Can I get some help on this one? I know I have the mxtarget.dll but cant see it in the reg. I am running a web server so I do know most of the keys. TIA
Logfile of HijackThis v1.99.0
Scan saved at 7:41:06 PM, on 12/28/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\System32\termsrv.exe
C:\WINNT\system32\ibmpmsvc.exe
C:\WINNT\system32\Ati2evxx.exe
C:\pbapps\aventail\connect\as32svc.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\msdtc.exe
C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\DefWatch.exe
C:\WINNT\system32\hidserv.exe
C:\WINNT\System32\llssrv.exe
C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\Rtvscan.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\snmp.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\Dfssvc.exe
C:\WINNT\System32\inetsrv\inetinfo.exe
C:\Program Files\Common Files\System\MSSearch\Bin\mssearch.exe
C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINNT\AGRSMMSG.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINNT\SM1BG.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
C:\Program Files\IBM\Bluetooth Software\BTTray.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\palmOne\HOTSYNC.EXE
C:\WINNT\system32\wuauclt.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Trillian\trillian.exe
C:\WINNT\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\WinZip\winzip32.exe
C:\DOCUME~1\cmurray\LOCALS~1\Temp2\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINNT\about.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = www-miami:8080
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Setup.Setup1 - {2E65A557-173C-4DE9-860B-28FC5CACA542} - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Setup\Setup.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINNT\SM1BG.EXE
O4 - HKLM\..\Run: [Win32 Usb Driver] usb32.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [DataLayer] C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
O4 - HKLM\..\RunServices: [Win32 Usb Driver] usb32.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Startup: Trillian.lnk = C:\Program Files\Trillian\trillian.exe
O4 - Global Startup: BTTray.lnk = C:\Program Files\IBM\Bluetooth Software\BTTray.exe
O4 - Global Startup: Cisco Systems VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\ipsecdialer.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\IBM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\IBM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\pbapps\aventail\connect\asdns.dll
O12 - Plugin for .rx: C:\Program Files\Internet Explorer\Plugins\npwrqxrx.dll
O12 - Plugin for .rxc: C:\Program Files\Internet Explorer\Plugins\npwrqxrx.dll
O16 - DPF: ppctlcab -
http://ppupdates.ca.com/downloads/scanner/ppctlcab.cab
O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) -
http://ppupdates.ca.com/downloads/scanner/axscanner.cab
O16 - DPF: {7261EE42-318E-490A-AE8F-77649DBA1ECA} (JNILoader Control) -
http://emeeting.prudential.com...client/STJNILoader.cab
O16 - DPF: {AB29A544-D6B4-4E36-A1F8-D3E34FC7B00A} -
http://install.wildtangent.com...ners/aolim/install.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) -
https://ilumin.webex.com/clien...test/webex/ieatgpc.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = corp.ilumin.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{5F5EECD4-8F61-419D-9177-35AF9A657A79}: NameServer = 10.250.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{73E357F3-F6BD-4315-955F-B93C6676C5B0}: Domain = ocncty01.md.comcast.net
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = corp.ilumin.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = corp.ilumin.com
O23 - Service: Assentor Address Processor - Unknown - C:\Program Files\assentor\run\release\bin\addressprocessor.exe
O23 - Service: Assentor Archiver - iLumin - C:\Program Files\assentor\run\release\bin\Archiver.exe
O23 - Service: Aventail Connect - Aventail Corporation - C:\pbapps\aventail\connect\as32svc.exe
O23 - Service: Assentor BulkApprove - Unknown - C:\Program Files\assentor\run\release\bin\BulkApprove.exe
O23 - Service: Assentor Controller - SRA International - C:\Program Files\assentor\run\release\bin\assentorcontroller.exe
O23 - Service: Assentor DataRoutSend - Unknown - C:\Program Files\assentor\run\release\bin\dataroutsend.exe
O23 - Service: AssentorMIME - Ilumin Corp. - C:\Program Files\assentor\run\release\bin\AssentorMIME.exe
O23 - Service: Assentor QStarMgr - iLumin - C:\Program Files\Assentor\run\release\bin\AssentorQStarMgr.exe
O23 - Service: Ati HotKey Poller - Unknown - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: Assentor Bloomberg2 Processor - Unknown - C:\Program Files\assentor\run\release\bin\bb2processor.exe
