| Result |
Good-Bad |
Search |
Hijack This Log File Entry |
| | |
| Bad | 4 - 11 | SS(4,477) - GS Comments_(1)
| O6 - HKCU\Software\Policies\Microsoft\InternetExplorer\Control Panel present |
| Bad | 0 - 1 | SS(337) - GS Comments_(0)
| F2 - REG:system.ini:UserInit=C:\WINDOWS\system32\userinit.exe |
| Bad | 0 - 3 | SS(61) - GS Comments_(0)
| O2 - BHO: (no name) -{5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) |
| Unknown | 0 - 0 | SS(7,082) - GS Comments_(0)
| O15 - Trusted Zone: *.skillport.com |
| Unknown | 0 - 0 | SS(0) - GS Comments_(0)
| C:\Program Files\Symantec AntiVirus\Smc.exe |
| Unknown | 0 - 0 | SS(16) - GS Comments_(0)
| C:\Program Files\Symantec AntiVirus\SmcGui.exe |
| Unknown | 0 - 0 | SS(0) - GS Comments_(0)
| O23 - Service: Symantec Management Client(SmcService) - Symantec Corporation - C:\ProgramFiles\Symantec AntiVirus\Smc.exe |
| Unknown | 0 - 0 | SS(113) - GS Comments_(0)
| O23 - Service: Symantec Endpoint Protection(Symantec AntiVirus) - Symantec Corporation -C:\Program Files\Symantec AntiVirus\Rtvscan.exe |
| Unknown | 0 - 0 | SS(16,010) - GS Comments_(0)
| O23 - Service: Symantec Auto-upgrade Agent(Smcinst) - Unknown owner - C:\ProgramFiles\Symantec AntiVirus\SmcLU\Setup\smcinst.exe(file missing) |
| Unknown | 0 - 0 | SS(34) - GS Comments_(0)
| O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}-http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab |
| Unknown | 0 - 0 | SS(7,082) - GS Comments_(0)
| O15 - Trusted Zone: *.skillwsa.com |
| Unknown | 0 - 0 | SS(6) - GS Comments_(0)
| O23 - Service: MotoConnect Service - Unknown owner- C:\ProgramFiles\Motorola\MotoConnectService\MotoConnectService.exe |
| Unknown | 0 - 0 | SS(8) - GS Comments_(0)
| O16 - DPF: {315B0BFB-2BD4-481B-80A3-A9B80727C61B}(WebIQ Engine Application Object) -http://webiq005.webiqonline.com/WebIQ/DataServer/DataServer.dll?Handler=GetEngineDistribution&EDID={896A23A1-5821-4609-A6C6-6D5536C585C9} |
| Unknown | 0 - 0 | SS(5) - GS Comments_(0)
| C:\ProgramFiles\Motorola\MotoConnectService\MotoConnect.exe |
| Unknown | 0 - 0 | SS(6) - GS Comments_(0)
| C:\ProgramFiles\Motorola\MotoConnectService\MotoConnectService.exe |
| Unknown | 0 - 0 | SS(0) - GS Comments_(0)
| C:\Documents and Settings\kgray\LocalSettings\Application Data\av.exe |
| Unknown | 0 - 0 | SS(38,223) - GS Comments_(0)
| R1 - HKCU\Software\Microsoft\InternetExplorer\Main,Default_Page_URL = http://intranet |
| Unknown | 0 - 0 | SS(46,018) - GS Comments_(0)
| R1 - HKCU\Software\Microsoft\Internet ConnectionWizard,ShellNext = http://intranet/default.aspx |
| Unknown | 0 - 0 | SS(34,566) - GS Comments_(0)
| R1 - HKCU\Software\Microsoft\InternetExplorer\Main,Window Title = Microsoft InternetExplorer provided by Goodwill Southern California |
| Unknown | 0 - 0 | SS(39,099) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://www.benefits-planning.org |
| Unknown | 0 - 0 | SS(39,099) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.cnn.com |
| Unknown | 0 - 0 | SS(39,103) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.goodwill.org |
| Unknown | 0 - 0 | SS(39,103) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://www.goodwillsocal.org |
| Unknown | 0 - 0 | SS(39,119) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://by111fd.bay111.hotmail.msn.com |
| Unknown | 0 - 0 | SS(80,567) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://view.atdmt.com(HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://www.benefits-planning.org (HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.cnn.com (HKLM) |
| Unknown | 0 - 0 | SS(80,470) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.goodwill.org(HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://www.goodwillsocal.org (HKLM) |
| Unknown | 0 - 0 | SS(80,487) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://by111fd.bay111.hotmail.msn.com (HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://cb2.msn.com (HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://rad.msn.com (HKLM) |
| Unknown | 0 - 0 | SS(80,469) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.msn.com (HKLM) |
| Unknown | 0 - 0 | SS(80,481) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://loginnet.passport.com (HKLM) |
| Unknown | 0 - 0 | SS(80,594) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://login.passport.net(HKLM) |
| Unknown | 0 - 0 | SS(5,351) - GS Comments_(0)
| O17 - HKLM\System\CCS\Services\Tcpip\Parameters:Domain = goodwillsocal.org |
| Unknown | 0 - 0 | SS(1,311) - GS Comments_(0)
| O17 - HKLM\Software\..\Telephony: DomainName =goodwillsocal.org |
| Unknown | 0 - 0 | SS(5,351) - GS Comments_(0)
| O17 - HKLM\System\CS1\Services\Tcpip\Parameters:Domain = goodwillsocal.org |
| Unknown | 0 - 0 | SS(5,351) - GS Comments_(0)
| O17 - HKLM\System\CS2\Services\Tcpip\Parameters:Domain = goodwillsocal.org |
| Unknown | 0 - 0 | SS(9) - GS Comments_(0)
| O18 - Filter hijack: text/html -{29bd6eb8-a1be-4ed3-b49e-6e14cfb1dc6d} - (no file) |
| Good | 1 - 0 | SS(36,066) - GS Comments_(0)
| O14 - IERESET.INF: START_PAGE_URL=http://intranet |
| Good | 3 - 0 | SS(333) - GS Comments_(0)
| O2 - BHO: Adobe PDF Reader Link Helper -{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -C:\Program Files\CommonFiles\Adobe\Acrobat\ActiveX\AcroIEHelper.dll |
| Good | 2 - 0 | SS(436) - GS Comments_(0)
| O9 - Extra button: Research -{92780B25-18CC-41C8-B9BE-3C9C571A8263} -C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL |
| Good | 1 - 0 | SS(144) - GS Comments_(0)
| O23 - Service: InstallDriver Table Manager(IDriverT) - Macrovision Corporation - C:\ProgramFiles\Common Files\InstallShield\Driver\1150\Intel32\IDriverT.exe |
| Good | 1 - 0 | SS(822) - GS Comments_(0)
| O8 - Extra context menu item: E&xport to MicrosoftExcel -res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 |
| Good | 1 - 0 | SS(209) - GS Comments_(0)
| O23 - Service: iPod Service - Apple Inc. -C:\Program Files\iPod\bin\iPodService.exe |
| Good | 1 - 0 | SS(43,245) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://runonce.msn.com |
| Good | 1 - 0 | SS(423) - GS Comments_(0)
| O23 - Service: Symantec Event Manager (ccEvtMgr) -Symantec Corporation - C:\Program Files\CommonFiles\Symantec Shared\ccSvcHst.exe |
| Good | 1 - 0 | SS(423) - GS Comments_(0)
| O23 - Service: Symantec Settings Manager(ccSetMgr) - Symantec Corporation - C:\ProgramFiles\Common Files\Symantec Shared\ccSvcHst.exe |
| Good | 1 - 0 | SS(34,848) - GS Comments_(0)
| R1 -HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local |
| Good | 1 - 0 | SS(12) - GS Comments_(0)
| C:\WINDOWS\TIREMOTE\wuser32.exe |
| Good | 1 - 0 | SS(5) - GS Comments_(0)
| C:\WINDOWS\TIREMOTE\TIRemoteService.exe |
| Good | 1 - 0 | SS(12) - GS Comments_(0)
| O23 - Service: Track-It! Remote Control (TIRmtCtl)- Intuit Track-It! -C:\WINDOWS\TIREMOTE\wuser32.exe |
| Good | 1 - 0 | SS(5) - GS Comments_(0)
| O23 - Service: Track-It! Workstation Manager(TIRmtSvc) - Numara Software, Inc. -C:\WINDOWS\TIREMOTE\TIRemoteService.exe |
| Good | 1 - 0 | SS(896) - GS Comments_(0)
| O4 - HKCU\..\Run: [MsnMsgr] "C:\ProgramFiles\Windows Live\Messenger\MsnMsgr.Exe"/background |
| Good | 1 - 0 | SS(275) - GS Comments_(0)
| C:\Program Files\WindowsLive\Messenger\MsnMsgr.Exe |
| Good | 1 - 0 | SS(135) - GS Comments_(0)
| C:\Program Files\Common Files\Apple\Mobile DeviceSupport\bin\AppleMobileDeviceService.exe |
| Good | 1 - 0 | SS(135) - GS Comments_(0)
| O23 - Service: Apple Mobile Device - Apple, Inc. -C:\Program Files\Common Files\Apple\Mobile DeviceSupport\bin\AppleMobileDeviceService.exe |
| Good | 3 - 0 | SS(6,172) - GS Comments_(0)
| C:\Program Files\TrendMicro\HijackThis\HijackThis.exe |
| Good | 1 - 0 | SS(82,918) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://runonce.msn.com(HKLM) |
| Good | 1 - 0 | SS(18) - GS Comments_(0)
| O4 - Global Startup: Desktop Manager.lnk =C:\Program Files\Research InMotion\BlackBerry\DesktopMgr.exe |
| Good | 1 - 0 | SS(39,232) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://view.atdmt.com |
| Good | 1 - 0 | SS(39,099) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://cb2.msn.com |
| Good | 1 - 0 | SS(39,099) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://rad.msn.com |
| Good | 1 - 0 | SS(39,112) - GS Comments_(0)
| O15 - ESC Trusted Zone:http://loginnet.passport.com |
| Good | 1 - 0 | SS(39,234) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://login.passport.net |
| Good | 1 - 0 | SS(94) - GS Comments_(0)
| O16 - DPF: {8A0019EB-51FA-4AE5-A40B-C0496BBFC739}(Verizon Wireless Media Upload) -http://picture.vzw.com/activex/VerizonWirelessUploadControl.cab |
| Good | 1 - 0 | SS(39,099) - GS Comments_(0)
| O15 - ESC Trusted Zone: http://www.msn.com |
| Good | 1 - 0 | SS(171) - GS Comments_(0)
| O23 - Service: Bonjour Service - Apple Inc. -C:\Program Files\Bonjour\mDNSResponder.exe |
| Good | 1 - 0 | SS(17) - GS Comments_(0)
| C:\Program Files\Windows Live\Contacts\wlcomm.exe |
| Good | 1 - 0 | SS(231) - GS Comments_(0)
| C:\Program Files\Lavasoft\AD-Aware\aawservice.exe |
| Good | 2 - 0 | SS(121) - GS Comments_(0)
| O2 - BHO: Java(tm) Plug-In 2 SSV Helper -{DBC80044-A445-435b-BC74-9C25C1C588A9} -C:\Program Files\Java\jre6\bin\jp2ssv.dll |
| Good | 1 - 0 | SS(231) - GS Comments_(0)
| O23 - Service: Lavasoft Ad-Aware Service(aawservice) - Lavasoft - C:\ProgramFiles\Lavasoft\Ad-Aware\aawservice.exe |
| Good | 1 - 0 | SS(620) - GS Comments_(0)
| C:\Program Files\Java\jre6\bin\jusched.exe |
| Good | 2 - 0 | SS(109) - GS Comments_(0)
| O2 - BHO: JQSIEStartDetectorImpl -{E7E6F031-17CE-4C07-BC86-EABFE594F69C} -C:\ProgramFiles\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll |
| Good | 1 - 0 | SS(620) - GS Comments_(0)
| O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\ProgramFiles\Java\jre6\bin\jusched.exe" |
| Good | 2 - 0 | SS(0) - GS Comments_(0)
| O23 - Service: Java Quick Starter(JavaQuickStarterService) - Sun Microsystems, Inc.- C:\Program Files\Java\jre6\bin\jqs.exe |
| Good | 1 - 0 | SS(4) - GS Comments_(0)
| O4 - HKLM\..\Run: [DameWare MRC Agent]C:\WINDOWS\system32\DWRCST.exe |
| Good | 1 - 0 | SS(0) - GS Comments_(1)
| C:\Program Files\Java\jre6\bin\jqs.exe |
| Good | 1 - 0 | SS(200) - GS Comments_(0)
| O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7}-http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab |
| Good | 1 - 0 | SS(14) - GS Comments_(0)
| O16 - DPF: {576756A1-D97C-45D0-A945-0324019A131E}(BOSIActiveFormX Control) -http://trackit7/tiweb70/downloads/BOSIActiveXGrid.cab |
| Good | 1 - 0 | SS(18) - GS Comments_(0)
| O16 - DPF: {6AF2E1A7-A16E-4503-A440-07CA49122CCE}(BOSIRichEditActiveX Control) -http://trackit7/tiweb70/downloads/BOSIActiveXMemoControl.cab |
| | | |