Logfile of HijackThis v1.99.1
Scan saved at 4:04:33 PM, on 7/3/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware....
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=5...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://us.f830.mail.yahoo.com/dc/launch?...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=5...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=5...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOO...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper...
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cp...
O4 - HKLM\..\Run: [wltray.exe] C:\WINDOWS\system32\wltray.exe
O4 - HKLM\..\Run: [SunKistEM] "C:\Program Files\Digital Media Reader\shwiconem.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86...
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [masqform.exe] "C:\Program Files\PureEdge\Viewer 6.0\masqform.exe" -UpdateCurrentUser
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SpySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /startintray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] "C:\DOCUME~1\Owner\LOCALS~1\Temp\SSUPDAT... Software\SUPERAntiSpyware.com\SUPERAntiS...
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.D...
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Face...
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - http://www.symantec.com/techsupp/asa/ss/...
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared...
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by117fd.bay117.hotmail.msn.com/re...
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Share...
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} - https://webdl.symantec.com/activex/symdl...
O16 - DPF: {6F0C8A89-8B0D-11D2-801B-00105AA78F4A} (ECareAgent Class) - http://ecare1a.netopia.com/uhaul3/ecare4...
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Upl...
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://ak.imgag.com/imgag/cp/install/Cru...
O18 - Protocol: bw+0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw+0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw-0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw-0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw00 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw00s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw10 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw10s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw20 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw20s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw30 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw30s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw40 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw40s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw50 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw50s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw60 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw60s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw70 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw70s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw80 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw80s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw90 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bw90s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwa0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwa0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwb0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwb0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwc0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwc0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwd0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwd0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwe0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwe0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwf0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwf0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - (no file)
O18 - Protocol: bwg0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwg0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwh0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwh0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwi0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwi0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwj0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwj0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwk0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwk0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwl0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwl0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwm0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwm0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwn0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwn0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwo0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwo0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwp0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwp0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwq0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwq0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwr0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwr0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bws0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bws0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwt0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwt0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwu0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwu0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwv0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwv0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bww0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bww0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwx0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwx0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwy0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwy0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwz0 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: bwz0s - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O18 - Protocol: offline-8876480 - {21E27362-B330-401C-A48D-DB535479A3CB} - (no file)
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: lxcf_device - - C:\WINDOWS\system32\lxcfcoms.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Unknown owner - C:\Program Files\Trend Micro\BM\TMBMSRV.exe" /service (file missing)
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService....
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe All this are viruses
O18 - Protocol: bw+0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw+0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw-0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw-0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw00 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw00s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw10 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw10s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw20 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw20s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw30 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw30s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw40 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw40s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw50 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw50s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw60 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw60s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw70 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw70s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw80 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw80s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw90 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bw90s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwa0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwa0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwb0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwb0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwc0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwc0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwd0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwd0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwe0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwe0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwf0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwf0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9... - (no file)
O18 - Protocol: bwg0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwg0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwh0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwh0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwi0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwi0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwj0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwj0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwk0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwk0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwl0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwl0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwm0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwm0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwn0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwn0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwo0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwo0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwp0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwp0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwq0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwq0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwr0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwr0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bws0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bws0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwt0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwt0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwu0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwu0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwv0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwv0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bww0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bww0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwx0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwx0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwy0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwy0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwz0 - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: bwz0s - {21E27362-B330-401C-A48D-DB535... - (no file)
O18 - Protocol: offline-8876480 - {21E27362-B330-401C-A48D-DB535... - (no file)
these are junk
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
these are adware programs related keys
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A25... - C:\Program Files\PartyGaming\PartyPoker\R...
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A25... - C:\Program Files\PartyGaming\PartyPoker\R...
Uninstall it.
Run HJ again, check and delete them. Next uninstall HJ (to delete the backups) and go to http://www.eset.com/onlinescan/ AND http://www.bitdefender.com/scan8/ie.html and run the scan. Reinstall HJ and run it again. If nothing bad appears disable System Restore, reboot and reenable it. Go again to the sites above and rescan.
BTW you need a new AV and AS, these have been compromised. And why are you running 2 (weak) AV's simultaneously? |