Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Logfile of Trend Micro HijackThis v2.0.4
- Scan saved at 12:24:54 AM, on 2011-10-21
- Platform: Windows XP SP3 (WinNT 5.01.2600)
- MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
- Boot mode: Normal
- Running processes:
- C:\WINDOWS\System32\smss.exe
- C:\WINDOWS\system32\winlogon.exe
- C:\WINDOWS\system32\services.exe
- C:\WINDOWS\system32\lsass.exe
- C:\WINDOWS\system32\Ati2evxx.exe
- C:\WINDOWS\system32\svchost.exe
- C:\WINDOWS\System32\svchost.exe
- C:\WINDOWS\system32\Ati2evxx.exe
- C:\WINDOWS\system32\spoolsv.exe
- C:\WINDOWS\system32\EXPLORER.EXE
- C:\WINDOWS\Explorer.EXE
- C:\WINDOWS\RTHDCPL.EXE
- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
- C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
- C:\WINDOWS\Wincft.exe
- C:\Program Files\blueconnect\DataCardMonitor.exe
- C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
- C:\Program Files\Common Files\Java\Java Update\jusched.exe
- C:\Program Files\Livebox\Launcher\Launcher.exe
- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
- C:\WINDOWS\system32\ctfmon.exe
- C:\Program Files\DAEMON Tools Lite\DTLite.exe
- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
- C:\Documents and Settings\Kubus\Application Data\blueconnect\ouc.exe
- C:\Program Files\Livebox\systray\systrayapp.exe
- C:\Program Files\Livebox\connectivity\connectivitymanager.exe
- C:\WINDOWS\system32\svchost.exe
- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
- C:\Program Files\Java\jre7\bin\jqs.exe
- C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
- C:\Program Files\Livebox\connectivity\CoreCom\CoreCom.exe
- C:\Documents and Settings\Kubus\Application Data\mservice32_t.exe
- C:\WINDOWS\system32\svchost.exe
- C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe
- C:\WINDOWS\system32\wscntfy.exe
- C:\Program Files\Livebox\connectivity\CoreCom\OraConfigRecover.exe
- C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
- C:\WINDOWS\System32\svchost.exe
- C:\Program Files\WapSter\WapSter AQQ\AQQ.exe
- C:\WINDOWS\System32\svchost.exe
- C:\Program Files\Opera\opera.exe
- C:\WINDOWS\system32\msiexec.exe
- C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
- R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://users.iptelecom.net.ua/~codecs/
- R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Livebox\SearchURLHook\SearchPageURL.dll
- F2 - REG:system.ini: UserInit=userinit.exe,EXPLORER.EXE
- O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
- O2 - BHO: BHO_HelloWorld.BHO - {aa6aa15d-feb4-3c0d-b711-8abb63f3f406} - mscoree.dll (file missing)
- O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
- O2 - BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\PROGRA~1\ALLPLA~1\Iplex\IPLEXT~1.DLL
- O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
- O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
- O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
- O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
- O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
- O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
- O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
- O4 - HKLM\..\Run: [mumservice] C:\Program Files\Motorola\Software Update\mumservice.exe
- O4 - HKLM\..\Run: [WinDefender] C:\WINDOWS\Wincft.exe
- O4 - HKLM\..\Run: [DataCardMonitor] C:\Program Files\blueconnect\DataCardMonitor.exe
- O4 - HKLM\..\Run: [ORAHSSSessionManager] "C:\Program Files\Livebox\SessionManager\SessionManager.exe"
- O4 - HKLM\..\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
- O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
- O4 - HKCU\..\Run: [king_mg] C:\WINDOWS\system32\mgking.exe
- O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
- O4 - HKCU\..\Run: [AQQ] C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe
- O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Kubus\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
- O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
- O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
- O4 - HKCU\..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe /autorun
- O4 - HKCU\..\Run: [King_ar] C:\WINDOWS\system32\arking.exe
- O4 - HKCU\..\Run: [wsctf.exe] wsctf.exe
- O4 - HKCU\..\Run: [EXPLORER.EXE] EXPLORER.EXE
- O4 - HKCU\..\Run: [ALLUpdate] "C:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep"
- O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
- O4 - HKCU\..\Run: [HW_OPENEYE_OUC_blueconnect] "C:\Program Files\blueconnect\UpdateDog\ouc.exe"
- O4 - HKCU\..\RunOnce: [UpdateT] C:\Documents and Settings\Kubus\Application Data\et_update\mservice32_t.exe
- O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil10o_Plugin.exe -update plugin
- O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
- O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
- O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
- O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
- O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
- O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
- O4 - Startup: CCC.lnk = ?
- O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
- O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
- O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
- O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
- O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
- O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
- O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
- O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
- O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
- O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
- O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
- O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
- O23 - Service: France Telecom Routing Table Service (FTRTSVC) - Unknown owner - C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
- O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
- O23 - Service: MotoHelper Service (MotoHelper) - Unknown owner - C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
- O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
- --
- End of file - 8777 bytes
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement