Logfile of HijackThis v1.99.1
Scan saved at 2:24:12 PM, on 3/6/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\SiSAudUt.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Palm\HOTSYNC.EXE
D:\PROGRAMS\firefox.exe
c:\program files\common files\installshield\updateservice\isuspm.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
D:\installer\anit virus software\HijackThis.exe
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [SiS7012Utility] C:\WINDOWS\system32\SiSAudUt.exe -wdm
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [HomeLog] C:\Program Files\HomeLog\HomeLog.exe /T
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE KOCOM KMC-90 Web Camera
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Adobe After Effects PRO v6.5 Crack] D:\downloads\Adobe After Effects PRO v6.5 Crack.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe -quiet
O4 - HKCU\..\Run: [WPSched3] "D:\Program Files\WebPosition 3\Wpsched3.exe" MINIMIZE
O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ChikkaIM] C:\PROGRA~1\Chikka\Chikka.exe
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: HotSync Manager.lnk = C:\Palm\HOTSYNC.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 2:47:58 PM, 3/6/2006
+ Report-Checksum: 1C6B3DE6
+ Scan result:
:mozilla.19:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Webtrendslive : Ignored
:mozilla.23:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Webtrendslive : Ignored
:mozilla.24:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Hitbox : Ignored
:mozilla.25:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Hitbox : Ignored
:mozilla.26:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Hitbox : Ignored
:mozilla.34:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Atdmt : Ignored
:mozilla.45:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Onestat : Ignored
:mozilla.46:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Onestat : Ignored
:mozilla.59:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Fastclick : Ignored
:mozilla.60:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Fastclick : Ignored
:mozilla.61:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Fastclick : Ignored
:mozilla.62:C:\Documents and Settings\Office Users\Application Data\Mozilla\Firefox\Profiles\j8cdqx0z.Default User\cookies.txt -> TrackingCookie.Fastclick : Ignored
:mozilla.87:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Tacoda : Ignored
:mozilla.88:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Tacoda : Ignored
:mozilla.348:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Clickbank : Ignored
:mozilla.349:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Clickbank : Ignored
:mozilla.571:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.572:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.573:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.574:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.584:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.587:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
:mozilla.588:C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\1amkscbh.default\cookies.txt -> TrackingCookie.Web-stat : Ignored
D:\System Volume Information\_restore{302B57BC-9955-4640-8849-A4E21F2FD2F8}\RP260\A0140361.exe -> Worm.VB.an : Ignored
::Report End