Logfile of Kaka v2. 0. 2. 6 Scan Module v1. 0. 3. 7
Scan saved at 11:09:54, on 2006-12-26
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,default_page_url=www.jsing.net
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=www.jsing.net
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=www.jsing.net
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page=www.jsing.net
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=www.jsing.net
R3 - URLSearchHook: (no name) - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - (no file)
R3 - URLSearchHook: SgUrlSearHook Class - {BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D} - C:\WINDOWS\system32\socul.dll
O1 - Hosts: 127.0.0.1 localhost
O4 - HKCU\..\Run: [bgswitch] C:\WINDOWS\system32\bgswitch.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\Ctfmon.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [IMSCMig] C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
O4 - HKLM\..\Run: [Realtime Monitor] C:\PROGRA~1\CA-JIN~1\KILL\realmon.exe
O4 - HKLM\..\Run: [yassistse] "C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\system32\msconfig.exe /auto
O4 - HKLM\..\Run: [YLive.exe] C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
O4 - HKLM\..\RunOnce: [ YaAutoRepair] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yrepair.dll,Rundll32
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YZSNET~1.DLL] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YZSNET~1.DLL
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasnoad.dll] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasnoad.dll
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yaswiper.dll] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yaswiper.dll
O4 - HKLM\..\RunOnce: [CnsAssecblk] regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\assist\YASSEC~1.DLL
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
O4 - HKLM\..\RunOnce: [Register_C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasiesec.dll] C:\WINDOWS\system32\regsvr32.exe /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasiesec.dll
O4 - Startup: desktop.ini =
O4 - Global Startup: desktop.ini =