Author Topic: Test  (Read 72 times)

Offline Josetann

  • admin
  • Administrator
  • Hero Member
  • *****
  • Posts: 10136
  • Karma: +0/-0
    • View Profile
Test
« on: December 11, 2006, 10:30:51 PM »
Test

Offline Josetann

  • admin
  • Administrator
  • Hero Member
  • *****
  • Posts: 10136
  • Karma: +0/-0
    • View Profile
Test
« Reply #1 on: December 11, 2006, 11:03:48 PM »
Test 2

Offline Josetann

  • admin
  • Administrator
  • Hero Member
  • *****
  • Posts: 10136
  • Karma: +0/-0
    • View Profile
Test
« Reply #2 on: January 18, 2007, 12:41:18 AM »
"ep0xy" - 07-01-17 22:48:45    Service Pack 2
ComboFix 07-01-16.2 - Running from: "C:\Program Files\Mozilla Firefox"

((((((((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\system32\REGSVR32.dll
C:\Program Files\Common Files\{3445D~1
C:\Program Files\Common Files\{F445D~1
C:\Program Files\outlook


(((((((((((((((((((((((((((((((   Files Created from 2006-12-17 to 2007-01-17  ))))))))))))))))))))))))))))))))))
 
 
2007-01-17 19:07    <DIR>    d--------    C:\Program Files\SmartFTP Client 2.0
2007-01-17 18:01    118,784    --a------    C:\WINDOWS\system32\MSSTDFMT.DLL
2007-01-17 18:01    <DIR>    d--------    C:\Program Files\SpywareBlaster
2007-01-17 07:15    <DIR>    d--------    C:\Program Files\Windows Defender
2007-01-16 23:55    <DIR>    d--------    C:\Excursion9.5
2007-01-16 23:27    <DIR>    d--------    C:\Program Files\SpywareGuard
2007-01-16 23:06    816,672    --a------    C:\WINDOWS\system32\drivers\avg7core.sys
2007-01-16 23:06    4,960    --a------    C:\WINDOWS\system32\drivers\avgtdi.sys
2007-01-16 23:06    4,224    --a------    C:\WINDOWS\system32\drivers\avg7rsw.sys
2007-01-16 23:06    3,968    --a------    C:\WINDOWS\system32\drivers\avgclean.sys
2007-01-16 23:06    28,416    --a------    C:\WINDOWS\system32\drivers\avg7rsxp.sys
2007-01-16 23:06    18,240    --a------    C:\WINDOWS\system32\drivers\avgmfx86.sys
2007-01-16 23:06    <DIR>    d--------    C:\Program Files\Grisoft
2007-01-16 23:06    <DIR>    d--------    C:\DOCUME~1\LOCALS~1\Application Data\AVG7
2007-01-16 23:06    <DIR>    d--------    C:\DOCUME~1\ep0xy\Application Data\AVG7
2007-01-16 23:06    <DIR>    d--------    C:\DOCUME~1\ALLUSE~1.WIN\Application Data\Grisoft
2007-01-16 23:06    <DIR>    d--------    C:\DOCUME~1\ALLUSE~1.WIN\Application Data\avg7
2007-01-16 22:21    <DIR>    d--------    C:\DOCUME~1\ALLUSE~1.WIN\Application Data\Spybot - Search & Destroy
2007-01-16 19:19    <DIR>    d--------    C:\DOCUME~1\ADMINI~1\Application Data\Talkback
2007-01-16 07:31    9,488    --a------    C:\WINDOWS\system32\sporder.dll
2007-01-16 07:26    <DIR>    d--------    C:\Program Files\Common Files\Panda Software
2007-01-11 21:04    <DIR>    d--------    C:\Program Files\Common Files\Download Manager
2007-01-11 20:51    <DIR>    d--------    C:\Program Files\AV Vcs 5.0 DIAMOND
2007-01-09 21:53    <DIR>    d--------    C:\WINDOWS\ie7updates
2006-12-23 15:27    <DIR>    d--------    C:\Program Files\MMTaskbar
2006-12-23 09:41    <DIR>    d--------    C:\Program Files\DC++
2006-12-22 14:44    3,426,072    --a------    C:\WINDOWS\system32\d3dx9_32.dll
2006-12-22 14:44    251,672    --a------    C:\WINDOWS\system32\xactengine2_5.dll


((((((((((((((((((((((((((((((((((((((((((((((((   Find3M Report   )))))))))))))))))))))))))))))))))))))))))))))))))))))


2007-01-17 22:48    --------    d--------    C:\Program Files\mozilla firefox
2007-01-17 22:28    --------    d--------    C:\Program Files\steam
2007-01-17 19:07    --------    d--------    C:\Program Files\smartftp client 2.0 setup files
2007-01-16 23:05    --------    d---s----    C:\DOCUME~1\ep0xy\Application Data\microsoft
2007-01-16 21:28    --------    d--h-----    C:\Program Files\installshield installation information
2007-01-16 19:46    --------    d--------    C:\Program Files\aim
2007-01-16 18:27    --------    d--------    C:\Program Files\ventrilo
2007-01-16 00:27    8704    --a------    C:\WINDOWS\system32\wdfmgr.exe
2007-01-16 00:27    8704    --a------    C:\WINDOWS\system32\uwdf.exe
2007-01-16 00:27    65536    --a------    C:\WINDOWS\system32\wextract.exe
2007-01-16 00:27    5632    --a------    C:\WINDOWS\system32\winver.exe
2007-01-16 00:27    50176    --a------    C:\WINDOWS\system32\utilman.exe
2007-01-16 00:27    44544    --a------    C:\WINDOWS\system32\tscupgrd.exe
2007-01-16 00:27    433664    --a------    C:\WINDOWS\system32\wiaacmgr.exe
2007-01-16 00:27    347136    --a------    C:\WINDOWS\system32\tourstart.exe
2007-01-16 00:27    32256    --a------    C:\WINDOWS\system32\wpnpinst.exe
2007-01-16 00:27    32256    --a------    C:\WINDOWS\system32\wpabaln.exe
2007-01-16 00:27    30720    --a------    C:\WINDOWS\system32\xcopy.exe
2007-01-16 00:27    289792    --a------    C:\WINDOWS\system32\vssvc.exe
2007-01-16 00:27    28672    --a------    C:\WINDOWS\system32\verclsid.exe
2007-01-16 00:27    26112    --a------    C:\WINDOWS\system32\xpsp1hfm.exe
2007-01-16 00:27    24576    --a------    C:\WINDOWS\system32\userinit.exe
2007-01-16 00:27    206336    --a------    C:\WINDOWS\system32\winfxdocobj.exe
2007-01-16 00:27    18432    --a------    C:\WINDOWS\system32\ups.exe
2007-01-16 00:27    17408    --a------    C:\WINDOWS\system32\wpdshextautoplay.exe
2007-01-16 00:27    172544    --a------    C:\WINDOWS\system32\wuauclt1.exe
2007-01-16 00:27    172032    --a------    C:\WINDOWS\system32\wjview.exe
2007-01-16 00:27    16896    --a------    C:\WINDOWS\system32\upnpcont.exe
2007-01-16 00:27    146432    --a------    C:\WINDOWS\system32\wudfhost.exe
2007-01-16 00:27    13824    --a------    C:\WINDOWS\system32\wscntfy.exe
2007-01-16 00:27    12288    --a------    C:\WINDOWS\system32\tracert.exe
2007-01-16 00:27    114688    --a------    C:\WINDOWS\system32\wscript.exe
2007-01-16 00:26    89600    --a------    C:\WINDOWS\system32\smlogsvc.exe
2007-01-16 00:26    8192    --a------    C:\WINDOWS\system32\spdwnwxp.exe
2007-01-16 00:26    8192    --a------    C:\WINDOWS\system32\smbinst.exe
2007-01-16 00:26    75776    --a------    C:\WINDOWS\system32\telnet.exe
2007-01-16 00:26    704512    --a------    C:\WINDOWS\system32\ss3dfo.scr
2007-01-16 00:26    679936    --a------    C:\WINDOWS\system32\sstext3d.scr
2007-01-16 00:26    610304    --a------    C:\WINDOWS\system32\sspipes.scr
2007-01-16 00:26    538624    --a------    C:\WINDOWS\system32\spider.exe
2007-01-16 00:26    47104    --a------    C:\WINDOWS\system32\ssmypics.scr
2007-01-16 00:26    393216    --a------    C:\WINDOWS\system32\ssflwbox.scr
2007-01-16 00:26    36864    --a------    C:\WINDOWS\system32\slrundll.exe
2007-01-16 00:26    24064    --a------    C:\WINDOWS\system32\spupdsvc.exe
2007-01-16 00:26    21504    --a------    C:\WINDOWS\system32\spupdwxp.exe
2007-01-16 00:26    20992    --a------    C:\WINDOWS\system32\ssmarque.scr
2007-01-16 00:26    19968    --a------    C:\WINDOWS\system32\ssbezier.scr
2007-01-16 00:26    18944    --a------    C:\WINDOWS\system32\ssmyst.scr
2007-01-16 00:26    14848    --a------    C:\WINDOWS\system32\stimon.exe
2007-01-16 00:26    14336    --a------    C:\WINDOWS\system32\ssstars.scr
2007-01-16 00:26    135680    --a------    C:\WINDOWS\system32\taskmgr.exe
2007-01-16 00:26    131584    --a------    C:\WINDOWS\system32\sndrec32.exe
2007-01-16 00:26    11776    --a------    C:\WINDOWS\system32\spnpinst.exe
2007-01-16 00:26    105984    --a------    C:\WINDOWS\system32\sysocmgr.exe
2007-01-16 00:25    95744    --a------    C:\WINDOWS\system32\scardsvr.exe
2007-01-16 00:25    9319936    --a------    C:\WINDOWS\system32\rtlcpl.exe
2007-01-16 00:25    9216    --a------    C:\WINDOWS\system32\scrnsave.scr
2007-01-16 00:25    9216    --a------    C:\WINDOWS\system32\proxycfg.exe
2007-01-16 00:25    77824    --a------    C:\WINDOWS\system32\shrpubw.exe
2007-01-16 00:25    77312    --a------    C:\WINDOWS\system32\sdbinst.exe
2007-01-16 00:25    77312    --a------    C:\WINDOWS\system32\rtcshare.exe
2007-01-16 00:25    73728    --a------    C:\WINDOWS\system32\pv_c3.exe
2007-01-16 00:25    70144    --a------    C:\WINDOWS\system32\sigverif.exe
2007-01-16 00:25    67072    --a------    C:\WINDOWS\system32\rdshost.exe
2007-01-16 00:25    62464    --a------    C:\WINDOWS\system32\rdpclip.exe
2007-01-16 00:25    56832    --a------    C:\WINDOWS\system32\rasphone.exe
2007-01-16 00:25    50176    --a------    C:\WINDOWS\system32\reg.exe
2007-01-16 00:25    50176    --a------    C:\WINDOWS\system32\proquota.exe
2007-01-16 00:25    49152    --a------    C:\WINDOWS\system32\powercfg.exe
2007-01-16 00:25    42496    --a------    C:\WINDOWS\system32\shmgrate.exe
2007-01-16 00:25    40960    --a------    C:\WINDOWS\system32\renum.exe
2007-01-16 00:25    35840    --a------    C:\WINDOWS\system32\rcimlby.exe
2007-01-16 00:25    31232    --a------    C:\WINDOWS\system32\sethc.exe
2007-01-16 00:25    26112    --a------    C:\WINDOWS\system32\skeys.exe
2007-01-16 00:25    23040    --a------    C:\WINDOWS\system32\setup.exe
2007-01-16 00:25    21504    --a------    C:\WINDOWS\system32\rcp.exe
2007-01-16 00:25    20480    --a------    C:\WINDOWS\system32\qprocess.exe
2007-01-16 00:25    19456    --a------    C:\WINDOWS\system32\shutdown.exe
2007-01-16 00:25    163840    --a------    C:\WINDOWS\system32\prfact.exe
2007-01-16 00:25    14848    --a------    C:\WINDOWS\system32\rsh.exe
2007-01-16 00:25    14336    --a------    C:\WINDOWS\system32\runonce.exe
2007-01-16 00:25    140800    --a------    C:\WINDOWS\system32\sessmgr.exe
2007-01-16 00:25    13824    --a------    C:\WINDOWS\system32\rexec.exe
2007-01-16 00:25    13824    --a------    C:\WINDOWS\system32\rdsaddin.exe
2007-01-16 00:25    13312    --a------    C:\WINDOWS\system32\savedump.exe
2007-01-16 00:25    119296    --a------    C:\WINDOWS\system32\reg_c3.exe
2007-01-16 00:25    11776    --a------    C:\WINDOWS\system32\regsvr32.exe
2007-01-16 00:24    86016    --a------    C:\WINDOWS\system32\netsh.exe
2007-01-16 00:24    794624    --a------    C:\WINDOWS\system32\nvcplui.exe
2007-01-16 00:24    76800    --a------    C:\WINDOWS\system32\nslookup.exe
2007-01-16 00:24    69632    --a------    C:\WINDOWS\system32\odbcconf.exe
2007-01-16 00:24    6144    --a------    C:\WINDOWS\system32\msdtc.exe
2007-01-16 00:24    58368    --a------    C:\WINDOWS\system32\packager.exe
2007-01-16 00:24    53760    --a------    C:\WINDOWS\system32\narrator.exe
2007-01-16 00:24    442368    --a------    C:\WINDOWS\system32\nvappbar.exe
2007-01-16 00:24    42496    --a------    C:\WINDOWS\system32\net.exe
2007-01-16 00:24    419840    --a------    C:\WINDOWS\system32\ntvdm.exe
2007-01-16 00:24    4096    --a------    C:\WINDOWS\system32\nddeapir.exe
2007-01-16 00:24    407552    --a------    C:\WINDOWS\system32\mstsc.exe
2007-01-16 00:24    36864    --a------    C:\WINDOWS\system32\netstat.exe
2007-01-16 00:24    343040    --a------    C:\WINDOWS\system32\mspaint.exe
2007-01-16 00:24    329728    --a------    C:\WINDOWS\system32\netsetup.exe
2007-01-16 00:24    32768    --a------    C:\WINDOWS\system32\odbcad32.exe
2007-01-16 00:24    215552    --a------    C:\WINDOWS\system32\osk.exe
2007-01-16 00:24    208896    --a------    C:\WINDOWS\system32\nvuninst.exe
2007-01-16 00:24    208896    --a------    C:\WINDOWS\system32\nvudisp.exe
2007-01-16 00:24    17920    --a------    C:\WINDOWS\system32\ping.exe
2007-01-16 00:24    1622016    --a------    C:\WINDOWS\system32\nwiz.exe
2007-01-16 00:24    15872    --a------    C:\WINDOWS\system32\perfmon.exe
2007-01-16 00:24    147456    --a------    C:\WINDOWS\system32\nvcolor.exe
2007-01-16 00:24    143360    --a------    C:\WINDOWS\system32\mobsync.exe
2007-01-16 00:24    1339392    --a------    C:\WINDOWS\system32\nvdspsch.exe
2007-01-16 00:24    124928    --a------    C:\WINDOWS\system32\net1.exe
2007-01-16 00:24    123392    --a------    C:\WINDOWS\system32\mplay32.exe
2007-01-16 00:24    122880    --a------    C:\WINDOWS\system32\nx.exe
2007-01-16 00:24    12288    --a------    C:\WINDOWS\system32\mstinit.exe
2007-01-16 00:24    12288    --a------    C:\WINDOWS\system32\msfeedssync.exe
2007-01-16 00:24    111104    --a------    C:\WINDOWS\system32\netdde.exe
2007-01-16 00:23    85504    --a------    C:\WINDOWS\system32\makecab.exe
2007-01-16 00:23    815104    --a------    C:\WINDOWS\system32\mmc.exe
2007-01-16 00:23    75264    --a------    C:\WINDOWS\system32\locator.exe
2007-01-16 00:23    72704    --a------    C:\WINDOWS\system32\magnify.exe
2007-01-16 00:23    59392    --a------    C:\WINDOWS\system32\logman.exe
2007-01-16 00:23    55808    --a------    C:\WINDOWS\system32\ipconfig.exe
2007-01-16 00:23    53248    --a------    C:\WINDOWS\system32\ipv6.exe
2007-01-16 00:23    51712    --a------    C:\WINDOWS\system32\migpwd.exe
2007-01-16 00:23    514560    --a------    C:\WINDOWS\system32\logonui.exe
2007-01-16 00:23    46592    --a------    C:\WINDOWS\system32\dxdllreg.exe
2007-01-16 00:23    45568    --a------    C:\WINDOWS\system32\extrac32.exe
