Advertisement
Guest User

Untitled

a guest
Nov 23rd, 2011
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.94 KB | None | 0 0
  1. Logfile of Trend Micro HijackThis v2.0.2
  2. Scan saved at 13:42:04, on 23.11.2011
  3. Platform: Windows XP SP3 (WinNT 5.01.2600)
  4. MSIE: Internet Explorer v8.00 (8.00.6001.18702)
  5. Boot mode: Normal
  6.  
  7. Running processes:
  8. C:\WINXP\System32\smss.exe
  9. C:\WINXP\system32\winlogon.exe
  10. C:\WINXP\system32\services.exe
  11. C:\WINXP\system32\lsass.exe
  12. C:\WINXP\system32\svchost.exe
  13. C:\WINXP\System32\svchost.exe
  14. E:\Avast Protection\AvastSvc.exe
  15. C:\WINXP\system32\spoolsv.exe
  16. C:\WINXP\Explorer.EXE
  17. E:\Avast Protection\avastUI.exe
  18. C:\WINXP\system32\RunDLL32.exe
  19. C:\WINXP\System32\svchost.exe
  20. C:\Program Files\Java\jre6\bin\jqs.exe
  21. C:\WINXP\system32\nvsvc32.exe
  22. C:\WINXP\system32\ctfmon.exe
  23. C:\WINXP\system32\PnkBstrA.exe
  24. C:\WINXP\system32\PnkBstrB.exe
  25. C:\Program Files\Spyware Terminator\sp_rsser.exe
  26. E:\Tunngle\Tunngle\TnglCtrl.exe
  27. C:\WINXP\system32\wscntfy.exe
  28. C:\Program Files\SpeedFan\speedfan.exe
  29. E:\Firefox Portable\FirefoxPortable.exe
  30. E:\Firefox Portable\App\firefox\firefox.exe
  31. E:\Firefox Portable\App\firefox\plugin-container.exe
  32. C:\WINXP\system32\svchost.exe
  33. C:\Documents and Settings\Vedran\Desktop\Other\GPU-Z.0.5.5.exe
  34. C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
  35.  
  36. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  37. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=1586&gct=hp
  38. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
  39. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  40. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  41. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
  42. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  43. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  44. O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Avast Protection\aswWebRepIE.dll
  45. O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
  46. O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
  47. O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Avast Protection\aswWebRepIE.dll
  48. O4 - HKLM\..\Run: [avast] "E:\Avast Protection\avastUI.exe" /nogui
  49. O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINXP\system32\NvCpl.dll,NvStartup
  50. O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
  51. O4 - HKCU\..\Run: [ctfmon.exe] C:\WINXP\system32\ctfmon.exe
  52. O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'LOCAL SERVICE')
  53. O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'NETWORK SERVICE')
  54. O4 - HKUS\S-1-5-21-1060284298-1960408961-1177238915-1004\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'UpdatusUser')
  55. O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'SYSTEM')
  56. O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'Default user')
  57. O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Vedran\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
  58. O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINXP\Network Diagnostic\xpnetdiag.exe
  59. O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINXP\Network Diagnostic\xpnetdiag.exe
  60. O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
  61. O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
  62. O13 - Gopher Prefix:
  63. O23 - Service: avast! Antivirus - AVAST Software - E:\Avast Protection\AvastSvc.exe
  64. O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
  65. O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINXP\system32\GameMon.des.exe (file missing)
  66. O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINXP\system32\nvsvc32.exe
  67. O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
  68. O23 - Service: PnkBstrA - Unknown owner - C:\WINXP\system32\PnkBstrA.exe
  69. O23 - Service: PnkBstrB - Unknown owner - C:\WINXP\system32\PnkBstrB.exe
  70. O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
  71. O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
  72. O23 - Service: TunngleService - Tunngle.net GmbH - E:\Tunngle\Tunngle\TnglCtrl.exe
  73.  
  74. --
  75. End of file - 5060 bytes
  76.  
  77.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement