Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0.14.03, on 19/03/2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\PROGRA~1\AVG\AVG2014\avgrsx.exe
D:\Programmi\AVG\AVG2014\avgcsrvx.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\All Users.WINDOWS\Dati applicazioni\WPM\wprotectmanager.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Programmi\AVG\AVG2014\avgidsagent.exe
D:\Programmi\AVG\AVG2014\avgwdsvc.exe
D:\WINDOWS\system32\EscSvc.exe
D:\Programmi\File comuni\EPSON\EPW!3 SSRP\E_S50RP7.EXE
D:\Programmi\Pirrit\AutoUpdater.exe
D:\WINDOWS\system32\svchost.exe
D:\Programmi\Amazon Browser Bar\ToolbarUpdaterService.exe
D:\Programmi\AVG\AVG2014\avgnsx.exe
D:\Programmi\AVG\AVG2014\avgemcx.exe
D:\WINDOWS\system32\RunDLL32.exe
D:\WINDOWS\RTHDCPL.EXE
D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2F1.EXE
D:\Programmi\AVG\AVG2014\avgui.exe
D:\Programmi\AVG Secure Search\vprot.exe
D:\Programmi\ScanSoft\OmniPageSE\opware32.exe
D:\Programmi\Java\jre1.6.0_07\bin\jusched.exe
D:\WINDOWS\system32\rundll32.exe
D:\Programmi\Epson Software\Event Manager\EEventManager.exe
D:\Programmi\HTC\HTC Sync 3.0\htcUPCTLoader.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Programmi\Glary Utilities 4\Integrator.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\System32\svchost.exe
D:\Programmi\Java\jre1.6.0_07\bin\jucheck.exe
D:\WINDOWS\explorer.exe
D:\Programmi\Enigma Software Group\SpyHunter\SpyHunter4.exe
D:\Programmi\Spybot - Search & Destroy 2\SDTray.exe
D:\Programmi\Spybot - Search & Destroy 2\SDFSSvc.exe
D:\Programmi\Spybot - Search & Destroy 2\SDUpdSvc.exe
D:\Programmi\Spybot - Search & Destroy 2\SDScan.exe
D:\Programmi\Mozilla Firefox\firefox.exe
D:\Programmi\Mozilla Firefox\plugin-container.exe
D:\Programmi\Mozilla Firefox\plugin-container.exe
D:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\alex\Nuova cartella\fax\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141&q={searchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.sweet-page.com/?type=hp&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.sweet-page.com/web/?type=ds&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://www.sweet-page.com/web/?type=ds&ts=1391695435&from=cor&uid=SAMSUNGXSP1604N_S013J10Y490141&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Shareaza Web Download Hook - {0EEDB912-C5FA-486F-8334-57288578C627} - Q:\Nuova cartella\Shareaza\RazaWebHook32.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Programmi\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - D:\Programmi\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:\Programmi\AVG Secure Search\15.5.0.2\AVG Secure Search_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:\Programmi\AVG Secure Search\15.5.0.2\AVG Secure Search_toolbar.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - D:\Programmi\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - D:\Programmi\SiteFinder\SiteFinder.dll
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] D:\Programmi\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [EPSON Stylus Photo R300 Series] D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2F1.EXE /P30 "EPSON Stylus Photo R300 Series" /O6 "USB001" /M "Stylus Photo R300"
O4 - HKLM\..\Run: [AVG_UI] "D:\Programmi\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [vProt] "D:\Programmi\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [Omnipage] D:\Programmi\ScanSoft\OmniPageSE\opware32.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Programmi\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [PinnacleDriverCheck] D:\WINDOWS\system32\\PSDrvCheck.exe
O4 - HKLM\..\Run: [EaseUS EPM tray] D:\Programmi\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [EEventManager] "D:\Programmi\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [HTC Sync Loader] "D:\Programmi\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
O4 - HKLM\..\Run: [SDTray] "D:\Programmi\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Optimizer Pro] D:\Programmi\Optimizer Pro\OptProLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://D:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Visit AppsHat.com - {AAA38851-3CFF-475F-B5E0-720D3645E4A5} - D:\Programmi\Minibar\Minibar.dll
O9 - Extra button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - D:\Programmi\SiteFinder\SiteFinder.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Programmi\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - D:\Programmi\File comuni\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll
O20 - AppInit_DLLs:
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - D:\Programmi\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - D:\Programmi\AVG\AVG2014\avgwdsvc.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - D:\WINDOWS\system32\EscSvc.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - D:\Programmi\File comuni\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: Google Updater Service (gusvc) - Google - D:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - D:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PirritUpdater - Unknown owner - D:\Programmi\Pirrit\AutoUpdater.exe
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - D:\Programmi\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - D:\Programmi\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - D:\Programmi\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Programmi\Skype\Updater\Updater.exe
O23 - Service: Update DiVapton - Unknown owner - D:\Programmi\DiVapton\updateDiVapton.exe (file missing)
O23 - Service: Updater Service for AMZN - Unknown owner - D:\Programmi\Amazon Browser Bar\ToolbarUpdaterService.exe
O23 - Service: Util DiVapton - Unknown owner - D:\Programmi\DiVapton\bin\utilDiVapton.exe (file missing)
O23 - Service: Wpm Service (Wpm) - Cherished Technololgy LIMITED - D:\Documents and Settings\All Users.WINDOWS\Dati applicazioni\WPM\wprotectmanager.exe
--
End of file - 9860 bytes