HijackThis kirjeldus

HijackThis on väga kasulik vaba utiliit eemaldada nuhkvara. Tööriist on erinev traditsioonilisest õelvara skannerid, et ta teeb kasutaja ise valida, mida eemaldada käsitsi. Programm ise ei ole viiruse andmebaasi, vaid see võimaldab kasutajal näha praeguse arvuti seaded ja annab neile võime eemaldada, kuna need palun. Siiski, eemaldades kirjed milles arvuti vajab võib kahjustada arvuti. Seepärast on soovitatav kasutada koos professionaalse või mõni professionaal.

Allalaadimine HijackThis, klikkige SIIA. Kui vajate abi analüüsides oma logi, võite saata selle alla mis tahes sümptomid, peate võib-olla.

See sisestus postitati reedel, 26. detsember 2008 kell 10:23 ja see on Filed under kuidas-juhised. Saate järgib kõiki vastuseid sõnadest läbi RSS 2.0 feed. Saate jätta vastuse, või Trackback teie endi kohas.

39 Vastused "HijackThis kirjeldus"

Liveantiviruspccheck.com - Antivirus 2023 Attack Site | Virus Removal Guru 28. detsember 2008 kell 4:53

[...] On tingitud ka BHO (Browser Helper Object. Need objektid võivad tavaliselt eemaldatakse HijackThis. Click Here õppida HijackThis. Allalaadimiseks HijackThis, klikkige SIIA. Käyttäisitkö HijackThis ettevaatusega kuna eemaldades [.. .]

Websafetyguide. Com - süsteemi turvalisuse Virus Attack Site | Virus Removal Guru 30. detsember 2008 kell 9:23

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Advancedantivirusscan. Com - kodu Antivirus 2023 Virus | Virus Removal Guru 2. jaanuar 2009 kell 4:44

[...] On tingitud ka BHO (Browser Helper Object. Need objektid võivad tavaliselt eemaldatakse HijackThis. Click Here õppida HijackThis. Allalaadimiseks HijackThis, klikkige SIIA. Käyttäisitkö HijackThis ettevaatusega kuna eemaldades [.. .]

Virusandspywarescan. Com - Antivirus 2023 Virus Attack Site | Virus Removal Guru 3. jaanuar 2009 kell 1:09

[...] On tingitud ka BHO (Browser Helper Object. Need objektid võivad tavaliselt eemaldatakse HijackThis. Click Here õppida HijackThis. Allalaadimiseks HijackThis, klikkige SIIA. Käyttäisitkö HijackThis ettevaatusega kuna eemaldades [.. .]

Sgviralscan.com - Spyware Guard 2023 Virus | Virus Removal Guru 5. jaanuar 2009 kell 5:46

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Pc-turvalisuse skannimisvõimalust. Com - Antivirus 2023 Virus Attack Site | Virus Removal Guru 5. jaanuar 2009 kell 10:19

[...] On tingitud ka BHO (Browser Helper Object. Need objektid võivad tavaliselt eemaldatakse HijackThis. Click Here õppida HijackThis. Allalaadimiseks HijackThis, klikkige SIIA. Käyttäisitkö HijackThis ettevaatusega kuna eemaldades [.. .]

Watchnetprotection.com - süsteemi turvalisuse Virus | Virus Removal Guru 6. jaanuar 2009 kell 11:40

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Stabilityinternetscan.com - süsteemi turvalisuse Virus | Virus Removal Guru 10. jaanuar 2009 kell 5:19

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Pro4scan.com / Best4scan.com / Scan6new.com - Internet Antivirus Attack Site | Virus Removal Guru 10. jaanuar 2009 kell 5:42

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Antivirusxppro2009.com Virus Removal | Virus Removal Guru 21. jaanuar 2009 kell 1:07

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Interneti-Anti-scan.com Attack asukoht Antivirus 360 | Virus Removal Guru 21. jaanuar 2009 kell 1:24

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Traffchecking.com / hoiatus / antivirusplus2009.com Antivirus Plus 2023 | Virus Removal Guru 21. jaanuar 2009 kell 2:59

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Virtumonde - Vundo Troyanist Virus Removal Guide | Virus Removal Guru 22. jaanuar 2009 kell 10:58

[...] Kasutada vana versiooni programmi. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Securityonlinescan.com Hüpikakende Removal | Virus Removal Guru 25. jaanuar 2009 kell 4:26

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

Admess.Trojan Zserv.Transponder.Trojan Wstart.TrojanDownloader Äraviimine Abi | Virus Removal Guru 25. jaanuar 2009 kell 4:31

[...] Üldiselt võib eemaldatakse HijackThis. Kui soovid rohkem teada HijackThis, kliki siia. Palun kasutage HijackThis ettevaatusega sest kõrvaldades sobimatu kanded võib kahjustada arvuti kui [...]

