Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Hi, please help me with this Hijackthis log

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Hi, please help me with this Hijackthis log

Unread postby GregS » October 24th, 2010, 7:05 am

Hi, please help. I had a program called Thinkpoint security install itself, also another program called ANVI (anti virus program) installed itself. I get a lot of security alerts popping up, also icons on my desktop for Youporn,Porntube and nudetube. I have tried AVIRA to remove the issues but they keep on coming back.
Thanks
Greg

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:19:06 PM, on 24/10/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Rockwell\EventServer.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Rockwell Software\RSCommon\RSOBSERV.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\lkcitdl.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\Vss.exe
C:\WINDOWS\system32\lkads.exe
C:\WINDOWS\system32\lktsrv.exe
C:\WINDOWS\system32\lxdjcoms.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\National Instruments\MAX\nimxs.exe
C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
C:\WINDOWS\system32\nisvcloc.exe
C:\WINDOWS\system32\opcenum.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Common Files\Rockwell\RNADiagnosticsSrv.exe
C:\PROGRA~1\ROCKWE~1\RSLinx\RSLINX.EXE
C:\Program Files\Common Files\Rockwell\RsvcHost.exe
C:\Siemens\Step7\S7BIN\s7asysvx.exe
C:\Siemens\Common\S7IEPG\s7oiehsx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\WINDOWS\system32\TODDSrv.exe
C:\Siemens\Common\sws\almsrv\almsrvx.exe
C:\Program Files\Common Files\Rockwell\EventClientMultiplexer.exe
C:\Program Files\Common Files\Rockwell\RnaDirServer.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
C:\Program Files\Ashampoo\Ashampoo Magical UnInstall\MagicalUnInstall.exe
C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1400 Series\lxdjamon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
C:\Siemens\Common\S7ubtoox\s7ubtstx.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\xi3j3gczf5.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\lotcox5.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\taskmgr.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\sysedit.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\drweb.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\dhns6.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\svchost.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\wininst.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\system.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\win32.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\rhstoh.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\Program Files\Tweak-XP Pro\AdBlocker.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\Program Files\PrayayaV3\V3\V3Detect.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\dfrgsnapnt.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\xi3j3gczf5.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\lotcox5.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\taskmgr.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\sysedit.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\drweb.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\dhns6.exe
C:\WINDOWS\system32\rundll32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\svchost.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\wininst.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\system.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\win32.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\rhstoh.exe
C:\Program Files\TechSmith\Snagit 9\Snagit32.exe
C:\Program Files\Avira\AntiVir Desktop\avscan.exe
C:\DOCUME~1\Primary\LOCALS~1\Temp\wscsvc32.exe
C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Siemens\Common\Sqlany\dbsrv7.exe
C:\Program Files\TechSmith\Snagit 9\TSCHelp.exe
C:\Program Files\TechSmith\Snagit 9\SnagPriv.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\TechSmith\Snagit 9\snagiteditor.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Vtinab.exe
C:\WINDOWS\System32\mshta.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\mshta.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eis.esnips.com/page/search/?clie ... fde8d1391d
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://eis.esnips.com/page/search/?clie ... fde8d1391d
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: C:\WINDOWS\system32\aov9aqo3.dll - {B6BA40C1-A501-59BD-F413-03B03A2C8952} - C:\WINDOWS\system32\aov9aqo3.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 9\SnagitIEAddin.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe hwSetUP
O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MagUninstall] "C:\Program Files\Ashampoo\Ashampoo Magical UnInstall\MagicalUnInstall.exe"
O4 - HKLM\..\Run: [Omnipage] C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [lxdjamon] "C:\Program Files\Lexmark 1400 Series\lxdjamon.exe"
O4 - HKLM\..\Run: [LXDJCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDJtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [FinePrint Dispatcher v5] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
O4 - HKLM\..\Run: [S7UB Start] "C:\Siemens\Common\S7ubtoox\s7ubtstx.exe" -StartDB
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Cgeyiba] rundll32.exe "C:\WINDOWS\ijuyixusu.dll",Startup
O4 - HKLM\..\Run: [wsoaexrnmc.tmp] "C:\DOCUME~1\Primary\LOCALS~1\Temp\wsoaexrnmc.tmp"
O4 - HKLM\..\Run: [eownmsxacr.tmp] "C:\DOCUME~1\Primary\LOCALS~1\Temp\eownmsxacr.tmp"
O4 - HKLM\..\Run: [uPc+MV0NaiaCxl] rundll32.exe C:\WINDOWS\system32\m2nnws2m.dll, SystemServer
O4 - HKLM\..\Run: [HNUmqHTgrNec] C:\DOCUME~1\Primary\LOCALS~1\Temp\xi3j3gczf5.exe
O4 - HKLM\..\Run: [uPc+MV0NmeaGuo] rundll32.exe C:\WINDOWS\system32\ybbkq6g.dll, SystemServer
O4 - HKLM\..\Run: [HNUmqHTgpvQ] C:\DOCUME~1\Primary\LOCALS~1\Temp\lotcox5.exe
O4 - HKLM\..\Run: [HNUmqHTgosf] C:\DOCUME~1\Primary\LOCALS~1\Temp\taskmgr.exe
O4 - HKLM\..\Run: [HNUmqHTgupf] C:\DOCUME~1\Primary\LOCALS~1\Temp\sysedit.exe
O4 - HKLM\..\Run: [HNUmqHTgob] C:\DOCUME~1\Primary\LOCALS~1\Temp\drweb.exe
O4 - HKLM\..\Run: [uPc+MV0NaXMCxl] rundll32.exe C:\WINDOWS\system32\ev1v88x4.dll, SystemServer
O4 - HKLM\..\Run: [HNUmqHTgmR] C:\DOCUME~1\Primary\LOCALS~1\Temp\dhns6.exe
O4 - HKLM\..\Run: [uPc+MV0NXxaGuo] rundll32.exe C:\WINDOWS\system32\a9ffxrv.dll, SystemServer
O4 - HKLM\..\Run: [HNUmqHTgtrf] C:\DOCUME~1\Primary\LOCALS~1\Temp\svchost.exe
O4 - HKLM\..\Run: [HNUmqHTgruf] C:\DOCUME~1\Primary\LOCALS~1\Temp\wininst.exe
O4 - HKLM\..\Run: [HNUmqHTguuc] C:\DOCUME~1\Primary\LOCALS~1\Temp\system.exe
O4 - HKLM\..\Run: [HNUmqHTgrA] C:\DOCUME~1\Primary\LOCALS~1\Temp\win32.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [HNUmqHTgpvc] C:\DOCUME~1\Primary\LOCALS~1\Temp\rhstoh.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKCU\..\Run: [BlockAds] "C:\Program Files\Tweak-XP Pro\AdBlocker.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Primary\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_1_0 -reboot 1
O4 - HKCU\..\Run: [V3Detect.exe] C:\Program Files\PrayayaV3\V3\V3Detect.exe
O4 - HKCU\..\Run: [{DE7A97F9-D38B-7037-1C8C-5E04B6ADD7AB}] "C:\Documents and Settings\Primary\Application Data\Akduu\gonef.exe"
O4 - HKCU\..\Run: [Qhehewuku] rundll32.exe "C:\WINDOWS\asamlk.dll",Startup
O4 - HKCU\..\Run: [dfrgsnapnt.exe] C:\DOCUME~1\Primary\LOCALS~1\Temp\dfrgsnapnt.exe
O4 - HKCU\..\Run: [uPc+MV0NaiaCxl] rundll32.exe C:\WINDOWS\system32\m2nnws2m.dll, SystemServer
O4 - HKCU\..\Run: [HNUmqHTgrNec] C:\DOCUME~1\Primary\LOCALS~1\Temp\xi3j3gczf5.exe
O4 - HKCU\..\Run: [uPc+MV0NmeaGuo] rundll32.exe C:\WINDOWS\system32\ybbkq6g.dll, SystemServer
O4 - HKCU\..\Run: [HNUmqHTgpvQ] C:\DOCUME~1\Primary\LOCALS~1\Temp\lotcox5.exe
O4 - HKCU\..\Run: [HNUmqHTgosf] C:\DOCUME~1\Primary\LOCALS~1\Temp\taskmgr.exe
O4 - HKCU\..\Run: [HNUmqHTgupf] C:\DOCUME~1\Primary\LOCALS~1\Temp\sysedit.exe
O4 - HKCU\..\Run: [HNUmqHTgob] C:\DOCUME~1\Primary\LOCALS~1\Temp\drweb.exe
O4 - HKCU\..\Run: [uPc+MV0NaXMCxl] rundll32.exe C:\WINDOWS\system32\ev1v88x4.dll, SystemServer
O4 - HKCU\..\Run: [HNUmqHTgmR] C:\DOCUME~1\Primary\LOCALS~1\Temp\dhns6.exe
O4 - HKCU\..\Run: [uPc+MV0NXxaGuo] rundll32.exe C:\WINDOWS\system32\a9ffxrv.dll, SystemServer
O4 - HKCU\..\Run: [HNUmqHTgtrf] C:\DOCUME~1\Primary\LOCALS~1\Temp\svchost.exe
O4 - HKCU\..\Run: [HNUmqHTgruf] C:\DOCUME~1\Primary\LOCALS~1\Temp\wininst.exe
O4 - HKCU\..\Run: [HNUmqHTguuc] C:\DOCUME~1\Primary\LOCALS~1\Temp\system.exe