2007-01-16 00:23    425984    --a------    C:\WINDOWS\system32\keystone.exe
2007-01-16 00:23    42496    --a------    C:\WINDOWS\system32\ftp.exe
2007-01-16 00:23    39424    --a------    C:\WINDOWS\system32\grpconv.exe
2007-01-16 00:23    32768    --a------    C:\WINDOWS\system32\mnmsrvc.exe
2007-01-16 00:23    27136    --a------    C:\WINDOWS\system32\findstr.exe
2007-01-16 00:23    23552    --a------    C:\WINDOWS\system32\ipxroute.exe
2007-01-16 00:23    220672    --a------    C:\WINDOWS\system32\logon.scr
2007-01-16 00:23    20992    --a------    C:\WINDOWS\system32\fontview.exe
2007-01-16 00:23    20992    --a------    C:\WINDOWS\system32\faxpatch.exe
2007-01-16 00:23    193024    --a------    C:\WINDOWS\system32\eudcedit.exe
2007-01-16 00:23    180224    --a------    C:\WINDOWS\system32\dwwin.exe
2007-01-16 00:23    172544    --a------    C:\WINDOWS\system32\jview.exe
2007-01-16 00:23    15360    --a------    C:\WINDOWS\system32\jdbgmgr.exe
2007-01-16 00:23    150016    --a------    C:\WINDOWS\system32\imapi.exe
2007-01-16 00:23    13312    --a------    C:\WINDOWS\system32\ieudinit.exe
2007-01-16 00:23    1298432    --a------    C:\WINDOWS\system32\dxdiag.exe
2007-01-16 00:23    114688    --a------    C:\WINDOWS\system32\iexpress.exe
2007-01-16 00:22    98304    --a------    C:\WINDOWS\system32\cscript.exe
2007-01-16 00:22    85504    --a------    C:\WINDOWS\system32\diantz.exe
2007-01-16 00:22    83456    --a------    C:\WINDOWS\system32\dpvsetup.exe
2007-01-16 00:22    82432    --a------    C:\WINDOWS\system32\dfrgfat.exe
2007-01-16 00:22    63488    --a------    C:\WINDOWS\system32\cmstp.exe
2007-01-16 00:22    49664    --a------    C:\WINDOWS\system32\clspack.exe
2007-01-16 00:22    47104    --a------    C:\WINDOWS\system32\cmdl32.exe
2007-01-16 00:22    39936    --a------    C:\WINDOWS\system32\cmmon32.exe
2007-01-16 00:22    388608    --a------    C:\WINDOWS\system32\cmd.exe
2007-01-16 00:22    30208    --a------    C:\WINDOWS\system32\dplaysvr.exe
2007-01-16 00:22    30208    --a------    C:\WINDOWS\system32\ddeshare.exe
2007-01-16 00:22    27648    --a------    C:\WINDOWS\system32\conime.exe
2007-01-16 00:22    25088    --a------    C:\WINDOWS\system32\defrag.exe
2007-01-16 00:22    249856    --a------    C:\WINDOWS\system32\drmupgds.exe
2007-01-16 00:22    224768    --a------    C:\WINDOWS\system32\dmadmin.exe
2007-01-16 00:22    18432    --a------    C:\WINDOWS\system32\dpnsvr.exe
2007-01-16 00:22    17920    --a------    C:\WINDOWS\system32\dvdupgrd.exe
2007-01-16 00:22    163840    --a------    C:\WINDOWS\system32\diskpart.exe
2007-01-16 00:22    15872    --a------    C:\WINDOWS\system32\dmremote.exe
2007-01-16 00:22    10752    --a------    C:\WINDOWS\system32\dumprep.exe
2007-01-16 00:21    98304    --a------    C:\WINDOWS\system32\ahui.exe
2007-01-16 00:21    71680    --a------    C:\WINDOWS\system32\blastcln.exe
2007-01-16 00:21    64000    --a------    C:\WINDOWS\system32\cleanmgr.exe
2007-01-16 00:21    5632    --a------    C:\WINDOWS\system32\cisvc.exe
2007-01-16 00:21    454656    --a------    C:\WINDOWS\system32\capabilitytable.exe
2007-01-16 00:21    40960    --a------    C:\WINDOWS\system32\chcfg.exe
2007-01-16 00:21    4096    --a------    C:\WINDOWS\system32\actmovie.exe
2007-01-16 00:21    33280    --a------    C:\WINDOWS\system32\clipsrv.exe
2007-01-16 00:21    25088    --a------    C:\WINDOWS\system32\at.exe
2007-01-16 00:21    20480    --a------    C:\WINDOWS\system32\cliconfg.exe
2007-01-16 00:21    183808    --a------    C:\WINDOWS\system32\accwiz.exe
2007-01-16 00:21    14336    --a------    C:\WINDOWS\system32\auditusr.exe
2007-01-16 00:21    11264    --a------    C:\WINDOWS\system32\atmadm.exe
2007-01-16 00:21    102912    --a------    C:\WINDOWS\system32\clipbrd.exe
2007-01-15 23:54    90112    --a------    C:\WINDOWS\unvise32.exe
2007-01-15 23:54    60416    --a------    C:\WINDOWS\alcfdrtm.exe
2007-01-15 23:54    49152    --a------    C:\WINDOWS\mididef.exe
2007-01-15 23:54    46592    --a------    C:\WINDOWS\setdebug.exe
2007-01-15 23:54    306688    --a------    C:\WINDOWS\isuninst.exe
2007-01-15 23:54    299008    --a------    C:\WINDOWS\uninst.exe
2007-01-15 23:54    208896    --a------    C:\WINDOWS\alcupd.exe
2007-01-15 23:54    20480    --a------    C:\WINDOWS\p17def.exe
2007-01-15 23:54    19968    --a------    C:\WINDOWS\logi_mwx.exe
2007-01-15 23:54    139264    --a------    C:\WINDOWS\alcrmv.exe
2007-01-15 22:57    700416    --a------    C:\StubInstaller.exe
2007-01-14 16:55    --------    d--------    C:\Program Files\windows media connect 2
2007-01-12 21:24    --------    d--------    C:\Program Files\windows nt
2007-01-12 21:24    --------    d--------    C:\Program Files\movie maker
2007-01-11 21:13    --------    d--------    C:\DOCUME~1\ep0xy\Application Data\limewire
2006-12-16 10:59    --------    d--------    C:\Program Files\ngonvod19371
2006-12-16 09:51    --------    d--------    C:\Program Files\driver cleaner
2006-12-10 13:29    --------    d--------    C:\Program Files\nvidia corporation
2006-12-05 20:58    --------    d--------    C:\DOCUME~1\ep0xy\Application Data\help
2006-12-02 18:02    --------    d--------    C:\Program Files\saitek
2006-12-02 12:47    --------    d--------    C:\DOCUME~1\ep0xy\Application Data\azureus
2006-12-02 00:50    --------    d--------    C:\Program Files\eidos interactive
2006-11-17 23:34    98304    --a------    C:\WINDOWS\system32\cmdlineext.dll
2006-11-17 23:31    --------    d--------    C:\Program Files\firaxis games
2006-11-17 23:22    --------    d--------    C:\DOCUME~1\ep0xy\Application Data\leadertech
2006-11-17 23:20    --------    d--------    C:\Program Files\novalogic
2006-11-15 11:38    15128    --a------    C:\WINDOWS\system32\x3daudio1_1.dll
2006-11-08 00:06    679424    --a------    C:\WINDOWS\system32\inetcomm.dll
2006-10-27 15:09    6049280    ---------    C:\WINDOWS\system32\ieframe.dll
2006-10-27 15:09    50688    ---------    C:\WINDOWS\system32\msfeedsbs.dll
2006-10-27 15:09    458752    ---------    C:\WINDOWS\system32\msfeeds.dll
2006-10-27 15:09    413696    --a------    C:\WINDOWS\system32\vbscript.dll
2006-10-27 15:09    231424    --a------    C:\WINDOWS\system32\webcheck.dll
2006-10-27 15:09    180736    ---------    C:\WINDOWS\system32\ieui.dll
2006-10-27 15:09    156160    --a------    C:\WINDOWS\system32\msls31.dll
2006-10-27 02:44    71680    --a------    C:\WINDOWS\system32\admparse.dll
2006-10-27 02:44    55296    --a------    C:\WINDOWS\system32\iesetup.dll
2006-10-27 02:44    54784    --a------    C:\WINDOWS\system32\ie4uinit.exe
2006-10-27 02:44    43008    --a------    C:\WINDOWS\system32\iernonce.dll
2006-10-27 02:44    382976    --a------    C:\WINDOWS\system32\iedkcs32.dll
2006-10-27 02:44    229376    --a------    C:\WINDOWS\system32\ieaksie.dll
2006-10-27 02:44    152064    --a------    C:\WINDOWS\system32\ieakeng.dll
2006-10-27 02:44    123904    --a------    C:\WINDOWS\system32\advpack.dll
2006-10-27 02:42    161792    --a------    C:\WINDOWS\system32\ieakui.dll
2006-10-22 12:22    86016    --a------    C:\WINDOWS\system32\nvmctray.dll
2006-10-22 12:22    81920    --a------    C:\WINDOWS\system32\nvwddi.dll
2006-10-22 12:22    7700480    --a------    C:\WINDOWS\system32\nvcpl.dll
2006-10-22 12:22    581632    --a------    C:\WINDOWS\system32\nvhwvid.dll
2006-10-22 12:22    5644288    --a------    C:\WINDOWS\system32\nvoglnt.dll
2006-10-22 12:22    466944    --a------    C:\WINDOWS\system32\nvshell.dll
2006-10-22 12:22    4527488    --a------    C:\WINDOWS\system32\nv4_disp.dll
2006-10-22 12:22    35840    --a------    C:\WINDOWS\system32\nvcodins.dll
2006-10-22 12:22    35840    --a------    C:\WINDOWS\system32\nvcod.dll
2006-10-22 12:22    286720    --a------    C:\WINDOWS\system32\nvnt4cpl.dll
2006-10-22 12:22    212992    --a------    C:\WINDOWS\system32\nvapi.dll
2006-10-22 12:22    1662976    --a------    C:\WINDOWS\system32\nvwdmcpl.dll
2006-10-22 12:22    159810    --a------    C:\WINDOWS\system32\nvsvc32.exe
2006-10-22 12:22    1470464    --a------    C:\WINDOWS\system32\nview.dll
2006-10-22 12:22    1019904    --a------    C:\WINDOWS\system32\nvwimg.dll
2006-10-20 19:59    40960    --a------    C:\WINDOWS\system32\frapsvid.dll
2006-10-19 08:56    713216    --a------    C:\WINDOWS\system32\sxs.dll
2006-10-18 21:47    99840    --a------    C:\WINDOWS\system32\wmpshell.dll
2006-10-18 21:47    991744    --a------    C:\WINDOWS\system32\drmv2clt.dll
2006-10-18 21:47    937984    --a------    C:\WINDOWS\system32\wmnetmgr.dll
2006-10-18 21:47    8231936    --a------    C:\WINDOWS\system32\wmploc.dll
2006-10-18 21:47    767488    ---------    C:\WINDOWS\system32\wmvsencd.dll
2006-10-18 21:47    757248    --a------    C:\WINDOWS\system32\wmadmod.dll
2006-10-18 21:47    7168    --a------    C:\WINDOWS\system32\asferror.dll
2006-10-18 21:47    656896    ---------    C:\WINDOWS\system32\wmvxencd.dll
2006-10-18 21:47    63488    --a------    C:\WINDOWS\system32\wpdmtpus.dll
2006-10-18 21:47    629760    --a------    C:\WINDOWS\system32\wpd_ci.dll
2006-10-18 21:47    613376    ---------    C:\WINDOWS\system32\wmpmde.dll
2006-10-18 21:47    603648    --a------    C:\WINDOWS\system32\wmspdmod.dll
2006-10-18 21:47    542720    --a------    C:\WINDOWS\system32\blackbox.dll
2006-10-18 21:47    535040    ---------    C:\WINDOWS\system32\wmdrmsdk.dll
2006-10-18 21:47    429056    --a------    C:\WINDOWS\system32\wmdrmdev.dll
2006-10-18 21:47    414208    --a------    C:\WINDOWS\system32\msscp.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmvdmoe2.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmvdmod.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmvadve.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmvadvd.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmsdmoe2.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wmsdmod.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\wdfapi.dll
2006-10-18 21:47    4096    --a------    C:\WINDOWS\system32\mpg4dmod.dll
2006-10-18 21:47    4096    ---------    C:\WINDOWS\system32\mp4sdmod.dll
2006-10-18 21:47    4096    ---------    C:\WINDOWS\system32\mp43dmod.dll
2006-10-18 21:47    38400    ---------    C:\WINDOWS\system32\wpdshextres.dll
2006-10-18 21:47    37376    --a------    C:\WINDOWS\system32\wmdmps.dll
2006-10-18 21:47    35840    --a------    C:\WINDOWS\system32\wpdconns.dll
2006-10-18 21:47    356352    --a------    C:\WINDOWS\system32\wpdsp.dll
2006-10-18 21:47    348672    --a------    C:\WINDOWS\system32\wmdrmnet.dll
2006-10-18 21:47    33792    --a------    C:\WINDOWS\system32\wmdmlog.dll
2006-10-18 21:47    321536    --a------    C:\WINDOWS\system32\mswmdm.dll
2006-10-18 21:47    317440    ---------    C:\WINDOWS\system32\mp4sdecd.dll
2006-10-18 21:47    314880    --a------    C:\WINDOWS\system32\wmpdxm.dll
2006-10-18 21:47    295936    ---------    C:\WINDOWS\system32\wmpeffects.dll
2006-10-18 21:47    284160    ---------    C:\WINDOWS\system32\portabledeviceapi.dll
2006-10-18 21:47    276992    --a------    C:\WINDOWS\system32\audiodev.dll
2006-10-18 21:47    27136    --a------    C:\WINDOWS\system32\mspmsnsv.dll
2006-10-18 21:47    2603008    ---------    C:\WINDOWS\system32\wpdshext.dll
2006-10-18 21:47    259072    ---------    C:\WINDOWS\system32\mpg4decd.dll
2006-10-18 21:47    259072    ---------    C:\WINDOWS\system32\mp43decd.dll
2006-10-18 21:47    2450944    --a------    C:\WINDOWS\system32\wmvcore.dll
2006-10-18 21:47    242688    --a------    C:\WINDOWS\system32\wmpasf.dll
2006-10-18 21:47    229376    --a------    C:\WINDOWS\system32\cewmdm.dll
2006-10-18 21:47    227328    --a------    C:\WINDOWS\system32\wmerror.dll
2006-10-18 21:47    222208    --a------    C:\WINDOWS\system32\wmasf.dll
2006-10-18 21:47    212992    ---------    C:\WINDOWS\system32\mfplat.dll
2006-10-18 21:47    211456    --a------    C:\WINDOWS\system32\qasf.dll
2006-10-18 21:47    204288    --a------    C:\WINDOWS\system32\wmpsrcwp.dll
2006-10-18 21:47    199168    ---------    C:\WINDOWS\system32\portabledevicewmdrm.dll
2006-10-18 21:47    179712    --a------    C:\WINDOWS\system32\msnetobj.dll
2006-10-18 21:47    175616    --a------    C:\WINDOWS\system32\mspmsp.dll
2006-10-18 21:47    166912    ---------    C:\WINDOWS\system32\portabledevicetypes.dll
2006-10-18 21:47    1661440    --a------    C:\WINDOWS\system32\wmpencen.dll
2006-10-18 21:47    1574912    ---------    C:\WINDOWS\system32\wmvencod.dll
2006-10-18 21:47    157184    --a------    C:\WINDOWS\system32\wmidx.dll
2006-10-18 21:47    154624    --a------    C:\WINDOWS\system32\wpdmtp.dll
2006-10-18 21:47    1543680    ---------    C:\WINDOWS\system32\wmvdecod.dll
2006-10-18 21:47    1382912    ---------    C:\WINDOWS\system32\wmvsdecd.dll
2006-10-18 21:47    133632    ---------    C:\WINDOWS\system32\wpdshserviceobj.dll
2006-10-18 21:47    1329152    --a------    C:\WINDOWS\system32\wmspdmoe.dll
2006-10-18 21:47    132096    ---------    C:\WINDOWS\system32\portabledevicewiacompat.dll
2006-10-18 21:47    130048    ---------    C:\WINDOWS\system32\wmpps.dll
2006-10-18 21:47    11264    --a------    C:\WINDOWS\system32\laprxy.dll
2006-10-18 21:47    1117696    --a------    C:\WINDOWS\system32\wmadmoe.dll
2006-10-18 21:47    101888    ---------    C:\WINDOWS\system32\portabledeviceclassextension.dll
2006-10-18 20:03    100864    --a------    C:\WINDOWS\system32\logagent.exe
2006-10-17 13:06    78336    --a------    C:\WINDOWS\system32\ieencode.dll
2006-10-17 13:05    40960    --a------    C:\WINDOWS\system32\licmgr10.dll
2006-10-17 13:05    105984    --a------    C:\WINDOWS\system32\url.dll
2006-10-17 13:04    101376    --a------    C:\WINDOWS\system32\occache.dll
2006-10-17 13:03    17408    --a------    C:\WINDOWS\system32\corpol.dll
2006-10-17 12:58    61952    ---------    C:\WINDOWS\system32\icardie.dll
2006-10-17 12:57    36352    --a------    C:\WINDOWS\system32\imgutil.dll
2006-10-17 12:57    266752    ---------    C:\WINDOWS\system32\iertutil.dll
2006-10-17 12:56    45568    --a------    C:\WINDOWS\system32\mshta.exe
2006-10-17 12:28    48128    --a------    C:\WINDOWS\system32\mshtmler.dll
2006-10-17 12:27    380928    ---------    C:\WINDOWS\system32\ieapfltr.dll
2006-10-17 02:52    86016    --a------    C:\WINDOWS\system32\openal32.dll
2006-10-17 02:52    262144    --a------    C:\WINDOWS\system32\wrap_oal.dll
2006-10-09 17:41    1568    --a------    C:\DOCUME~1\ep0xy\Application Data\mpauth.dat
 
 
((((((((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries & legit default entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Steam"="\"c:\\program files\\steam\\steam.exe\" -silent"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"AIM"="C:\\Program Files\\AIM\\aim.exe -cnetwait.odl"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"nTrayFw"="C:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\bin\\nTrayFw.exe"
"SoundMan"="SOUNDMAN.EXE"
"NVIDIA nTune"="\"C:\\Program Files\\NVIDIA Corporation\\nTune\\\\nTune.exe\" clear"
"Logitech Utility"="Logi_MwX.Exe"
"P17Helper"="Rundll32 P17.dll,P17Helper"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgcc.exe /STARTUP"
"Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"Internet Sweeper"="C:\\WINDOWS\\SYSTEM32\\SWEEPER.EXE /Q"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AIM]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="aim"
"hkey"="HKCU"
"command"="C:\\Program Files\\AIM\\aim.exe -cnetwait.odl"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="iTunesHelper"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Profiler"
"hkey"="HKLM"
"command"="C:\\Program Files\\Saitek\\Software\\Profiler.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SaiSmart]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SaiSmart"
"hkey"="HKLM"
"command"="C:\\Program Files\\Saitek\\Software\\SaiSmart.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{81559C35-8464-49F7-BB0E-07A383BEF910}"="SpywareGuard"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgw.exe /RUNONCE"

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgw.exe /RUNONCE"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService    REG_MULTI_SZ       AlerterWebClientLmHostsRemoteRegistryupnphostSSDPSRV
NetworkService    REG_MULTI_SZ       DnsCache
rpcss    REG_MULTI_SZ       RpcSs
imgsvc    REG_MULTI_SZ       StiSvc
termsvcs    REG_MULTI_SZ       TermService
HTTPFilter    REG_MULTI_SZ       HTTPFilter
DcomLaunch    REG_MULTI_SZ       DcomLaunchTermService
WudfServiceGroup    REG_MULTI_SZ       WUDFSvc



Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\MP Scheduled Scan.job

Completion time: 07-01-17 22:50:20

Offline Josetann

  • admin
  • Administrator
  • Hero Member
  • *****
  • Posts: 10136
  • Karma: +0/-0
    • View Profile
Test
« Reply #3 on: February 02, 2007, 02:17:03 AM »
Thanks for the speedy reply.

Here's all of what I tried to post:

A couple of days ago, I downloaded something .exe that I thought was a setup
for a new Spyware Doctor that I found on a forum and when I opened it, a
Symantech alert came up calling it a virus. It supposedly cleaned it up, but
things have been weird since....but I also own a forum and recently banned
someone we suspected of hacking the forums (also banned for spamming in the
like). So I can't tell if someone is hacking my computer or if I have a
virus.

As per what's wrong, I can't describe it all too well, but here are some
things going on:

 - IE...biggest problem. After a certain amount of time, IE quits loading
websites and starts to freeze (sometimes freezing my whole computer too). I
thought it was the internet at first, but Outlook Express is still working
perfectly and getting messages. When I restart my computer, IE works
perfectly, but sure enough, after 30 or 45 minutes, it locks up and stops
loading websites again. I don't even understand why it does it after a
certain amount of time.

 - desktop.ini files are popping up in a lot of places that I've never seen
them before. My start menu, my IE favorites, random folders, et cetera. I've
deleted two and they've popped back up in an hour. Never seen them before
all this. Now, there is one in my startup menu so everytime I restart my
computer, 2 desktop.ini files open in notepad at the same time (even though
there is only one desktop.ini file there). Not only have I never seen these
files before, but I've never had it just open when I restart...let alone
twice. Here's what the file says:
[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787

 - The whole computer is just acting amazingly slow. I'm not really able to
run as many things at once as I normally am. It freezes up a lot. I've had
to restart it god knows how many times in the past 24 hours.

I've scanned my computer with Kaspersky, EZ Antivirus, Spyware Doctor, Xoft
Spy, Symantech, SpyBot, Windows Defender, and Ad-Ware SE. Other than the
normal low threat spyware, nothing has turned up.

I'm hoping you guys can help somehow. Sorry I couldn't be of much more help
with the description.

Thanks in advance.

Here's my log:
Logfile of HijackThis v1.99.1
Scan saved at 1:11:41 AM, on 2/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ
Antivirus\ISafe.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\runservice.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ
Antivirus\VetMsg.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ
Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ
Antivirus\CAVRID.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://thewrestlingvoice.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://thewrestlingvoice.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =

http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...n&pf=laptop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyServer = :0
R3 - URLSearchHook: Yahoo! Toolbar -
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat
7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program
Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} -
c:\program files\google\googletoolbar4.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program
files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
Panel\atiptaxx.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch
Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program
Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common
Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft
IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common
Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program
Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software
Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows
Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [CaISSDT] "C:\Program Files\CA\eTrust Internet Security
Suite\caissdt.exe"
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security
Suite\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security
Suite\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media
Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} -
%windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 -
{85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file
missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program
Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} -
%windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 -
{e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network
Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger -
{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program
Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -
{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program
Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) -
http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner
Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {0645D7F3-C20E-4E0B-A545-557527497C0B} (NMInstall Control) -
http://a14.g.akamai.net/f/14/7141/1d/www.n...GAPANEL_USA.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage
Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} -
http://ipgweb.cce.hp.com/rdqnbk/downloads/sysinfo.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader
Control) - http://upload.facebook.com/controls/Facebo...otoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/...b?1147023316687
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) -
http://ipgweb.cce.hp.com/rdqnbk/downloads/msxml4.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} -
http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {D8AA889B-2C65-47C3-8C16-3DCD4EF76A47} (Invoke Solutions
Participant Control(MR)) -
http://online.invokesolutions.com/events/b...7207/MILive.cab
O17 -
HKLM\System\CCS\Services\Tcpip\..\{9003E357-03F1-411D-A36F-1FA5AF5C1A34}:
NameServer = 68.87.73.242,68.87.71.226
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -
"C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} -
C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner -
C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: CAISafe - Computer Associates International, Inc. -
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ
Antivirus\ISafe.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec
Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation -
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec
Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision
Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel
32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program
Files\iPod\bin\iPodService.exe
O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner -
C:\WINDOWS\runservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec
AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) -
Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program
Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates
International, Inc. - C:\Program Files\CA\eTrust Internet Security
Suite\eTrust EZ
Antivirus\VetMsg.exe
___________________________
Douglas Nunnally
TheWrestlingVoice.com
TheWrestlingAsylum.com

Offline Josetann

  • admin
  • Administrator
  • Hero Member
  • *****
  • Posts: 10136
  • Karma: +0/-0
    • View Profile
Test
« Reply #4 on: February 02, 2007, 03:35:14 AM »
Here's my log:
Logfile of HijackThis v1.99.1
Scan saved at 1:11:41 AM, on 2/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\runservice.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://thewrestlingvoice.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://thewrestlingvoice.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =

http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...n&pf=laptop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [CaISSDT] "C:\Program Files\CA\eTrust Internet Security Suite\caissdt.exe"
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {0645D7F3-C20E-4E0B-A545-557527497C0B} (NMInstall Control) - http://a14.g.akamai.net/f/14/7141/1d/www.n...GAPANEL_USA.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} - http://ipgweb.cce.hp.com/rdqnbk/downloads/sysinfo.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Facebo...otoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1147023316687
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - http://ipgweb.cce.hp.com/rdqnbk/downloads/msxml4.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {D8AA889B-2C65-47C3-8C16-3DCD4EF76A47} (Invoke Solutions Participant Control(MR)) - http://online.invokesolutions.com/events/b...7207/MILive.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9003E357-03F1-411D-A36F-1FA5AF5C1A34}: NameServer = 68.87.73.242,68.87.71.226
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner - C:\WINDOWS\runservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe