
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:58:21, on 28.04.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Safe mode
Running processes:
C:UserstoshibaDownloadsHijackThis.exe
C:windowsSysWOW64DllHost.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.awesomehp.com/web/?type=d...q=
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = about:Tabs
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.qone8.com/web/?type=ds&ts...q=
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.qone8.com/web/?type=ds&ts...q=
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Groove GFS Browser Helper - - C:PROGRA~2MICROS~1Office14GROOVEEX.DLL
O2 - BHO: avast! Online Security - - C:Program FilesAVAST SoftwareAvastaswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - - C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - - C:Program Files (x86)SkypeToolbarsInternet ExplorerSkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - - C:PROGRA~2MICROS~1Office14URLREDIR.DLL
O2 - BHO: (no name) - - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - - C:Program Files (x86)Javajre6binjp2ssv.dll
O4 - HKLM..Run: [TSleepSrv] %ProgramFiles(x86)%TOSHIBATOSHIBA Sleep UtilityTSleepSrv.exe
O4 - HKLM..Run: [ToshibaServiceStation] "C:Program Files (x86)TOSHIBATOSHIBA Service StationToshibaServiceStation.exe" /hide:60
O4 - HKLM..Run: [HPUsageTrackingLEDM] "C:Program Files (x86)HPHP UT LEDMbinhppusg.exe" "C:Program Files (x86)HPHP UT LEDM"
O4 - HKLM..Run: [Adobe ARM] "C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe"
O4 - HKLM..Run: [BCSSync] "C:Program Files (x86)Microsoft OfficeOffice14BCSSync.exe" /DelayServices
O4 - HKLM..Run: [AvastUI.exe] "C:Program FilesAVAST SoftwareAvastAvastUI.exe" /nogui
O4 - HKCU..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe /STAR
O4 - HKCU..Run: [Sony PC Companion] "C:Program Files (x86)SonySony PC CompanionPCCompanion.exe" /Background
O4 - HKCU..Run: [DAEMON Tools Lite] "C:Program Files (x86)DAEMON Tools LiteDTLite.exe" -autorun
O4 - HKCU..Run: [uTorrent] "C:UserstoshibaAppDataRoaminguTorrentuTorren t.exe" /MINIMIZED
O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun (User 'Local Service')
O4 - HKUSS-1-5-19..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe /STARTUP (User 'Local Service')
O4 - HKUSS-1-5-19..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe (User 'Local Service')
O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUSS-1-5-20..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUSS-1-5-18..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:Program Files (x86)TOSHIBATRDCReminderTRDCReminder.exe (User 'Default user')
O4 - Global Startup: Toshiba Places Icon Utility.lnk = C:Program FilesTOSHIBATOSHIBA Places Icon UtilityTosDIMonitor.exe
O9 - Extra button: @C:Program Files (x86)Windows LiveWriterWindowsLiveWriterShortcuts.dll,-1004 - - C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:Program Files (x86)Windows LiveWriterWindowsLiveWriterShortcuts.dll,-1003 - - C:Program Files (x86)Windows LiveWriterWriterBrowserExtension.dll
O9 - Extra button: OneNote'a Gonder - - C:Program Files (x86)Microsoft OfficeOffice14ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote'a G&onder - - C:Program Files (x86)Microsoft OfficeOffice14ONBttnIE.dll
O9 - Extra button: OneNote Bağlantılı &Notları - - C:Program Files (x86)Microsoft OfficeOffice14ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Bağlantılı &Notları - - C:Program Files (x86)Microsoft OfficeOffice14ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - - C:Program Files (x86)SkypeToolbarsInternet ExplorerSkypeIEPlugin.dll
O9 - Extra button: @C:Program FilesTOSHIBABulletinBoardTosNcUi.dll,-229 - - C:Program FilesTOSHIBABulletinBoardTosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:Program FilesTOSHIBABulletinBoardTosNcUi.dll,-228 - - C:Program FilesTOSHIBABulletinBoardTosBBCom.dll
O10 - Unknown file in Winsock LSP: c

O10 - Unknown file in Winsock LSP: c

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLMSystemCCSServicesTcpip..: NameServer = 195.46.39.39,195.46.39.40
O18 - Protocol: skype-ie-addon-data - - C:Program Files (x86)SkypeToolbarsInternet ExplorerSkypeIEPlugin.dll
O18 - Protocol: skype4com - - C:PROGRA~2COMMON~1SkypeSKYPE4~1.DLL
O18 - Protocol: wlpg - - C:Program Files (x86)Windows LivePhoto GalleryAlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - - C:Program Files (x86)Common FilesMicrosoft SharedOFFICE14MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
O23 - Service: @%SystemRoot%system32Alg.exe,-112 (ALG) - Unknown owner - C:windowsSystem32alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:Program FilesAVAST SoftwareAvastAvastSvc.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:Program Files (x86)TOSHIBAConfigFreeCFIWmxSvcs64.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:Program Files (x86)TOSHIBAConfigFreeCFSvcs.exe
O23 - Service: @%SystemRoot%system32efssvc.dll,-100 (EFS) - Unknown owner - C:windowsSystem32lsass.exe (file missing)
O23 - Service: @%systemroot%system32fxsresm.dll,-118 (Fax) - Unknown owner - C:windowssystem32fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:Program Files (x86)WildTangent GamesAppGamesAppService.exe
O23 - Service: Google Guncelleme Hizmeti (gupdate) (gupdate) - Google Inc. - C:Program Files (x86)GoogleUpdateGoogleUpdate.exe
O23 - Service: Google Guncelleme Hizmeti (gupdatem) (gupdatem) - Google Inc. - C:Program Files (x86)GoogleUpdateGoogleUpdate.exe
O23 - Service: HP LaserJet Service - HP - C:Program Files (x86)HPHPLaserJetServiceHPLaserJetService.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:windowssystem32HPSIsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program Files (x86)Common FilesInstallShieldDriver1150Intel 32IDriverT.exe
O23 - Service: @%SystemRoot%system32ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:windowssystem32IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:windowssystem32lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:Program Files (x86)Malwarebytes' Anti-Malwarembamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:Program Files (x86)Malwarebytes' Anti-Malwarembamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:windowsSystem32msdtc.exe (file missing)
O23 - Service: @c:Program Files (x86)NeroUpdateNASvc.exe,-200 (NAUpdate) - Nero AG - c:Program Files (x86)NeroUpdateNASvc.exe
O23 - Service: @%SystemRoot%System32netlogon.dll,-102 (Netlogon) - Unknown owner - C:windowssystem32lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:windowssystem32GameMon.des.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:windowssystem32nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:windowssystem32PnkBstrA.exe
O23 - Service: @%systemroot%system32psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:windowssystem32lsass.exe (file missing)
O23 - Service: @%systemroot%system32Locator.exe,-2 (RpcLocator) - Unknown owner - C:windowssystem32locator.exe (file missing)
O23 - Service: @%SystemRoot%system32samsrv.dll,-1 (SamSs) - Unknown owner - C:windowssystem32lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:Program Files (x86)SkypeUpdaterUpdater.exe
O23 - Service: @%SystemRoot%system32snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:windowsSystem32snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:Program Files (x86)SonySony PC CompanionPCCService.exe
O23 - Service: @%systemroot%system32spoolsv.exe,-1 (Spooler) - Unknown owner - C:windowsSystem32spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%system32sppsvc.exe,-101 (sppsvc) - Unknown owner - C:windowssystem32sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:Program Files (x86)NVIDIA Corporation3D VisionnvSCPAPISvr.exe
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:Program Files (x86)Toshiba TEMPROTemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:Program Files (x86)TOSHIBATOSHIBA Service StationTMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:windowssystem32TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:Program FilesTOSHIBAPower SaverTosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:Program Files (x86)ToshibaBluetooth Toshiba StackTosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:Program FilesTOSHIBATECOTecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:Program FilesTOSHIBATOSHIBA HDD SSD AlertTosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:Program FilesTOSHIBATPHMTPCHSrv.exe
O23 - Service: @%SystemRoot%system32ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:windowssystem32UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe
O23 - Service: @%SystemRoot%system32vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:windowssystem32lsass.exe (file missing)
O23 - Service: @%SystemRoot%system32vds.exe,-100 (vds) - Unknown owner - C:windowsSystem32vds.exe (file missing)
O23 - Service: @%systemroot%system32vssvc.exe,-102 (VSS) - Unknown owner - C:windowssystem32vssvc.exe (file missing)
O23 - Service: @%systemroot%system32wbengine.exe,-104 (wbengine) - Unknown owner - C:windowssystem32wbengine.exe (file missing)
O23 - Service: @%Systemroot%system32wbemwmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:windowssystem32wbemWmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%Windows Media Playerwmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:Program Files (x86)Windows Media Playerwmpnetwk.exe (file missing)
--
End of file - 13514 bytes
__________________