined:
    Feb 12, 2002
    Posts:
    9,713
    Location:
    Netherlands, EU near the sea
    PRONoMgr.exe startup entry
    Filename: PRONoMgr.exe
    Description:
    Related to drivers for the Intel PRO 100 network card.
    Located in "C:\Program Files\Intel\NCS\PROSet\".
    Stopping of PRONoMgr.exe process:
    Process PRONoMgr.exe doesn't compromise your privacy and is not related to security threats.

    Does this fit for your system?
    On the other file i didn't find any info, not as part of a trojan either.
    Did you have both files all of a sudden or are they long time there?
    I saw the pronomgr in various HJT logs in other forums which had problems.
    If you submitted the files Gavin will tell you shortly about the files.
    I got extra cautious because of the windows update exe which i thought to be in various places in stead of only one original where i thought it should be.
    It'sd already a hopeful sign TDS did not alarm while the files were longer time on your system already!
     
  7. boomansion

    boomansion Registered Member

    Joined:
    Jul 5, 2004
    Posts:
    6
    Ok, But BascTray.exe worrys me.
     
  8. WilliamP

    WilliamP Registered Member

    Joined:
    Jun 1, 2003
    Posts:
    2,208
    Location:
    Fayetteville, Ga
  9. Jooske

    Jooske Registered Member

    Joined:
    Feb 12, 2002
    Posts:
    9,713
    Location:
    Netherlands, EU near the sea
    Strange it did not show up when i googled the other day for it, while there are so many hits! thanks for finding it.
    Both files seem ok, i see the second in several HJT files and never removed, so probably OK.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.