O4 - HKCU\..\Run: [HNUmqHTgrA] C:\DOCUME~1\Primary\LOCALS~1\Temp\win32.exe
O4 - HKCU\..\Run: [X3EKEPXJP2] C:\DOCUME~1\Primary\LOCALS~1\Temp\Vsy.exe
O4 - HKCU\..\Run: [KOO9RV9K4Z] C:\DOCUME~1\Primary\LOCALS~1\Temp\Vss.exe
O4 - HKCU\..\Run: [HNUmqHTgpvc] C:\DOCUME~1\Primary\LOCALS~1\Temp\rhstoh.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Internet.lnk = ?
O4 - Global Startup: Snagit 9.lnk = C:\Program Files\TechSmith\Snagit 9\Snagit32.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{267A8950-A608-4DDD-BAEB-4A604C1CDA33}: NameServer = 93.188.162.247,93.188.160.57
O17 - HKLM\System\CCS\Services\Tcpip\..\{BEE55E20-15F7-4E32-9A94-DA5E37BC9409}: NameServer = 93.188.162.247,93.188.160.57
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 93.188.162.247,93.188.160.57
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 93.188.162.247,93.188.160.57
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.162.247,93.188.160.57
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\GOOGLE\GOOGLE~1\GOEC62~1.DLL C:\PROGRA~1\GOOGLE\GOOGLE~1\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: dfskea98e4iagjiufhg87df87u - {B6BA40C1-A501-59BD-F413-03B03A2C8952} - C:\WINDOWS\system32\aov9aqo3.dll
O23 - Service: McAfee Application Installer Cleanup (0100491222649786) (0100491222649786mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\010049~1.EXE (file missing)
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
O23 - Service: Automation License Manager Service (almservice) - SIEMENS AG - C:\Siemens\Common\sws\almsrv\almsrvx.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: dnWhoDisp - Unknown owner - C:\Program Files\Rockwell Software\RSLINX\dnwhodisp.exe
O23 - Service: Rockwell Event Multiplexer (EventClientMultiplexer) - Rockwell Software Inc. - C:\Program Files\Common Files\Rockwell\EventClientMultiplexer.exe
O23 - Service: Rockwell Event Server (EventServer) - Rockwell Software Inc. - C:\Program Files\Common Files\Rockwell\EventServer.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Harmony - Rockwell Software Inc. - C:\Program Files\Rockwell Software\RSCommon\RSOBSERV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\WINDOWS\system32\lkcitdl.exe
O23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments, Inc. - C:\WINDOWS\system32\lkads.exe
O23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments, Inc. - C:\WINDOWS\system32\lktsrv.exe
O23 - Service: lxdj_device - - C:\WINDOWS\system32\lxdjcoms.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: NI Configuration Manager (mxssvr) - National Instruments Corporation - C:\Program Files\National Instruments\MAX\nimxs.exe
O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments, Inc. - C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
O23 - Service: NI Service Locator (niSvcLoc) - National Instruments Corp. - C:\WINDOWS\system32\nisvcloc.exe
O23 - Service: OpcEnum - OPC Foundation - C:\WINDOWS\system32\opcenum.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: FactoryTalk Diagnostics Local Reader (RNADiagnosticsService) - Rockwell Automation - C:\Program Files\Common Files\Rockwell\RNADiagnosticsSrv.exe
O23 - Service: FactoryTalk Diagnostics CE Receiver (RNADiagReceiver) - Unknown owner - C:\Program Files\Common Files\Rockwell\RNADiagReceiver.exe
O23 - Service: Rockwell Directory Server (RNADirectory) - Rockwell Software Inc. - C:\Program Files\Common Files\Rockwell\RnaDirServer.exe
O23 - Service: Rockwell Directory Multiplexer (RNADirMultiplexor) - Rockwell Software Inc. - C:\Program Files\Common Files\Rockwell\RNADirMultiplexor.exe
O23 - Service: RSLinx Classic (RSLinx) - Rockwell Software, Inc. - C:\PROGRA~1\ROCKWE~1\RSLinx\RSLINX.EXE
O23 - Service: Rockwell Application Services (RsvcHost) - Rockwell Software Inc. - C:\Program Files\Common Files\Rockwell\RsvcHost.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: S7 Global Services (s7asysvx) - SIEMENS AG - C:\Siemens\Step7\S7BIN\s7asysvx.exe
O23 - Service: SIMATIC IEPG Help Service (s7oiehsx) - SIEMENS AG - C:\Siemens\Common\S7IEPG\s7oiehsx.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TabletServiceWacom - Wacom Technology, Corp. - C:\WINDOWS\system32\Wacom_Tablet.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe

--
End of file - 20956 bytes

Ad-Aware
Ad-Aware
Adobe AIR
Adobe AIR
Adobe Flash Player 10 Plugin
Adobe Flash Player ActiveX
Adobe Media Player
Adobe Media Player
Adobe Reader 7.1.0
Adobe SVG Viewer 3.0
A-Men Technologies USB-to-Serial
Anvil Studio
Apple Software Update
ArcSoft PhotoBase 3
ArcSoft PhotoStudio 5
Ashampoo Magical Optimizer
Ashampoo Magical UnInstall
Audacity 1.2.5
AutoCAD R14.0
Automation License Manager V2.2 + HF3 Professional
Avira AntiVir Personal - Free Antivirus
Bluetooth Stack for Windows by Toshiba
Brain Train Age V3.20
BrainWave Generator
Brother HL-2040
Calendar Builder
Canon CanoScan Toolbox 4.1
CanoScan LiDE20,30 Manual
Capture Text
CCleaner (remove only)
CloneCD
C-more Programming Software Ver2.10 (C:\Program Files\AutomationDirect\C-more_2)
C-more Programming Software Ver2.60 (C:\Program Files\AutomationDirect\C-more_3)
C-more Programming Software Version 1.21 Build 06.18A
C-more USB Driver Ver 2.1.2.1
ConvertXtoDVD 3.2.0.50
Dart XP Pro
DeLogger5
DeTransfer
DeView
DirectSOFT 5 - Programming
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Web Player
DriveImage XML
DVD Decrypter (Remove Only)
DVD Shrink 3.2
E Series Configuration Utility
Easy Video Converter 6.0.1
EasyAlgebra
eSnips Downloader
Exact Audio Copy 0.99pb4
EZTouch Programming Software
FactoryTalk Activation Client v2.00.01 (CPR 7)
FactoryTalk Automation Platform 2.00 (CPR 7)
FinePrint
Focus Magic 3.02
GLOBEtrotter FLEXid Drivers
Google Base Store Connector
Google Desktop
Google Earth
Google Update Helper
Google Updater
GSM SIM Utility V4.8
High Definition Audio Driver Package - KB888111
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Windows XP (KB909394)
Hotfix for Windows XP (KB926239)
Hotfix for Windows XP (KB935448)
Hotfix for Windows XP (KB952287)
HP USB Disk Storage Format Tool
Intel(R) Graphics Media Accelerator Driver
Intel(R) PROSet/Wireless Software
Intelligent Remote Module
intelliScore Ensemble
Interactive Repair Manuals
iPixSoft Flash Slideshow Creator (1.8.6.2)
IrfanView (remove only)
Java(TM) 6 Update 15
Java(TM) 6 Update 5
JetDraft Document Suite 2008 1.20
Jodix Video MP3 Extractor 1.12
Kid's Typing Skills
KidsMath
Lexmark 1400 Series
Lexmark Toolbar
LiveReg (Symantec Corporation)
LiveUpdate 1.80 (Symantec Corporation)
Lizardtech DjVu Control
McAfee SiteAdvisor
mCore
mDrWiFi
mHelp
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft ActiveSync
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft Office Project MUI (English) 2007
Microsoft Office Project Standard 2007
Microsoft Office Project Standard 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office XP Professional with FrontPage
Microsoft User-Mode Driver Framework Feature Pack 1.7
Microsoft Virtual PC 2007
Microsoft Visual Basic 6.0 Professional Edition
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual J# 2.0 Redistributable Package
Microsoft Web Publishing Wizard 1.53
mIWA
mLogView
mMHouse
Mozilla Firefox (3.0.13)
mPfMgr
mPfWiz
mProSafe
mSCfg
MSVC80_x86_v2
MSVC90_x86
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 6 Service Pack 2 (KB954459)
mWlsSafe
mZConfig
National Instruments Software
Nero 6 Ultra Edition
NetObjects Fusion 9.0
NI EULA Depot
NI MDF Support
Nokia Connectivity Cable Driver
Nokia Map Loader
Nokia Ovi Suite
Nokia Ovi Suite
Nokia Ovi Suite Software Updater
Nokia PC Suite
Nokia PC Suite
OmniPage SE
Optus Wireless Broadband
Ovi Desktop Sync Engine
OviMPlatform
Package: Remlap KnowledgeBASE 2.21
Password Depot 2
PC Connectivity Solution
PDF to Word
PDFCreator
Photoship 6 & Acrobat 5 Training
Picasa 3
PL-2303 USB-to-Serial
PowerISO
Powerpac 6
PowerQuest PartitionMagic 8.0
PVMonitor2008-0811
QuickTime
RealPlayer
Realtek High Definition Audio Driver
RHINO Connect Software
Rockwell Windows Firewall Configuration Utility 1.00.01
RSLinx Classic
RSLogix 500 English 7.10.00 (CPR 7)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player 10 (KB936782)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB944338-v2)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950749)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953838)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956390)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958215)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960714)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB963027)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969897)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Sentinel System Driver
SIM MAX 10.0
SIM MAX 7.0
SIMATIC STEP 7 V5.4 Professional
SIMATIC S7-GRAPH V5.3 + SP2 Professional
SIMATIC S7-PLCSIM V5.3 + SP1 Professional
SIMATIC S7-SCL V5.3 + SP1 Professional
SIMATIC STEP 7-Micro/WIN 32 V3.1.1.6
Simply Budgets Personal
Simply Calenders v4.91
Smart CD Catalog 2.53 Professional
Snagit 9.1.3
SolarPathfinder Assistant 4.0
Sothink Logo Maker
Teaching-you Project Management Skills
TemCurve 6 - Selectivity Analysis Software
Texas Instruments PCIxx21/x515/xx12 drivers.
ToolBook II 6.1 Runtime Files
Topaz Vivacity
TOSHIBA Disc Creator
TOSHIBA Hardware Setup
TOSHIBA Hotkey Utility
TOSHIBA Software Modem
TweakNow RegCleaner Standard
Tweak-XP Pro
UMS 7.0.0.5
Update for Windows XP (KB898461)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
USB PC Camera, Panasonic CCD
Video Viewer
VideoGet
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
Wacom Tablet
WBFS Manager 3.0
Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.4)
Windows Driver Package - Nokia Modem (10/05/2009 4.2)
Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
Windows Imaging Component
Windows Installer 3.1 (KB893803)
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 10
Windows Media Player 10 Hotfix - KB894476
Windows XP Hotfix - KB885884
WinRAR archiver
XP Codec Pack
Xvid 1.1.3 final uninstall
Yahoo! Install Manager
ZebraDesigner
GregS
Active Member
 
