Logfile of HijackThis v1.99.1
Scan saved at 18:59:54, on 22/02/05
Platform: Windows 98 SE (Win9x 4.10.2222B)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\\WINDOWS\\SYSTEM\\KERNEL32.DLL
C:\\WINDOWS\\SYSTEM\\MSGSRV32.EXE
C:\\WINDOWS\\SYSTEM\\MPREXE.EXE
C:\\WINDOWS\\SYSTEM\\mmtask.tsk
C:\\WINDOWS\\SYSTEM\\MDM.EXE
C:\\WINDOWS\\EXPLORER.EXE
C:\\WINDOWS\\TASKMON.EXE
C:\\WINDOWS\\SYSTEM\\SYSTRAY.EXE
C:\\MOUSE\\SYSTEM\\EM_EXEC.EXE
C:\\PROGRAM FILES\\NETROPA\\MULTIMEDIA KEYBOARD\\MMKEYBD.EXE
C:\\PROGRAM FILES\\NETROPA\\ONSCREEN DISPLAY\\OSD.EXE
C:\\PROGRAM FILES\\REAL\\REALPLAYER\\REALPLAY.EXE
C:\\INTEL\\PSNCU INTEL\\CPUNUMBER.EXE
C:\\PROGRAM FILES\\NETROPA\\MULTIMEDIA KEYBOARD\\MMUSBKB2.EXE
C:\\WINDOWS\\SYSTEM\\WMIEXE.EXE
C:\\PROGRAM FILES\\NETROPA\\MULTIMEDIA KEYBOARD\\TRAYMON.EXE
C:\\WINDOWS\\SYSTEM\\RNAAPP.EXE
C:\\WINDOWS\\SYSTEM\\TAPISRV.EXE
C:\\PROGRAM FILES\\INTERNET EXPLORER\\IEXPLORE.EXE
C:\\WINDOWS\\SYSTEM\\PSTORES.EXE
C:\\WINDOWS\\BUREAU\\DEPANNAGE\\HIJACKTHIS\\HIJACKTHIS.EXE
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.planetis.net
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = Liens
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\\WINDOWS\\SYSTEM\\MSDXM.OCX
O4 - HKLM\\..\\Run: [ScanRegistry] c:\\windows\\scanregw.exe /autorun
O4 - HKLM\\..\\Run: [TaskMonitor] c:\\windows\\taskmon.exe
O4 - HKLM\\..\\Run: [SystemTray] SysTray.Exe
O4 - HKLM\\..\\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\\..\\Run: [EM_EXEC] c:\\mouse\\system\\em_exec.exe
O4 - HKLM\\..\\Run: [Multimedia Keyboard] C:\\Program Files\\Netropa\\Multimedia Keyboard\\MMKeybd.exe /launchpad
O4 - HKLM\\..\\Run: [Onscreen Display] C:\\Program Files\\Netropa\\Onscreen Display\\OSD.exe
O4 - HKLM\\..\\Run: [ Cedemo] c:\\cedemo\\hooks.exe 2
O4 - HKLM\\..\\Run: [ ProtCedemo] c:\\cedemo\\deactivate.exe
O4 - HKLM\\..\\Run: [RealTray] C:\\Program Files\\Real\\RealPlayer\\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\\..\\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\\..\\RunServices: [Planetispage] C:\\WINDOWS\\SYSTEM\\Syshome.exe
O4 - HKLM\\..\\RunServices: [Machine Debug Manager] C:\\WINDOWS\\SYSTEM\\MDM.EXE
O4 - HKCU\\..\\Run: [MoneyAgent] \"C:\\Program Files\\Microsoft Money\\System\\Money Express.exe\"
O4 - HKCU\\..\\Run: [IntelProcNumUtility] \"C:\\Intel\\PSNCU Intel\\CPUNumber.exe\" /nosplash
O4 - HKCU\\..\\RunServices: [MoneyAgent] \"C:\\Program Files\\Microsoft Money\\System\\Money Express.exe\"
O4 - HKCU\\..\\RunServices: [IntelProcNumUtility] \"C:\\Intel\\PSNCU Intel\\CPUNumber.exe\" /nosplash
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\\WINDOWS\\web\\related.htm
O9 - Extra \'Tools\' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\\WINDOWS\\web\\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\\WINDOWS\\SYSTEM\\Shdocvw.dll
O12 - Plugin for .mts: C:\\Program Files\\MetaCreations\\MetaStream\\npmetastream.dll