HijackThis Logfile and more (1 Viewer)

slinky

A Very Important Member
Joined
Mar 31, 2004
Messages
211
Gender
Male
HSC
N/A
Hi folks, this is the 1st time ive used hijackthis on my new comp, hope there isnt many problems already, and thanx in advance ppl

Logfile of HijackThis v1.99.1
Scan saved at 7:30:12 PM, on 10/07/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\csrss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\System32\Ati2evxx.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\system32\spoolsv.exe
H:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
H:\Program Files\Alwil Software\Avast4\ashServ.exe
H:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
H:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
H:\WINDOWS\System32\wdfmgr.exe
H:\WINDOWS\system32\ZoneLabs\vsmon.exe
H:\WINDOWS\Explorer.EXE
H:\WINDOWS\SOUNDMAN.EXE
H:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
H:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
H:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
H:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
H:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
H:\Program Files\Microsoft AntiSpyware\gcasServ.exe
H:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
H:\WINDOWS\system32\qttask.exe
H:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
H:\Program Files\MSN Messenger\MsnMsgr.Exe
H:\Program Files\Spyware Doctor\swdoctor.exe
H:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
H:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
H:\Program Files\Alwil Software\Avast4\ashWebSv.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\System32\alg.exe
H:\DOCUME~1\NAMHUY~1\LOCALS~1\Temp\Rar$EX00.640\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - H:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - H:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EnvyHFCPL] H:\Program Files\Audio Deck\EnMixCPL.exe
O4 - HKLM\..\Run: [ATIPTA] H:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] H:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [zzGBK] G:\Setup.exe
O4 - HKLM\..\Run: [NeroFilterCheck] H:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Zone Labs Client] H:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [avast!] H:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [AVG7_CC] H:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] H:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [gcasServ] "H:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] H:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "H:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] H:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "H:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Spyware Doctor] "H:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - Global Startup: Microsoft Office.lnk = H:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - H:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1120574002968
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - H:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - H:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - H:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - H:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - H:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - H:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - H:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - H:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - H:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - H:\WINDOWS\system32\ZoneLabs\vsmon.exe



also, my comp seems to have slowed down from when i 1st got it, ive done all the scans for adware/viruses etc i can but dont seem to pick up anything besides cookies, is it because ive got to many processes running (like over 40 when i click ctrl+alt+del to check), if that is the case, which ones do u think is unnessecery

also right now im using
-avast
-avg
-spybot
-ad-aware
-spware blaster
-spyware doctor
-microsoft antispyware
-zonelabs firewall

are all those programs ok and wat other programs would i need to secure my pc, and thanx again in advance for any comments, help and oppinions ;) :uhhuh:


cheers
slinky
 

tomorrows_angel

tomorrow is too soon...
Joined
Mar 2, 2004
Messages
745
Location
Hills District
Gender
Female
HSC
2004
hi, i've been having some probs with my laptop recently, and i got some helpful comments from people on the boards... here's the thread http://www.boredofstudies.org/community/showthread.php?t=76317

paste your logfile into this site http://www.hijackthis.de/index.php#anl and it will analyse it for you, so you can check them, there's a few on yours you should check, mainly related to avast.

anyway, there's some sites for tweaking and performance upgrades here (thanks to markmooks)

http://www.microsoft.com/windowsxp/...estoreperf.mspx
http://www.pcstats.com/articleview.cfm?articleID=1590

good luck!
 

MedNez

:o>---<
Joined
Aug 21, 2004
Messages
3,004
Gender
Male
HSC
N/A
tomorrows_angel said:
paste your logfile into this site http://www.hijackthis.de/index.php#anl and it will analyse it for you, so you can check them, there's a few on yours you should check, mainly related to avast.
Shh.. putting me out of a job.

The logfile is fine, I had a read earlier but didn't have a chance to reply. What I recommend, is going to your taskbar (near the clock), right click things, and look for 'disable' or 'turn off startup'.

Volume, Firewall, Virus Scanner are more or less all you need running.

O4 - HKLM\..\Run: [QuickTime Task] "H:\WINDOWS\system32\qttask.exe" -atboottime

^ removing quicktime from startup is a good place to start!
 
Last edited:

slinky

A Very Important Member
Joined
Mar 31, 2004
Messages
211
Gender
Male
HSC
N/A
tomorrows_angel said:
hi, i've been having some probs with my laptop recently, and i got some helpful comments from people on the boards... here's the thread http://www.boredofstudies.org/community/showthread.php?t=76317

paste your logfile into this site http://www.hijackthis.de/index.php#anl and it will analyse it for you, so you can check them, there's a few on yours you should check, mainly related to avast.

anyway, there's some sites for tweaking and performance upgrades here (thanks to markmooks)

http://www.microsoft.com/windowsxp/...estoreperf.mspx
http://www.pcstats.com/articleview.cfm?articleID=1590

good luck!

thanx for the links, they were really helpful and yeh the link to the microsoft website doesnt work i think

cheers
 

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

Top