Logfile of HijackThis v1.97.2
Scan saved at 21:27:05, on 01-10-2003
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Programmer\Analog Devices\SoundMAX\SMAgent.exe
C:\Programmer\Panda Software\Panda Antivirus 6.0\AVENGINE.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\TCAUDIAG.exe
C:\Programmer\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Programmer\Analog Devices\SoundMAX\Smax4.exe
C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Programmer\Logitech\iTouch\iTouch.exe
C:\Programmer\Microsoft Hardware\Mouse\point32.exe
C:\Programmer\Panda Software\Panda Antivirus 6.0\APVXDWIN.EXE
C:\Programmer\Messenger\msmsgs.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\Programmer\Skype\Phone\Skype.exe
C:\Programmer\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Documents and Settings\Jesper Rasmussen\Lokale indstillinger\Temp\Midlertidig mappe 2 for hijackthis.zip\HijackThis.exe
C:\Programmer\Internet Explorer\iexplore.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.find-itnow.com/panel_search.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://find-itnow.com/search.htmlR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.find-itnow.com/search.htmlR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.find-itnow.com/panel_search.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://www.find-itnow.com/panel_search.htmlO1 - Hosts: 66.250.107.99 worldsex.com
O1 - Hosts: 66.250.107.99
www.worldsex.comO1 - Hosts: 66.250.107.99 sexocean.com
O1 - Hosts: 66.250.107.99 easypic.com
O1 - Hosts: 66.250.107.99 free6.com
O1 - Hosts: 66.250.107.99 al4a.com
O1 - Hosts: 66.250.107.99
www.al4a.comO1 - Hosts: 66.250.107.99 thumbnailpost.com
O1 - Hosts: 66.250.107.99
www.thumbnailpost.comO1 - Hosts: 66.250.107.99 drbizzaro.com
O1 - Hosts: 66.250.107.99
www.drbizzaro.comO1 - Hosts: 66.250.107.99 hoes.com
O1 - Hosts: 66.250.107.99
www.hoes.comO1 - Hosts: 66.250.107.99 absolut-series.com
O1 - Hosts: 66.250.107.99
www.absolut-series.comO1 - Hosts: 66.250.107.99 elephantlist.com
O1 - Hosts: 66.250.107.99
www.elephantlist.comO1 - Hosts: 66.250.107.99 ah-me.com
O1 - Hosts: 66.250.107.99
www.ah-me.comO1 - Hosts: 66.250.107.101 google.co.in
O1 - Hosts: 66.250.107.101 google.fr
O1 - Hosts: 66.250.107.101 google.it
O1 - Hosts: 66.250.107.101 google.com.au
O1 - Hosts: 66.250.107.101 google.co.uk
O1 - Hosts: 66.250.107.101 google.be
O1 - Hosts: 66.250.107.101 google.com.ar
O1 - Hosts: 66.250.107.101
www.google.comO4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG.exe -on
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programmer\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Programmer\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [ATIPTA] C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Programmer\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [APVXDWIN] "C:\Programmer\Panda Software\Panda Antivirus 6.0\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [ScanInicio] "C:\Programmer\Panda Software\Panda Antivirus 6.0\Inicio.exe"
O4 - HKLM\..\RunServices: [PandaScheduler] "C:\Programmer\Panda Software\Panda Antivirus 6.0\Pavsched.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmer\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - HKCU\..\Run: [Skype] "C:\Programmer\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Programmer\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)