View Single Post
  #11 (permalink)  
Old 05-05-2008, 11:59
kristobal's Avatar
kristobal kristobal jest offline
fixum-dyrdum
 
Join Date: Jan 2006
Posts: 940
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
kristobal has disabled reputation
Re: Anyone recommend a decent and free anti-spyware software..?

you mean this komp?


Logfile of HijackThis v1.99.1
Scan saved at 4:57:24 AM, on 5/5/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
CWINDOWS\System32\smss.exe
CWINDOWS\system32\winlogon.exe
CWINDOWS\system32\services.exe
CWINDOWS\system32\lsass.exe
CWINDOWS\system32\svchost.exe
CWINDOWS\System32\svchost.exe
CWINDOWS\system32\spoolsv.exe
CProgram Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
CWINDOWS\ATKKBService.exe
CWINDOWS\system32\TDSupportApp\cdrom_mon.exe
CWINDOWS\Explorer.EXE
CProgram Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
CPROGRA~1\Grisoft\AVG7\avgamsvr.exe
CPROGRA~1\Grisoft\AVG7\avgupsvc.exe
CProgram Files\Bonjour\mDNSResponder.exe
CWINDOWS\eHome\ehRecvr.exe
CWINDOWS\eHome\ehSched.exe
CProgram Files\KService\KService.exe
CWINDOWS\system32\nvsvc32.exe
CWINDOWS\system32\svchost.exe
CWINDOWS\ehome\ehtray.exe
CWINDOWS\SOUNDMAN.EXE
CProgram Files\D-Link\AirPlus G\AirGCFG.exe
CProgram Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
CProgram Files\DAEMON Tools\daemon.exe
CProgram Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
CProgram Files\HP\HP Software Update\HPWuSchd2.exe
CProgram Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
CProgram Files\Java\jre1.6.0_05\bin\jusched.exe
CWINDOWS\system32\RUNDLL32.EXE
CPROGRA~1\Grisoft\AVG7\avgcc.exe
CProgram Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
CWINDOWS\system32\dllhost.exe
CProgram Files\Skype\Phone\Skype.exe
CProgram Files\Common Files\Ahead\Lib\NMBgMonitor.exe
CWINDOWS\eHome\ehmsas.exe
CProgram Files\Intuwave\Shared\mRouterRuntime\mRouterConfig .exe
CProgram Files\PokerOffice\bin\javaw.exe
CProgram Files\Intuwave\Shared\mRouterRuntime\mRouterRuntim e.exe
CProgram Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
CProgram Files\Microsoft ActiveSync\Wcescomm.exe
CPROGRA~1\MICROS~2\rapimgr.exe
CProgram Files\Veoh Networks\Veoh\VeohClient.exe
CPROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
CProgram Files\Common Files\Ahead\Lib\NMIndexingService.exe
CProgram Files\HP\Digital Imaging\bin\hpqtra08.exe
CProgram Files\InterVideo\Common\Bin\WinCinemaMgr.exe
CProgram Files\OpenOffice.org 2.3\program\soffice.exe
CProgram Files\OpenOffice.org 2.3\program\soffice.BIN
CProgram Files\HP\Digital Imaging\bin\hpqimzone.exe
CProgram Files\Skype\Plugin Manager\skypePM.exe
CWINDOWS\system32\wuauclt.exe
CProgram Files\HP\Digital Imaging\bin\hpqSTE08.exe
CProgram Files\Lavasoft\Ad-Aware 2007\aawservice.exe
cdocuments and settings\kris\local settings\application data\gpqtncz.exe
CProgram Files\Mozilla Firefox\firefox.exe
CDocuments and Settings\kris\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - CProgram Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
O2 - BHO: (no name) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - CProgram Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Winamp Toolbar BHO - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - CProgram Files\Winamp Toolbar\winamptb.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - CProgram Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - CProgram Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - CProgram Files\AskTBar\bar\2.bin\ASKTBAR.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - CProgram Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - CProgram Files\AskTBar\bar\2.bin\ASKTBAR.DLL
O3 - Toolbar: (no name) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - (no file)
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - CProgram Files\Winamp Toolbar\winamptb.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - CProgram Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [ehTray] CWINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [D-Link AirPlus G] CProgram Files\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] CProgram Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [DAEMON Tools] "CProgram Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Adobe Photo Downloader] "CProgram Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [HP Software Update] CProgram Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] CProgram Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "CProgram Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] CProgram Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [PC Suite for Smartphones] "CProgram Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE CWINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE CWINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AVG7_CC] CPROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "CProgram Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [QuickTime Task] "CProgram Files\K-Lite Codec Pack\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [POEngine] "CProgram Files\PokerOffice\POEngine.exe" CProgram Files\PokerOffice
O4 - HKCU\..\Run: [Skype] "CProgram Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "CProgram Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [mRouterConfig] "CProgram Files\Intuwave\Shared\mRouterRuntime\mRouterConfig .exe"
O4 - HKCU\..\Run: [H/PC Connection Agent] "CProgram Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKCU\..\Run: [Veoh] "CProgram Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "CPROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - Startup: OpenOffice.org 2.3.lnk = CProgram Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = CProgram Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = CProgram Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = CProgram Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = CProgram Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Winamp Toolbar Search - CDocuments and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://CPROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - CProgram Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - CProgram Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - CDocuments and Settings\kris\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk
O9 - Extra 'Tools' menuitem: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - CDocuments and Settings\kris\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - CPROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - CProgram Files\Titan Poker\casino.exe (file missing)
O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - CProgram Files\Titan Poker\casino.exe (file missing)
O9 - Extra button: Betdirect Poker - {6709727A-27C0-4822-ACF7-C572E1899CD6} - CProgram Files\betdirectMPP\MPPoker.exe (file missing)
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - CPROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Gnuf Poker - {A99C8F70-4D5B-482c-8854-05BC0BB8B182} - CProgram Files\Gnuf\Poker\MPPoker.exe (file missing)
O9 - Extra button: bet365 Poker - {B1BA4A3F-1C95-497b-9F82-F8DA4A5C89DD} - CProgram Files\bet365MPP\MPPoker.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - CProgram Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - CProgram Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: Ladbrokes Poker - {C2A80015-C447-4dc4-82DD-AED83D6ED57E} - CProgram Files\ladbrokesMPP\MPPoker.exe (file missing)
O9 - Extra button: Dream Poker - {D45D9D5F-B491-4c95-8B05-FA6B6C69CA82} - CProgram Files\dreampokerMPP\MPPoker.exe (file missing)
O9 - Extra button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - CProgram Files\Bodog Poker\BPGame.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - CProgram Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - CProgram Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: cprogram files\bonjour\mdnsnsp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - CPROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - CProgram Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - CProgram Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - CWINDOWS\ATKKBService.exe
O23 - Service: Autorun CDROM Monitor - Unknown owner - CWINDOWS\system32\TDSupportApp\cdrom_mon.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - CProgram Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - CPROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - CPROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - CProgram Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - CProgram Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: KService - Kontiki Inc. - CProgram Files\KService\KService.exe
O23 - Service: NBService - Nero AG - CProgram Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - CProgram Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - CWINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - CWINDOWS\system32\HPZipm12.exe
Reply With Quote