Runscanner logfile
* = signed file
- = file not found
General info
------------
Computer name : HOI-PC
Creation time : 26/01/13 09:55:34 ص
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 9.0.8112.16421
OS : Windows Vista (TM) Home Premium
OS Build : 6002
OS SP : Service Pack 2
RunScanner Version : 2.0.0.50
User Language : العربية (السعودية)
User rights : Administrator
Windows folder : C:\Windows
Running processes
-----------------
* C:\Program Files\SMINST\BLService.exe
* C:\Windows\System32\Macromed\Flash\FlashUtil32_11_5_502_146_ActiveX.exe (Adobe Systems Incorporated)
* C:\Windows\System32\agrsmsvc.exe (Agere Systems)
* C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fda975b6\AEstSrv.exe (Andrea Electronics Corporation)
* C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation.)
* C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
* C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
* C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe (Hewlett-Packard Development Company, L.P.)
* C:\Windows\System32\conime.exe (Microsoft Corporation)
C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
* C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
* C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe (CyberLink Corp.)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe (Hewlett-Packard)
* C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (Hewlett-Packard)
* C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
* C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe (Hewlett-Packard Development Company, L.P.)
* C:\Windows\System32\hpservice.exe (Hewlett-Packard Corporation)
* C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe (Hewlett-Packard Development Company, L.P.)
* C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
* C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
* C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
* C:\Program Files\Internet Download Manager\IEMonitor.exe (Tonec Inc.)
* C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
* C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Kaspersky Lab ZAO)
* C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Kaspersky Lab ZAO)
C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation)
* C:\Windows\System32\SearchFilterHost.exe (Microsoft Corporation)
* C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
* C:\Windows\System32\SearchProtocolHost.exe (Microsoft Corporation)
* C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe (Hewlett-Packard Development Company, L.P.)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe ( Hewlett-Packard Development Company, L.P.)
C:\Program Files\CyberLink\Shared files\RichVideo.exe
* C:\Zyzoom_Forum_Tools\zRunScanner.com (Runscanner.net)
* C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation)
* C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics, Inc.)
* C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
* C:\Windows\system32\audiodg.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\wuauclt.exe (Microsoft Corporation)
* C:\Windows\System32\wbem\WmiPrvSE.exe (Microsoft Corporation)
C:\Zyzoom_Forum_Tools\zyzoom.exe
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
* C:\Windows\System32\SLsvc.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\explorer.exe (Microsoft Corporation)
* C:\Windows\System32\taskeng.exe (Microsoft Corporation)
* C:\Windows\System32\taskeng.exe (Microsoft Corporation)
Unrated items
-------------
002 * C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
002 * C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
002 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Kaspersky Lab ZAO)
002 * C:\Program Files\Emsisoft Anti-Malware\a2guard.exe (Emsisoft GmbH)
002 * C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
003 C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company)
010 * C:\Program Files\SMINST\BLService.exe ( STServices)
010 * C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe® Flash® Player Update Service 11.5 r502)
010 C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (Core Service)
010 * C:\Program Files\Emsisoft Anti-Malware\a2service.exe (Emsisoft Anti-Malware Service)
010 c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe (HP Health Check Service)
010 C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT Module)
010 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Kaspersky Anti-Virus)
010 C:\Program Files\Common Files\LightScribe\LSSrvc.exe (LightScribe Service)
010 * C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (maintenanceservice.exe)
010 * C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Anti-Malware)
010 * C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Anti-Malware)
010 C:\Program Files\HMA! Pro VPN\bin\openvpnserv.exe (openvpnserv.exe)
010 C:\Program Files\CyberLink\Shared files\RichVideo.exe (RichVideo Module)
011 * C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\a2accx86.sys (Emsisoft Anti-Malware File Guard)
011 * C:\Windows\system32\drivers\hitmanpro36.sys (HitmanPro 3.6 Support Driver)
011 * C:\Windows\system32\drivers\hitmanpro36.sys (HitmanPro 3.6 Support Driver)
011 * C:\Windows\system32\DRIVERS\jmcr.sys (JMCR)
011 * C:\Windows\system32\DRIVERS\klim6.sys (Kaspersky Lab Intermediate Network Driver)
011 * C:\Windows\system32\DRIVERS\kl1.sys (Kaspersky Unified Driver)
011 * C:\Windows\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86])
011 * C:\Windows\system32\DRIVERS\klkbdflt.sys (KLKBDFLT Keyboard Device Filter [fre_wlh_x86])
011 * C:\Windows\system32\DRIVERS\klmouflt.sys (KLMOUFLT Mouse Device Filter [fre_wlh_x86])
011 * C:\Windows\system32\DRIVERS\kneps.sys (KNEPS Power)
