•
•
•
•
What is DaniWeb IT Discussion Community?
You're currently browsing the Viruses, Spyware and other Nasties section within the Tech Talk category of DaniWeb, a massive community of 455,985 software developers, web developers, Internet marketers, and tech gurus who are all enthusiastic about making contacts, networking, and learning from each other. In fact, there are 3,772 IT professionals currently interacting right now! Registration is free, only takes a minute and lets you enjoy all of the interactive features of the site.
Please support our Viruses, Spyware and other Nasties advertiser: 64-bit Windows Community
Views: 1773 | Replies: 0
![]() |
•
•
Join Date: Nov 2007
Posts: 2
Reputation:
Rep Power: 0
Solved Threads: 0
i have viruscan on-scan installed, and it detects the bo:heap warning but cannot do anything about it, and IE has become very slow. here is my hijackthis logfile
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:43:23 PM, on 11/19/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Display Adapter\USBDisplayService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\McAfee\Common Framework\naPrdMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\USB Display Adapter\USBDisplayManager.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\McAfee\Common Framework\UpdaterUI.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Dell\QuickSet\Quickset.exe
C:\Program Files\Lexmark 2500 Series\lxddmon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Lexmark 2500 Series\lxddamon.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\CardScan\CardScan\CardScanAgent.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
c:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\WINDOWS\system\CmSNXeye.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: SITEguard BHO - {1827766B-9F49-4854-8034-F6EE26FCB1EC} - C:\Program Files\STOPzilla!\SZSG.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: STOPzilla - {98828DED-A591-462F-83BA-D2F62A68B8B8} - C:\Program Files\STOPzilla!\SZSG.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ShowLOMControl]
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [lxddmon.exe] "C:\Program Files\Lexmark 2500 Series\lxddmon.exe"
O4 - HKLM\..\Run: [lxddamon] "C:\Program Files\Lexmark 2500 Series\lxddamon.exe"
O4 - HKLM\..\Run: [LXDDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDDtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [itype] "c:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [CardScanAgent] "C:\Program Files\CardScan\CardScan\CardScanAgent.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} (DjVuCtl Class) - http://www.lizardtech.com/download/f...trol_en_US.cab
O16 - DPF: {0EA5E5FA-821A-4F9C-8230-FA12B87A19D9} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {16C869B1-898C-11D9-A5B0-96E0F037E357} (PropSub.ctlPropSub) - http://rep.liebert.com/eforms/Active...ct/PropSub.CAB
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {1BE715C5-F482-47C0-BA8C-FF9BC5D56289} (SmartSwitch.Logic) - http://rep.liebert.com/eforms/lqq/Or...martSwitch.CAB
O16 - DPF: {1FE72CCE-DD27-4BC6-B3E0-4C0373A5F4DF} (LargeSystems.Logic) - http://rep.liebert.com/eforms/lqq/Or...rgeSystems.CAB
O16 - DPF: {1FEF6BCE-8A4D-4046-BA2A-61C75C5346A1} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {27325993-5EBE-4DD8-8B81-5FBA4E416503} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {309E5565-B699-11D2-9642-000086079A5F} (LiebertDirControl.DirControl) - http://rep.liebert.com/eforms/Active...DirControl.CAB
O16 - DPF: {38EDA63E-E9FD-4771-8F45-2146E9EC4819} (Parts.Logic) - http://rep.liebert.com/eforms/lqq/Or...inct/Parts.CAB
O16 - DPF: {3EB16B20-8BD0-4B97-91FB-203242EA1FBE} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {3FC8DDB5-40DB-49F2-8CA5-973764B02A85} (LGSService.Logic) - http://rep.liebert.com/eforms/lqq/Or...LGSService.CAB
O16 - DPF: {447B6674-08A7-4ACA-B28D-45EA419DD927} (Nfinity.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/Nfinity.CAB
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1005.cab
O16 - DPF: {49DD7F6A-E467-4FF5-801E-CE4FB602522C} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {4D19B435-493D-4991-9BB7-E9CB08255D01} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {51821DE0-1BD3-4385-B7BD-3FD498406297} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {52D92D4A-2893-416B-BC72-060B9770A2F7} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {575B4B50-452E-4240-B226-E5FD3795CC58} (TVSS_Hybrid_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...VSS_Hybrid.CAB
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/.../GAME_UNO1.cab
O16 - DPF: {62E10F5F-0336-4B06-98A9-A50303DAFCAC} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {654047D8-9988-4081-B90C-49D9684A47B7} (Nfinity.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/Nfinity.CAB
O16 - DPF: {659F9817-5914-4723-9DE3-6619C0A5642B} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {65C55E60-BBCA-441D-8C04-4213D1F7AF91} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {75F9F086-C2AD-413E-9691-7C4EDA2BFF0A} (SmallSystemMonitors.Logic) - http://rep.liebert.com/eforms/lqq/Or...emMonitors.CAB
O16 - DPF: {7B4E8328-248E-425F-9C20-39B79576B14D} (SiteScanWeb.Logic) - http://rep.liebert.com/eforms/lqq/Or...iteScanWeb.CAB
O16 - DPF: {7D60D7D4-514A-4E4E-BE2E-2F1B9F814958} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {7E76357E-92F3-4C38-BAFB-CA1A300A3638} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {8756CC2C-C67F-4623-905B-F62AEDE392B8} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {8E697AE3-F024-480C-9C61-88978BB685AA} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.lizardtech.com/download/f...all/isetup.cab
O16 - DPF: {92E2C88D-F739-422D-8B18-42C164B2EC9E} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {948647BD-5A4F-47FD-8526-ECCA67579E10} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {986FC28D-D3DB-45B3-AA95-B4B4533912AB} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {A1F0C5B4-40D2-49B1-84A8-D162F81BF00C} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {A378C92E-6A38-4C1F-A05A-5973D7E06820} (IsolationTransformer.Logic) - http://rep.liebert.com/eforms/lqq/Or...ransformer.CAB
O16 - DPF: {A55A1D19-BBE8-4E44-B25C-F2F242CD5F07} (MPPowerStrips.Logic) - http://rep.liebert.com/eforms/lqq/Or...owerStrips.CAB
O16 - DPF: {A755A71F-ACAB-4CA2-8718-22142C638405} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {ABC577FE-AC9E-49C7-9237-30F007F462BB} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {B3CCC9A2-0838-464B-AD53-A936CD4FB4B0} (UPStationGXT_PDU.Logic) - http://rep.liebert.com/eforms/lqq/Or...ionGXT_PDU.CAB
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewor...o.cab56649.cab
O16 - DPF: {C24DB5FF-78D5-465F-853D-27D4B3435E0E} (NfinityMBC.Logic) - http://rep.liebert.com/eforms/lqq/Or...NfinityMBC.CAB
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: {C4CA279D-A8B4-4000-9999-C51FA2CD10F7} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {C5247FF6-43BC-43FE-8B6F-9AA18D35E04A} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {C89EEFC8-0E4A-43E7-96CF-89F75C6350BA} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {DDDF0AFF-4B4C-45F4-85A2-6A6A98E49B11} (TVSS_Accuvar_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...SS_Accuvar.CAB
O16 - DPF: {E4090179-264C-4443-B1E7-8A99754A00E2} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {E629518C-7B04-4E84-98C5-5C583146FD89} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {E69EC855-1F74-4202-959B-F2CA710857D5} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O16 - DPF: {FC277BE0-4630-4F99-B967-C55837CF6D2F} (Knurr.Logic) - http://rep.liebert.com/eforms/lqq/Or...inct/Knurr.CAB
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O17 - HKLM\Software\..\Telephony: DomainName = FHA-HVAC.LOCAL
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - McAfee, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
O23 - Service: USB Display Service - Newnham Research Limited - C:\Program Files\USB Display Adapter\USBDisplayService.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
