HijackThis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:57:44 PM, on 2/22/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CheckPoint\SSL Network Extender\slimsvc.exe
C:\Program Files\NOD32\nod32krn.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ICO.EXE
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\NOD32\nod32kui.exe
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\Spybot\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
C:\Program Files\SpywareGuard\sgbhp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.facebook.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://vcl.vaio.sony...eu/PforVAIO.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\bin\ssv.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\NOD32\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot\TeaTimer.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - .DEFAULT User Startup: E-Flyer.lnk = C:\Program Files\Sony\E-Flyer\E-Flyer.exe (User 'Default user')
O4 - .DEFAULT User Startup: VAIO Launcher.lnk = C:\Program Files\Sony\VAIO Launcher\Launcher.exe (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O14 - IERESET.INF: START_PAGE_URL=http://vaio-online.sony.com/
O15 - Trusted Zone: www.animea.net
O15 - Trusted Zone: www.geekstogo.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{043D7CA1-F508-402C-9FF5-816DDF0A5C63}: NameServer = 202.175.129.101,192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{F5E6B1CF-052F-4638-8DB4-EF7A83F364AD}: NameServer = 202.75.129.101,192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{043D7CA1-F508-402C-9FF5-816DDF0A5C63}: NameServer = 202.175.129.101,192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{043D7CA1-F508-402C-9FF5-816DDF0A5C63}: NameServer = 202.175.129.101,192.168.1.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: FireDaemon Service: BprotectService (BprotectService) - Unknown owner - C:\Program Files\FireDaemon\FireDaemon.exe (file missing)
O23 - Service: Check Point SSL Network Extender (cpextender) - Check Point Software Technologies - C:\Program Files\CheckPoint\SSL Network Extender\slimsvc.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\NOD32\nod32krn.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
O23 - Service: VAIO Entertainment Task Scheduler - Sony Corporation - C:\Program Files\Sony\VAIO Entertainment\VzTaskScheduler.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
--
End of file - 8259 bytes
AVG:
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 6:21:12 PM 2/22/2008
+ Scan result:
:mozilla.228:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-1.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.228:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-1.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-1.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-2.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-3.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-1.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-2.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.229:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-3.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.230:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-2.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.230:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-3.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.230:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-2.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.230:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-3.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-10.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-11.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-12.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-13.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-9.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-10.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-11.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-12.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-13.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.231:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-9.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-10.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-11.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-12.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-13.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-4.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-5.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-6.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-7.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-8.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-9.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-10.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-11.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-12.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-13.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-4.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-5.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-6.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-7.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-8.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.232:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-9.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-4.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-5.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-6.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-7.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-8.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-4.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-5.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-6.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-7.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.233:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-8.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.244:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-18.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.244:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-18.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.245:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-18.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.245:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-18.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.248:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-17.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.248:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-17.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.249:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\4xlp2908.default\cookies-17.txt -> TrackingCookie.Gemius : No action taken.
:mozilla.249:C:\Documents and Settings\Kelvin\Application Data\Mozilla\Firefox\Profiles\Backup\cookies-17.txt -> TrackingCookie.Gemius : No action taken.
::Report end
The No action taken is because I saved the log before fixing them. Fixed already.
ActiveScan didn't work, so did HouseCall.
~Kelvin
Edited by Kelvin, 22 February 2008 - 04:25 AM.