Posts: 7
Joined: October 24th, 2010, 6:01 am
Advertisement
Register to Remove

Re: Hi, please help me with this Hijackthis log

Unread postby deltalima » October 25th, 2010, 3:38 pm

Checking your log - back soon.
User avatar
deltalima
Admin/Teacher
Admin/Teacher
 
Posts: 7614
Joined: February 28th, 2009, 4:38 pm
Location: UK

Re: Hi, please help me with this Hijackthis log

Unread postby deltalima » October 25th, 2010, 3:44 pm

Hi GregS,

The factory automation and CAD software installed on this computer suggests that it is used for business, please confirm.
User avatar
deltalima
Admin/Teacher
Admin/Teacher
 
Posts: 7614
Joined: February 28th, 2009, 4:38 pm
Location: UK

Re: Hi, please help me with this Hijackthis log

Unread postby GregS » October 25th, 2010, 4:26 pm

Hi Deltalima, this my home laptop and it is not used for any business activities, the Automation software loaded up has been for study, over the last couple of years I have completed some automation subjects as part of an diploma of electrical engineering. The cad software is very old now (but easy to use) and gets used for projects at home.
I hope this helps.
Regards
Greg
GregS
Active Member
 
Posts: 7
Joined: October 24th, 2010, 6:01 am

Re: Hi, please help me with this Hijackthis log

Unread postby deltalima » October 25th, 2010, 5:06 pm

Hi GregS,

Welcome to the forum.

My nickname is deltalima and I will be helping you with your computer problems.

The logs can take some time to research, so please be patient with me.

