Advertisement
Guest User

Untitled

a guest
Oct 14th, 2013
51
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.94 KB | None | 0 0
  1. Logfile of Trend Micro HijackThis v2.0.4
  2. Scan saved at 14:42:01, on 14.10.2013
  3. Platform: Windows 7 SP1 (WinNT 6.00.3505)
  4. MSIE: Internet Explorer v10.0 (10.00.9200.16720)
  5. Boot mode: Safe mode with network support
  6.  
  7. Running processes:
  8. C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  9. C:\Users\jutta\AppData\Local\Temp\OCS\Downloads
  10.  
  11. \fc14996dfa99adfc7baae624196888c5\7b4e384f5b096b9656fee276ba88bb
  12.  
  13. 81\HiJackThis204.exe
  14.  
  15. R1 - HKCU\Software\Microsoft\Internet Explorer
  16.  
  17. \Main,Default_Page_URL = http://nmd.msn.com
  18. R1 - HKLM\Software\Microsoft\Internet Explorer
  19.  
  20. \Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?
  21.  
  22. LinkId=255141
  23. R1 - HKLM\Software\Microsoft\Internet Explorer
  24.  
  25. \Main,Default_Search_URL = http://go.microsoft.com/fwlink/?
  26.  
  27. LinkId=54896
  28. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page
  29.  
  30. = http://go.microsoft.com/fwlink/?LinkId=54896
  31. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
  32.  
  33. http://go.microsoft.com/fwlink/p/?LinkId=255141
  34. R0 - HKLM\Software\Microsoft\Internet Explorer
  35.  
  36. \Search,SearchAssistant =
  37. R0 - HKLM\Software\Microsoft\Internet Explorer
  38.  
  39. \Search,CustomizeSearch =
  40. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
  41.  
  42. C:\Windows\SysWOW64\blank.htm
  43. R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
  44.  
  45. Settings,ProxyOverride = *.local
  46. R0 - HKCU\Software\Microsoft\Internet Explorer
  47.  
  48. \Toolbar,LinksFolderName =
  49. O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-
  50.  
  51. FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe
  52.  
  53. \Acrobat\ActiveX\AcroIEHelperShim.dll
  54. O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-
  55.  
  56. B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin
  57.  
  58. \ssv.dll
  59. O2 - BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-
  60.  
  61. 4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common
  62.  
  63. Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  64. O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-
  65.  
  66. BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin
  67.  
  68. \jp2ssv.dll
  69. O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program
  70.  
  71. Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install
  72.  
  73. /silent
  74. O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)]
  75.  
  76. rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-
  77.  
  78. Malware\cleanup.dll",ProcessCleanupScript
  79. O4 - HKCU\..\Run: [WEB.DE_WEB.DE MultiMessenger] "C:\Program
  80.  
  81. Files (x86)\WEB.DE\WEB.DE MultiMessenger\MESSENGR.EXE" /hide
  82. O4 - HKCU\..\Run: [GOG.com Downloader] C:\Program Files
  83.  
  84. (x86)\GOG.com\GOG.com Downloader.exe -autostart
  85. O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows
  86.  
  87. Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')
  88. O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows
  89.  
  90. \System32\mctadmin.exe (User 'LOKALER DIENST')
  91. O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows
  92.  
  93. Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')
  94. O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows
  95.  
  96. \System32\mctadmin.exe (User 'NETZWERKDIENST')
  97. O8 - Extra context menu item: Add to Google Photos Screensa&ver
  98.  
  99. - res://C:\windows\system32\GPhotos.scr/200
  100. O8 - Extra context menu item: An OneNote s&enden - res://C:
  101.  
  102. \PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
  103. O8 - Extra context menu item: Nach Microsoft &Excel exportieren
  104.  
  105. - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
  106. O8 - Extra context menu item: Nach Microsoft E&xcel exportieren
  107.  
  108. - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
  109. O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer
  110.  
  111. \WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-
  112.  
  113. A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer
  114.  
  115. \WriterBrowserExtension.dll
  116. O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows
  117.  
  118. Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-
  119.  
  120. 8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows
  121.  
  122. Live\Writer\WriterBrowserExtension.dll
  123. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common
  124.  
  125. files\microsoft shared\windows live\wlidnsp.dll
  126. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common
  127.  
  128. files\microsoft shared\windows live\wlidnsp.dll
  129. O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
  130. O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-
  131.  
  132. 07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet
  133.  
  134. Explorer\skypeieplugin.dll
  135. O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-
  136.  
  137. 1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
  138. O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} -
  139.  
  140. C:\Program Files (x86)\Windows Live\Photo Gallery
  141.  
  142. \AlbumDownloadProtocolHandler.dll
  143. O23 - Service: Adobe LM Service - Adobe Systems - C:\Program
  144.  
  145. Files (x86)\Common Files\Adobe Systems Shared\Service
  146.  
  147. \Adobelmsvc.exe
  148. O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) -
  149.  
  150. Unknown owner - C:\windows\System32\alg.exe (file missing)
  151. O23 - Service: AMD External Events Utility - Unknown owner - C:
  152.  
  153. \windows\system32\atiesrxx.exe (file missing)
  154. O23 - Service: BitRaider Mini-Support Service (BRSptSvc) -
  155.  
  156. BitRaider, LLC - C:\ProgramData\BitRaider\BRSptSvc.exe
  157. O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) -
  158.  
  159. Unknown owner - C:\windows\System32\lsass.exe (file missing)
  160. O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) -
  161.  
  162. Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
  163. O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:
  164.  
  165. \windows\system32\lsass.exe (file missing)
  166. O23 - Service: Mozilla Maintenance Service (MozillaMaintenance)
  167.  
  168. - Mozilla Foundation - C:\Program Files (x86)\Mozilla
  169.  
  170. Maintenance Service\maintenanceservice.exe
  171. O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:
  172.  
  173. \windows\System32\msdtc.exe (file missing)
  174. O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102
  175.  
  176. (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file
  177.  
  178. missing)
  179. O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown
  180.  
  181. owner - C:\windows\system32\nvvsvc.exe (file missing)
  182. O23 - Service: @%systemroot%\system32\psbase.dll,-300
  183.  
  184. (ProtectedStorage) - Unknown owner - C:\windows
  185.  
  186. \system32\lsass.exe (file missing)
  187. O23 - Service: @%systemroot%\system32\Locator.exe,-2
  188.  
  189. (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe
  190.  
  191. (file missing)
  192. O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) -
  193.  
  194. Unknown owner - C:\windows\system32\lsass.exe (file missing)
  195. O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP)
  196.  
  197. - Unknown owner - C:\windows\System32\snmptrap.exe (file
  198.  
  199. missing)
  200. O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) -
  201.  
  202. Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
  203. O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) -
  204.  
  205. Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
  206. O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo
  207.  
  208. Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA
  209.  
  210. Corporation\3D Vision\nvSCPAPISvr.exe
  211. O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101
  212.  
  213. (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe
  214.  
  215. (file missing)
  216. O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003
  217.  
  218. (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file
  219.  
  220. missing)
  221. O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) -
  222.  
  223. Unknown owner - C:\windows\System32\vds.exe (file missing)
  224. O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) -
  225.  
  226. Unknown owner - C:\windows\system32\vssvc.exe (file missing)
  227. O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601
  228.  
  229. (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat
  230.  
  231. \WatAdminSvc.exe (file missing)
  232. O23 - Service: @%systemroot%\system32\wbengine.exe,-104
  233.  
  234. (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe
  235.  
  236. (file missing)
  237. O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
  238.  
  239. (wmiApSrv) - Unknown owner - C:\windows\system32\wbem
  240.  
  241. \WmiApSrv.exe (file missing)
  242.  
  243. --
  244. End of file - 7783 bytes
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement