Microsoft
Software
Hardware
Network
Question : HJT Log File
Can someone please review the following HJT log file and let me know if there's anything suspect?
Problem with Active Desktop Recovery.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:07:28 AM, on 7/5/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\system32\spools
v.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Java\jre6\bin\jqs.ex
e
C:\Program Files\LogMeIn\x86\RaMaint.
exe
C:\Program Files\LogMeIn\x86\LogMeIn.
exe
C:\Program Files\LogMeIn\x86\LMIGuard
ian.exe
C:\WINDOWS\system32\PSISer
vice.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchos
t.exe
C:\Program Files\LogMeIn\x86\LogMeIn.
exe
C:\Program Files\LogMeIn\x86\LMIGuard
ian.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\WINDOWS\system32\igfxtr
ay.exe
C:\WINDOWS\system32\hkcmd.
exe
C:\WINDOWS\system32\igfxpe
rs.exe
C:\Program Files\Sharp\Sharpdesk\Shar
pTray.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\AcroDist.exe
C:\Program Files\Sharp\Sharpdesk\FtpS
erver.exe
C:\Program Files\LogMeIn\x86\LogMeInS
ystray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\LogMeIn\x86\LMIGuard
ian.exe
C:\Program Files\CyberLink\Power2Go\C
LMLSvc.exe
C:\Program Files\CyberLink\PowerDVD8\
PDVD8Serv.
exe
C:\Program Files\lg_fwupdate\fwupdate
.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\WINDOWS\system32\ctfmon
.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\acrobat_sl.exe
C:\Program Files\Sharp\Sharpdesk\nsap
p.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtblfs.exe
C:\Program Files\Trend Micro\HijackThis\HijackThi
s.exe
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Page =
http://go.microsoft.com/fw
link/?Link
Id=54896
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Page
_URL =
http://go.microsoft.com/fw
link/?Link
Id=69157
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Sear
ch_URL =
http://go.microsoft.com/fw
link/?Link
Id=54896
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Page =
http://go.microsoft.com/fw
link/?Link
Id=54896
R0 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://go.microsoft.com/fw
link/?Link
Id=69157
R1 - HKCU\Software\Microsoft\Wi
ndows\Curr
entVersion
\Internet Settings,ProxyServer = http=127.0.0.1:1052
R1 - HKCU\Software\Microsoft\Wi
ndows\Curr
entVersion
\Internet Settings,ProxyOverride = 127.0.0.*;192.168.0.*
R3 - URLSearchHook: NetAssistantBHO Class - {E38FA08E-F56A-4169-ABF5-5
C71E3C153A
1} - C:\Program Files\Freeze.com\My.Freeze
.com NetAssistant\NetAssistant.
dll
R3 - URLSearchHook: Free TV Bar c3 Toolbar - {3ee8d0be-f450-4ef2-97b9-a
c2222d14db
3} - C:\Program Files\Free_TV_Bar_c3\tbFre
1.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-7
84B7D6BE0B
3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.d
ll
O2 - BHO: Free TV Bar c3 Toolbar - {3ee8d0be-f450-4ef2-97b9-a
c2222d14db
3} - C:\Program Files\Free_TV_Bar_c3\tbFre
1.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6
FA9CCA1862
C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B
9E3AAC4465
B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.d
ll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0
445EE16191
0} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll
O2 - BHO: MSN Toolbar Helper - {d2ce3e00-f94a-4740-988e-0
3dc2f38c34
f} - C:\Program Files\MSN\Toolbar\3.0.1125
.0\msneshe
llx.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9
C25C1C588A
9} - C:\Program Files\Java\jre6\bin\jp2ssv
.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-8
19F76A199F
8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O2 - BHO: NetAssistantBHO - {E38FA08E-F56A-4169-ABF5-5
C71E3C153A
1} - C:\Program Files\Freeze.com\My.Freeze
.com NetAssistant\NetAssistant.
dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-E
ABFE594F69
C} - C:\Program Files\Java\jre6\lib\deploy
\jqs\ie\jq
s_plugin.d
ll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0
819E2EAAC9
3} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9
F516DD6982
9} - (no file)
O3 - Toolbar: MSN Toolbar - {1E61ED7C-7CB8-49d6-B9E9-A
B4C880C841
4} - C:\Program Files\MSN\Toolbar\3.0.1125
.0\msneshe
llx.dll
O3 - Toolbar: Free TV Bar c3 Toolbar - {3ee8d0be-f450-4ef2-97b9-a
c2222d14db
3} - C:\Program Files\Free_TV_Bar_c3\tbFre
1.dll
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtr
ay.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.
exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpe
rs.exe
O4 - HKLM\..\Run: [IndexTray] "C:\Program Files\Sharp\Sharpdesk\Inde
xTray.exe"
/n
O4 - HKLM\..\Run: [SharpTray] "C:\Program Files\Sharp\Sharpdesk\Shar
pTray.exe"
O4 - HKLM\..\Run: [TypeRegChecker] "C:\Program Files\Sharp\Sharpdesk\Type
RegChecker
.exe"
O4 - HKLM\..\Run: [FtpServer.exe] "C:\Program Files\Sharp\Sharpdesk\FtpS
erver.exe"
-usedefault
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInS
ystray.exe
"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [QuickFinder Scheduler] "C:\Program Files\WordPerfect Office X3\Programs\QFSCHD130.EXE"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint
\MUITransf
er\MUIStar
tMenu.exe"
"C:\Program Files\CyberLink\LabelPrint
" UpdateWithCreateOnce "Software\CyberLink\LabelP
rint\2.5"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\C
LMLSvc.exe
"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\M
UITransfer
\MUIStartM
enu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2
Go\6.0"
O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\
PDVD8Serv.
exe"
O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD8\
Language\L
anguage.ex
e"
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files\CyberLink\PowerProdu
cer\MUITra
nsfer\MUIS
tartMenu.e
xe" "C:\Program Files\CyberLink\PowerProdu
cer" UpdateWithCreateOnce "Software\CyberLink\PowerP
roducer\5.