Please be aware that removing Malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.


Please note the following:
  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for this issue on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • If after 3 days you have not responded to this topic, it will be closed, and you will need to start a new one.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.

Rkill

Please download Rkill from one of the following links and save to your Desktop:

One, Two,Three or Four

  • Double click on Rkill.
  • A command window will open then disappear upon completion, this is normal.
  • A notepad windows will open, please post the contents in your next reply
  • This log can also be found at C:\rkill.log
  • Please leave Rkill on the Desktop until otherwise advised.

Note: If your security software warns about Rkill, please ignore and allow the download to continue.

Download and run OTL
Download OTL by Old Timer and save it to your Desktop.
  • Double click on OTL.exe to run it.
  • Under Output, ensure that Minimal Output is selected.
  • Under Extra Registry section, select Use SafeList.
  • Click the Scan All Users checkbox.
  • Click on Run Scan at the top left hand corner.
  • When done, two Notepad files will open.
    • OTL.txt <-- Will be opened
    • Extras.txt <-- Will be minimized
  • Please post the contents of these 2 Notepad files in your next reply.

Please download GMER Rootkit Scanner from here.
  • Double click the .exe file. If asked to allow gmer.sys driver to load, please consent
  • If it gives you a warning at program start about rootkit activity and asks if you want to run a scan...click NO.
  • Run Gmer again and click on the Rootkit tab.
  • Look at the right hand side (under Files) and uncheck all drives with the exception of your C drive.
  • Make sure all other boxes on the right of the screen are checked, EXCEPT for "Show All".
  • Click on the "Scan" and wait for the scan to finish.
    Note: Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while this scan completes. Also do not use your computer during the scan.
  • When completed, click on the Copy button and right-click on your Desktop, choose "New" > Text document. Once the file is created, open it and right-click again and choose Paste or Ctrl+V. Save the file as gmer.txt and copy the information in your next reply.
  • Note: If you have any problems, try running GMER in SAFE MODE
Important! Please do not select the "Show all" checkbox during the scan..

Please post the GMER log along with OTL.txt and Extras.txt from the OTL scan into your next reply.
User avatar
deltalima
Admin/Teacher
Admin/Teacher
 
Posts: 7614
Joined: February 28th, 2009, 4:38 pm
Location: UK

Re: Hi, please help me with this Hijackthis log

Unread postby GregS » October 25th, 2010, 5:29 pm

Thanks deltalima for helping out. I am work at the moment and will be home in about 12 hours. I will do as you requested then.
Thanks
Greg
GregS
Active Member
 
Posts: 7
Joined: October 24th, 2010, 6:01 am

Re: Hi, please help me with this Hijackthis log

Unread postby GregS » October 26th, 2010, 6:52 am

Hi deltalima, it seems that my laptop will not start in windows. It just keeps on cycling on and off.(it has never done this before) I think I have tried every option under the F8 menu and it just keeps turning off and then on again. I downloaded an AVG rescue disk and have tried this a few times but it has an error message at the end of the scan and does not find any suspect files. I am in the progress of downloading a Kaspersky rescue disk and I will give that a go with the hope that I can at least get windows running again so I can complete your request. Do you have any ideas on what I can do to recover?
Thanks
Greg
GregS
Active Member
 
Posts: 7
Joined: October 24th, 2010, 6:01 am

Re: Hi, please help me with this Hijackthis log

Unread postby deltalima » October 26th, 2010, 9:19 am

Hi GregS,

There were several infections showing in your initial HijackThis log but nothing obvious that would cause the failure to boot.

Hopefully the Kaspersky CD will remove enough to allow the computer to boot, if so please continue with the OTL and GMER scan.

If the computer cannot be booted then it is impossible to attempt to repair remotely and the only course of action that I could recommend would a repair install.

Please posts the logs if you manage to boot the computer.
User avatar
deltalima
Admin/Teacher
Admin/Teacher
 
Posts: 7614
Joined: February 28th, 2009, 4:38 pm
Location: UK

Re: Hi, please help me with this Hijackthis log

Unread postby Wingman » October 29th, 2010, 11:34 am

Due to a lack of response, this topic is now closed.

If you still require help, please open a new thread in the Infected? Virus, malware, adware, ransomware, oh my! forum, include a fresh FRST log, and wait for a new helper.
User avatar
Wingman
Admin/Teacher
Admin/Teacher
 
Posts: 14108
Joined: July 1st, 2008, 1:34 pm
Location: East Coast, USA
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 48 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware