Runscanner logfile
* = signed file
- = file not found
General info
------------
Computer name : X-DC8E1E11D2014
Creation time : 30/08/2012 03:39:06 م
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 8.0.6001.18702
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 2
RunScanner Version : 2.0.0.60
User Language : العربية (السعودية)
User rights : Administrator
Windows folder : C:\windows
Running processes
-----------------
* C:\WINDOWS\system32\alg.exe (Microsoft Corporation)
* C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation)
* C:\Program Files\BandRich\BandLuxe HSDPA Utility R11\BRService.exe (BandRich Inc.)
* C:\WINDOWS\system32\csrss.exe (Microsoft Corporation)
* C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
* C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe (AnchorFree Inc.)
* C:\Program Files\Hotspot Shield\bin\hsswd.exe
* C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
* C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
* C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
* C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
* C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
* C:\WINDOWS\system32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corp.)
* C:\WINDOWS\system32\notepad.exe (Microsoft Corporation)
* C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
* C:\WINDOWS\system32\HPZipm12.exe (HP)
* C:\Program Files\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
* C:\Documents and Settings\X Psai\Desktop\runscanner.exe (Runscanner.net)
* C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe (Yuna Software)
C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
* C:\WINDOWS\system32\services.exe (Microsoft Corporation)
C:\Program Files\Toshiba\TOSHIBA Zooming Utility\SmoothView.exe (TOSHIBA Corporation)
* C:\WINDOWS\system32\spoolsv.exe (Microsoft Corporation)
* C:\Program Files\Norton Internet Security\Engine\19.8.0.14\ccsvchst.exe (Symantec Corporation)
* C:\Program Files\Norton Internet Security\Engine\19.8.0.14\ccsvchst.exe (Symantec Corporation)
* C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
C:\WINDOWS\system32\TDispVol.exe (TOSHIBA Corporation)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe (TOSHIBA CORPORATION.)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe (TOSHIBA CORPORATION.)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtProc.exe (TOSHIBA CORPORATION.)
* C:\Program Files\Synaptics\SynTP\Toshiba.exe (Synaptics, Inc.)
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosOBEX.exe (TOSHIBA CORPORATION.)
* C:\WINDOWS\explorer.exe (Microsoft Corporation)
* C:\Program Files\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation)
* C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
C:\WINDOWS\system32\winlogon.exe (Microsoft Corporation)
* C:\WINDOWS\system32\smss.exe (Microsoft Corporation)
* C:\WINDOWS\system32\wscntfy.exe (Microsoft Corporation)
Unrated items
-------------
002 * C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe (Yuna Software)
002 C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe (TOSHIBA Corporation)
002 C:\windows\system32\TDispVol.exe (TOSHIBA Corporation)
005 C:\PROGRA~1\Toshiba\BLUETO~1\TosBtMng.exe (TOSHIBA CORPORATION.)
010 * C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Flash Player Update Service)
010 * C:\Program Files\BandRich\BandLuxe HSDPA Utility R11\BRService.exe (BandLuxe Service)
010 C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (ConfigFree Service)
010 * C:\Program Files\Hotspot Shield\bin\hsswd.exe (Hotspot Shield Monitoring Service)
010 * C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe (Hotspot Shield Routing Service)
010 * C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe (Messenger Plus! Service)
010 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\ccSvcHst.exe (Norton Internet Security)
010 C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (ServiceLayer)
010 * C:\Program Files\Skype\Updater\Updater.exe (Skype Updater)
011 C:\windows\system32\DRIVERS\AegisP.sys (AEGIS Protocol (IEEE 802.1x) v3.4.5.0)
011 * C:\windows\system32\DRIVERS\taphss.sys (Anchorfree HSS Adapter)
011 * C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\BASHDefs\20120823.007\BHDrvx86.sys (BHDrvx86)
011 C:\windows\system32\DRIVERS\tosrfec.sys (Bluetooth ACPI from TOSHIBA)
011 C:\windows\system32\drivers\TosRfSnd.sys (Bluetooth Audio Device (WDM) from TOSHIBA)
011 C:\windows\system32\DRIVERS\tosrfnds.sys (Bluetooth Personal Area Network from TOSHIBA)
011 C:\windows\system32\DRIVERS\tosporte.sys (Bluetooth Port Driver from Toshiba)
011 C:\windows\System32\Drivers\tosrfbnp.sys (Bluetooth RFBNEP from TOSHIBA)
011 C:\windows\System32\Drivers\tosrfbd.sys (Bluetooth RFBUS from TOSHIBA)
011 C:\windows\System32\Drivers\tosrfcom.sys (Bluetooth RFCOMM from TOSHIBA)
011 C:\windows\system32\DRIVERS\Tosrfhid.sys (Bluetooth RFHID from TOSHIBA)
011 C:\windows\System32\Drivers\tosrfusb.sys (Bluetooth USB Controller)
011 * C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (EraserUtilRebootDrv)
011 * C:\windows\system32\DRIVERS\HssDrv.sys (Hotspot Shield Helper Miniport)
011 * C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\IPSDefs\20120829.001\IDSxpx86.sys (IDSxpx86)
011 * C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120829.024\NAVENG.SYS (NAVENG)
011 * C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120829.024\NAVEX15.SYS (NAVEX15)
011 * c:\windows\system32\drivers\NIS\1308000.00E\ccSetx86.sys (Norton Internet Security Settings Manager)
011 C:\windows\system32\DRIVERS\EAPPkt.sys (Realtek EAPPkt Protocol)
011 * C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (Symantec Eraser Control driver)
011 * C:\windows\system32\drivers\NIS\1308000.00E\SYMEFA.SYS (Symantec Extended File Attributes)
011 * c:\windows\System32\Drivers\NIS\1308000.00E\SRTSP.SYS (Symantec Real Time Storage Protection)
011 * c:\windows\system32\drivers\NIS\1308000.00E\SRTSPX.SYS (Symantec Real Time Storage Protection (PEL))
011 C:\windows\system32\DRIVERS\tapvpn.sys (TAP VPN Adapter)
011 C:\windows\system32\drivers\Toshidpt.sys (TOSHIBA Bluetooth HID port driver)
011 C:\windows\system32\DRIVERS\netdevio.sys (TOSHIBA Network Device Usermode I/O Protocol)
041 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\coIEPlg.dll (Symantec Corporation) {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
042 C:\Program Files\Paltalk Messenger\Paltalk.exe (AVM Software Inc.) {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE}
052 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\coIEPlg.dll (Symantec Corporation) {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}
052 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\IPS\IPSBHO.DLL (Symantec Corporation) {6D53EC84-6AAE-4787-AEEE-F4628F01010C}
061 C:\windows\system32\TosBtExt.dll (TOSHIBA) {45C6AFA5-2C13-402f-BC5D-45CC8172EF6B}
061 C:\Program Files\JetAudio\JetFlExt.dll (COWON America) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
061 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
061 C:\Program Files\Kristanix\Right Click Image Converter\extRCIC.dll {13311DA7-1D24-40e5-AE07-7E3750F5DE3C}
061 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
061 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
061 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79305-84BE-11CE-9641-444553540000}
061 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79306-84BE-11CE-9641-444553540000}
061 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79307-84BE-11CE-9641-444553540000}
062 C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) {F9DB5320-233E-11D1-9F84-707F02C10627}
069 C:\windows\system32\HpTcpMon.dll (Hewlett Packard)
069 C:\windows\system32\tbtmon.dll (Toshiba America Business Solutions, Inc.)
073 Adobe Flash Player Updater.job : C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
100 ProxyOverride HKCU : local
100 Search Page HKCU :
100 SearchAssistant HKCU :
100 Start Page HKCU :
105 تحميل الكل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetAll.htm
105 تحميل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEExt.htm
170 {98664228-5104-11de-8428-00c0ca1e691b} : C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn
173 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
173 C:\Program Files\Kristanix\Right Click Image Converter\extRCIC.dll {13311DA7-1D24-40e5-AE07-7E3750F5DE3C}
173 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\NavShExt.dll (Symantec Corporation) {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA}
173 C:\windows\system32\TosBtShell.dll (TOSHIBA) {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
173 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
173 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
221 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
221 C:\Program Files\Kristanix\Right Click Image Converter\extRCIC.dll {13311DA7-1D24-40e5-AE07-7E3750F5DE3C}
221 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\NavShExt.dll (Symantec Corporation) {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA}
221 C:\windows\system32\TosBtShell.dll (TOSHIBA) {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
221 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
221 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
225 C:\Program Files\JetAudio\JetFlExt.dll (COWON America) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
225 C:\Program Files\JetAudio\JetFlExt.dll (COWON America) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
225 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\NavShExt.dll (Symantec Corporation) {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA}
225 * C:\Program Files\Norton Internet Security\Engine\19.8.0.14\NavShExt.dll (Symantec Corporation) {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
225 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
227 C:\Program Files\FreeTime\FormatFactory\ShellEx_101.dll (Free Time) {A3777921-CFD3-4A6B-89BF-08E6B95716E8}
227 C:\Program Files\JetAudio\JetFlExt.dll (COWON America) {8D1636FD-CA49-4B4E-90E4-0A20E03A15E8}
227 C:\windows\system32\TosBtShell.dll (TOSHIBA) {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
227 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79304-84BE-11CE-9641-444553540000}
231 C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) PDF Column Info
251 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
251 C:\PROGRA~1\WINZIP\WZSHLSTB.DLL (WinZip Computing LP) {E0D79305-84BE-11CE-9641-444553540000}
254 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
Missing files
-------------
002 C:\Program Files\Messenger Plus! Live\PlusService.exe
010 C:\Program Files\Hotspot Shield\bin\openvpnas.exe
010 C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE
011 C:\windows\system32\drivers\Abiosdsk.sys
011 C:\windows\system32\drivers\abp480n5.sys
011 C:\windows\system32\drivers\adpu160m.sys
011 C:\windows\system32\drivers\Aha154x.sys
011 C:\windows\system32\drivers\aic78u2.sys
011 C:\windows\system32\drivers\aic78xx.sys
011 C:\windows\system32\drivers\AliIde.sys
011 C:\windows\system32\drivers\amsint.sys
011 System32\Drivers\usbaapl.sys
011 C:\windows\system32\drivers\asc.sys
011 C:\windows\system32\drivers\asc3350p.sys
011 C:\windows\system32\drivers\asc3550.sys
011 C:\windows\system32\drivers\Atdisk.sys
011 C:\windows\system32\drivers\cd20xrnt.sys
011 C:\windows\system32\drivers\Changer.sys
011 C:\windows\system32\drivers\CmdIde.sys
011 C:\windows\system32\drivers\Cpqarray.sys
011 C:\windows\system32\drivers\dac2w2k.sys
011 C:\windows\system32\drivers\dac960nt.sys
011 C:\windows\system32\drivers\dpti2o.sys
011 C:\windows\system32\drivers\hpn.sys
011 C:\windows\system32\drivers\i2omgmt.sys
011 C:\windows\system32\drivers\i2omp.sys
011 C:\windows\system32\drivers\ini910u.sys
011 C:\windows\system32\drivers\IntelIde.sys
011 C:\windows\system32\drivers\lbrtfdc.sys
011 C:\windows\system32\drivers\mraid35x.sys
011 C:\windows\system32\drivers\PCIDump.sys
011 C:\windows\system32\drivers\PDCOMP.sys
011 C:\windows\system32\drivers\PDFRAME.sys
011 C:\windows\system32\drivers\PDRELI.sys
011 C:\windows\system32\drivers\PDRFRAME.sys
011 C:\windows\system32\drivers\perc2.sys
011 C:\windows\system32\drivers\perc2hib.sys
011 C:\windows\system32\drivers\ql1080.sys
011 C:\windows\system32\drivers\Ql10wnt.sys
011 C:\windows\system32\drivers\ql12160.sys
011 C:\windows\system32\drivers\ql1240.sys
011 C:\windows\system32\drivers\ql1280.sys
011 C:\DOCUME~1\XPSAI~1\LOCALS~1\Temp\SAS_SelfExtract\SASDIFSV.SYS
011 C:\DOCUME~1\XPSAI~1\LOCALS~1\Temp\SAS_SelfExtract\SASKUTIL.SYS
011 C:\windows\system32\drivers\Simbad.sys
011 C:\WINDOWS\System32\Drivers\SjyPkt.sys
011 C:\windows\system32\drivers\Sparrow.sys
011 C:\windows\system32\drivers\sym_hi.sys
011 C:\windows\system32\drivers\sym_u3.sys
011 C:\windows\system32\drivers\symc810.sys
011 C:\windows\system32\drivers\symc8xx.sys
011 C:\windows\system32\drivers\TosIde.sys
011 C:\windows\system32\drivers\ultra.sys
011 C:\windows\system32\drivers\ViaIde.sys
011 C:\windows\system32\drivers\WDICA.sys
121 c:\progra~1\bandoo\bndhook.dll