Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20.56.00, on 04/11/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\Programmi\Emsisoft Anti-Malware\a2service.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\Programmi\CheckPoint\ZoneAlarm\vsmon.exe
E:\Programmi\Avira\AntiVir Desktop\sched.exe
E:\Programmi\Avira\AntiVir Desktop\avguard.exe
E:\Programmi\Telecom Italia\WanMiniport1st\srvany.exe
E:\Programmi\Soluto\soluto.exe
E:\Programmi\Telecom Italia\WanMiniport1st\WanMiniport1st_srv.exe
E:\WINDOWS\Explorer.EXE
E:\Programmi\SRS Labs\SRS WOW XT and TSXT\SRS_PostInstaller.exe
E:\WINDOWS\system32\svchost.exe
E:\Programmi\Browny02\Brother\BrStMonW.exe
E:\Programmi\Avira\AntiVir Desktop\avgnt.exe
E:\Programmi\CheckPoint\ZoneAlarm\zatray.exe
E:\WINDOWS\system32\igfxtray.exe
E:\WINDOWS\system32\hkcmd.exe
E:\WINDOWS\system32\igfxsrvc.exe
E:\WINDOWS\system32\igfxpers.exe
E:\Programmi\ControlCenter4\BrCtrlCntr.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Programmi\WIDCOMM\Bluetooth Software\bin\btwdins.exe
E:\Programmi\WIDCOMM\Bluetooth Software\BTTray.exe
E:\Programmi\ControlCenter4\BrCcUxSys.exe
E:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
E:\Programmi\Avira\AntiVir Desktop\avshadow.exe
E:\Programmi\Browny02\BrYNSvc.exe
E:\Programmi\Opera\opera.exe
I:\Programmi Utili\HijackThis.exe
E:\Programmi\Soluto\SolutoService.exe
E:\Programmi\SMART Technologies\Education Software\SMARTClassroomCoordinator.exe
E:\Programmi\Google\Update\GoogleUpdate.exe
E:\WINDOWS\system32\spoolsv.exe
E:\Programmi\CheckPoint\ZAForceField\IswSvc.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.it/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
F2 - REG:system.ini: UserInit=E:\WINDOWS\system32\userinit.exe,E:\Programmi\Soluto\soluto.exe /userinit
O2 - BHO: SMART Notebook Download Utility - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - E:\Programmi\SMART Technologies\Education Software\Win32\NotebookPlugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - E:\Programmi\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - E:\Programmi\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: SMART Sync - {8E1233B3-485A-4E51-B77E-9E075A68C588} - E:\Programmi\SMART Technologies\Education Software\SyncIEToolbar.dll
O4 - HKLM\..\Run: [BrStsMon00] E:\Programmi\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [avgnt] "E:\Programmi\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ZoneAlarm] "E:\Programmi\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [ControlCenter4] E:\Programmi\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [IgfxTray] E:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] E:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] E:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [emsisoft anti-malware] "E:\Programmi\Emsisoft Anti-Malware\a2guard.exe" /d=60
O4 - HKCU\..\Run: [ctfmon.exe] E:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: E&sporta in Microsoft Excel -
res://E:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://E:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Invia a Bluetooth - E:\Programmi\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Invia a periferica &Bluetooth... - E:\Programmi\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - E:\Programmi\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - E:\Programmi\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.microsoft.com/microso ... 0682080921O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Emsisoft Anti-Malware 7.0 - Service (a2AntiMalware) - Emsisoft GmbH - E:\Programmi\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Pianificatore (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - E:\Programmi\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - E:\Programmi\Avira\AntiVir Desktop\avguard.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - E:\Programmi\Browny02\BrYNSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - E:\Programmi\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - E:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - E:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - E:\Programmi\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - E:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
O23 - Service: Network WanMiniport First Position - Unknown owner - E:\Programmi\Telecom Italia\WanMiniport1st\srvany.exe
O23 - Service: NMSAccess - Unknown owner - E:\Programmi\CDBurnerXP\NMSAccessU.exe
O23 - Service: Response Hardware - SMART Technologies - E:\Programmi\SMART Technologies\Education Software\ResponseHardwareService.exe
O23 - Service: SMART Board Service - SMART Technologies - E:\Programmi\SMART Technologies\Education Software\SMARTBoardService.exe
O23 - Service: SMART Display Controller - SMART Technologies ULC - E:\Programmi\SMART Technologies\Education Software\UCService.exe
O23 - Service: SMART Mirror Driver Monitor Service - SMART Technologies Inc. - E:\Programmi\File comuni\SMART Technologies\Mirror Driver\MonitorService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - E:\Programmi\Soluto\SolutoService.exe
O23 - Service: SRS WOWXT/TSXT Service (SRS_WOWXT_Service) - SRS Labs, Inc. - E:\Programmi\SRS Labs\SRS WOW XT and TSXT\SRS_PostInstaller.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - E:\Programmi\CheckPoint\ZoneAlarm\vsmon.exe
--
End of file - 8633 bytes