| Result |
Good-Bad |
Search |
Hijack This Log File Entry |
| | |
| Unknown | 0 - 0 | SS(56,436) - GS Comments_(0)
| R1 - HKCU\Software\Microsoft\InternetExplorer\Main,Default_Page_URL =http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=74&bd=smb&pf=desktop |
| Unknown | 0 - 0 | SS(12) - GS Comments_(0)
| O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968}(Facebook Photo Uploader 5 Control) -http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab |
| Unknown | 0 - 0 | SS(11) - GS Comments_(0)
| C:\Program Files\Iomega\Iomega AutomaticBackup\ibackup.exe |
| Unknown | 0 - 0 | SS(11) - GS Comments_(0)
| O4 - HKLM\..\Run: [Iomega Automatic Backup 1.0.1]C:\Program Files\Iomega\Iomega AutomaticBackup\ibackup.exe |
| Unknown | 0 - 0 | SS(11) - GS Comments_(0)
| O4 - HKCU\..\Run: [Iomega Automatic Backup]C:\Program Files\Iomega\Iomega AutomaticBackup\ibackup.exe |
| Unknown | 0 - 0 | SS(2) - GS Comments_(0)
| C:\PROGRA~1\MICROS~2\Office12\backappl.exe |
| Unknown | 0 - 0 | SS(1,501) - GS Comments_(0)
| O20 - AppInit_DLLs: aWOBmlgeW.dll |
| Good | 9 - 0 | SS(1,481) - GS Comments_(0)
| O9 - Extra 'Tools' menuitem: Windows Messenger -{FB5F1910-F110-11d2-BB9E-00C04F795683} -C:\Program Files\Messenger\msmsgs.exe |
| Good | 10 - 0 | SS(156) - GS Comments_(0)
| C:\WINDOWS\System32\smss.exe |
| Good | 7 - 0 | SS(346) - GS Comments_(0)
| O4 - HKLM\..\Run: [QuickTime Task] "C:\ProgramFiles\QuickTime\qttask.exe" -atboottime |
| Good | 7 - 0 | SS(129) - GS Comments_(0)
| C:\Program Files\HP\HP SoftwareUpdate\HPWuSchd2.exe |
| Good | 7 - 0 | SS(223) - GS Comments_(0)
| C:\Program Files\iTunes\iTunesHelper.exe |
| Good | 7 - 0 | SS(122) - GS Comments_(0)
| C:\WINDOWS\system32\wuauclt.exe |
| Good | 7 - 0 | SS(209) - GS Comments_(0)
| C:\Program Files\iPod\bin\iPodService.exe |
| Good | 7 - 0 | SS(6) - GS Comments_(0)
| C:\PROGRA~1\Iomega\System32\AppServices.exe |
| Good | 7 - 0 | SS(58) - GS Comments_(0)
| C:\WINDOWS\System32\hkcmd.exe |
| Good | 7 - 0 | SS(44) - GS Comments_(0)
| O4 - HKLM\..\Run: [IgfxTray]C:\WINDOWS\System32\igfxtray.exe |
| Good | 7 - 0 | SS(58) - GS Comments_(0)
| O4 - HKLM\..\Run: [HotKeysCmds]C:\WINDOWS\System32\hkcmd.exe |
| Good | 7 - 0 | SS(6) - GS Comments_(0)
| O23 - Service: Iomega App Services - IomegaCorporation -C:\PROGRA~1\Iomega\System32\AppServices.exe |
| Good | 7 - 0 | SS(11) - GS Comments_(0)
| O4 - HKLM\..\Run: [Recguard]C:\WINDOWS\SMINST\RECGUARD.EXE |
| Good | 1 - 0 | SS(62) - GS Comments_(0)
| C:\Program Files\Analog Devices\SoundMAX\Smax4.exe |
| Good | 1 - 0 | SS(701) - GS Comments_(0)
| O4 - HKLM\..\Run: [SoundMAX] "C:\ProgramFiles\Analog Devices\SoundMAX\Smax4.exe" /tray |
| Good | 1 - 0 | SS(223) - GS Comments_(0)
| O4 - HKLM\..\Run: [iTunesHelper] "C:\ProgramFiles\iTunes\iTunesHelper.exe" |
| Good | 1 - 0 | SS(52) - GS Comments_(0)
| C:\PROGRA~1\mcafee.com\agent\mcagent.exe |
| Good | 1 - 0 | SS(70) - GS Comments_(0)
| O4 - HKLM\..\Run: [SoundMAXPnP] C:\ProgramFiles\Analog Devices\Core\smax4pnp.exe |
| Good | 1 - 0 | SS(44) - GS Comments_(0)
| C:\WINDOWS\system32\igfxtray.exe |
| Good | 1 - 0 | SS(69) - GS Comments_(0)
| C:\WINDOWS\system32\NOTEPAD.EXE |
| Good | 1 - 0 | SS(70) - GS Comments_(0)
| C:\Program Files\Analog Devices\Core\smax4pnp.exe |
| Good | 1 - 0 | SS(54) - GS Comments_(0)
| C:\WINDOWS\system32\msiexec.exe |
| Good | 1 - 0 | SS(129) - GS Comments_(0)
| O4 - HKLM\..\Run: [HP Software Update] C:\ProgramFiles\HP\HP Software Update\HPWuSchd2.exe |
| Good | 1 - 0 | SS(42) - GS Comments_(1)
| O4 - HKLM\..\Run: [Persistence]C:\WINDOWS\system32\igfxpers.exe |
| Good | 1 - 0 | SS(171) - GS Comments_(0)
| C:\Program Files\Bonjour\mDNSResponder.exe |
| Good | 1 - 0 | SS(42) - GS Comments_(0)
| C:\WINDOWS\system32\igfxpers.exe |
| Good | 1 - 0 | SS(18) - GS Comments_(0)
| C:\WINDOWS\system32\igfxsrvc.exe |
| Good | 2 - 0 | SS(45,449) - GS Comments_(0)
| R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Default_Search_URL =http://go.microsoft.com/fwlink/?LinkId=54896 |
| Good | 2 - 0 | SS(47,950) - GS Comments_(0)
| R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896 |
| Good | 1 - 0 | SS(11) - GS Comments_(0)
| O4 - HKLM\..\Run: [SetRefresh] C:\ProgramFiles\Compaq\SetRefresh\SetRefresh.exe |
| Good | 1 - 0 | SS(35,986) - GS Comments_(0)
| O14 - IERESET.INF:START_PAGE_URL=http://www.hp.com |
| Good | 1 - 0 | SS(8) - GS Comments_(0)
| O4 - HKLM\..\Run: [Reminder]C:\Windows\CREATOR\Remind_XP.exe |
| Good | 2 - 0 | SS(46,776) - GS Comments_(0)
| R0 - HKLM\Software\Microsoft\InternetExplorer\Main,Start Page =http://go.microsoft.com/fwlink/?LinkId=69157 |
| Good | 1 - 0 | SS(34) - GS Comments_(0)
| c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe |
| Good | 1 - 0 | SS(134) - GS Comments_(0)
| C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe |
| Good | 1 - 0 | SS(29) - GS Comments_(0)
| C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe |
| Good | 1 - 0 | SS(33) - GS Comments_(0)
| C:\Program Files\McAfee\MPF\MPFSrv.exe |
| Good | 2 - 0 | SS(116) - GS Comments_(0)
| O2 - BHO: scriptproxy -{7DB2D5A0-7241-4E79-B68D-6309F01C5231} -c:\program files\mcafee\virusscan\scriptsn.dll |
| Good | 2 - 0 | SS(45,450) - GS Comments_(0)
| R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Default_Page_URL =http://go.microsoft.com/fwlink/?LinkId=69157 |
| Good | 1 - 0 | SS(4) - GS Comments_(0)
| O23 - Service: PC Angel (PCA) - SoftThinks -C:\WINDOWS\SMINST\PCAngel.exe |
| Good | 1 - 0 | SS(34) - GS Comments_(0)
| C:\ProgramFiles\Viewpoint\Common\ViewpointService.exe |
| Good | 1 - 0 | SS(595) - GS Comments_(0)
| O9 - Extra button: Send to OneNote -{2670000A-7350-4f3c-8081-5663EE0C6C49} -C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll |
| Good | 2 - 0 | SS(595) - GS Comments_(0)
| O9 - Extra 'Tools' menuitem: S&end to OneNote -{2670000A-7350-4f3c-8081-5663EE0C6C49} -C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll |
| Good | 1 - 0 | SS(30) - GS Comments_(0)
| C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe |
| Good | 1 - 0 | SS(87) - GS Comments_(0)
| C:\Program Files\MicrosoftOffice\Office12\GrooveMonitor.exe |
| Good | 2 - 0 | SS(436) - GS Comments_(0)
| O9 - Extra button: Research -{92780B25-18CC-41C8-B9BE-3C9C571A8263} -C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL |
| Good | 1 - 0 | SS(34) - GS Comments_(0)
| O23 - Service: Viewpoint Manager Service -Viewpoint Corporation - C:\ProgramFiles\Viewpoint\Common\ViewpointService.exe |
| Good | 1 - 0 | SS(24) - GS Comments_(0)
| C:\WINDOWS\system32\SearchIndexer.exe |
| Good | 1 - 0 | SS(822) - GS Comments_(0)
| O8 - Extra context menu item: E&xport to MicrosoftExcel -res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 |
| Good | 1 - 0 | SS(209) - GS Comments_(0)
| O23 - Service: iPod Service - Apple Inc. -C:\Program Files\iPod\bin\iPodService.exe |
| Good | 2 - 0 | SS(30) - GS Comments_(0)
| O23 - Service: McAfee Services (mcmscsvc) -McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe |
| Good | 2 - 0 | SS(23) - GS Comments_(0)
| O23 - Service: McAfee Scanner (McODS) - McAfee,Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe |
| Good | 2 - 0 | SS(134) - GS Comments_(0)
| O23 - Service: McAfee Real-time Scanner (McShield)- McAfee, Inc. -C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe |
| Good | 2 - 0 | SS(29) - GS Comments_(0)
| O23 - Service: McAfee SystemGuards (McSysmon) -McAfee, Inc. -C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe |
| Good | 2 - 0 | SS(33) - GS Comments_(0)
| O23 - Service: McAfee Personal Firewall Service(MpfService) - McAfee, Inc. - C:\ProgramFiles\McAfee\MPF\MPFSrv.exe |
| Good | 1 - 0 | SS(87) - GS Comments_(0)
| O4 - HKLM\..\Run: [GrooveMonitor] "C:\ProgramFiles\Microsoft Office\Office12\GrooveMonitor.exe" |
| Good | 2 - 0 | SS(34) - GS Comments_(0)
| O23 - Service: McAfee Proxy Service (McProxy) -McAfee, Inc. -c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe |
| Good | 1 - 0 | SS(10) - GS Comments_(0)
| O23 - Service: MBackMonitor - McAfee - C:\ProgramFiles\McAfee\MBK\MBackMonitor.exe |
| Good | 1 - 0 | SS(12) - GS Comments_(0)
| C:\WINDOWS\system32\SearchProtocolHost.exe |
| Good | 1 - 0 | SS(34,847) - GS Comments_(0)
| R1 -HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local |
| Good | 3 - 0 | SS(106) - GS Comments_(0)
| O9 - Extra button: (no name) -{e2e2dd38-d088-4134-82b7-f2ba38496583} -C:\windows\Network Diagnostic\xpnetdiag.exe |
| Good | 3 - 0 | SS(106) - GS Comments_(0)
| O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001- {e2e2dd38-d088-4134-82b7-f2ba38496583} -C:\windows\Network Diagnostic\xpnetdiag.exe |
| Good | 1 - 0 | SS(135) - GS Comments_(0)
| C:\Program Files\Common Files\Apple\Mobile DeviceSupport\bin\AppleMobileDeviceService.exe |
| Good | 1 - 0 | SS(46) - GS Comments_(0)
| c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe |
| Good | 1 - 0 | SS(46) - GS Comments_(0)
| O23 - Service: McAfee Network Agent (McNASvc) -McAfee, Inc. -c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe |
| Good | 1 - 0 | SS(15) - GS Comments_(0)
| C:\Program Files\Intel\AMT\atchksrv.exe |
| Good | 1 - 0 | SS(0) - GS Comments_(0)
| C:\Program Files\Intel\AMT\LMS.exe |
| Good | 1 - 0 | SS(9) - GS Comments_(0)
| C:\Program Files\Intel\AMT\atchk.exe |
| Good | 1 - 0 | SS(9) - GS Comments_(0)
| O4 - HKLM\..\Run: [atchk] "C:\ProgramFiles\Intel\AMT\atchk.exe" |
| Good | 1 - 0 | SS(28) - GS Comments_(0)
| O23 - Service: IviRegMgr - InterVideo - C:\ProgramFiles\Common Files\InterVideo\RegMgr\iviRegMgr.exe |
| Good | 1 - 0 | SS(8) - GS Comments_(0)
| C:\Program Files\PDF Complete\pdfsvc.exe |
| Good | 1 - 0 | SS(8) - GS Comments_(0)
| O23 - Service: PDF Document Manager(pdfcDispatcher) - PDF Complete Inc - C:\ProgramFiles\PDF Complete\pdfsvc.exe |
| Good | 1 - 0 | SS(43) - GS Comments_(0)
| O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}(QuickTime Object) -http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab |
| Good | 1 - 0 | SS(28) - GS Comments_(0)
| C:\Program Files\CommonFiles\InterVideo\RegMgr\iviRegMgr.exe |
| Good | 1 - 0 | SS(132) - GS Comments_(0)
| O2 - BHO: Groove GFS Browser Helper -{72853161-30C5-4D22-B7F9-0BBC1D38A37E} -C:\Program Files\MicrosoftOffice\Office12\GrooveShellExtensions.dll |
| Good | 1 - 0 | SS(115) - GS Comments_(0)
| O18 - Protocol: grooveLocalGWS -{88FED34C-F0CA-4636-A375-3CB6248B04CD} -C:\Program Files\MicrosoftOffice\Office12\GrooveSystemServices.dll |
| Good | 1 - 0 | SS(63) - GS Comments_(0)
| O4 - HKLM\..\Run: [mcagent_exe] "C:\ProgramFiles\McAfee.com\Agent\mcagent.exe" /runkey |
| Good | 1 - 0 | SS(0) - GS Comments_(0)
| C:\Program Files\Intel\AMT\UNS.exe |
| Good | 1 - 0 | SS(15) - GS Comments_(0)
| O23 - Service: Intel(R) Active ManagementTechnology System Status Service (atchksrv) -Intel Corporation - C:\ProgramFiles\Intel\AMT\atchksrv.exe |
| Good | 1 - 0 | SS(171) - GS Comments_(0)
| O23 - Service: Bonjour Service - Apple Inc. -C:\Program Files\Bonjour\mDNSResponder.exe |
| Good | 1 - 0 | SS(7) - GS Comments_(0)
| C:\Program Files\PDF Complete\pdfsty.exe |
| Good | 1 - 0 | SS(7) - GS Comments_(0)
| O4 - HKLM\..\Run: [PDF Complete] "C:\ProgramFiles\PDF Complete\pdfsty.exe" |
| Good | 1 - 0 | SS(0) - GS Comments_(0)
| O23 - Service: Intel(R) Active ManagementTechnology Local Management Service (LMS) - Intel- C:\Program Files\Intel\AMT\LMS.exe |
| Good | 1 - 0 | SS(0) - GS Comments_(0)
| O23 - Service: Intel(R) Active ManagementTechnology User Notification Service (UNS) - Intel- C:\Program Files\Intel\AMT\UNS.exe |
| Good | 1 - 0 | SS(6,171) - GS Comments_(0)
| C:\ProgramFiles\TrendMicro\HijackThis\HijackThis.exe |
| Good | 1 - 0 | SS(487) - GS Comments_(0)
| C:\Program Files\Mozilla Firefox 3 Beta5\firefox.exe |
| Good | 2 - 0 | SS(121) - GS Comments_(0)
| O2 - BHO: Java(tm) Plug-In 2 SSV Helper -{DBC80044-A445-435b-BC74-9C25C1C588A9} -C:\Program Files\Java\jre6\bin\jp2ssv.dll |
| Good | 2 - 0 | SS(109) - GS Comments_(0)
| O2 - BHO: JQSIEStartDetectorImpl -{E7E6F031-17CE-4C07-BC86-EABFE594F69C} -C:\ProgramFiles\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll |
| Good | 2 - 0 | SS(0) - GS Comments_(0)
| O23 - Service: Java Quick Starter(JavaQuickStarterService) - Sun Microsystems, Inc.- C:\Program Files\Java\jre6\bin\jqs.exe |
| Good | 1 - 0 | SS(0) - GS Comments_(1)
| C:\Program Files\Java\jre6\bin\jqs.exe |
| Good | 1 - 0 | SS(135) - GS Comments_(0)
| O23 - Service: Apple Mobile Device - Apple Inc. -C:\Program Files\Common Files\Apple\Mobile DeviceSupport\bin\AppleMobileDeviceService.exe |
| Good | 1 - 0 | SS(20) - GS Comments_(0)
| O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83}(Facebook Photo Uploader 5 Control) -http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab |
| Good | 1 - 0 | SS(83) - GS Comments_(0)
| O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29}(Creative Software AutoUpdate Support Package) -http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15108/CTPID.cab |
| Good | 1 - 0 | SS(3,264) - GS Comments_(0)
| O23 - Service: Google Update Service (gupdate)(gupdate) - Google Inc. - C:\ProgramFiles\Google\Update\GoogleUpdate.exe |
| Good | 1 - 0 | SS(302) - GS Comments_(0)
| O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850}(Microsoft RDP Client Control (redist)) -https://mail.mrinaples.com/Remote/msrdp.cab |
| | | |