Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 13:08:05, on 10/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesSecuriteSPFsmc.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesSecuriteAvast4aswUpdSv.exe
C:Program FilesSecuriteAvast4ashServ.exe
C:Program FilesSecuriteAVG Anti-Spyware 7.5guard.exe
C:WINDOWSsystem32
vsvc32.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesSecuriteAvast4ashMaiSv.exe
C:Program FilesSecuriteAvast4ashWebSv.exe
C:WINDOWSsystem32wscntfy.exe
C:WINDOWSExplorer.EXE
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:PROGRA~1SecuriteAvast4ashDisp.exe
C:Program FilesyXELADSL USB ModemCnxDslTb.exe
C:Program FilesJavaj2re1.4.2_11injusched.exe
C:Program FilesFichiers communsRealUpdate_OB ealsched.exe
C:Program FilesQuickTimeqttask.exe
C:Program FilesUtilsD-Toolsdaemon.exe
D:GraphAdobeAdobe Acrobat 7.0DistillrAcrotray.exe
C:WINDOWSsystem32 undll32.exe
C:Program FilesSecuriteAVG Anti-Spyware 7.5avgas.exe
C:Program FilesUtilseMuleemule.exe
C:Program FilesKirysTech2kFastNotekfn.exe
C:Program FilesDriverLogitechSetPointSetPoint.exe
C:Program FilesFichiers communsLogitechKHALKHALMNPR.EXE
C:Program FilesWebMozilla Firefoxfirefox.exe
C:WINDOWSsystem32msiexec.exe
C:WINDOWSsystem32msiexec.exe
C:WINDOWSsystem32MsiExec.exe
C:Program FilesMSN Messengermsnmsgr.exe
C:Program FilesMSN Messengerusnsvc.exe
C:Program FilesInternet Exploreriexplore.exe
C:Documents and SettingsChymerBureauHiJackThis_v2.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.netvibes.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.files-ftp.com/~unicorni/phpBB2/index.php
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:GraphAdobeAdobe Acrobat 7.0ActiveXAcroIEHelper.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll
O4 - HKLM..Run: [avast!] C:PROGRA~1SecuriteAvast4ashDisp.exe
O4 - HKLM..Run: [SmcService] C:PROGRA~1SecuriteSPFsmc.exe -startgui
O4 - HKLM..Run: [CnxDslTaskBar] "C:Program FilesyXELADSL USB ModemCnxDslTb.exe"
O4 - HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 - HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_11injusched.exe
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [TkBellExe] "C:Program FilesFichiers communsRealUpdate_OB ealsched.exe" -osboot
O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [DAEMON Tools-1033] "C:Program FilesUtilsD-Toolsdaemon.exe" -lang 1033
O4 - HKLM..Run: [Acrobat Assistant 7.0] "D:GraphAdobeAdobe Acrobat 7.0DistillrAcrotray.exe"
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [!AVG Anti-Spyware] "C:Program FilesSecuriteAVG Anti-Spyware 7.5avgas.exe" /minimized
O4 - HKCU..Run: [Microsoft Plus V7.2] C:WINDOWSmfcsubs.exe
O4 - HKCU..Run: [Microsoft Plus V7.4] C:WINDOWSmsscfrb32.exe
O4 - HKCU..Run: [Microsoft Webcam Enhance V2.1] C:WINDOWS untfs32.exe
O4 - HKCU..Run: [eMuleAutoStart] C:Program FilesUtilseMuleemule.exe -AutoStart
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma.lnk = C:Program FilesFichiers communsAdobeCalibrationAdobe Gamma Loader.exe
O4 - Global Startup: Fast Note.lnk = C:Program FilesKirysTech2kFastNotekfn.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:Program FilesDriverLogitechSetPointSetPoint.exe
O8 - Extra context menu item: Convert link target to Adobe PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://D:GraphAdobeAdobe Acrobat 7.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_11in
pjpi142_11.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_11in
pjpi142_11.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.files-ftp.com/~unicorni/phpBB2/index.php
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan ... asinst.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O17 - HKLMSystemCCSServicesTcpip..{65703D9E-F9F3-435C-8D19-E5ABFC7DC75F}: NameServer = 194.158.64.9 194.158.64.10
O17 - HKLMSystemCS1ServicesTcpip..{65703D9E-F9F3-435C-8D19-E5ABFC7DC75F}: NameServer = 194.158.64.9 194.158.64.10
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:WINDOWSsystem32rowseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:WINDOWSsystem32rowseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:Program FilesFichiers communsAdobe Systems SharedServiceAdobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:Program FilesSecuriteAvast4aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:Program FilesSecuriteAvast4ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:Program FilesSecuriteAvast4ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:Program FilesSecuriteAvast4ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:Program FilesSecuriteAVG Anti-Spyware 7.5guard.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:WINDOWSSystem32dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:WINDOWSsystem32services.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesFichiers communsInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:WINDOWSsystem32imapi.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:Program FilesiPodiniPodService.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:WINDOWSsystem32mnmsrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32
vsvc32.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:WINDOWSsystem32services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:WINDOWSsystem32sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:WINDOWSSystem32SCardSvr.exe
O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:Program FilesSecuriteSPFsmc.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:WINDOWSsystem32smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:WINDOWSSystem32vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:WINDOWSsystem32wbemwmiapsrv.exe
--
End of file - 9138 bytes
Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 18 invités
.: Nous contacter :: Flux RSS :: Données personnelles :. |