Logfile
of HijackThis v1.99.1
Scan
saved at 18:30:18, on 14.10.2006
Platform:
Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running
processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\AntiVir
PersonalEdition Classic\sched.exe
C:\Programme\AntiVir
PersonalEdition Classic\avguard.exe
C:\Programme\RealVNC\VNC4\WinVNC4.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\msiexec.exe
C:\Programme\AntiVir
PersonalEdition Classic\avgnt.exe
C:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\WINDOWS\System32\ctfmon.exe
\?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE
C:\WINDOWS\system32\wscntfy.exe
\?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE
D:\Master\HiJackThis\hijackthis_199\HijackThis.exe
R0 -
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.de/
O4 -
HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 -
HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition
Classic\avgnt.exe" /min
O4 -
HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O9 - Extra button: Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 -
Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O23 -
Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH
- C:\Programme\AntiVir PersonalEdition Classic\sched.exe
O23 -
Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH -
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
O23 -
Service: VNC Server Version 4 (WinVNC4) - Unknown owner -
C:\Programme\RealVNC\VNC4\WinVNC4.exe" -service (file missing)