0"
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate
.exe" blrun
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStart
Menu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerS
tarter"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon
.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSecti
onEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSecti
onEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSecti
onEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSecti
onEx nLite.inf,C,,4,N (User 'Default user')
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Ad
obe Gamma Loader.exe
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IECapture.
html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IEAppend.h
tml
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IECaptureS
elLinks.ht
ml
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IEAppendSe
lLinks.htm
l
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IECapture.
html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IEAppend.h
tml
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IECapture.
html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
t.dll/Acro
IEAppend.h
tml
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1
\Office12\
EXCEL.EXE/
3000
O8 - Extra context menu item: Open with WordPerfect - C:\Program Files\WordPerfect Office X3\Programs\WPLauncher.hta
O9 - Extra button: &Virtual keyboard - {4248FE82-7FCB-46AC-B270-3
39F0821211
0} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3
C9C571A826
3} - C:\PROGRA~1\MICROS~1\Offic
e12\REFIEB
AR.DLL
O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D
9909053F20
F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f
2ba3849658
3} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f
2ba3849658
3} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {4871A87A-BFDD-4106-8153-F
FDE2BAC296
7} (DLM Control) -
http://dlm.tools.akamai.co
m/dlmanage
r/versions
/activex/d
lm-
activex
-2.2.5.0.c
ab
O16 - DPF: {6414512B-B978-451D-A0D8-F
CFDF33E833
C} (WUWebControl Class) -
http://www.update.microsof
t.com/micr
osoftupdat
e/v6/
V5Con
trols/en/x
86/client/
wuweb_site
.cab?12629
02825128
O16 - DPF: {6E32070A-766D-4EE6-879C-D
C1FA91D2FC
3} (MUWebControl Class) -
http://www.update.microsof
t.com/micr
osoftupdat
e/v6/
V5Con
trols/en/x
86/client/
muweb_site
.cab?12629
02818316
O17 - HKLM\System\CCS\Services\T
cpip\Param
eters: Domain = limandri.local
O17 - HKLM\Software\..\Telephony
: DomainName = limandri.local
O17 - HKLM\System\CS1\Services\T
cpip\Param
eters: Domain = limandri.local
O17 - HKLM\System\CS2\Services\T
cpip\Param
eters: Domain = limandri.local
O17 - HKLM\System\CS3\Services\T
cpip\Param
eters: Domain = limandri.local
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPE
R~1\mzvkbd
3.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.
exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.ex
e
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.
exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.
exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSISer
vice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/KDENWO
~1/LOCALS~
1/Temp/mso
htmlclip1/
01/clip_im
age002.jpg
--
End of file - 11950 bytes
Attachments:
hijackthis.log
(11 KB)
(File Type Details)
HJT Log File
Answer : HJT Log File
Most people live in big cities while others live in small ones. Lifestyle may change from place to place, but one thing everybody has in common: The eternal search for a better quality of life.
[The first sentence is a bit trivial, along the lines of "Most rats are bit, while the others are small".]
Especially in the big cities like New York, London, Paris, and Tokyo, people usually have better access to health, housing, transport, food and so on. But the cost for this can be high.
In the streets traffic jams, extreme noise and pollution cause drivers to be stressed and get impatient. Things that easily effect passers-by as well.
On special occasions great crowds go out for refreshing themselves. Many people like drinking beer, others prefer have a juice, mineral water or simply eat light food.
[What are you trying to say here? That crows assemble in the parks?]
When people go home from their work, some take advantage to go shopping, while others prefer going to the park looking for pure air or just walking around the boulevards or squares. Those who live by the sea like appreciating the breeze. There are also those who enjoy staying at home watching TV or talking to their family and friends.
Today most of people enjoy modern life, new technologies, fashion and find new places to explore and feel good at them. For example when someone goes downtown, he or she has the opportunity to walk through malls, museums, theaters, beautiful avenues or parks and meet other people from different neighbourhoods of the city.
He or she may also witness curious scenes, and when some of them sometimes can look awful and aggressive in time of crescent worldwide violence. So, people should avoid going to places which can be susceptible to this kind of situation.
[I have no idea what this means?]
Going out walking is always a good action as it removes stress, besides offering opportunities for a social encounter, renew contacts or get to know other parts of the place you live. So, take some time and interact with your city and neighbours. Enjoy life and seize the best oppertunity you may have!
[neighbor = American; neighbour = British]
Random Solutions
Using modules in Access 2007
best tools for front end development HTML,CSS, JavaScript, cross browser compatibility, W3C compliance
Adding blogger feed to Facebook page - still track Google analytics?
image gallery continuous scrolling
to optimise the case statement
How to delete *.dot files among *.dotm files with cmd script?
infopath repeating tables
SAN interconnection
Error in userform
update user name change from AD to sharepoint 2007