Results 1 to 6 of 6

Thread: xdipff.exe - have you ever heard of this?

Hybrid View

  1. #1
    Join Date
    Apr 2007
    Posts
    3

    xdipff.exe - have you ever heard of this?

    My firewall keeps blocking this program from trying to access the internet: xdipff.exe and I can't find any info about it.

    It resides in windows/system32/ folder, I am running XP2, and I have tried to disable it from startup, but it keeps coming back. Also when I try to search for it on my machine I can't always find it... comes and goes, but always loads no matter what?

    Should I delete it the next time I can find it? Any suggestions for me? thanks in advance
    Attached Images Attached Images
    Last edited by celrus; 04-26-2007 at 01:22 PM. Reason: Attach screen shot

  2. #2
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Go to this link and follow ALL steps given EXACTLY as given. This could very well be malware on the machine.
    Pay close attention to where you should locate the programs you will need to download and which items to run in safe mode.
    Once you have completed all those steps post back here with the logs generated by running programs noted in the instructions.

  3. #3
    Join Date
    Aug 2006
    Posts
    2,763
    there's also some info about some things that may include the file xdipff.exe at trendmicro.com

  4. #4
    Join Date
    Apr 2007
    Posts
    3

    xdipff.exe is a trojan, thanks for your quick help

    Just trying to document the file name since nothing comes up with google, but with safe mode AVG took care of it. I have to say that I tried safe mode via msconfig and I couldn't get the machine to start again, had to use a boot disk and redo the boot.ini file to stop safe mode and load normal again. Then I used f8 instead, but only "safe mode networking" would load. I didn't do everything Exactly, but you know, I did get it to work with your recommendations and I am very thankful for your help and time, pura vida, bm

  5. #5
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Can you run us a hjt log...just to be safe? If you found one unknown there very well could be others.
    We rarely recommend using the msconfig for the safe mode boot generally the F8 method is best.

  6. #6
    Join Date
    Apr 2007
    Posts
    3

    log attached per your request

    thanks again, any comments or suggestions are greatly appreciated, bob
    Attached Files Attached Files
    Last edited by celrus; 04-28-2007 at 03:34 PM. Reason: attachment failed

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •