Windows Vista Forums

Hijack this "scan listings2 question
  1. #1
    carl424's Avatar

    Member
    Join Date : May 2009
    Posts : 80
    vista home premuim 32bit
    Local Time: 05:22 AM

    Hijack this "scan listings2 question

    Hi, sorry if this is the wrong forum for this....

    The program "hijack this" i just wanted to know what the "shell= statement" means


    Last edited by carl424; 13 Jan 2010 at 02:15 AM. Reason: just wanted to change the title to "scan Listings"
      My System SpecsSystem Spec

  2. #2



    Banned
    Join Date : Dec 2009
    Upstate NY
    Posts : 57
    Vista Ultimate & Windows 7 x64
    Local Time: 12:22 AM
    usa us new york

     

    Re: Hijack this "scan listings2 question

    It would be best to post the entire line/log from HijackThis as there is no way to see what it is referring to in this context.

      My System SpecsSystem Spec

  3. #3
    carl424's Avatar

    Member
    Join Date : May 2009
    Posts : 80
    vista home premuim 32bit
    Local Time: 05:22 AM


      Thread Starter

    Re: Hijack this "scan listings" question

    Quote Originally Posted by Corrine View Post
    It would be best to post the entire line/log from HijackThis as there is no way to see what it is referring to in this context.
    Sorry Corrine, its from a "hijackthis" tutorial i am looking at.
    Which i probably have answered the question myself...
    But if there is anything to add to this or if this is wrong please post back

    I have since found out some information, (ie) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell.

    The shell is "explorer.exe" so i take it this is the shell statement in the windows NT versions.
    I am a bit new in this area, and i have to look up many "terms" used like shell
    Which states "shell" is the software that interacts with you on the part of the O/S the windows GUI that comes with all of the windows O/Ss is one of these shells.
    (ie...windows and icons that you see on screen)



    F0, F1, F2, F3 Sections

    These sections cover applications that are loaded from your .INI files, system.ini and win.ini, in Windows ME and below or their equivalent places in the registry for Windows NT based versions. The Windows NT based versions are XP, 2000, 2003, and Vista.
    A F0 entry corresponds to the Shell= statement, under the [Boot] section, of the System.ini file. The Shell= statement in the system.ini file is used to designate what program would act as the shell for the operating system

      My System SpecsSystem Spec

  4. #4



    Banned
    Join Date : Dec 2009
    Upstate NY
    Posts : 57
    Vista Ultimate & Windows 7 x64
    Local Time: 12:22 AM
    usa us new york

     

    Re: Hijack this "scan listings2 question

    Hi, carl424.

    The Bleeping Computer tutorial is for general information. Most of what is found in a HijackThis log is harmless and even necessary. In fact, due to the way malware has evolved, you will find that most security forums have moved away from HJT. That said, since HJT uses a white list, generally any F0 items found in a log are fixed. It is necessary to research anything found before removal. Task List Programs - AnswersThatWork's famous Database of Windows Task Manager Processes, Windows Startup Items, XP Services, Vista Services, Process List is one source.

      My System SpecsSystem Spec

  5. #5
    carl424's Avatar

    Member
    Join Date : May 2009
    Posts : 80
    vista home premuim 32bit
    Local Time: 05:22 AM


      Thread Starter

    Re: Hijack this "scan listings2 question

    Quote Originally Posted by Corrine View Post
    Hi, carl424.
    you will find that most security forums have moved away from HJT. That said, since HJT uses a white list, generally any F0 items found in a log are fixed. It is necessary to research anything found before removal. Task List Programs - AnswersThatWork's famous Database of Windows Task Manager Processes, Windows Startup Items, XP Services, Vista Services, Process List is one source.
    Thanks for the reply corrine and info.

    you will find that most security forums have moved away from HJT
    Does this mean most security forums are using something else to diagnose malware
    If they are moving away from HJT, what would they be moving to.
    Would there be better scanning utilities available

      My System SpecsSystem Spec

  6. #6



    Banned
    Join Date : Dec 2009
    Upstate NY
    Posts : 57
    Vista Ultimate & Windows 7 x64
    Local Time: 12:22 AM
    usa us new york

     

    Re: Hijack this "scan listings2 question

    Yes, because of the manner in which malware has evolved, HJT is no longer effective in diagnosis. Generally, a rootkit scan and custom analysis tools are used. They purposely don't have removal capabilities but provide more indepth information.

      My System SpecsSystem Spec

  7. #7
    carl424's Avatar

    Member
    Join Date : May 2009
    Posts : 80
    vista home premuim 32bit
    Local Time: 05:22 AM


      Thread Starter

    Re: Hijack this "scan listings2 question

    Quote Originally Posted by Corrine View Post
    Yes, because of the manner in which malware has evolved, HJT is no longer effective in diagnosis. Generally, a rootkit scan and custom analysis tools are used. They purposely don't have removal capabilities but provide more indepth information.

    Quote Originally Posted by corrine
    Most of what is found in a HijackThis log is harmless and even necessary.
    I see, so you could say HJT is like a first stop in other words, to give security forums an indication of whats there, if they choose to use HJT first as the scan is very quick.
    Or on some other forums they might just ask you to do a rootkit scan first.

    Anyway thanks corrine for giving me that info..

      My System SpecsSystem Spec

Hijack this "scan listings2 question problems?

Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: "andy t" not up to challenge about failure of WSR scan doc feature andy t Vista General 0 10 Jan 2010
unable to send fax using "Windows Fax and Scan" Safai Vista print fax & scan 0 22 Mar 2009
Problem with "Hijack This" Jsh1284 Vista performance & maintenance 2 06 Nov 2008
Canon CanoScan 3200F not detected by "Windows Fax and Scan" Brisbane Mango Vista print fax & scan 5 09 Mar 2007
How does one change the "Windows Fax and Scan" to use a different folder Daniel L. Lieberman Vista print fax & scan 11 06 Feb 2007