GetModule32.exe GetModule34.exe GetModule35.exe Virus File Info | Virus Removal Guru 26. jaanuar 2009 kell 1:11

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

afiss i mamaida 30. jaanuar 2009 kell 2:52

Logifaili of Trend Micro HijackThis v2.0.2
Scan salvestati kell 9:07:57 PM, on 1/29/2009
Platform: Windows Vista SP1 (Winnt 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running protsessid:
C: \ Windows \ system32 \ Dwm.exe
C: \ Windows \ system32 \ taskeng.exe
C: \ Windows \ explorer.exe
c: \ PROGRA ~ 1 \ mcafee.com \ agent \ mcagent.exe
C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe
C: \ Program Files \ HP \ HP Software Update \ hpwuSchd2.exe
C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe
C: \ Program Files \ HP \ QuickPlay \ QPService.exe
C: \ Program Files \ QuickTime \ QTTask.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Windows \ ehome \ ehtray.exe
C: \ Users \ Stefania \ AppData \ Local \ Google \ Update \ GoogleUpdate.exe
C: \ Program Files \ Windows Media Player \ wmpnscfg.exe
C: \ Program Files \ Hewlett-Packard \ Digital Imaging \ bin \ hpqtra08.exe
C: \ Windows \ system32 \ wbem \ unsecapp.exe
C: \ Program Files \ Sony \ Sony Picture Utility \ PMBCore \ SPUVolumeWatcher.exe
C: \ Program Files \ Hewlett-Packard \ HP traadita Assistant \ WiFiMsg.EXE
C: \ Program Files \ Hewlett-Packard \ Shared \ HpqToaster.exe
C: \ Program Files \ Hewlett-Packard \ Digital Imaging \ bin \ hpqSTE08.exe
C: \ Windows \ system32 \ taskeng.exe
C: \ Program Files \ STOPzilla! \ STOPzilla.exe
C: \ Program Files \ STOPzilla! \ SZOptions.exe
C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe

R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = https://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=71&bd=Pavilion&pf=laptop
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=71&bd=Pavilion&pf=laptop
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = https://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = https://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=71&bd=Pavilion&pf=laptop
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, SearchAssistant =
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, CustomizeSearch =
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings, ProxyOverride = *. kohalike
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName =
O1 - Hosts::: 1 localhost
O2 - BHO: HP Prindi clips - (053F9267-DC04-4294-A72C-58F732D338C0) - C: \ Program Files \ Hewlett-Packard \ Smart Web Printing \ hpswp_framework.dll
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: SITEguard BHO - (1827766B-9F49-4854-8034-F6EE26FCB1EC) - C: \ Program Files \ STOPzilla! \ SZSG.dll
O2 - BHO: SSVHelper klass - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0 \ bin \ ssv.dll
O2 - BHO: scriptproxy - (7DB2D5A0-7241-4E79-B68D-6309F01C5231) - C: \ Program Files \ McAfee \ VirusScan \ scriptsn.dll
O2 - BHO: (no nimi) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file)
O2 - BHO: STOPzilla Browser Helper Object - (E3215F20-3212-11D6-9F8B-00D0B743919D) - C: \ Program Files \ STOPzilla! \ SZIEBHO.dll
O3 - Toolbar: STOPzilla - (98828DED-A591-462F-83BA-D2F62A68B8B8) - C: \ Program Files \ STOPzilla! \ SZSG.dll
O4 - HKLM \ .. \ Run: [hpqSRMon] C: \ Program Files \ Hewlett-Packard \ Digital Imaging \ bin \ hpqSRMon.exe
O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe
O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ Hp \ HP Software Update \ HPWuSchd2.exe
O4 - HKLM \ .. \ Run: [mcagent_exe] C: \ Program Files \ McAfee.com \ Agent \ mcagent.exe / runkey
O4 - HKLM \ .. \ Run: [HP Health Check ajakavastaja] C: \ Program Files \ Hewlett-Packard \ HP Health Check \ HPHC_Scheduler.exe
O4 - HKLM \ .. \ Run: [hpWirelessAssistant] C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe
O4 - HKLM \ .. \ Run: [QPService] "C: \ Program Files \ HP \ QuickPlay \ QPService.exe"
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ QTTask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ RunOnce: [Launcher]% WINDIR% \ SMINST \ launcher.exe
O4 - HKCU \ .. \ Run: [ehTray.exe] C: \ Windows \ ehome \ ehTray.exe
O4 - HKCU \ .. \ Run: [Google Update] "C: \ Users \ Stefania \ AppData \ Local \ Google \ Update \ GoogleUpdate.exe" / c
O4 - HKCU \ .. \ Run: [AdobeUpdater] C: \ Program Files \ Common Files \ Adobe \ Updater5 \ AdobeUpdater.exe
O4 - HKCU \ .. \ Run: [WMPNSCFG] C: \ Program Files \ Windows Media Player \ WMPNSCFG.exe
O4 - HKCU \ .. \ Run: [Anti] C: \ Program Files \ Anti \ Antispyware.exe boot
O4 - HKUS \ S-1-5-19 \ .. \ Run: [Sidebar]% Program% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'LOCAL SERVICE')
O4 - HKUS \ S-1-5-19 \ .. \ Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS \ S-1-5-20 \ .. \ Run: [Sidebar]% Program% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'NETWORK SERVICE')
O4 - Startup: OneNote 2023 Screen Clipper ja Launcher.lnk = C: \ Program Files \ Microsoft Office \ Office12 \ ONENOTEM.EXE
O4 - Startup: Picture Motion Browser Media Check Tool.lnk = C: \ Program Files \ Sony \ Sony Picture Utility \ PMBCore \ SPUVolumeWatcher.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ Hewlett-Packard \ Digital Imaging \ bin \ hpqtra08.exe
O8 - Extra kontekstimenüü andmed: E & xport Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ Micros ~ 3 \ Office12 \ EXCEL.EXE/3000
O9 - Extra nupp: (no nimi) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0 \ bin \ ssv.dll
O9 - Extra 'Tools MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0 \ bin \ ssv.dll
