Logfile
of HijackThis v1.99.1
Scan
saved at 17:41:29, on 14.10.2006
Platform:
Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running
processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\AntiVir
PersonalEdition Classic\avgnt.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\Programme\AntiVir
PersonalEdition Classic\sched.exe
C:\Programme\AntiVir
PersonalEdition Classic\avguard.exe
C:\Programme\RealVNC\VNC4\WinVNC4.exe
D:\Master\HiJackThis\hijackthis_199\HijackThis.exe
R0 -
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.de/
O3 -
Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 -
HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 -
HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 -
HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition
Classic\avgnt.exe" /min
O4 -
HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O9 -
Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 -
Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O23 -
Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH
- C:\Programme\AntiVir PersonalEdition Classic\sched.exe
O23 -
Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH -
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
O23 -
Service: VNC Server Version 4 (WinVNC4) - Unknown owner -
C:\Programme\RealVNC\VNC4\WinVNC4.exe" -service (file missing)