Hello,
My computer faces the problem of internet explorer ads popping up(they never show up-i am able to see it when i press alt tab to check for the current programs running and its in there) and disappears the next moment. Plus the wave slider in the master volume window mutes automatically. Both these happen in regular intervals. Please suggest me something. I really hope u can help me out. My HiJack file is pasted below:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:43:40 PM, on 6/21/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
E:WINDOWSSystem32smss.exe
E:WINDOWSsystem32winlogon.exe
E:WINDOWSsystem32services.exe
E:WINDOWSsystem32lsass.exe
C:System Volume InformationMicrosoftservices.exe
E:WINDOWSsystem32svchost.exe
E:WINDOWSSystem32svchost.exe
E:WINDOWSsystem32svchost.exe
E:Program FilesAlwil SoftwareAvast5AvastSvc.exe
C:System Volume InformationMicrosoftsmss.exe
E:WINDOWSsystem32spoolsv.exe
E:WINDOWSSystem32svchost.exe
E:WINDOWSsystem32cisvc.exe
E:Program FilesJavajre6binjqs.exe
E:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
E:Program FilesCyberLinkShared FilesRichVideo.exe
E:Program FilesMicrosoft SQL Server90Sharedsqlwriter.exe
E:WINDOWSsystem32svchost.exe
E:Program FilesZTE Wireless TerminalbinMonServiceUDisk.exe
E:Program FilesCommon FilesUlead SystemsDVDULCDRSvr.exe
E:Program FilesYahoo!SoftwareUpdateYahooAUService.exe
E:WINDOWSsystem32wscntfy.exe
E:WINDOWSExplorer.EXE
E:Program FilesCyberLinkPowerDVDPDVDServ.exe
E:WINDOWSsystem32igfxtray.exe
E:WINDOWSsystem32hkcmd.exe
E:WINDOWSsystem32igfxpers.exe
E:WINDOWSRTHDCPL.EXE
E:Program FilesCommon FilesNokiaMPlatformNokiaMServer.exe
E:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe
E:Program FilesYahoo!Search ProtectionSearchProtection.exe
E:PROGRA~1INTERN~2netdet.exe
E:PROGRA~1ALWILS~1Avast5avastUI.exe
E:WINDOWSsystem32ctfmon.exe
E:Program FilesMessengermsmsgs.exe
E:WINDOWSsystem32igfxsrvc.exe
F:softwaresProcessExplorerprocexp.exe
E:Documents and SettingsUserLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
E:Documents and SettingsUserLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
E:WINDOWSsystem32cidaemon.exe
E:Documents and SettingsUserLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
E:WINDOWSsystem32msiexec.exe
E:Program FilesTrend MicroHiJackThisHiJackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = [url]http://in.rd.yahoo.com/customize/ycomp/defaults/sp/*http://in.yahoo.com[/url]
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = [url]http://www.bsnl.co.in/[/url]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = [url]http://in.yahoo.com[/url]
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = [url]http://in.yahoo.com[/url]
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = [url]http://in.rd.yahoo.com/customize/ycomp/defaults/su/*http://in.yahoo.com[/url]
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - E:Program FilesYahoo!CompanionInstallscpn0yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - E:Program FilesYahoo!CompanionInstallscpn0yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:Program FilesAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:PROGRA~1MICROS~2Office12GRA8E1~1.DLL
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - E:Program FilesGoogleGoogleToolbarNotifier5.2.4204.1700swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:Program FilesJavajre6binjp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:Program FilesJavajre6libdeployjqsiejqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - E:Program FilesYahoo!CompanionInstallscpn0YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - E:Program FilesYahoo!CompanionInstallscpn0yt.dll
O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - E:Program FilesStylerTBStylerTB.dll
O4 - HKLM..Run: [RemoteControl] "E:Program FilesCyberLinkPowerDVDPDVDServ.exe"
O4 - HKLM..Run: [LanguageShortcut] "E:Program FilesCyberLinkPowerDVDLanguageLanguage.exe"
O4 - HKLM..Run: [IgfxTray] E:WINDOWSsystem32igfxtray.exe
O4 - HKLM..Run: [HotKeysCmds] E:WINDOWSsystem32hkcmd.exe
O4 - HKLM..Run: [Persistence] E:WINDOWSsystem32igfxpers.exe
O4 - HKLM..Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM..Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM..Run: [NokiaMServer] E:Program FilesCommon FilesNokiaMPlatformNokiaMServer /watchfiles
O4 - HKLM..Run: [GrooveMonitor] "E:Program FilesMicrosoft OfficeOffice12GrooveMonitor.exe"
O4 - HKLM..Run: [YSearchProtection] "E:Program FilesYahoo!Search ProtectionSearchProtection.exe"
O4 - HKLM..Run: [Iusage] E:PROGRA~1INTERN~2netdet.exe
O4 - HKLM..Run: [avast5] E:PROGRA~1ALWILS~1Avast5avastUI.exe /nogui
O4 - HKLM..Run: [MotiveReportAgent] "E:Program FilesCommon FilesMotiveMcciBootStrapper.exe" /url="-APPKEY=Motive -WindowContext=ReportAgent -url=file://E:Program FilesCommon FilesMotiveReportAgent.html" /browsertype=CustomMSIE /browserpath="E:Program FilesCommon FilesMotiveMotiveBrowser.exe" /hidden
O4 - HKLM..Run: [AdobeAAMUpdater-1.0] "E:Program FilesCommon FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe"
O4 - HKLM..Run: [AdobeCS5ServiceManager] "E:Program FilesCommon FilesAdobeCS5ServiceManagerCS5ServiceManager.exe" -launchedbylogin
O4 - HKLM..Run: [SwitchBoard] E:Program FilesCommon FilesAdobeSwitchBoardSwitchBoard.exe
O4 - HKCU..Run: [ctfmon.exe] E:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [MSMSGS] "E:Program FilesMessengermsmsgs.exe" /background
O4 - HKCU..Run: [Google Update] "E:Documents and SettingsUserLocal SettingsApplication DataGoogleUpdateGoogleUpdate.exe" /c
O4 - HKCU..Run: [Search Protection] E:Program FilesYahoo!Search ProtectionSearchProtection.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:PROGRA~1MICROS~2Office12EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - E:Program FilesPokerStarsPokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:PROGRA~1MICROS~2Office12REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:Program FilesMessengermsmsgs.exe
O17 - HKLMSystemCCSServicesTcpip..{D12CF908-06F1-402D-A7FF-6A7A08DB51B1}: NameServer = 192.168.1.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:PROGRA~1MICROS~2Office12GR99D3~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:WINDOWSsystem32browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:WINDOWSsystem32browseui.dll
O23 - Service: avast! Antivirus - ALWIL Software - E:Program FilesAlwil SoftwareAvast5AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - E:Program FilesAlwil SoftwareAvast5AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - E:Program FilesAlwil SoftwareAvast5AvastSvc.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - E:Program FilesCommon FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - E:Program FilesGoogleUpdateGoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - E:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:Program FilesJavajre6binjqs.exe
O23 - Service: NBService - Nero AG - E:Program FilesNeroNero 7Nero BackItUpNBService.exe
O23 - Service: NMIndexingService - Nero AG - E:Program FilesCommon FilesAheadLibNMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - E:Program FilesCyberLinkShared FilesRichVideo.exe
O23 - Service: ServiceLayer - Nokia. - E:Program FilesNokiaPC Connectivity SolutionServiceLayer.exe
O23 - Service: SuperProServer - Unknown owner - C:Tally 7.2spnsrvnt.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - E:Program FilesCommon FilesAdobeSwitchBoardSwitchBoard.exe
O23 - Service: Tally License Server (NT) (Tally License Server) - Unknown owner - D:Tallytallylicserver.exe
O23 - Service: UDisk Monitor - Unknown owner - E:Program FilesZTE Wireless TerminalbinMonServiceUDisk.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - E:Program FilesCommon FilesUlead SystemsDVDULCDRSvr.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - E:Program FilesYahoo!SoftwareUpdateYahooAUService.exe
--
End of file - 9476 bytes
<config>Windows XP / Safari 533.4</config>