TechSpot

cid virus logfile help

By annecharlotte
Jul 12, 2007
  1. what should I fix?

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:48:43, on 12/07/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    H:\WINDOWS\System32\smss.exe
    H:\WINDOWS\system32\winlogon.exe
    H:\WINDOWS\system32\services.exe
    H:\WINDOWS\system32\lsass.exe
    H:\WINDOWS\system32\svchost.exe
    H:\WINDOWS\System32\svchost.exe
    H:\WINDOWS\system32\spoolsv.exe
    H:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    H:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
    H:\WINDOWS\system32\svchost.exe
    H:\WINDOWS\wanmpsvc.exe
    H:\Program Files\MSN Messenger\usnsvc.exe
    H:\WINDOWS\system32\wscntfy.exe
    H:\WINDOWS\Explorer.EXE
    H:\WINDOWS\system32\VTtrayp.exe
    H:\WINDOWS\system32\VTTimer.exe
    H:\WINDOWS\SOUNDMAN.EXE
    H:\Program Files\USB Storage RW\DskWatch.exe
    H:\Program Files\Fichiers communs\AOL\1177705435\ee\AOLSoftware.exe
    H:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
    H:\Program Files\QuickTime\qttask.exe
    H:\Program Files\Real\RealPlayer\RealPlay.exe
    H:\WINDOWS\system32\ctfmon.exe
    H:\Program Files\MSN Messenger\msnmsgr.exe
    H:\Program Files\Messenger\msmsgs.exe
    H:\Program Files\AOL 9.0d\aoltray.exe
    H:\Program Files\VIA\RAID\raid_tool.exe
    H:\Program Files\Internet Explorer\iexplore.exe
    H:\Program Files\Fichiers communs\AOL\1177705435\ee\aolsoftware.exe
    H:\Program Files\Internet Explorer\iexplore.exe
    H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    H:\Program Files\Fichiers communs\AOL\Topspeed\3.0\aoltpsd3.exe
    H:\Program Files\Internet Explorer\iexplore.exe
    H:\Program Files\HJT\Analyze.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - H:\Program Files\AOL Toolbar\toolbar.dll
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [CARPService] carpserv.exe
    O4 - HKLM\..\Run: [USB Storage RW] H:\Program Files\USB Storage RW\DskWatch.exe
    O4 - HKLM\..\Run: [EPSON Stylus DX4200 Series] H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE /P26 "EPSON Stylus DX4200 Series" /O6 "USB001" /M "Stylus DX4200"
    O4 - HKLM\..\Run: [HostManager] H:\Program Files\Fichiers communs\AOL\1177705435\ee\AOLSoftware.exe
    O4 - HKLM\..\Run: [AOLSAV] H:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
    O4 - HKLM\..\Run: [AOLDialer] H:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [QuickTime Task] "H:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [AntivirusRegistration] H:\Program Files\CA\Etrust Antivirus\Register.exe
    O4 - HKLM\..\Run: [RealTray] H:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [2BlehFilmHtm] H:\Documents and Settings\All Users\Application Data\savevga2bleh\Corn jump.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [msnmsgr] "H:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [MSMSGS] "H:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: AOL 9.0 Icône AOL.lnk = H:\Program Files\AOL 9.0d\aoltray.exe
    O4 - Global Startup: AOL Compagnon.lnk = H:\Program Files\AOL Compagnon\companion.exe
    O4 - Global Startup: Microsoft Office.lnk = H:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: VIA RAID TOOL.lnk = H:\Program Files\VIA\RAID\raid_tool.exe
    O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?aafa53d26ce3486e83e90ee49e1454b1
    O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://H:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?aafa53d26ce3486e83e90ee49e1454b1
    O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - H:\Program Files\AOL Toolbar\toolbar.dll
    O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - H:\Program Files\AOL Toolbar\toolbar.dll
    O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - H:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - H:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - H:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
    O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - H:\WINDOWS\wanmpsvc.exe

    --
    End of file - 6648 bytes
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...