Logfile of HijackThis v1.99.1 
Scan saved at 18:05:45, on 2006-03-31 
Platform: Windows XP SP1 (WinNT 5.01.2600) 
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) 
  
Running processes: 
C:\WINDOWS\System32\smss.exe 
C:\WINDOWS\system32\winlogon.exe 
C:\WINDOWS\system32\services.exe 
C:\WINDOWS\system32\lsass.exe 
C:\WINDOWS\System32\Ati2evxx.exe 
C:\WINDOWS\system32\svchost.exe 
C:\WINDOWS\System32\svchost.exe 
C:\WINDOWS\system32\Ati2evxx.exe 
C:\WINDOWS\Explorer.EXE 
C:\WINDOWS\system32\spoolsv.exe 
C:\Documents and Settings\m4th\Application Data\F?nts\j?vaw.exe 
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe 
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe 
C:\DOCUME~1\m4th\MESDOC~1\DOBE~1\nslookup.exe 
C:\WINDOWS\System32\wuauclt.exe 
C:\WINDOWS\system32\NOTEPAD.EXE 
C:\Program Files\HijackThis\HijackThis.exe 
  
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = prosearching.com 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.2020search.com/search/9884/search.html 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = prosearching.com 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = prosearching.com 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.2020search.com/search/9884/search.html 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = prosearching.com 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = prosearching.com 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com 
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.2020search.com/search/9884/search.html 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.2020search.com/search/9884/search.html 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = prosearching.com 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = prosearching.com 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = prosearching.com 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page_bak = prosearching.com 
O2 - BHO: (no name) - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp37BF.tmp (file missing) 
O4 - HKLM\..\Run: [soundMax] "C:\Program Files\Analog Devices\SoundMAX\smax4.exe" /tray 
O4 - HKLM\..\Run: [spywareQuake] C:\Program Files\SpywareQuake\SpywareQuake.exe /h 
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h 
O4 - HKCU\..\Run: [Tsra] "C:\DOCUME~1\m4th\MESDOC~1\DOBE~1\nslookup.exe" -vt ndrv 
O4 - HKCU\..\Run: [Rjidp] C:\Documents and Settings\m4th\Application Data\F?nts\j?vaw.exe 
O15 - Trusted Zone: *.flingstone.com 
O15 - Trusted Zone: *.i-lookup.com 
O15 - Trusted Zone: *.offshoreclicks.com 
O15 - Trusted Zone: *.teensguru.com 
O15 - Trusted Zone: *.xxxtoolbar.com 
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} (MediaTicketsInstaller Control) - http://www.mt-download.com/MediaTicketsIns....cab?refid=5071 
O20 - Winlogon Notify: windrl32 - windrl32.dll (file missing) 
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe 
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe 
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe 
O23 - Service: Serv-U FTP Server (Serv-U) - Unknown owner - C:\PROGRA~1\Serv-U\ServUDaemon.exe (file missing) 
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe 
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe 
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe 
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe