<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2" -->
<rss version="2.0">
    <channel>
        <title>Lowyat.NET: Latest topics by Mr.Jr</title>
        <description></description>
        <link>http://forum.lowyat.net/</link>
        <lastBuildDate>Thu, 18 Jun 2026 16:59:52 +0800</lastBuildDate>
        <generator>FeedCreator 1.7.2</generator>
        <item>
            <title>HijackThis</title>
            <link>http://forum.lowyat.net/topic/722772</link>
            <description>Gurus,&lt;br /&gt;&lt;br /&gt;I need help for those who really experience in this HijackThis to identify if there&amp;#39;s any suspicious&lt;br /&gt;files that i really need to delete..if there was any, kindly tell the procedures that i should follow&lt;br /&gt;&lt;br /&gt;i just did the scanning so that to ensure my system is all clean and safe&lt;br /&gt;&lt;br /&gt;thanks&lt;br /&gt;&lt;br /&gt;Logfile of Trend Micro HijackThis v2.0.2&lt;br /&gt;Scan saved at 08:01:37, on 6/19/2008&lt;br /&gt;Platform: Windows XP SP2 (WinNT 5.01.2600)&lt;br /&gt;MSIE: Internet Explorer v7.00 (7.00.6000.16674)&lt;br /&gt;Boot mode: Normal&lt;br /&gt;&lt;br /&gt;Running processes:&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;smss.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;winlogon.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;services.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;lsass.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Lavasoft&amp;#092;Ad-Aware 2007&amp;#092;aawservice.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;aswUpdSv.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashServ.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;Explorer.EXE&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;spoolsv.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;RUNDLL32.EXE&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;RTHDCPL.EXE&lt;br /&gt;C:&amp;#092;PROGRA~1&amp;#092;ALWILS~1&amp;#092;Avast4&amp;#092;ashDisp.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;rundll32.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Google&amp;#092;Google Talk&amp;#092;googletalk.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;fdm.exe&lt;br /&gt;C:&amp;#092;program files&amp;#092;steam&amp;#092;steam.exe&lt;br /&gt;C:&amp;#092;PROGRA~1&amp;#092;Yahoo&amp;#33;&amp;#092;MESSEN~1&amp;#092;YAHOOM~1.EXE&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;ctfmon.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Portrait Displays&amp;#092;forteManager&amp;#092;DTHtml.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Windows Live&amp;#092;Messenger&amp;#092;MsnMsgr.Exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Portrait Displays&amp;#092;Shared&amp;#092;HookManager.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Portrait Displays&amp;#092;Shared&amp;#092;DTSRVC.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Microsoft Shared&amp;#092;VS7DEBUG&amp;#092;MDM.EXE&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;nvsvc32.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashMaiSv.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashWebSv.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;System32&amp;#092;svchost.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Windows Live&amp;#092;Messenger&amp;#092;usnsvc.exe&lt;br /&gt;C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;wuauclt.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Mozilla Firefox&amp;#092;firefox.exe&lt;br /&gt;C:&amp;#092;Program Files&amp;#092;Trend Micro&amp;#092;HijackThis&amp;#092;HijackThis.exe&lt;br /&gt;&lt;br /&gt;R0 - HKCU&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Start Page = &lt;a href='http://www.yahoo.com/' target='_blank'&gt;http://www.yahoo.com/&lt;/a&gt;&lt;br /&gt;R1 - HKLM&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Default_Page_URL = &lt;a href='http://go.microsoft.com/fwlink/?LinkId=69157' target='_blank'&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/a&gt;&lt;br /&gt;R1 - HKLM&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Default_Search_URL = &lt;a href='http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com' target='_blank'&gt;http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com&lt;/a&gt;&lt;br /&gt;R1 - HKLM&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Search Bar = &lt;a href='http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html' target='_blank'&gt;http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html&lt;/a&gt;&lt;br /&gt;R1 - HKLM&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Search Page = &lt;a href='http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.com' target='_blank'&gt;http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com&lt;/a&gt;&lt;br /&gt;R0 - HKLM&amp;#092;Software&amp;#092;Microsoft&amp;#092;Internet Explorer&amp;#092;Main,Start Page = &lt;a href='http://go.microsoft.com/fwlink/?LinkId=69157' target='_blank'&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/a&gt;&lt;br /&gt;R3 - URLSearchHook: Yahoo&amp;#33; Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&amp;#092;PROGRA~1&amp;#092;Yahoo&amp;#33;&amp;#092;Companion&amp;#092;Installs&amp;#092;cpn&amp;#092;yt.dll&lt;br /&gt;O2 - BHO: &amp;amp;Yahoo&amp;#33; Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:&amp;#092;PROGRA~1&amp;#092;Yahoo&amp;#33;&amp;#092;Companion&amp;#092;Installs&amp;#092;cpn&amp;#092;yt.dll&lt;br /&gt;O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:&amp;#092;Program Files&amp;#092;Adobe&amp;#092;Acrobat 7.0&amp;#092;ActiveX&amp;#092;AcroIEHelper.dll&lt;br /&gt;O2 - BHO: Yahoo&amp;#33; IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:&amp;#092;Program Files&amp;#092;Yahoo&amp;#33;&amp;#092;Common&amp;#092;yiesrvc.dll&lt;br /&gt;O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)&lt;br /&gt;O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Microsoft Shared&amp;#092;Windows Live&amp;#092;WindowsLiveLogin.dll&lt;br /&gt;O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;iefdmcks.dll&lt;br /&gt;O3 - Toolbar: Yahoo&amp;#33; Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:&amp;#092;PROGRA~1&amp;#092;Yahoo&amp;#33;&amp;#092;Companion&amp;#092;Installs&amp;#092;cpn&amp;#092;yt.dll&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [NvCplDaemon] RUNDLL32.EXE C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;NvCpl.dll,NvStartup&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [nwiz] nwiz.exe /install&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [NvMediaCenter] RUNDLL32.EXE C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;NvMcTray.dll,NvTaskbarInit&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [RTHDCPL] RTHDCPL.EXE&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [SkyTel] SkyTel.EXE&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [Alcmtr] ALCMTR.EXE&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [avast&amp;#33;] C:&amp;#092;PROGRA~1&amp;#092;ALWILS~1&amp;#092;Avast4&amp;#092;ashDisp.exe&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [googletalk] C:&amp;#092;Program Files&amp;#092;Google&amp;#092;Google Talk&amp;#092;googletalk.exe /autostart&lt;br /&gt;O4 - HKLM&amp;#092;..&amp;#092;Run: [DT LGE] C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Portrait Displays&amp;#092;Shared&amp;#092;DT_startup.exe -LGE&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [TaskSwitchXP] C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [Free Download Manager] C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;fdm.exe -autorun&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [Steam] &amp;quot;c:&amp;#092;program files&amp;#092;steam&amp;#092;steam.exe&amp;quot; -silent&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [SpyClean] C:&amp;#092;Program Files&amp;#092;Netcom3 Cleaner&amp;#092;SpyClean.exe&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [Yahoo&amp;#33; Pager] &amp;quot;C:&amp;#092;PROGRA~1&amp;#092;Yahoo&amp;#33;&amp;#092;MESSEN~1&amp;#092;YAHOOM~1.EXE&amp;quot; -quiet&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [ctfmon.exe] C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;ctfmon.exe&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [ABIT uGuruIII] C:&amp;#092;Program Files&amp;#092;U-ABIT&amp;#092;abitEQ&amp;#092;ABITEQ.exe&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [kava] C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;kavo.exe&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [ares destiny] &amp;quot;C:&amp;#092;Program Files&amp;#092;Ares Destiny&amp;#092;Ares.exe&amp;quot; -h&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [ares] &amp;quot;C:&amp;#092;Program Files&amp;#092;Ares&amp;#092;Ares.exe&amp;quot; -h&lt;br /&gt;O4 - HKCU&amp;#092;..&amp;#092;Run: [MsnMsgr] &amp;quot;C:&amp;#092;Program Files&amp;#092;Windows Live&amp;#092;Messenger&amp;#092;MsnMsgr.Exe&amp;quot; /background&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-19&amp;#092;..&amp;#092;Run: [TaskSwitchXP] C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe (User &amp;#39;LOCAL SERVICE&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-19&amp;#092;..&amp;#092;Run: [Free Download Manager] C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;fdm.exe -autorun (User &amp;#39;LOCAL SERVICE&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-19&amp;#092;..&amp;#092;RunOnce: [nlsf] cmd.exe /C move /Y &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetub.dll&amp;quot; &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetup.dll&amp;quot; (User &amp;#39;LOCAL SERVICE&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-20&amp;#092;..&amp;#092;Run: [TaskSwitchXP] C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe (User &amp;#39;NETWORK SERVICE&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-20&amp;#092;..&amp;#092;RunOnce: [nlsf] cmd.exe /C move /Y &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetub.dll&amp;quot; &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetup.dll&amp;quot; (User &amp;#39;NETWORK SERVICE&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-18&amp;#092;..&amp;#092;Run: [TaskSwitchXP] C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe (User &amp;#39;SYSTEM&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;S-1-5-18&amp;#092;..&amp;#092;RunOnce: [nlsf] cmd.exe /C move /Y &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetub.dll&amp;quot; &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetup.dll&amp;quot; (User &amp;#39;SYSTEM&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;.DEFAULT&amp;#092;..&amp;#092;Run: [TaskSwitchXP] C:&amp;#092;Program Files&amp;#092;TaskSwitchXP&amp;#092;TaskSwitchXP.exe (User &amp;#39;Default user&amp;#39;)&lt;br /&gt;O4 - HKUS&amp;#092;.DEFAULT&amp;#092;..&amp;#092;RunOnce: [nlsf] cmd.exe /C move /Y &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetub.dll&amp;quot; &amp;quot;%SystemRoot%&amp;#092;System32&amp;#092;syssetup.dll&amp;quot; (User &amp;#39;Default user&amp;#39;)&lt;br /&gt;O4 - Startup: WordWeb.lnk = C:&amp;#092;Program Files&amp;#092;WordWeb&amp;#092;wweb32.exe&lt;br /&gt;O8 - Extra context menu item: Download all with Free Download Manager - file://C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;dlall.htm&lt;br /&gt;O8 - Extra context menu item: Download selected with Free Download Manager - file://C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;dlselected.htm&lt;br /&gt;O8 - Extra context menu item: Download with Free Download Manager - file://C:&amp;#092;Program Files&amp;#092;Free Download Manager&amp;#092;dllink.htm&lt;br /&gt;O8 - Extra context menu item: E&amp;amp;xport to Microsoft Excel - res://C:&amp;#092;PROGRA~1&amp;#092;MICROS~1&amp;#092;OFFICE11&amp;#092;EXCEL.EXE/3000&lt;br /&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:&amp;#092;Program Files&amp;#092;Java&amp;#092;jre1.5.0_05&amp;#092;bin&amp;#092;npjpi150_05.dll&lt;br /&gt;O9 - Extra &amp;#39;Tools&amp;#39; menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:&amp;#092;Program Files&amp;#092;Java&amp;#092;jre1.5.0_05&amp;#092;bin&amp;#092;npjpi150_05.dll&lt;br /&gt;O9 - Extra button: Yahoo&amp;#33; Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:&amp;#092;Program Files&amp;#092;Yahoo&amp;#33;&amp;#092;Common&amp;#092;yiesrvc.dll&lt;br /&gt;O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&amp;#092;PROGRA~1&amp;#092;MICROS~1&amp;#092;OFFICE11&amp;#092;REFIEBAR.DLL&lt;br /&gt;O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&amp;#092;WINDOWS&amp;#092;Network Diagnostic&amp;#092;xpnetdiag.exe&lt;br /&gt;O9 - Extra &amp;#39;Tools&amp;#39; menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&amp;#092;WINDOWS&amp;#092;Network Diagnostic&amp;#092;xpnetdiag.exe&lt;br /&gt;O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:&amp;#092;Program Files&amp;#092;Yahoo&amp;#33;&amp;#092;Common&amp;#092;Yinsthelper.dll&lt;br /&gt;O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - &lt;a href='http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1211496836250' target='_blank'&gt;http://www.update.microsoft.com/microsoftu...b?1211496836250&lt;/a&gt;&lt;br /&gt;O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - &lt;a href='http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1211496668421' target='_blank'&gt;http://www.update.microsoft.com/microsoftu...b?1211496668421&lt;/a&gt;&lt;br /&gt;O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:&amp;#092;Program Files&amp;#092;Lavasoft&amp;#092;Ad-Aware 2007&amp;#092;aawservice.exe&lt;br /&gt;O23 - Service: avast&amp;#33; iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;aswUpdSv.exe&lt;br /&gt;O23 - Service: avast&amp;#33; Antivirus - ALWIL Software - C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashServ.exe&lt;br /&gt;O23 - Service: avast&amp;#33; Mail Scanner - ALWIL Software - C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashMaiSv.exe&lt;br /&gt;O23 - Service: avast&amp;#33; Web Scanner - ALWIL Software - C:&amp;#092;Program Files&amp;#092;Alwil Software&amp;#092;Avast4&amp;#092;ashWebSv.exe&lt;br /&gt;O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:&amp;#092;Program Files&amp;#092;Common Files&amp;#092;Portrait Displays&amp;#092;Shared&amp;#092;DTSRVC.exe&lt;br /&gt;O23 - Service: NetCom3 Service (Netcom3) - Unknown owner - C:&amp;#092;Program Files&amp;#092;Netcom3 Cleaner&amp;#092;PSCMonitor.exe (file missing)&lt;br /&gt;O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:&amp;#092;WINDOWS&amp;#092;system32&amp;#092;nvsvc32.exe&lt;br /&gt;&lt;br /&gt;--&lt;br /&gt;End of file - 8894 bytes&lt;br /&gt;</description>
            <author>Mr.Jr</author>
            <category>Technical Support</category>
            <pubDate>Thu, 19 Jun 2008 08:10:39 +0800</pubDate>
        </item>
    </channel>
</rss>
