1441  Other / Off-topic / Are you a worm/trojan/virus expert? on: January 18, 2012, 01:27:11 PM
Does this "Hijack this" log file tell you what has gone so horribly wrong inside my pc?

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:21:07 PM, on 1/18/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
c:\program files\idt\wdm\stacsv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\AVG\AVG2012\avgtray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\AVG\AVG2012\avgwdsvc.exe
C:\Program Files\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\AVG\AVG2012\avgnsx.exe
C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file:///C:/Program%20Files/LastPass/iehome.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: LastPass Browser Helper Object - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files\LastPass\LPBar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files\LastPass\LPBar.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [AESTFltr] "C:\WINDOWS\system32\AESTFltr.exe" /NoDlg
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [IDTSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [SystemPerfSync] C:\WINDOWS\diskperfm.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [ShowBatteryBar] "C:\Program Files\BatteryBar\ShowBatteryBar.exe" show
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: BatteryBar.lnk = ?
O4 - Startup: ScreenHunter 5.1 Free.lnk = C:\Program Files\Wisdom-soft ScreenHunter 5 Free\ScreenHunter.exe
O4 - Global Startup: AutoDect.lnk = C:\WINDOWS\system32\SupportAppXL\AutoDect.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Palo Alto Software Update Manager 9.0.lnk = C:\Program Files\Common Files\Palo Alto Software\9.0\PAS9_Update.exe
O4 - Global Startup: {77E7382E-8F9D-4af1-9FA0-CB0EADC9CD46}.lnk = C:\WINDOWS\system32\rundll32.exe
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: LastPass - file://C:\Program Files\LastPass\context.html?cmd=lastpass
O8 - Extra context menu item: LastPass Fill Forms - file://C:\Program Files\LastPass\context.html?cmd=fillforms
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files\LastPass\LPBar.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {38AB0814-B09B-4378-9940-14A19638C3C2} (Auctiva Image Uploader Control) -
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Device Error Recovery Service (dgdersvc) - Devguru Co., Ltd. - C:\WINDOWS\system32\dgdersvc.exe
O23 - Service: FsUsbExService - Teruten - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Qualcomm Gobi Download Service (QDLService) - QUALCOMM, Inc. - C:\QUALCOMM\QDLService\QDLService.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\wdm\stacsv.exe

End of file - 10622 bytes
1442  Economy / Auctions / Re: 12 hour auction ***round white quartz 3.48 carats*** Indian mine on: January 18, 2012, 11:01:50 AM
Last chance at 2BTC.
1443  Economy / Auctions / Re: ***1.47 ct oval Ethiopian Welo opal*** beautiful play-of-color on: January 18, 2012, 10:59:00 AM
Any bids at 9BTC?
1444  Economy / Auctions / Re: 24 hours ***14.62 cts Malachite from Zaire*** incredible greens! on: January 17, 2012, 05:12:10 PM
Hello Mila!

There is a very easy way to educate yourself about the differences between Tip Top Gem and other gemstone merchants on eBay.  Simply buy their "cheap" malachite, and buy mine.  Of course they also offer a money back guarantee with no restocking fee, so there is no risk to you.  Return the one that you don't like.

There are thousands of Thai sellers and Chinese sellers on eBay who have low prices.  But for discerning collectors, many other factors determine how they will spend their dollars- or bitcoin!  Many want to buy from a company that is run by a gemologist- someone who is actually educated about gemstones and can educate them when they have questions.  They also feel that it is worth a small premium to ensure that they are getting the stone that is being advertised- and that has been a problem on eBay for many years, and continues to be a major issue to this day.  Many collectors have been through the wringer with eBay sellers who charge a restocking fee, or hassle them when they want to return a stone.  They also know that the majority of Thai and Chinese sellers on eBay are not as particular as my wife Melanie and myself.  They know that as collectors, we understand quality and we will sell gemstones that they are proud to own- because we are selling gemstones that we would be proud to own!

If you are shopping primarily for price, there are many places to buy gemstones online.  But most of my clients are not looking for cheap stones.  They want quality gemstones that are free of chips and scratches, that are properly identified, and that have premium color.  They are looking for a gemologist who is educated about the latest treatments and discloses them in an ethical fashion.  And they are looking for a person with integrity.  I would submit that you are far better off dealing with Tip Top Gem than you are buying from eBay. 
1445  Economy / Auctions / Re: 12 hour auction ***round white quartz 3.48 carats*** Indian mine on: January 16, 2012, 07:39:45 PM
At 2BTC including registered air mail with a tracking number this is just too good an opportunity to pass up, isn't it?  And it's a natural stone!
1446  Economy / Auctions / Re: 12 hour auction ***rare Mali garnet cushion 1.23 carats*** no treatment on: January 16, 2012, 07:21:00 PM
Sold to Turbor for 6.25BTC.  Congratulations!  This is a great buy on a rare stone.  If you don't believe me that it is rare, just go to any of the jewelers in your area and ask to see their Mali garnet jewelry! 
1447  Economy / Auctions / Re: 48 hour auction FREE SHIPPING ***large*** 15.77 ct cabochon on: January 16, 2012, 07:14:13 PM
Satisfaction guaranteed 100% or your money back.  You always have 31 days to return a stone that you buy from Tip Top Gem!
1448  Economy / Auctions / Re: ***1.47 ct oval Ethiopian Welo opal*** beautiful play-of-color on: January 16, 2012, 07:02:42 PM
She would be more than welcome to bid here.  Shocked

1449  Economy / Auctions / Re: ***6.27 cts prasiolite*** square shape step-cut on: January 16, 2012, 07:00:21 PM
Thank you Binox!  What a good helper!  Binox is in the lead at 1BTC.

I am pulling the trigger early on this auction so if you want it, bid now!

You've been warned.
1450  Economy / Auctions / Re: 24 hour auction ***synthetic star ruby 3.12 carats*** laboratory ruby on: January 16, 2012, 06:57:02 PM
Who will start the bidding at 3BTC?
1451  Economy / Auctions / Re: 24 hour auction ***1.03 cts Ethiopian Welo opal*** superb quality on: January 16, 2012, 06:56:25 PM
14.75BTC includes shipping
1452  Economy / Auctions / Re: 24 hours ***rare 1.23ct chrysoberyl trillian*** alexandrite w/o color change on: January 16, 2012, 06:55:29 PM
16.75BTC includes shipping.
1453  Economy / Auctions / Re: 24 hour auction ***LILAC amethyst 7.52*** color aplenty on: January 16, 2012, 06:54:51 PM
5.5BTC includes shipping
1454  Economy / Auctions / Re: ***6.27 cts prasiolite*** square shape step-cut on: January 16, 2012, 06:54:00 PM
Who wants to start us out with 1BTC?  Do I hear 1BTC?
1455  Economy / Auctions / Re: 12 hour auction ***rare Mali garnet cushion 1.23 carats*** no treatment on: January 16, 2012, 06:52:42 PM
6.25BTC includes shipping
1456  Economy / Auctions / Re: 24 hour auction ***star diopside 5.17cts*** 4-ray star from India on: January 16, 2012, 06:52:02 PM
3BTC includes shipping.
1457  Economy / Auctions / Re: 24 hours ***14.62 cts Malachite from Zaire*** incredible greens! on: January 16, 2012, 06:51:15 PM
2.75BTC including shipping
1458  Economy / Auctions / Re: 7 days ***Extremely rare and valuable*** fine ruby on: January 16, 2012, 06:50:35 PM
Ask me a question about this one.  I am happy to answer!
1459  Economy / Auctions / Re: 24 hour auction ***rose quartz bufftop cabochon*** one to relish on: January 16, 2012, 06:49:38 PM
Unsold!  I will take 3.75BTC and that includes shipping
1460  Economy / Auctions / Re: 24 hours ***extremely rare oligoclase 1.68cts*** collectible dream Tanazania on: January 16, 2012, 06:48:04 PM
16.75BTC including shipping
