1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

My HJT log

Discussion in 'Windows - Virus and spyware problems' started by Mattdogg1, May 1, 2006.

  1. Mattdogg1

    Mattdogg1 Member

    Joined:
    Apr 13, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    I just wanted to know if there is anyhthing on here that needs to be deleted like all the yahoo stuff. Thanks for any help and advice

    Logfile of HijackThis v1.99.1
    Scan saved at 10:52:47 PM, on 5/1/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
    C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
    C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
    C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
    C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
    C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
    C:\Program Files\F-Secure\Common\FSMA32.EXE
    C:\Program Files\F-Secure\Common\FSMB32.EXE
    F:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
    C:\Program Files\F-Secure\Common\FCH32.EXE
    F:\Program Files\Pure Networks\Router Service\pnroutsv.exe
    C:\Program Files\F-Secure\Common\FAMEH32.EXE
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\F-Secure\Common\FNRB32.EXE
    C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
    C:\Program Files\F-Secure\Common\FIH32.EXE
    C:\Program Files\F-Secure\Anti-Virus\fsav32.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\SM1BG.EXE
    C:\Program Files\F-Secure\Common\FSM32.EXE
    F:\Program Files\Pure Networks\Network Magic\nmapp.exe
    F:\Program Files\AnyDVD\AnyDVD.exe
    F:\Program Files\iTunesHelper.exe
    C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe
    C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
    C:\Program Files\F-Secure\FSGUI\fsguiexe.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    C:\WINDOWS\System32\HPZipm12.exe
    F:\Program Files\TorrentStorm\TorrentStorm.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    C:\Documents and Settings\Matthew\Desktop\Unused Desktop Shortcuts\utorrent.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    F:\Program Files\TorrentStorm\Downloader\Tor032\tor032.exe
    C:\Program Files\Windows Media Player\wmplayer.exe
    C:\WINDOWS\explorer.exe
    F:\Program Files\systerac\sxptools.exe
    C:\HJT\HijackThis_v1.99.1.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.torrentbytes.net/signup.php
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.cox.net
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - F:\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
    O4 - HKLM\..\Run: [nmapp] "F:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun
    O4 - HKLM\..\Run: [AnyDVD] F:\Program Files\AnyDVD\AnyDVD.exe
    O4 - HKLM\..\Run: [iTunesHelper] "F:\Program Files\iTunesHelper.exe"
    O4 - HKCU\..\Run: [AOLCC] "C:\Program Files\AOL Computer Check-Up\ACCAgnt.exe" /startup
    O4 - HKCU\..\Run: [ATI Remote Control] C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
    O4 - Global Startup: F-Secure Automatic Update.lnk = C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe
    O4 - Global Startup: hp psc 1000 series.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
    O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O17 - HKLM\System\CCS\Services\Tcpip\..\{1BEB3D14-538D-4E93-B93E-908421060B4D}: NameServer = 68.10.16.245,68.10.16.30
    O18 - Protocol: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\puresp.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AOL Spyware Protection Service (AOLService) - America Online, Inc. - (no file)
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - BackWeb Technologies Inc. - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
    O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
    O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE
    O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
    O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Pure Networks Network Magic Service (nmservice) - Pure Networks, Inc. - F:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Pure Networks Router Manager (pnrouter) - Pure Networks, Inc. - F:\Program Files\Pure Networks\Router Service\pnroutsv.exe

     
    Last edited: May 1, 2006
  2. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Hi Mattdogg1

    Log is clean.
     
  3. Mattdogg1

    Mattdogg1 Member

    Joined:
    Apr 13, 2006
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Thanks
     

Share This Page