| | |
Security Hijacked-no Contol Panel-help
![]() |
•
•
Join Date: Jun 2005
Posts: 4
Reputation:
Solved Threads: 0
I have been trying for weeks to get rid of whatever is infecting my computer. Every time I set my security to prompt, it changes, and new stuff must be sneaking in. A couple days ago, I clicked on CONTROL PANEL nothing! TASK SCHEDULER nothing! I have installed and use every day, ADAWARE-SPYWARE BLASTER CW SHREDDER-SPYBOT.Installed IE 6.0 only to end up with even MORE malware. Uninstalled it and am pulling my hair out 9there ain't much left anyway).I don't know anything about the registry, but tried to delete what was for sure ABOUT BLANK, and a little yellow window below said removal denied. PLEASE PLEASE HELP!
I'm new to this forum, and I finally figured out how to copy and paste my log. Here it is.Anything you can help me with I'll be very very grateful for.
MSIE: Internet Explorer v5.00 (5.00.2614.3500)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\OFFICE51\SOINTGR.EXE
C:\WINDOWS\SYSTEM\APIDJ32.EXE
c:\windows\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\JAVAWK32.EXE
C:\WINDOWS\SYSTEM\IEXP32.EXE
C:\WINDOWS\WINGT.EXE
C:\WINDOWS\SYSTEM\APPSS.EXE
C:\WINDOWS\SYSTEM\APICN32.EXE
C:\WINDOWS\SYSTEM\JAVAXD32.EXE
C:\WINDOWS\NETPM32.EXE
C:\WINDOWS\SYSTEM\SYSEE.EXE
C:\WINDOWS\ATLEV32.EXE
C:\WINDOWS\SYSTEM\ADDIP32.EXE
C:\WINDOWS\SYSTEM\MFCUL.EXE
C:\WINDOWS\APIFZ.EXE
C:\WINDOWS\SYSTEM\APPID32.EXE
C:\WINDOWS\SYSTEM\NETMB.EXE
C:\WINDOWS\SYSTEM\APITE.EXE
C:\WINDOWS\SYSTEM\ATLDF.EXE
C:\WINDOWS\SYSTEM\APIZX.EXE
C:\WINDOWS\MFCYC.EXE
C:\WINDOWS\IETY32.EXE
C:\WINDOWS\SYSTEM\MSKE.EXE
C:\WINDOWS\MFCTI32.EXE
C:\WINDOWS\SYSTEM\JAVAYS.EXE
C:\WINDOWS\SYSTEM\APIFD.EXE
C:\WINDOWS\SDKZK.EXE
C:\WINDOWS\JAVAIU.EXE
C:\WINDOWS\ADDNZ.EXE
C:\WINDOWS\ATLDA.EXE
C:\WINDOWS\D3SY.EXE
C:\WINDOWS\SYSTEM\JAVAXN.EXE
C:\WINDOWS\ADDBB32.EXE
C:\WINDOWS\SYSTEM\APIVN.EXE
C:\WINDOWS\SYSTEM\ATLRX32.EXE
C:\WINDOWS\CREQ32.EXE
C:\WINDOWS\IPYA32.EXE
C:\WINDOWS\SYSTEM\CRQL32.EXE
C:\WINDOWS\SYSTEM\NETHB32.EXE
C:\WINDOWS\MFCOG32.EXE
C:\WINDOWS\SYSTEM\D3YA32.EXE
C:\WINDOWS\SYSTEM\MFCCT32.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\PROGRAM FILES\ESOFT\EBOARD\EBOARD.EXE
C:\PROGRAM FILES\ICHOOSE\NAG.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\PROGRAM FILES\REAL\REALPLAYER\REALPLAY.EXE
C:\PROGRAM FILES\VISIONEER ONETOUCH\ONETOUCHMON.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\WINDOWS\SYSEA.EXE
C:\PROGRAM FILES\SPYBOT - SEARCH & DESTROY\TEATIMER.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE
C:\PROGRAM FILES\OUTLOOK EXPRESS\MSIMN.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = no good
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: Class - {650932D6-81AE-26F9-91BD-69C478819BAA} - C:\WINDOWS\SYSTEM\CRJI32.DLL
O2 - BHO: Class - {90306EB6-13A2-FC5F-0B60-04CAD2906D02} - C:\WINDOWS\SYSTEM\IECR32.DLL
O2 - BHO: Class - {24E13DBE-B766-5211-E118-DF8F9D6FD61F} - C:\WINDOWS\SYSTEM\MFCDD.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] c:\windows\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] c:\windows\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
O4 - HKLM\..\Run: [AtiKey] Atitask.exe
O4 - HKLM\..\Run: [SO5 Integrator Pass Two] C:\OFFICE51\SOINTGR.EXE
O4 - HKLM\..\Run: [eMachine eBoard] C:\PROGRA~1\ESOFT\EBOARD\eBoard.exe
O4 - HKLM\..\Run: [iCn] C:\PROGRAM FILES\ICHOOSE\NAG.EXE
O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [OneTouch Monitor] C:\Program Files\Visioneer OneTouch\OneTouchMon.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
O4 - HKLM\..\Run: [IEXPLORE.EXE] C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
O4 - HKLM\..\Run: [SYSEA.EXE] C:\WINDOWS\SYSEA.EXE
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [SO5 Integrator Pass One] C:\OFFICE51\SOINTGR.EXE
O4 - HKLM\..\RunServices: [APIDJ32.EXE] C:\WINDOWS\SYSTEM\APIDJ32.EXE /s
O4 - HKLM\..\RunServices: [KB891711] c:\windows\SYSTEM\KB891711\KB891711.EXE
O4 - HKLM\..\RunServices: [JAVAWK32.EXE] C:\WINDOWS\SYSTEM\JAVAWK32.EXE /s
O4 - HKLM\..\RunServices: [IEXP32.EXE] C:\WINDOWS\SYSTEM\IEXP32.EXE /s
O4 - HKLM\..\RunServices: [WINGT.EXE] C:\WINDOWS\WINGT.EXE /s
O4 - HKLM\..\RunServices: [APPSS.EXE] C:\WINDOWS\SYSTEM\APPSS.EXE /s
O4 - HKLM\..\RunServices: [APICN32.EXE] C:\WINDOWS\SYSTEM\APICN32.EXE /s
O4 - HKLM\..\RunServices: [JAVAXD32.EXE] C:\WINDOWS\SYSTEM\JAVAXD32.EXE /s
O4 - HKLM\..\RunServices: [NETPM32.EXE] C:\WINDOWS\NETPM32.EXE /s
O4 - HKLM\..\RunServices: [SYSEE.EXE] C:\WINDOWS\SYSTEM\SYSEE.EXE /s
O4 - HKLM\..\RunServices: [ATLEV32.EXE] C:\WINDOWS\ATLEV32.EXE /s
O4 - HKLM\..\RunServices: [ADDIP32.EXE] C:\WINDOWS\SYSTEM\ADDIP32.EXE /s
O4 - HKLM\..\RunServices: [MFCUL.EXE] C:\WINDOWS\SYSTEM\MFCUL.EXE /s
O4 - HKLM\..\RunServices: [APIFZ.EXE] C:\WINDOWS\APIFZ.EXE /s
O4 - HKLM\..\RunServices: [APPID32.EXE] C:\WINDOWS\SYSTEM\APPID32.EXE /s
O4 - HKLM\..\RunServices: [NETMB.EXE] C:\WINDOWS\SYSTEM\NETMB.EXE /s
O4 - HKLM\..\RunServices: [APITE.EXE] C:\WINDOWS\SYSTEM\APITE.EXE /s
O4 - HKLM\..\RunServices: [ATLDF.EXE] C:\WINDOWS\SYSTEM\ATLDF.EXE /s
O4 - HKLM\..\RunServices: [APIZX.EXE] C:\WINDOWS\SYSTEM\APIZX.EXE /s
O4 - HKLM\..\RunServices: [MFCYC.EXE] C:\WINDOWS\MFCYC.EXE /s
O4 - HKLM\..\RunServices: [IETY32.EXE] C:\WINDOWS\IETY32.EXE /s
O4 - HKLM\..\RunServices: [MSKE.EXE] C:\WINDOWS\SYSTEM\MSKE.EXE /s
O4 - HKLM\..\RunServices: [MFCTI32.EXE] C:\WINDOWS\MFCTI32.EXE /s
O4 - HKLM\..\RunServices: [JAVAYS.EXE] C:\WINDOWS\SYSTEM\JAVAYS.EXE /s
O4 - HKLM\..\RunServices: [APIFD.EXE] C:\WINDOWS\SYSTEM\APIFD.EXE /s
O4 - HKLM\..\RunServices: [SDKZK.EXE] C:\WINDOWS\SDKZK.EXE /s
O4 - HKLM\..\RunServices: [JAVAIU.EXE] C:\WINDOWS\JAVAIU.EXE /s
O4 - HKLM\..\RunServices: [ADDNZ.EXE] C:\WINDOWS\ADDNZ.EXE /s
O4 - HKLM\..\RunServices: [ATLDA.EXE] C:\WINDOWS\ATLDA.EXE /s
O4 - HKLM\..\RunServices: [D3SY.EXE] C:\WINDOWS\D3SY.EXE /s
O4 - HKLM\..\RunServices: [JAVAXN.EXE] C:\WINDOWS\SYSTEM\JAVAXN.EXE /s
O4 - HKLM\..\RunServices: [ADDBB32.EXE] C:\WINDOWS\ADDBB32.EXE /s
O4 - HKLM\..\RunServices: [APIVN.EXE] C:\WINDOWS\SYSTEM\APIVN.EXE /s
O4 - HKLM\..\RunServices: [ATLRX32.EXE] C:\WINDOWS\SYSTEM\ATLRX32.EXE /s
O4 - HKLM\..\RunServices: [CREQ32.EXE] C:\WINDOWS\CREQ32.EXE /s
O4 - HKLM\..\RunServices: [IPYA32.EXE] C:\WINDOWS\IPYA32.EXE /s
O4 - HKLM\..\RunServices: [CRQL32.EXE] C:\WINDOWS\SYSTEM\CRQL32.EXE /s
O4 - HKLM\..\RunServices: [NETHB32.EXE] C:\WINDOWS\SYSTEM\NETHB32.EXE /s
O4 - HKLM\..\RunServices: [MFCOG32.EXE] C:\WINDOWS\MFCOG32.EXE /s
O4 - HKLM\..\RunServices: [D3YA32.EXE] C:\WINDOWS\SYSTEM\D3YA32.EXE /s
O4 - HKLM\..\RunServices: [MFCCT32.EXE] C:\WINDOWS\SYSTEM\MFCCT32.EXE /s
O4 - HKCU\..\Run: [PPWebCap] C:\PROGRA~1\SCANSOFT\PAPERP~1\PPWebCap.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O12 - Plugin for .swf: C:\PROGRAM FILES\NETSCAPE\COMMUNICATOR\PROGRAM\PLUGINS\npswf32.dll
O14 - IERESET.INF: START_PAGE_URL=www.e4me.com
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
I'm new to this forum, and I finally figured out how to copy and paste my log. Here it is.Anything you can help me with I'll be very very grateful for.
MSIE: Internet Explorer v5.00 (5.00.2614.3500)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\OFFICE51\SOINTGR.EXE
C:\WINDOWS\SYSTEM\APIDJ32.EXE
c:\windows\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\JAVAWK32.EXE
C:\WINDOWS\SYSTEM\IEXP32.EXE
C:\WINDOWS\WINGT.EXE
C:\WINDOWS\SYSTEM\APPSS.EXE
C:\WINDOWS\SYSTEM\APICN32.EXE
C:\WINDOWS\SYSTEM\JAVAXD32.EXE
C:\WINDOWS\NETPM32.EXE
C:\WINDOWS\SYSTEM\SYSEE.EXE
C:\WINDOWS\ATLEV32.EXE
C:\WINDOWS\SYSTEM\ADDIP32.EXE
C:\WINDOWS\SYSTEM\MFCUL.EXE
C:\WINDOWS\APIFZ.EXE
C:\WINDOWS\SYSTEM\APPID32.EXE
C:\WINDOWS\SYSTEM\NETMB.EXE
C:\WINDOWS\SYSTEM\APITE.EXE
C:\WINDOWS\SYSTEM\ATLDF.EXE
C:\WINDOWS\SYSTEM\APIZX.EXE
C:\WINDOWS\MFCYC.EXE
C:\WINDOWS\IETY32.EXE
C:\WINDOWS\SYSTEM\MSKE.EXE
C:\WINDOWS\MFCTI32.EXE
C:\WINDOWS\SYSTEM\JAVAYS.EXE
C:\WINDOWS\SYSTEM\APIFD.EXE
C:\WINDOWS\SDKZK.EXE
C:\WINDOWS\JAVAIU.EXE
C:\WINDOWS\ADDNZ.EXE
C:\WINDOWS\ATLDA.EXE
C:\WINDOWS\D3SY.EXE
C:\WINDOWS\SYSTEM\JAVAXN.EXE
C:\WINDOWS\ADDBB32.EXE
C:\WINDOWS\SYSTEM\APIVN.EXE
C:\WINDOWS\SYSTEM\ATLRX32.EXE
C:\WINDOWS\CREQ32.EXE
C:\WINDOWS\IPYA32.EXE
C:\WINDOWS\SYSTEM\CRQL32.EXE
C:\WINDOWS\SYSTEM\NETHB32.EXE
C:\WINDOWS\MFCOG32.EXE
C:\WINDOWS\SYSTEM\D3YA32.EXE
C:\WINDOWS\SYSTEM\MFCCT32.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\PROGRAM FILES\ESOFT\EBOARD\EBOARD.EXE
C:\PROGRAM FILES\ICHOOSE\NAG.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\PROGRAM FILES\REAL\REALPLAYER\REALPLAY.EXE
C:\PROGRAM FILES\VISIONEER ONETOUCH\ONETOUCHMON.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\WINDOWS\SYSEA.EXE
C:\PROGRAM FILES\SPYBOT - SEARCH & DESTROY\TEATIMER.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE
C:\PROGRAM FILES\OUTLOOK EXPRESS\MSIMN.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = no good
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: Class - {650932D6-81AE-26F9-91BD-69C478819BAA} - C:\WINDOWS\SYSTEM\CRJI32.DLL
O2 - BHO: Class - {90306EB6-13A2-FC5F-0B60-04CAD2906D02} - C:\WINDOWS\SYSTEM\IECR32.DLL
O2 - BHO: Class - {24E13DBE-B766-5211-E118-DF8F9D6FD61F} - C:\WINDOWS\SYSTEM\MFCDD.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] c:\windows\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] c:\windows\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
O4 - HKLM\..\Run: [AtiKey] Atitask.exe
O4 - HKLM\..\Run: [SO5 Integrator Pass Two] C:\OFFICE51\SOINTGR.EXE
O4 - HKLM\..\Run: [eMachine eBoard] C:\PROGRA~1\ESOFT\EBOARD\eBoard.exe
O4 - HKLM\..\Run: [iCn] C:\PROGRAM FILES\ICHOOSE\NAG.EXE
O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [OneTouch Monitor] C:\Program Files\Visioneer OneTouch\OneTouchMon.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
O4 - HKLM\..\Run: [IEXPLORE.EXE] C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
O4 - HKLM\..\Run: [SYSEA.EXE] C:\WINDOWS\SYSEA.EXE
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [SO5 Integrator Pass One] C:\OFFICE51\SOINTGR.EXE
O4 - HKLM\..\RunServices: [APIDJ32.EXE] C:\WINDOWS\SYSTEM\APIDJ32.EXE /s
O4 - HKLM\..\RunServices: [KB891711] c:\windows\SYSTEM\KB891711\KB891711.EXE
O4 - HKLM\..\RunServices: [JAVAWK32.EXE] C:\WINDOWS\SYSTEM\JAVAWK32.EXE /s
O4 - HKLM\..\RunServices: [IEXP32.EXE] C:\WINDOWS\SYSTEM\IEXP32.EXE /s
O4 - HKLM\..\RunServices: [WINGT.EXE] C:\WINDOWS\WINGT.EXE /s
O4 - HKLM\..\RunServices: [APPSS.EXE] C:\WINDOWS\SYSTEM\APPSS.EXE /s
O4 - HKLM\..\RunServices: [APICN32.EXE] C:\WINDOWS\SYSTEM\APICN32.EXE /s
O4 - HKLM\..\RunServices: [JAVAXD32.EXE] C:\WINDOWS\SYSTEM\JAVAXD32.EXE /s
O4 - HKLM\..\RunServices: [NETPM32.EXE] C:\WINDOWS\NETPM32.EXE /s
O4 - HKLM\..\RunServices: [SYSEE.EXE] C:\WINDOWS\SYSTEM\SYSEE.EXE /s
O4 - HKLM\..\RunServices: [ATLEV32.EXE] C:\WINDOWS\ATLEV32.EXE /s
O4 - HKLM\..\RunServices: [ADDIP32.EXE] C:\WINDOWS\SYSTEM\ADDIP32.EXE /s
O4 - HKLM\..\RunServices: [MFCUL.EXE] C:\WINDOWS\SYSTEM\MFCUL.EXE /s
O4 - HKLM\..\RunServices: [APIFZ.EXE] C:\WINDOWS\APIFZ.EXE /s
O4 - HKLM\..\RunServices: [APPID32.EXE] C:\WINDOWS\SYSTEM\APPID32.EXE /s
O4 - HKLM\..\RunServices: [NETMB.EXE] C:\WINDOWS\SYSTEM\NETMB.EXE /s
O4 - HKLM\..\RunServices: [APITE.EXE] C:\WINDOWS\SYSTEM\APITE.EXE /s
O4 - HKLM\..\RunServices: [ATLDF.EXE] C:\WINDOWS\SYSTEM\ATLDF.EXE /s
O4 - HKLM\..\RunServices: [APIZX.EXE] C:\WINDOWS\SYSTEM\APIZX.EXE /s
O4 - HKLM\..\RunServices: [MFCYC.EXE] C:\WINDOWS\MFCYC.EXE /s
O4 - HKLM\..\RunServices: [IETY32.EXE] C:\WINDOWS\IETY32.EXE /s
O4 - HKLM\..\RunServices: [MSKE.EXE] C:\WINDOWS\SYSTEM\MSKE.EXE /s
O4 - HKLM\..\RunServices: [MFCTI32.EXE] C:\WINDOWS\MFCTI32.EXE /s
O4 - HKLM\..\RunServices: [JAVAYS.EXE] C:\WINDOWS\SYSTEM\JAVAYS.EXE /s
O4 - HKLM\..\RunServices: [APIFD.EXE] C:\WINDOWS\SYSTEM\APIFD.EXE /s
O4 - HKLM\..\RunServices: [SDKZK.EXE] C:\WINDOWS\SDKZK.EXE /s
O4 - HKLM\..\RunServices: [JAVAIU.EXE] C:\WINDOWS\JAVAIU.EXE /s
O4 - HKLM\..\RunServices: [ADDNZ.EXE] C:\WINDOWS\ADDNZ.EXE /s
O4 - HKLM\..\RunServices: [ATLDA.EXE] C:\WINDOWS\ATLDA.EXE /s
O4 - HKLM\..\RunServices: [D3SY.EXE] C:\WINDOWS\D3SY.EXE /s
O4 - HKLM\..\RunServices: [JAVAXN.EXE] C:\WINDOWS\SYSTEM\JAVAXN.EXE /s
O4 - HKLM\..\RunServices: [ADDBB32.EXE] C:\WINDOWS\ADDBB32.EXE /s
O4 - HKLM\..\RunServices: [APIVN.EXE] C:\WINDOWS\SYSTEM\APIVN.EXE /s
O4 - HKLM\..\RunServices: [ATLRX32.EXE] C:\WINDOWS\SYSTEM\ATLRX32.EXE /s
O4 - HKLM\..\RunServices: [CREQ32.EXE] C:\WINDOWS\CREQ32.EXE /s
O4 - HKLM\..\RunServices: [IPYA32.EXE] C:\WINDOWS\IPYA32.EXE /s
O4 - HKLM\..\RunServices: [CRQL32.EXE] C:\WINDOWS\SYSTEM\CRQL32.EXE /s
O4 - HKLM\..\RunServices: [NETHB32.EXE] C:\WINDOWS\SYSTEM\NETHB32.EXE /s
O4 - HKLM\..\RunServices: [MFCOG32.EXE] C:\WINDOWS\MFCOG32.EXE /s
O4 - HKLM\..\RunServices: [D3YA32.EXE] C:\WINDOWS\SYSTEM\D3YA32.EXE /s
O4 - HKLM\..\RunServices: [MFCCT32.EXE] C:\WINDOWS\SYSTEM\MFCCT32.EXE /s
O4 - HKCU\..\Run: [PPWebCap] C:\PROGRA~1\SCANSOFT\PAPERP~1\PPWebCap.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O12 - Plugin for .swf: C:\PROGRAM FILES\NETSCAPE\COMMUNICATOR\PROGRAM\PLUGINS\npswf32.dll
O14 - IERESET.INF: START_PAGE_URL=www.e4me.com
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
![]() |
Similar Threads
- Reformating/reinstalling windows (Windows NT / 2000 / XP)
- Drivers for PCI Ethernet Controller and/or networking help (Windows 95 / 98 / Me)
- antispylab - Windows Security Center (Viruses, Spyware and other Nasties)
- Windows 2000 Password Expired (Windows NT / 2000 / XP)
- IE works on aol, but the "real" IE does not load (Web Browsers)
- Permissions Win2000 - XP (Windows NT / 2000 / XP)
- service pack 2 (Windows NT / 2000 / XP)
- Xp Boot (Windows NT / 2000 / XP)
Other Threads in the Viruses, Spyware and other Nasties Forum
- Previous Thread: Error# 317 and annoying desktop icons
- Next Thread: Desktop Popups (AHH!) and CWS Infection (Related problems?)
| Thread Tools | Search this Thread |
adware anti-malware anti-virussitesaccessissue antivirus apple attack audio avg backtoschoolspeech bar blackhat botnet china commercials conficker connect control crosssitescripting cyber cyberwarfare ddos domains e-mafia education email europe exploit facebook fake fancheckvirus gaming gtaiv gumblar halloween herss.exe hijack internet iphone kaspersky legal logfiles mail malware mcafee mega-d messagelabs microsoft mobile msn nazi news obama onlinethreats paedophile panel parents patch phishing police president privacy pro problem redirect redirecting reliability report research risk rogueantivirus samhain sans scareware school search security seopoisoning sites software spam spyware spywareexternalwindows7adminstratortrojans sqlinjection symantec system teen translate trojan unabletoaccessanti-virussites unwanted update usa virus viruses war warning windows worm yahoo zeroday