O23 - Service: Assentor Bloomberg Processor - Unknown - C:\Program Files\assentor\run\release\bin\bbprocessor.exe
O23 - Service: Bluetooth Service - WIDCOMM, Inc. - C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Assentor Collator - Unknown - C:\Program Files\assentor\run\release\bin\collator.exe
O23 - Service: Cisco Systems, Inc. VPN Service - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: Assentor Database Loader - Unknown - C:\Program Files\assentor\run\release\bin\dbloader.exe
O23 - Service: DefWatch - Symantec Corporation - C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\DefWatch.exe
O23 - Service: DiscoFile - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoFile.exe
O23 - Service: DiscoPDF - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoPDF.exe
O23 - Service: DiscoPrint - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoPrint.exe
O23 - Service: DiscoPST - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoPST.exe
O23 - Service: DiscoSave - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoSave.exe
O23 - Service: DiscoSearch - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoSearch.exe
O23 - Service: Discovery Indexer - Unknown - C:\Program Files\Discovery\run\release\bin\DiscoveryIndexer.exe
O23 - Service: Logical Disk Manager Administrative Service - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Assentor DocumentRegistrationServer - Unknown - C:\Program Files\assentor\run\release\bin\DocumentRegistrationServer.exe
O23 - Service: DTPPSvc - Unknown - C:\Program Files\assentor\run\release\bin\DTPPSvc.exe
O23 - Service: Assentor Envelope Journaling - Unknown - C:\Program Files\assentor\run\release\bin\EnvelopeJournaling.exe
O23 - Service: IBM PM Service - Unknown - C:\WINNT\system32\ibmpmsvc.exe
O23 - Service: IluminSDS - Ilumin Corp. - C:\Program Files\assentor\run\release\bin\iluminSDS.exe
O23 - Service: Assentor IM Link - Unknown - C:\Program Files\assentor\run\release\bin\IMProcessor.exe
O23 - Service: Assentor IM Link 2 - Unknown - C:\Program Files\assentor\run\release\bin\IMProcessor.exe
O23 - Service: Assentor IM Link 3 - Unknown - C:\Program Files\assentor\run\release\bin\IMProcessor.exe
O23 - Service: Assentor IM Link 4 - Unknown - C:\Program Files\assentor\run\release\bin\IMProcessor.exe
O23 - Service: Assentor InternetBloomberg Processor - Unknown - C:\Program Files\assentor\run\release\bin\IBprocessor.exe
O23 - Service: Macromedia Licensing Service - Unknown - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: MAILsweeper - Unknown - C:\MSW\Program\MSW.EXE
O23 - Service: Assentor Mail Engine 1 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 2 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 3 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 4 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 5 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 6 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 7 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 8 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 9 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 10 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 11 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 12 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 13 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 14 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 15 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 16 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 17 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 18 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 19 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Mail Engine 20 - Unknown - C:\Program Files\assentor\run\release\bin\mengine.exe
O23 - Service: Assentor Migrator - iLumin - C:\Program Files\Assentor\run\release\bin\Migrator.exe
O23 - Service: MSWRewrite - Ilumin Corp. - C:\Program Files\assentor\run\release\bin\MSWRewrite.exe
O23 - Service: Symantec AntiVirus Client - Symantec Corporation - C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Assentor PurgeServer - Unknown - C:\Program Files\assentor\run\release\bin\PurgeServer.exe
O23 - Service: Assentor Quarantine Manager - Unknown - C:\Program Files\assentor\run\release\bin\quarantinemanager.exe
O23 - Service: SoundMAX Agent Service - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Check Point SecuRemote Service - Check Point Software Technologies - C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe
O23 - Service: Check Point SecuRemote WatchDog - Check Point Software Technologies - C:\Program Files\CheckPoint\SecuRemote\bin\SR_WatchDog.exe