O9 - Extra nupp: Saada OneNote - (2670000A-7350-4f3c-8081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ Micros ~ 3 \ Office12 \ ONBttnIE.dll
O9 - Extra 'Tools MENUITEM: S & lõppu OneNote - (2670000A-7350-4f3c-8081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ Micros ~ 3 \ Office12 \ ONBttnIE.dll
O9 - Extra nuppu: HP Clipbook - (58ECB495-38F0-49cb-A538-10282ABF65E7) - C: \ Program Files \ Hewlett-Packard \ Smart Web Printing \ hpswp_extensions.dll
O9 - Extra nuppu: HP Smart Vali - (700259D7-1666-479a-93B1-3250410481E8) - C: \ Program Files \ Hewlett-Packard \ Smart Web Printing \ hpswp_extensions.dll
O9 - Extra nuppu: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ Micros ~ 3 \ Office12 \ REFIEBAR.DLL
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O10 - Unknown faili Winsock LSP: c: \ program files \ common files \ is3 \ Anti-Spyware \ is3lsp.dll
O16 - DPF: (7FC1B346-83E6-4774-8D20-1A6B09B0E737) (Windows Live Photo Upload Control) - https://kiredam2.spaces.live.com/PhotoUpload/VistaMsnPUplden-us.cab
O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9458-1830C7DD7F5D) - C: \ PROGRA ~ 1 \ COMMON ~ 1 \ Skype \ SKYPE4 ~ 1.DLL
O23 - Service: AddFiltr - Hewlett-Packard Development Company, LP - C: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ AddFiltr.exe
O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe
O23 - Service: Anti Skaneerimisseade (AntispywareSrv) - Teadmata omanik - C: \ Program Files \ Anti \ Antispyware.srv.exe
O23 - Service: Apple Mobile Device - Apple Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Automaatne LiveUpdate ajakavastaja - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: Symantec lic NetConnect teenus (CLTNetCnService) - Teadmata omanik - c: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe (fail puudu)
O23 - Service: HP Health Check Service - Hewlett-Packard - C: \ Program Files \ Hewlett-Packard \ HP Health Check \ hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, LP - C: \ Program Files \ Hewlett-Packard \ Shared \ hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Roxio \ Roxio MyDVD Basic V9 \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: LightScribeService Direct Disc Märgistamine Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown omanik - c: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe (fail puudu)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ PIF \ (B8E1DD85-8582-4c61-B58F-2F227FCA9A08) \ PIFSvc.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc - C: \ PROGRA ~ 1 \ McAfee \ MSC \ mcmscsvc.exe
O23 - Service: McAfee Network agent (McNASvc) - McAfee, Inc - c: \ PROGRA ~ 1 \ COMMON ~ 1 \ McAfee \ MNA \ mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc - C: \ PROGRA ~ 1 \ McAfee \ VIRUSS ~ 1 \ mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc - c: \ PROGRA ~ 1 \ COMMON ~ 1 \ McAfee \ mcproxy \ mcproxy.exe
O23 - Service: McAfee reaalajalist Scanner (McShield) - McAfee, Inc - C: \ PROGRA ~ 1 \ McAfee \ VIRUSS ~ 1 \ mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc - C: \ PROGRA ~ 1 \ McAfee \ VIRUSS ~ 1 \ mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc - C: \ Program Files \ McAfee \ MPF \ MPFSrv.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Teadmata omanik - C: \ Program Files \ HP \ QuickPlay \ Kernel \ TV \ QPCapSvc.exe
O23 - Service: QuickPlay Task ajakavastaja (QTS) (QPSched) - Teadmata omanik - C: \ Program Files \ HP \ QuickPlay \ Kernel \ TV \ QPSched.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C: \ Program Files \ Common Files \ Roxio Shared \ 9.0 \ SharedCOM \ RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc - C: \ Program Files \ Common Files \ Sure Thing Shared \ stllssvr.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc - C: \ Program Files \ Common Files \ iS3 \ Anti-Spyware \ SZServer.exe
O23 - Service: XAudioService - Conexant Systems, Inc - C: \ Windows \ system32 \ drivers \ xaudio.exe

--
End of file - 11297 baiti

Cogad.exe (Cogad) Troyanist Virus File Info | Virus Removal Guru 3. veebruar 2009 kell 1:23

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

~ Tmpa.exe (~ Tmpa) Troyanist Virus File Info | Virus Removal Guru 4. veebruar 2009 kell 9:51

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

Burolage.exe (Burolage) Troyanist Virus File Info | Virus Removal Guru 4. veebruar 2009 kell 9:51

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

GetModule36.exe (GetModule36) Troyanist Virus File Info | Virus Removal Guru 8. veebruar 2009 kell 7:12

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

Gand.exe (Gand) Troyanist Virus File Info | Virus Removal Guru 11. veebruar 2009 kell 11:02

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

Viewtubesoftware.exe (Viewtubesoftware) Troyanist Virus File Info | Virus Removal Guru 13. veebruar 2009 kell 12:54

[...] Click Here õppida HijackThis. Allalaadimine HijackThis, klikkige SIIA. [...]

ncyh 25. veebruar 2009 kell 10:08

Palun aita mind lugeda minu logi. Ma tõesti tahan määrata see probleem TT

Logifaili of Trend Micro HijackThis v2.0.2
Scan salvestati kell 6:01:23 PM, on 2/25/2009
Platform: Windows XP SP3 (Winnt 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running protsessid:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ Winlogon.exe
C: \ WINDOWS \ system32 \ Services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ Svchost.exe
C: \ WINDOWS \ System32 \ Svchost.exe
C: \ WINDOWS \ system32 \ Svchost.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe
C: \ WINDOWS \ system32 \ Spoolsv.exe
C: \ WINDOWS \ system32 \ userinit.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Program Files \ Symantec \ LiveUpdate \ AluSchedulerSvc.exe
C: \ Program Files \ Bonjour \ mDNSResponder.exe
C: \ Program Files \ Java \ jre6 \ bin \ jqs.exe
C: \ WINDOWS \ system32 \ nvsvc32.exe
C: \ WINDOWS \ explorer.exe
C: \ Program Files \ QvodPlayer \ QvodTerminal.exe
C: \ WINDOWS \ system32 \ Svchost.exe
C: \ WINDOWS \ system32 \ SearchIndexer.exe
C: \ WINDOWS \ RTHDCPL.EXE
C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe
C: \ WINDOWS \ system32 \ RUNDLL32.EXE
C: \ Program Files \ ScanSoft \ PaperPort \ pptd40nt.exe
C: \ Program Files \ Brother \ Brmfcmon \ BrMfcWnd.exe
C: \ Program Files \ Brother \ ControlCenter3 \ brccMCtl.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe
C: \ WINDOWS \ system32 \ Ctfmon.exe
C: \ Program Files \ Windows Live \ Messenger \ MsnMsgr.Exe
C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexStoreSvr.exe
C: \ Program Files \ Veoh Networks \ Veoh \ VeohClient.exe
C: \ Program Files \ Skype \ Telefon \ Skype.exe
C: \ Documents and Settings \ kasutajanimi \ Local Settings \ Application Data \ Octoshape \ Octoshape Striimingu Services \ OctoshapeClient.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ Program Files \ Windows Desktop Search \ WindowsSearch.exe
C: \ Program Files \ Hamachi \ hamachi.exe
C: \ WINDOWS \ System32 \ Svchost.exe
C: \ Program Files \ Skype \ Plugin Manager \ skypePM.exe
C: \ Program Files \ Norton 360 \ ScanStub.exe
C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WLLoginProxy.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ PROGRA ~ 1 \ COMMON ~ 1 \ SYMANT ~ 1 \ CCPD-LC \ symlcsvc.exe
C: \ Program Files \ Common Files \ iS3 \ Anti-Spyware \ SZServer.exe
D: \ Stopzilla \ STOPzilla.exe
D: \ Stopzilla \ SZOptions.exe
C: \ Program Files \ Safari \ Safari.exe
C: \ DOCUME ~ 1 \ kasutajanimi \ Locals ~ 1 \ Temp \ Saf6C1.tmp \ HiJackThis.exe

R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = https://www.yahoo.com/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = https://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/ * https://www.yahoo.com
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = https://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/ * https://www.yahoo.com/ext / search / search.html
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = https://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/ * https://www.yahoo.com
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = https://www.yahoo.com/
R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL, (Default) = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings, ProxyServer = 127.0.0.1:8080
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Internet Settings, ProxyOverride = kohalik, *. kohalike
R3 - URLSearchHook: (no nimi) - (982CB676-38F0-4D9A-BB72-D9371ABE876E) - (no file)
O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ PROGRA ~ 1 \ Yahoo! \ Companion \ installid \ CPN \ yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: SITEguard BHO - (1827766B-9F49-4854-8034-F6EE26FCB1EC) - D: \ Stopzilla \ SZSG.dll
O2 - BHO: Yahoo! IE Teenused Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O2 - BHO: NCO 2,0 IE BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 2,6 \ coIEPlg.dll
O2 - BHO: Symantec Sissetungimise ennetamine - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - C: \ PROGRA ~ 1 \ COMMON ~ 1 \ SYMANT ~ 1 \ IDS \ IPSBHO.dll
O2 - BHO: Java (TM) Plug-In SSV Helper - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre6 \ bin \ ssv.dll
O2 - BHO: (no nimi) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file)
O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - c: \ program files \ google \ googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - (BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Program Files \ Windows Live Toolbar \ msntb.dll
O2 - BHO: Java (TM) Plug-in 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C: \ Program Files \ Java \ jre6 \ bin \ jp2ssv.dll
O2 - BHO: STOPzilla Browser Helper Object - (E3215F20-3212-11D6-9F8B-00D0B743919D) - D: \ Stopzilla \ SZIEBHO.dll
O2 - BHO: JQSIEStartDetectorImpl - (E7E6F031-17CE-4C07-BC86-EABFE594F69C) - C: \ Program Files \ Java \ jre6 \ lib \ kasutama \ jqs \ st \ jqs_plugin.dll
O3 - Toolbar: Windows Live Toolbar - (BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Program Files \ Windows Live Toolbar \ msntb.dll
O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ program files \ google \ googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ PROGRA ~ 1 \ Yahoo! \ Companion \ installid \ CPN \ yt.dll
O3 - Toolbar: vaata Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 2,6 \ CoIEPlg.dll
O3 - Toolbar: STOPzilla - (98828DED-A591-462F-83BA-D2F62A68B8B8) - D: \ Stopzilla \ SZSG.dll
O4 - HKLM \ .. \ Run: [IMJPMIG8.1] "C: \ WINDOWS \ IME \ imjp8_1 \ IMJPMIG.EXE" / sõjasaak / RemAdvDef / Migration32
O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / Sync
O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName
O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM \ .. \ Run: [NvCplDaemon] RUNDLL32.EXE C: \ WINDOWS \ system32 \ NvCpl.dll, NvStartup
O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install
O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ Program Files \ Common Files \ Ahead \ Lib \ NeroCheck.exe
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [NvMediaCenter] RUNDLL32.EXE C: \ WINDOWS \ system32 \ NvMcTray.dll, NvTaskbarInit
O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files \ Adobe \ Reader 8,0 \ Reader \ Reader_sl.exe"
O4 - HKLM \ .. \ Run: [SSBkgdUpdate] "C: \ Program Files \ Common Files \ ScanSoft Shared \ SSBkgdUpdate \ SSBkgdupdate.exe"-Fikseeriv saabas
O4 - HKLM \ .. \ Run: [PaperPort PTD] C: \ Program Files \ ScanSoft \ PaperPort \ pptd40nt.exe
O4 - HKLM \ .. \ Run: [IndexSearch] C: \ Program Files \ ScanSoft \ PaperPort \ IndexSearch.exe
O4 - HKLM \ .. \ Run: [BrMfcWnd] C: \ Program Files \ Brother \ Brmfcmon \ BrMfcWnd.exe / autorun
O4 - HKLM \ .. \ Run: [SetDefPrt] C: \ Program Files \ Brother \ Brmfl06a \ BrStDvPt.exe
O4 - HKLM \ .. \ Run: [ControlCenter3] C: \ Program Files \ Brother \ ControlCenter3 \ brctrcen.exe / autorun
O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe"
