Author Topic: New computer  (Read 1313 times)

Offline greazee

  • Hero Member
  • *****
  • Posts: 3229
  • Karma: +0/-0
    • View Profile
    • http://
New computer
« on: August 09, 2008, 01:59:11 PM »
I just bought a new laptop and its filled with a bunch of useless programs but I am not sure which programs I should keep and which I should get rid of.



Here is a hijackthis log:





Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:18:04 PM, on 8/9/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
C:\Program Files\Toshiba\SmoothView\SmoothView.exe
C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ItSecMng.exe
C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe
C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Toshiba Registration\Registration.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.toshibadirect.com/dpdstart
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [jswtrayutil] "C:\Program Files\Jumpstart\jswtrayutil.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [cfFncEnabler.exe] cfFncEnabler.exe
O4 - HKLM\..\Run: [PCMAgent] "C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
O4 - HKCU\..\Run: [1145860967] C:\Program Files\Toshiba Registration\Registration.exe /r "C:\Program Files\Toshiba Registration\Registration.rpd"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: fbdpinger - Unknown owner - C:\Windows\fdbpinger.exe
O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Jumpstart Wifi Protected Setup (jswpsapi) - Atheros Communications, Inc. - C:\Program Files\Jumpstart\jswpsapi.exe
O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe
O23 - Service: pinger - Unknown owner - C:\Toshiba\IVP\ISM\pinger.exe
O23 - Service: SmartFaceVWatchSrv - Toshiba - C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatchSrv.exe
O23 - Service: Swupdtmr - Unknown owner - c:\Toshiba\IVP\swupdate\swupdtmr.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 8035 bytes
Elite Anti-Scammer

Free MMing

IM: [email protected]


Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
New computer
« Reply #1 on: August 09, 2008, 06:03:34 PM »
Nothing malicious in the log
You can check out Decrapifier at your own risk
Although I've heard others have used and approved it

http://pcdecrapifier.com/

I would add an Anti-Virus software to your computer
There are free ones out there

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline greazee

  • Hero Member
  • *****
  • Posts: 3229
  • Karma: +0/-0
    • View Profile
    • http://
New computer
« Reply #2 on: August 09, 2008, 06:33:38 PM »
thanks so much that's exactly the kind of thing I was looking for
Elite Anti-Scammer

Free MMing

IM: [email protected]


Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
New computer
« Reply #3 on: August 09, 2008, 06:43:51 PM »
Actually, 2 entries in your log
Can you navigate or search for the files and right click on them and see what they're related too

cfFncEnabler.exe <--this one, I can't find no info about
C:\Windows\fdbpinger.exe <-this one, I believe is Toshiba related, can you verify

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline greazee

  • Hero Member
  • *****
  • Posts: 3229
  • Karma: +0/-0
    • View Profile
    • http://
New computer
« Reply #4 on: August 09, 2008, 07:15:12 PM »
fdbpinger is from Toshiba but I have no clue what it does

and as for the other one I searched for it but after 5 minutes it hadn't found anything so I stopped it. I am guessing it slowed down because I am copying 30gb of stuff to my computer at the moment so I will try again once the transfer is finished.
Elite Anti-Scammer

Free MMing

IM: [email protected]


Offline Shibbiness

  • Hero Member
  • *****
  • Posts: 662
  • Karma: +0/-0
    • View Profile
    • http://
New computer
« Reply #5 on: August 14, 2008, 02:50:58 PM »
What laptop, the toshiba satellite im assuming? If so what model?


TROOP FOR CASH! Get Free Cash For doing almost Nothing! Click here for my guide!





[color=\"#00ffff\"]Transacti[/color][color=\"#00ffff\"]ons

[/color]

[color=\"#000080\"]Bought Ranger from GOD OF WAR,  Everlasting Death mmed[/color] - [color=\"#00ff00\"]SUCCESSFUL! [/color]

[color=\"#00ff00\"][color=\"#000080\"]Bought Staker from Gikes, he went first - [/color][/color][color=\"#00ff00\"]SUCCESSFUL! ... so far[/color]

[color=\"#00ff00\"][color=\"#000080\"]Sold Pker to Cooney - [color=\"#00ff00\"]SUCCESSFUL!... [color=\"#9932cc\"]until he started being a fag and accused me and Kirk..[/color][/color][/color][/color]

[color=\"#00ff00\"][color=\"#000080\"]F2p Pker was Trained by  X Trainer X 100k for 35-45 str... [color=\"#00ff00\"]- SUCCESSFULL! [/color][/color][/color]

[color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"]Sold lvl 75 to blizcrew14, Everlasting Death mmed - [color=\"#00ff00\"]SUCCESSFULL[/color][/color][/color][/color][/color]

[color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"]Mesmerized10 Gave me guide for f[/color][/color][/color][/color][/color][/color][color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"]ree - [color=\"#00ff00\"]SUCCESSFULL[/color][/color][/color][/color][/color][/color][/color]

[color=\"#00ff00\"][color=\"#000080\"][color=\"#00ff00\"][color=\"#000080\"]Bought PbP Pin from B Lakes, Tyler mmed - [color=\"#00ff00\"]SUCCESSFULL[/color][/color][/color][/color][/color]

[color=\"#000080\"]Bought Guide off of Fluid[/color] - [color=\"#00ff00\"]SUCCESFULL[/color]

[color=\"#000080\"]Lent Fluid 2.5m, supposed to return me 8m[/color] - [color=\"#9932cc\"]scammed... what a hoe[/color]

[color=\"#000080\"]Bought Pin from DestroyGeek, Yded mmed[/color] - [color=\"#00ff00\"]SUCCESSFULL[/color]

[color=\"#00bfff\"][color=\"#000080\"]Bought Name off of Forsaken, i went first[/color] - [color=\"#00ff00\"]SUCCESSFULL[/color]

[color=\"#000080\"]Gave Pyrokitty free lvl 49 - [color=\"#00ff00\"]SUCCESSFULL[/color][/color]

[/color][color=\"#00bfff\"]RL ITEMS[/color]

[color=\"#00bfff\"][color=\"#000080\"]Bought an ipod off of Solaris, 11m, Jb Lee mmed - [/color][/color][color=\"#00bfff\"] [color=\"#00ff00\"]SUCCESSFULL[/color][/color]

[color=\"#000080\"]Bought Call of Duty 4 and 1 for a lvl 97, Pyrokitty went first[/color] - [color=\"#00ff00\"]SUCCESSFUL <-- great guy

[/color][color=\"#00bfff\"]

MM's/ Xfers!
[/color]

[color=\"#000080\"]Xfered Around 750k for AE m[/color] - [color=\"#00ff00\"]SUCCESSFULL[/color]

 [color=\"#00bfff\"]Reccomendations[/color]

[color=\"#00ff00\"][color=\"#000080\"]Everlasting Death - Great mmer! [/color][/color]

[color=\"#00ff00\"][color=\"#000080\"]Kirk Hammett - Great mmer! [/color][/color]

[color=\"#00ff00\"][color=\"#000080\"]X Trainer X - Great Trainer[/color][/color]

[color=\"#000080\"]AE m - Great MMer[/color]

[color=\"#000080\"]Yded - Great MMer



[/color]





 

EMAIL: Rs.Shibby@hotmail.com



 

Offline greazee

  • Hero Member
  • *****
  • Posts: 3229
  • Karma: +0/-0
    • View Profile
    • http://
New computer
« Reply #6 on: August 14, 2008, 05:17:40 PM »
umm this one: http://www.circuitcity.com/ssm/Toshiba-Sat...roductDetail.do

and thank god its not actually the ugly ass green color http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/tongue.gif\' class=\'bbc_emoticon\' alt=\':P\' />
Elite Anti-Scammer

Free MMing

IM: [email protected]


Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
New computer
« Reply #7 on: August 14, 2008, 07:25:05 PM »
I'll lock this topic as you have your issues resolved

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here