--
End of file - 19804 bytes
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:43:23 PM, on 11/19/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\USB Display Adapter\USBDisplayService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\McAfee\Common Framework\naPrdMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\USB Display Adapter\USBDisplayManager.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\McAfee\Common Framework\UpdaterUI.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Dell\QuickSet\Quickset.exe
C:\Program Files\Lexmark 2500 Series\lxddmon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Lexmark 2500 Series\lxddamon.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\CardScan\CardScan\CardScanAgent.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
c:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\WINDOWS\system\CmSNXeye.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: SITEguard BHO - {1827766B-9F49-4854-8034-F6EE26FCB1EC} - C:\Program Files\STOPzilla!\SZSG.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: STOPzilla - {98828DED-A591-462F-83BA-D2F62A68B8B8} - C:\Program Files\STOPzilla!\SZSG.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ShowLOMControl]
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [lxddmon.exe] "C:\Program Files\Lexmark 2500 Series\lxddmon.exe"
O4 - HKLM\..\Run: [lxddamon] "C:\Program Files\Lexmark 2500 Series\lxddamon.exe"
O4 - HKLM\..\Run: [LXDDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXDDtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [itype] "c:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [CardScanAgent] "C:\Program Files\CardScan\CardScan\CardScanAgent.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} (DjVuCtl Class) - http://www.lizardtech.com/download/f...trol_en_US.cab
O16 - DPF: {0EA5E5FA-821A-4F9C-8230-FA12B87A19D9} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {16C869B1-898C-11D9-A5B0-96E0F037E357} (PropSub.ctlPropSub) - http://rep.liebert.com/eforms/Active...ct/PropSub.CAB
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {1BE715C5-F482-47C0-BA8C-FF9BC5D56289} (SmartSwitch.Logic) - http://rep.liebert.com/eforms/lqq/Or...martSwitch.CAB
O16 - DPF: {1FE72CCE-DD27-4BC6-B3E0-4C0373A5F4DF} (LargeSystems.Logic) - http://rep.liebert.com/eforms/lqq/Or...rgeSystems.CAB
O16 - DPF: {1FEF6BCE-8A4D-4046-BA2A-61C75C5346A1} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {27325993-5EBE-4DD8-8B81-5FBA4E416503} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {309E5565-B699-11D2-9642-000086079A5F} (LiebertDirControl.DirControl) - http://rep.liebert.com/eforms/Active...DirControl.CAB
O16 - DPF: {38EDA63E-E9FD-4771-8F45-2146E9EC4819} (Parts.Logic) - http://rep.liebert.com/eforms/lqq/Or...inct/Parts.CAB
O16 - DPF: {3EB16B20-8BD0-4B97-91FB-203242EA1FBE} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {3FC8DDB5-40DB-49F2-8CA5-973764B02A85} (LGSService.Logic) - http://rep.liebert.com/eforms/lqq/Or...LGSService.CAB
O16 - DPF: {447B6674-08A7-4ACA-B28D-45EA419DD927} (Nfinity.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/Nfinity.CAB
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1005.cab
O16 - DPF: {49DD7F6A-E467-4FF5-801E-CE4FB602522C} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {4D19B435-493D-4991-9BB7-E9CB08255D01} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {51821DE0-1BD3-4385-B7BD-3FD498406297} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {52D92D4A-2893-416B-BC72-060B9770A2F7} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {575B4B50-452E-4240-B226-E5FD3795CC58} (TVSS_Hybrid_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...VSS_Hybrid.CAB
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/.../GAME_UNO1.cab
O16 - DPF: {62E10F5F-0336-4B06-98A9-A50303DAFCAC} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {654047D8-9988-4081-B90C-49D9684A47B7} (Nfinity.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/Nfinity.CAB
O16 - DPF: {659F9817-5914-4723-9DE3-6619C0A5642B} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {65C55E60-BBCA-441D-8C04-4213D1F7AF91} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {75F9F086-C2AD-413E-9691-7C4EDA2BFF0A} (SmallSystemMonitors.Logic) - http://rep.liebert.com/eforms/lqq/Or...emMonitors.CAB
O16 - DPF: {7B4E8328-248E-425F-9C20-39B79576B14D} (SiteScanWeb.Logic) - http://rep.liebert.com/eforms/lqq/Or...iteScanWeb.CAB
O16 - DPF: {7D60D7D4-514A-4E4E-BE2E-2F1B9F814958} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {7E76357E-92F3-4C38-BAFB-CA1A300A3638} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {8756CC2C-C67F-4623-905B-F62AEDE392B8} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {8E697AE3-F024-480C-9C61-88978BB685AA} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.lizardtech.com/download/f...all/isetup.cab
O16 - DPF: {92E2C88D-F739-422D-8B18-42C164B2EC9E} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {948647BD-5A4F-47FD-8526-ECCA67579E10} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {986FC28D-D3DB-45B3-AA95-B4B4533912AB} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {A1F0C5B4-40D2-49B1-84A8-D162F81BF00C} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {A378C92E-6A38-4C1F-A05A-5973D7E06820} (IsolationTransformer.Logic) - http://rep.liebert.com/eforms/lqq/Or...ransformer.CAB
O16 - DPF: {A55A1D19-BBE8-4E44-B25C-F2F242CD5F07} (MPPowerStrips.Logic) - http://rep.liebert.com/eforms/lqq/Or...owerStrips.CAB
O16 - DPF: {A755A71F-ACAB-4CA2-8718-22142C638405} (Interceptor2.Logic) - http://rep.liebert.com/eforms/lqq/Or...terceptor2.CAB
O16 - DPF: {ABC577FE-AC9E-49C7-9237-30F007F462BB} (TVSS_LM_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...ct/TVSS_LM.CAB
O16 - DPF: {B3CCC9A2-0838-464B-AD53-A936CD4FB4B0} (UPStationGXT_PDU.Logic) - http://rep.liebert.com/eforms/lqq/Or...ionGXT_PDU.CAB
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewor...o.cab56649.cab
O16 - DPF: {C24DB5FF-78D5-465F-853D-27D4B3435E0E} (NfinityMBC.Logic) - http://rep.liebert.com/eforms/lqq/Or...NfinityMBC.CAB
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: {C4CA279D-A8B4-4000-9999-C51FA2CD10F7} (Foundation.Logic) - http://rep.liebert.com/eforms/lqq/Or...Foundation.CAB
O16 - DPF: {C5247FF6-43BC-43FE-8B6F-9AA18D35E04A} (NX.Logic) - http://rep.liebert.com/eforms/lqq/Or...istinct/NX.CAB
O16 - DPF: {C89EEFC8-0E4A-43E7-96CF-89F75C6350BA} (DPGProducts.Logic) - http://rep.liebert.com/eforms/lqq/Or...PGProducts.CAB
O16 - DPF: {DDDF0AFF-4B4C-45F4-85A2-6A6A98E49B11} (TVSS_Accuvar_System.Logic) - http://rep.liebert.com/eforms/lqq/Or...SS_Accuvar.CAB
O16 - DPF: {E4090179-264C-4443-B1E7-8A99754A00E2} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {E629518C-7B04-4E84-98C5-5C583146FD89} (NPower300.Logic) - http://rep.liebert.com/eforms/lqq/Or.../NPower300.CAB
O16 - DPF: {E69EC855-1F74-4202-959B-F2CA710857D5} (PowerSurePanel.Logic) - http://rep.liebert.com/eforms/lqq/Or...rSurePanel.CAB
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O16 - DPF: {FC277BE0-4630-4F99-B967-C55837CF6D2F} (Knurr.Logic) - http://rep.liebert.com/eforms/lqq/Or...inct/Knurr.CAB
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O17 - HKLM\Software\..\Telephony: DomainName = FHA-HVAC.LOCAL
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = FHA-HVAC.LOCAL
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - McAfee, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: STOPzilla Service (szserver) - iS3, Inc. - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
O23 - Service: USB Display Service - Newnham Research Limited - C:\Program Files\USB Display Adapter\USBDisplayService.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
--
End of file - 19804 bytes
![]() |
•
•
•
•
•
•
•
•
DaniWeb Viruses, Spyware and other Nasties Marketplace
•
•
•
•
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
- Previous Thread: Help with removal of Downloader-va
- Next Thread: Windows explorer restarting itself


Linear Mode