011 * C:\Windows\system32\drivers\mbam.sys (MBAMProtector)
011 * C:\Windows\system32\DRIVERS\kltdi.sys (Network filtering component)
011 * C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SASDIFSV.SYS)
011 * C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS)
011 c:\windows\System32\Drivers\sptd.sys (sptd)
011 * C:\Windows\system32\DRIVERS\tap0901.sys (TAP-Win32 Virtual Network Driver)
042 GUID / CLSID not found {CCA281CA-C863-46ef-9331-5C8D4460577F}
042 GUID / CLSID not found {92780B25-18CC-41C8-B9BE-3C9C571A8263}
042 GUID / CLSID not found {CCF151D8-D089-449F-A5A4-D9909053F20F}
042 GUID / CLSID not found {0C4CC089-D306-440D-9772-464E226F6539}
042 GUID / CLSID not found {2670000A-7350-4f3c-8081-5663EE0C6C49}
050 C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com) {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}
052 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
052 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}
052 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
052 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) {DBC80044-A445-435b-BC74-9C25C1C588A9}
052 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}
052 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) {E33CF602-D945-461A-83F0-819F76A199F8}
052 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) {73455575-E40C-433C-9784-C78DC7761455}
061 * C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\A2CONTMENU.DLL (Emsisoft GmbH) {AB77609F-2178-4E6F-9C4B-44AC179D937A}
061 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
062 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) {F9DB5320-233E-11D1-9F84-707F02C10627}
073 Adobe Flash Player Updater.job : C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
073 ReclaimerUpdateFiles_hoi.job : C:\Users\hoi\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\rnupgagent.exe (RealNetworks, Inc.)
073 ReclaimerUpdateXML_hoi.job : C:\Users\hoi\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\rnupgagent.exe (RealNetworks, Inc.)
073 RNUpgradeHelperLogonPrompt_hoi.job : C:\Users\hoi\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\10.30\agent\rnupgagent.exe (RealNetworks, Inc.)
100 Start Page HKCU :
100 Start Page HKLM :
104 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll {8AD9C840-044E-11D1-B3E9-00805F499D93}
104 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
104 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
104 * C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
105 Add to Anti-Banner : C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
105 Send image to &Bluetooth Device... : C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
105 Send page to &Bluetooth Device... : C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
105 ت&صدير إلى Microsoft Excel : res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
105 تحميل الكل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetAll.htm
105 تحميل بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEExt.htm
105 تحميل محتوى FLV بواسطة Internet Download Manager : C:\Program Files\Internet Download Manager\IEGetVL.htm
145 * C:\Windows\system32\drivers\klkbdflt.sys (Kaspersky Lab)
173 GUID / CLSID not found {70F8E90E-353A-47AB-B297-C576345EE693}
173 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
173 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
173 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
173 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
221 GUID / CLSID not found {70F8E90E-353A-47AB-B297-C576345EE693}
221 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
221 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
221 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
221 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
223 * C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\A2CONTMENU.DLL (Emsisoft GmbH) {AB77609F-2178-4E6F-9C4B-44AC179D937A}
223 * C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation) {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
225 GUID / CLSID not found {70F8E90E-353A-47AB-B297-C576345EE693}
225 GUID / CLSID not found {70F8E90E-353A-47AB-B297-C576345EE693}
225 * C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\A2CONTMENU.DLL (Emsisoft GmbH) {AB77609F-2178-4E6F-9C4B-44AC179D937A}
225 * C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\A2CONTMENU.DLL (Emsisoft GmbH) {AB77609F-2178-4E6F-9C4B-44AC179D937A}
225 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
225 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
225 * C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation) {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
225 * C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation) {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
227 * C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\shellex.dll (Kaspersky Lab ZAO) {dd230880-495a-11d1-b064-008048ec2fc5}
227 C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL (SUPERAntiSpyware.com) SUPERAntiSpyware Context Menu
227 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
231 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) PDF Column Info
251 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
251 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
254 C:\Windows\system32\btncopy.dll (Broadcom Corporation.) {7842554E-6BED-11D2-8CDB-B05550C10000}
Missing files
-------------
011 C:\Windows\system32\drivers\ggrnit.sys
011 c:\windows\system32\DRIVERS\ipinip.sys
011 C:\Windows\system32\drivers\jllwdb.sys
011 c:\windows\system32\DRIVERS\nwlnkflt.sys
011 c:\windows\system32\DRIVERS\nwlnkfwd.sys
011 C:\Windows\system32\drivers\TfNetMon.sys
011 C:\Windows\system32\drivers\tvelms.sys
032 rdpclip