Advertisement
Guest User

Untitled

a guest
Dec 16th, 2012
160
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.27 KB | None | 0 0
  1. Logfile of Trend Micro HijackThis v2.0.4
  2. Scan saved at 1:05:34 PM, on 12/16/2012
  3. Platform: Windows 7 (WinNT 6.00.3504)
  4. MSIE: Internet Explorer v8.00 (8.00.7600.16385)
  5. Boot mode: Normal
  6.  
  7. Running processes:
  8. C:\Program Files (x86)\uTorrent\uTorrent.exe
  9. C:\Program Files (x86)\ShutdownGuard\ShutdownGuard.exe
  10. C:\Program Files (x86)\Skype\Phone\Skype.exe
  11. C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
  12. C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
  13. C:\Users\Maverick\AppData\Roaming\Dropbox\bin\Dropbox.exe
  14. C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
  15. C:\Program Files (x86)\Abyss Web Server X2\abyssws.exe
  16. C:\Program Files (x86)\Abyss Web Server X2\abyssws.exe
  17. C:\Program Files (x86)\Notepad++\notepad++.exe
  18. C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  19. C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\devenv.exe
  20. C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe
  21. C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe
  22. C:\Program Files (x86)\Microsoft Visual Studio 10.0\VC\vcpackages\VCPkgSrv.exe
  23. C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
  24. C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_110.exe
  25. C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_110.exe
  26. C:\Program Files (x86)\Microsoft Visual Studio 10.0\VC\vcpackages\VCPkgSrv.exe
  27. C:\Users\Maverick\Downloads\HijackThis.exe
  28.  
  29. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
  30. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  31. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  32. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
  33. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  34. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  35. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
  36. R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
  37. R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
  38. O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
  39. O2 - BHO: LightFrame3IECOM - {43D29D14-460E-4F3A-9037-E60F11EF12F0} - C:\Windows\SysWow64\LightFrame3IECOM.dll
  40. O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
  41. O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  42. O2 - BHO: FoxmarksDLLBHO - {A2A71ABA-3939-43B2-BD8F-8C1767EF9020} - C:\Program Files (x86)\Xmarks\IE Extension\foxmarksdll.dll
  43. O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
  44. O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
  45. O4 - HKLM\..\Run: [AtomicTime] C:\Users\Maverick\Documents\qs_toolkit\AtomicTime.exe s
  46. O4 - HKLM\..\Run: [Super-Charger] C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe
  47. O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
  48. O4 - HKLM\..\Run: [PrivitizeVPN] C:\Program Files (x86)\PrivitizeVPN\PrivitizeVPN.exe /autorun
  49. O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
  50. O4 - HKLM\..\RunOnce: [GrpConv] grpconv -o
  51. O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
  52. O4 - HKCU\..\Run: [ShutdownGuard] "C:\Program Files (x86)\ShutdownGuard\ShutdownGuard.exe"
  53. O4 - HKCU\..\Run: [SandboxieControl] "C:\Users\Maverick\Downloads\dcscrack\eatsx362\app\SbieCtrl.exe"
  54. O4 - HKCU\..\Run: [WhatPulse] C:\Program Files (x86)\WhatPulse\WhatPulse.exe
  55. O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
  56. O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
  57. O4 - HKCU\..\Run: [mapdisk] "C:\ArmAWork\mapdisk.bat"
  58. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
  59. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED (User 'UpdatusUser')
  60. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [ShutdownGuard] "C:\Program Files (x86)\ShutdownGuard\ShutdownGuard.exe" (User 'UpdatusUser')
  61. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [SandboxieControl] "C:\Users\Maverick\Downloads\dcscrack\eatsx362\app\SbieCtrl.exe" (User 'UpdatusUser')
  62. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [WhatPulse] C:\Program Files (x86)\WhatPulse\WhatPulse.exe (User 'UpdatusUser')
  63. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'UpdatusUser')
  64. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart (User 'UpdatusUser')
  65. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [mapdisk] "C:\ArmAWork\mapdisk.bat" (User 'UpdatusUser')
  66. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\Run: [Google Update] "C:\Users\Maverick\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User 'UpdatusUser')
  67. O4 - HKUS\S-1-5-21-1396059951-3295089236-2484375307-1017\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
  68. O4 - Startup: Dropbox.lnk = Maverick\AppData\Roaming\Dropbox\bin\Dropbox.exe
  69. O4 - Startup: _uninst_79858110.lnk = Maverick\AppData\Local\Temp\_uninst_79858110.bat
  70. O4 - Global Startup: Logitech SetPoint.lnk = ?
  71. O10 - Unknown file in Winsock LSP: c:\windows\system32\prxernsp.dll
  72. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
  73. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
  74. O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab
  75. O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
  76. O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
  77. O17 - HKLM\System\CCS\Services\Tcpip\..\{3EE619AC-0776-4FF7-8BDC-B4838F3BD1E2}: NameServer = 192.168.2.11
  78. O17 - HKLM\System\CCS\Services\Tcpip\..\{556D641B-B5AE-4848-969B-788BE63A4111}: NameServer = 192.168.1.1,68.105.28.13
  79. O17 - HKLM\System\CCS\Services\Tcpip\..\{F40E570E-BE74-4C0A-AD6E-3C8D1BAC25D3}: NameServer = 192.168.1.1
  80. O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\Skype4COM.dll
  81. O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
  82. O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe
  83. O23 - Service: CLDTVHNService - Unknown owner - C:\Program Files (x86)\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe
  84. O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
  85. O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
  86. O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
  87. O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
  88. O23 - Service: gogo6 gogoCLIENT (gogoc) - gogo6, Inc. - C:\Program Files\gogo6\gogoCLIENT\gogoc.exe
  89. O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  90. O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  91. O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
  92. O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  93. O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
  94. O23 - Service: mental ray 3.7 Satellite for Autodesk 3ds Max 2010 64-bit 64-bit (mi-raysat_3dsmax2010_64) - Unknown owner - C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe (file missing)
  95. O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
  96. O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
  97. O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
  98. O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  99. O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
  100. O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
  101. O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
  102. O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
  103. O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
  104. O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  105. O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files (x86)\WinPcap\rpcapd.exe
  106. O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
  107. O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  108. O23 - Service: Sandboxie Service (SbieSvc) - SANDBOXIE L.T.D - C:\Users\Maverick\Downloads\dcscrack\eatsx362\app\SbieSvc.exe
  109. O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
  110. O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
  111. O23 - Service: Sophos Virus Removal Tool (SophosVirusRemovalTool) - Sophos Limited - C:\Program Files (x86)\Sophos\Sophos Virus Removal Tool\SVRTservice.exe
  112. O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
  113. O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
  114. O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
  115. O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
  116. O23 - Service: Subversion (svnserver) - http://subversion.tigris.org/ - c:\svn\bin\svnserve.exe
  117. O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
  118. O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
  119. O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
  120. O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  121. O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
  122. O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
  123. O23 - Service: Windows Activation Technologies Service (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
  124. O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
  125. O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
  126. O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
  127. O23 - Service: Wowza Media Server (WowzaMediaServer) - Unknown owner - C:\Program Files (x86)\Wowza Media Systems\Wowza Media Server 3.1.0\bin\wrapper.exe (file missing)
  128.  
  129. --
  130. End of file - 13587 bytes
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement