Hi. I recently spoke with someone in live chat and they told me that I could get help here. I did what she told me to do and here is my log.. thanks ahead of time for the time and help.. this place is truly amazing. Summary of problem: I search on google then click a prove and get sent to an incorrect place. Logfile of HijackThis v1.99.1Scan saved at 11:01:17 AM on 11/17/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16544)Running processes:C:\WINDOWS\System32\smss exeC:\WINDOWS\system32\csrss exeC:\WINDOWS\system32\winlogon exeC:\WINDOWS\system32\services exeC:\WINDOWS\system32\lsass exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\System32\svchost exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\Explorer. EXEC:\WINDOWS\system32\spoolsv exeC:\WINDOWS\system32\acs exeC:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon exeC:\Program Files\Common Files\Apple\Mobile Device give\bin\AppleMobileDeviceService exeC:\schedule Files\TOSHIBA\ConfigFree\CFSvcs exeC:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd exeC:\WINDOWS\system32\DVDRAMSV exeC:\Program Files\explore\Common\Google Updater\GoogleUpdaterService exeC:\PROGRA~1\McAfee\MSC\mcmscsvc exec:\schedule files\common files\mcafee\mna\mcnasvc exec:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy exeC:\PROGRA~1\McAfee\VIRUSS~1\mcshield exeC:\schedule Files\McAfee\MPF\MPFSrv exeC:\schedule Files\McAfee\MSK\MskSrver exeC:\Program Files\SiteAdvisor\6172\SAService exeC:\WINDOWS\system32\svchost exec:\PROGRA~1\mcafee com\agent\mcagent exec:\TOSHIBA\IVP\swupdate\swupdtmr exeC:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV exeC:\WINDOWS\system32\wdfmgr exeC:\schedule Files\ATI Technologies\ATI Control adorn\atiptaxx exeC:\schedule Files\Toshiba\Toshiba Applet\thotkey exeC:\schedule Files\Synaptics\SynTP\SynTPEnh exeC:\WINDOWS\AGRSMMSG exeC:\Program Files\TOSHIBA\ConfigFree\NDSTray exeC:\schedule Files\TOSHIBA\Touch and Launch\PadExe exeC:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView exeC:\WINDOWS\system32\dla\DLACTRLW exeC:\toshiba\ivp\ism\pinger exeC:\Program Files\Toshiba\Tvs\TvsTray exeC:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy exeC:\WINDOWS\system32\TDispVol exeC:\schedule Files\Synaptics\SynTP\Toshiba exeC:\WINDOWS\system32\TPSBattM exeC:\WINDOWS\RTHDCPL. EXEC:\schedule Files\Mcafee\MWL\MWLGui exeC:\schedule Files\SiteAdvisor\6172\SiteAdv exeC:\Program Files\Java\jre1.5.0_11\bin\jusched exeC:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1. EXEC:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy exeC:\Program Files\iTunes\iTunesHelper exeC:\WINDOWS\system32\ctfmon exeC:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier exeC:\PROGRA~1\AIM\aim exeC:\Program Files\Mcafee\MWL\MwlSvc exeC:\Program Files\Veoh Networks\Veoh\VeohClient exeC:\WINDOWS\System32\alg exeC:\WINDOWS\system32\RAMASST exeC:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher exeC:\Program Files\Common Files\PCSuite\Services\ServiceLayer exeC:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon exeC:\Program Files\iPod\bin\iPodService exeC:\Program Files\McAfee\MSC\mcuimgr exeC:\Program Files\Mozilla Firefox\firefox exeC:\WINDOWS\system32\mmc exeC:\Program Files\WinRAR\WinRAR exeC:\WINDOWS\system32\wuauclt exeC:\DOCUME~1\Rosie\LOCALS~1\Temp\Rar$EX26.750\HijackThis exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,fail_summon_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_examine_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,examine summon = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:81R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localR3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no register)O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper dllO2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv dllO2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho dllO2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W. DLLO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv dllO2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2 dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg dllO3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\schedule Files\SiteAdvisor\6172\SiteAdv dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2 dllO4 - HKLM\..\Run: [ATIPTA] "C:\schedule Files\ATI Technologies\ATI Control adorn\atiptaxx exe"O4 - HKLM\..\Run: [THotkey] C:\schedule Files\Toshiba\Toshiba Applet\thotkey exeO4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr exeO4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh exeO4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG exeO4 - HKLM\..\Run: [NDSTray exe] NDSTray exeO4 - HKLM\..\Run: [TPSMain] TPSMain exeO4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe exeO4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView exeO4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\DLACTRLW exeO4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger exe /runO4 - HKLM\..\Run: [Tvs] C:\Program Files\Toshiba\Tvs\TvsTray exeO4 - HKLM\..\Run: [TFncKy] TFncKy exeO4 - HKLM\..\Run: [TDispVol] TDispVol exeO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL. EXEO4 - HKLM\..\Run: [Alcmtr] ALCMTR. EXEO4 - HKLM\..\Run: [MWLExe] C:\Program Files\Mcafee\MWL\MWLGui exe /StartO4 - HKLM\..\Run: [SiteAdvisor] C:\schedule Files\SiteAdvisor\6172\SiteAdv exeO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched exe"O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\open~1. EXE -startupO4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy exe"O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask exe" -atboottimeO4 - HKLM\..\Run: [Adobe Reader go Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl exe"O4 - HKLM\..\Run: [iTunesHelper] "C:\schedule Files\iTunes\iTunesHelper exe"O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched exe" -osbootO4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee com\Agent\mcagent exe /runkeyO4 - HKCU\..\Run: [ctfmon exe] C:\WINDOWS\system32\ctfmon exeO4 - HKCU\..\Run: [MSMSGS] "C:\schedule Files\Messenger\msmsgs exe" /backgroundO4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier exeO4 - HKCU\..\Run: [BitTorrent] "C:\schedule Files\BitTorrent\bittorrent exe" --force_start_minimizedO4 - HKCU\..\Run: [ProxyWay] C:\schedule Files\ProxyWay\proxyway exeO4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim exe -cnetwait odlO4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient exe" /VeohHideO4 - Startup: Picture Motion Browser Media Check Tool lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher exeO4 - Global Startup: RAMASST lnk = C:\WINDOWS\system32\RAMASST exeO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL. EXE/3000O9 - Extra add: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\schedule Files\Java\jre1.5.0_11\bin\ssv dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv dllO9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk exe (file missing)O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR. DLLO9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim exeO9 - Extra button: Real com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw dllO9 - Extra add: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag exe (file missing)O9 - Extra 'Tools' menuitem: @xpsp3res dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag exe (file missing)O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs exeO11 - Options group: [INTERNATIONAL] International*O14 - IERESET. INF: START_summon_URL=http://www toshibadirect com/dpdstartO16 - DPF: {9C024426-7859-4B2D-AB4C-B1E370AE7549} - O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - O17 - HKLM\System\CCS\Services\Tcpip\..\{1874FE56-8442-4B46-90CD-ADAE6809AAE7}: NameServer = 85.255.113.140,85.255.112.93O17 - HKLM\System\CCS\Services\Tcpip\..\{71392AAF-1444-4207-9886-2D6EF869EC9A}: NameServer = 85.255.113.140,85.255.112.93O17 - HKLM\System\CCS\Services\Tcpip\..\{EB39C572-AB2D-4606-97A9-9BF3F3CE0485}: NameServer = 85.255.113.140,85.255.112.93O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.140 85.255.112.93O17 - HKLM\System\CS1\Services\Tcpip\..\{1874FE56-8442-4B46-90CD-ADAE6809AAE7}: NameServer = 85.255.113.140,85.255.112.93O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.140 85.255.112.93O17 - HKLM\System\CS2\Services\Tcpip\..\{1874FE56-8442-4B46-90CD-ADAE6809AAE7}: NameServer = 85.255.113.140,85.255.112.93O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.140 85.255.112.93O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6172\SiteAdv dllO23 - function: Atheros Configuration function (ACS) - Unknown owner - C:\WINDOWS\system32\acs exeO23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online. Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon exeO23 - Service: Apple Mobile Device - Apple. Inc. - C:\Program Files\Common Files\Apple\Mobile Device give\bin\AppleMobileDeviceService exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx exeO23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs exeO23 - Service: DVD-RAM_function - Matsushita Electric Industrial Co.. Ltd. - C:\WINDOWS\system32\DVDRAMSV exeO23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService exeO23 - Service: iPod function - Apple Inc. - C:\Program Files\iPod\bin\iPodService exeO23 - Service: MBackMonitor - McAfee - C:\Program Files\McAfee\MBK\MBackMonitor exeO23 - Service: McAfee Services (mcmscsvc) - McAfee. Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc exeO23 - Service: McAfee Network Agent (McNASvc) - McAfee. Inc. - c:\program files\common files\mcafee\mna\mcnasvc exeO23 - Service: McAfee Scanner (McODS) - McAfee. Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods exeO23 - Service: McAfee Proxy Service (McProxy) - McAfee. Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy exeO23 - Service: McAfee Real-time Scanner (McShield) - McAfee. Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield exeO23 - Service: McAfee SystemGuards (McSysmon) - McAfee. Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon exeO23 - function: McAfee Personal Firewall Service (MpfService) - McAfee. Inc. - C:\Program Files\McAfee\MPF\MPFSrv exeO23 - function: McAfee SpamKiller function (MSK80function) - McAfee. Inc. - C:\Program Files\McAfee\MSK\MskSrver exeO23 - Service: McAfee Wireless communicate Security Service (MWLSvc) - McAfee. Inc. - C:\Program Files\Mcafee\MWL\MwlSvc exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer exeO23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService exeO23 - function: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr exeO23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\schedule Files\TOSHIBA\TOSHIBA Applet\TAPPSRV exe
Forex Groups - Tips on Trading
Related article:
http://www.geekstogo.com/forum/index.php?showtopic=176928
comments | Add comment | Report as Spam
|