O4 - HKLM \ .. \ Run: [osCheck] "C: \ Program Files \ Norton 360 \ osCheck.exe"
O4 - HKLM \ .. \ Run: [AppleSyncNotifier] C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleSyncNotifier.exe
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ QTTask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKCU \ .. \ Run: [BgMonitor_ (79662E04-7C6C-4d9f-84C7-88D8A56B10AA)] "C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe"
O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe
O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files \ Windows Live \ Messenger \ MsnMsgr.Exe" / taust
O4 - HKCU \ .. \ Run: [SWG] C: \ Program Files \ Google \ GoogleToolbarNotifier \ 1.2.1128.5462 \ GoogleToolbarNotifier.exe
O4 - HKCU \ .. \ Run: [BitTorrent DNA] "C: \ Program Files \ DNA \ btdna.exe"
O4 - HKCU \ .. \ Run: [Veoh] "C: \ Program Files \ Veoh Networks \ Veoh \ VeohClient.exe" / VeohHide
O4 - HKCU \ .. \ Run: [Skype] "C: \ Program Files \ Skype \ Telefon \ Skype.exe" / nosplash / madal
O4 - HKCU \ .. \ Run: [Octoshape Striimingu talitused] "C: \ Documents and Settings \ kasutajanimi \ Local Settings \ Application Data \ Octoshape \ Octoshape Striimingu Services \ OctoshapeClient.exe" Inv: bootrun
O4 - HKCU \ .. \ Run: [Steam] "D: \ Games \ steam \ steam.exe" vaikiva
O4 - S-1-5-18 Startup: hamachi.lnk = C: \ Program Files \ Hamachi \ hamachi.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: IMVU.lnk = C: \ Program Files \ IMVU \ IMVUClient.exe (User 'SYSTEM')
O4 -. DEFAULT Startup: hamachi.lnk = C: \ Program Files \ Hamachi \ hamachi.exe (User 'Default user')
O4 -. DEFAULT Startup: IMVU.lnk = C: \ Program Files \ IMVU \ IMVUClient.exe (User 'Default user')
O4 - Startup: hamachi.lnk = C: \ Program Files \ Hamachi \ hamachi.exe
O4 - Startup: IMVU.lnk = C: \ Program Files \ IMVU \ IMVUClient.exe
O4 - Global Startup: Microsoft Office.lnk = C: \ Program Files \ Microsoft Office \ Office10 \ OSA.EXE
O4 - Global Startup: Windows Search.lnk = C: \ Program Files \ Windows Desktop Search \ WindowsSearch.exe
O8 - Extra kontekstis menüüelemendi: & Windows Live Search - res: / / C: \ Program Files \ Windows Live Toolbar \ msntb.dll / search.htm
O8 - Extra kontekstimenüü andmed: Add to Windows & Live Favorites - https://favorites.live.com/quickadd.aspx
O8 - Extra kontekstimenüü andmed: E & xport Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office10 \ EXCEL.EXE/3000
O8 - Extra kontekstimenüü andmed: ¢ Eii ¼ Æ ¬ μ ½ EO »U - C: \ Program Files \ P4P \ cx.htm
O8 - Extra kontekstis menüüelemendi: E ¹ ÓÃËÑ ¹ Ö ± Í ¨ ³ μÏÂÔØ - C: \ Program Files \ P4P \ dl.htm
O9 - Extra nuppu: Yahoo! Teenused - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O9 - Extra nupp: Run IMVU - (d9288080-1baa-4bc4-9cf8-a92d743db949) - C: \ Documents and Settings \ kasutajanimi \ Start Menu \ Programs \ IMVU \ Run IMVU.lnk
O9 - Extra nupp: (no nimi) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra 'Tools MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra nupp: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O9 - Extra 'Tools MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O10 - Unknown faili Winsock LSP: c: \ windows \ system32 \ nwprovau.dll
O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Program Files \ Yahoo! \ Common \ Yinsthelper.dll
O16 - DPF: (67A5F8DC-1A4B-4D66-9F24-A704AD929EEE) (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient klass) - https://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: (CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7) (get_atlcom klass) - https://www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: (D27CDB6E-AE6D-11CF-96B8-444553540000) (Shockwave Flash Object) - https://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: (F5A7706B-B9C0-4C89-A715-7A0C6B05DD48) (Mine reha Flags Class) - https://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9458-1830C7DD7F5D) - C: \ PROGRA ~ 1 \ COMMON ~ 1 \ Skype \ SKYPE4 ~ 1.DLL
O23 - Service: Apple Mobile Device - Apple Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Automaatne LiveUpdate ajakavastaja - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ AluSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Qvod Terminal - Shenzhen QVOD Technology Co.,Ltd - C:\Program Files\QvodPlayer\QvodTerminal.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe


End of file - 14090 bytes

ncyh February 25th, 2024 at 10:09 am

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:01:23 PM, on 2/25/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\userinit.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QvodPlayer\QvodTerminal.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Documents and Settings\user\Local Settings\Application Data\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Hamachi\hamachi.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Norton 360\ScanStub.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
D:\Stopzilla\STOPzilla.exe
D:\Stopzilla\SZOptions.exe
C:\Program Files\Safari\Safari.exe
C:\DOCUME~1\user\LOCALS~1\Temp\Saf6C1.tmp\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/ *https://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/ *https://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/ *https://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://g.msn.com/0SEENSG/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local;*.local
R3 - URLSearchHook: (no name) - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - (no file)
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SITEguard BHO - {1827766B-9F49-4854-8034-F6EE26FCB1EC} - D:\Stopzilla\SZSG.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - D:\Stopzilla\SZIEBHO.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll
O3 - Toolbar: STOPzilla - {98828DED-A591-462F-83BA-D2F62A68B8B8} - D:\Stopzilla\SZSG.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] “C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE” /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] “C:\Program Files\Java\jre6\bin\jusched.exe”
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] “C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe”
O4 - HKLM\..\Run: [SSBkgdUpdate] “C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe” -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
O4 - HKLM\..\Run: [ccApp] “C:\Program Files\Common Files\Symantec Shared\ccApp.exe”
O4 - HKLM\..\Run: [osCheck] “C:\Program Files\Norton 360\osCheck.exe”
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] “C:\Program Files\QuickTime\QTTask.exe” -atboottime
O4 - HKLM\..\Run: [iTunesHelper] “C:\Program Files\iTunes\iTunesHelper.exe”
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] “C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe”
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] “C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe” /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [BitTorrent DNA] “C:\Program Files\DNA\btdna.exe”
O4 - HKCU\..\Run: [Veoh] “C:\Program Files\Veoh Networks\Veoh\VeohClient.exe” /VeohHide
O4 - HKCU\..\Run: [Skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized
O4 - HKCU\..\Run: [Octoshape Streaming Services] “C:\Documents and Settings\user\Local Settings\Application Data\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe” -inv:bootrun
O4 - HKCU\..\Run: [Steam] “d:\games\steam\steam.exe” -silent
O4 - S-1-5-18 Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User ‘SYSTEM’)
O4 - S-1-5-18 Startup: IMVU.lnk = C:\Program Files\IMVU\IMVUClient.exe (User ‘SYSTEM’)
O4 - .DEFAULT Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User ‘Default user’)
O4 - .DEFAULT Startup: IMVU.lnk = C:\Program Files\IMVU\IMVUClient.exe (User ‘Default user’)
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O4 - Startup: IMVU.lnk = C:\Program Files\IMVU\IMVUClient.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: ·¢ËÍͼƬµ½ÊÖ»ú - C:\Program Files\P4P\cx.htm
O8 - Extra context menu item: ʹÓÃËѹ·Ö±Í¨³µÏÂÔØ - C:\Program Files\P4P\dl.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\user\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - https://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - https://www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - https://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Qvod Terminal - Shenzhen QVOD Technology Co.,Ltd - C:\Program Files\QvodPlayer\QvodTerminal.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe


End of file - 14090 bytes

Xlswin.exe (Xlswin) Trojan Virus File Information | Virus Removal Guru March 2nd, 2024 at 9:49 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Pp1.exe (Pp1) Worm Virus File Information | Virus Removal Guru March 8th, 2024 at 3:52 am

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Hyetn1i.exe (Hyetn1i) Trojan Virus File Information | Virus Removal Guru March 11th, 2024 at 12:47 am

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

3yseow89.exe (3yseow89) Trojan Virus File Information | Virus Removal Guru March 11th, 2024 at 3:54 am

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Yiar.exe Virus Removal | Virus Removal Guru March 12th, 2024 at 9:00 pm

[...] Manual Removal - Yiar.exe may be removed manually by analyzing your HijackThis log. To download HijackThis, please click HERE. Click Here To Learn About HijackThis. [...]

Updtic.exe (Updtic) Trojan Virus File Information | Virus Removal Guru March 16th, 2024 at 5:55 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Onlinescanservice.com (Onlinescanservice) Virus Attack Site | Virus Removal Guru March 19th, 2024 at 8:52 pm

[...] as a result of a BHO (Browser Helper Object. These objects can generally be remove with HijackThis. Click Here To Learn About HijackThis. To download HijackThis, please click HERE. Please use HijackThis with caution since removing [...]

Winlognn.exe (Winlognn) Trojan Virus File Information | Virus Removal Guru March 23rd, 2024 at 6:14 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

WinIgn.exe (WinIgn) Trojan Virus File Information | Virus Removal Guru March 23rd, 2024 at 6:14 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Nyfa32.exe (Nyfa32) Trojan Virus File Information | Virus Removal Guru March 24th, 2024 at 8:31 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Sys-look-scan.biz (Sys-look-scan) Virus Attack Site | Virus Removal Guru March 30th, 2024 at 6:14 pm

[...] as a result of a BHO (Browser Helper Object. These objects can generally be remove with HijackThis. Click Here To Learn About HijackThis. To download HijackThis, please click HERE. Please use HijackThis with caution since removing [...]

Part.exe (Part) Trojan Virus File Information | Virus Removal Guru April 5th, 2024 at 6:17 pm

[...] Click Here To Learn About HijackThis. To download HijackThis, please click HERE. [...]

Faruk April 24th, 2023 at 6:22 pm

I have problem with vctr80.exe pl.help me how to remove.

Jäta vastus