<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
	<channel>
		<title>Webmaster Forum</title>
		<description>Webmaster discussion on numerous topics including Website design, programming, scripting, hosting, server administration, search engines, and operating systems</description>
		<link>http://www.ozzu.com</link>
		<lastBuildDate>Sat, 04 Jul 2009 04:08:02 -0700</lastBuildDate>
				<item>
			<dc:creator>rohan4290</dc:creator>
			<pubDate>Fri, 03 Jul 2009 17:47:05 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/internet-explorer-closes-autmoatically-and-comp-loads-slow-t98742.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/internet-explorer-closes-autmoatically-and-comp-loads-slow-t98742.html</link>
			<title>Internet Explorer closes autmoatically and Comp loads slow</title>
			<description><![CDATA[Logfile of HijackThis v1.99.1<br />Scan saved at 8:27:54 PM, on 7/3/2009<br />Platform: Windows XP SP3 (WinNT 5.01.2600)<br />MSIE: Internet Explorer v7.00 (7.00.6000.16850)<br /><br />Running processes:<br />C:WINDOWSSystem32smss.exe<br />C:WINDOWSsystem32csrss.exe<br />C:WINDOWSsystem32winlogon.exe<br />C:WINDOWSsystem32services.exe<br />C:WINDOWSsystem32lsass.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSSystem32svchost.exe<br />C:Program FilesIntelWirelessBinEvtEng.exe<br />C:Program FilesCommon FilesMicrosoft SharedInkKeyboardSurrogate.exe<br />C:WINDOWSSYSTEM32WISPTIS.EXE<br />C:WINDOWSSystem32tabbtnu.exe<br />C:WINDOWSExplorer.EXE<br />C:WINDOWSsystem32ctfmon.exe<br />C:Program FilesIntelWirelessBinS24EvMon.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesCommon FilesSymantec SharedccProxy.exe<br />C:Program FilesCommon FilesSymantec SharedccSetMgr.exe<br />C:Program FilesSymantec Client SecuritySymantec Client FirewallISSVC.exe<br />C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe<br />C:Program FilesCommon FilesMicrosoft SharedInkTCServer.exe<br />C:Program FilesLavasoftAd-Awareaawservice.exe<br />C:WINDOWSsystem32spoolsv.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesWIDCOMMBluetooth Softwarebinbtwdins.exe<br />C:Program FilesSymantec Client SecuritySymantec AntiVirusDefWatch.exe<br />C:Program FilesIntelIntel Matrix Storage Manageriaantmon.exe<br />C:WINDOWSsystem32libusbd-nt.exe<br />C:Program FilesLinksysLinksys UpdaterbinLinksysUpdater.exe<br />C:Program FilesCommon FilesNew BoundaryPrismXLPRISMXL.SYS<br />C:Program FilesIntelWirelessBinRegSrvc.exe<br />C:WINDOWSsystem32java.exe<br />C:Program FilesComcastDesktop Doctorbinsprtsvc.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesSymantec Client SecuritySymantec Client FirewallSymSPort.exe<br />C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe<br />C:WINDOWSSystem32alg.exe<br />C:Program FilesCommon FilesMicrosoft SharedInkTabTip.exe<br />C:Program FilesSynapticsSynTPSynTPLpr.exe<br />C:Program FilesSynapticsSynTPSynTPEnh.exe<br />C:Program FilesIntelIntel Matrix Storage Manageriaanotif.exe<br />C:Program FilesMotorolaSMSERIALsm56hlpr.exe<br />C:Program FilesCyberLinkPowerDVDPDVDServ.exe<br />C:WINDOWSsystem32hkcmd.exe<br />C:WINDOWSsystem32igfxpers.exe<br />C:WINDOWSsystem32igfxsrvc.exe<br />C:Program FilesCommon FilesSymantec SharedccApp.exe<br />C:PROGRA~1SYMANT~1SYMANT~2VPTray.exe<br />C:Program FilesIntelWirelessbinZCfgSvc.exe<br />C:Program FilesIntelWirelessBinifrmewrk.exe<br />C:Program FilesJavajre1.6.0_07binjusched.exe<br />C:Program FilesComcastDesktop Doctorbinsprtcmd.exe<br />C:WINDOWSstsystra.exe<br />C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe<br />C:Program FilesMicrosoft ActiveSyncwcescomm.exe<br />C:Program FilesWIDCOMMBluetooth SoftwareBTTray.exe<br />C:Program FilesIntelWirelessBinDot1XCfg.exe<br />C:Program FilesSpyware DoctorpctsAuxs.exe<br />C:Program FilesSpyware DoctorpctsSvc.exe<br />C:Program FilesSpyware DoctorpctsTray.exe<br />C:Documents and SettingsAdministratorDesktopHijackHijackThis.exe<br /><br />R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://www.cnn.com/" rel="nofollow" target="_blank">http://www.cnn.com/</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = <!-- m --><a class="postlink" href="http://www.metacrawler.com/crawler?general=" rel="nofollow" target="_blank">http://www.metacrawler.com/crawler?general=</a><!-- m -->%s<br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Windows Internet Explorer provided by Comcast<br />R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = :0<br />R3 - URLSearchHook: AIM Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:Program FilesAIM Toolbaraimtb.dll<br />R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll<br />O1 - Hosts: ::1 localhost<br />O1 - Hosts: 94.232.248.66 inetavirus.com<br />O1 - Hosts: 94.232.248.66 <!-- w --><a class="postlink" href="http://www.inetavirus.com" rel="nofollow" target="_blank">http://www.inetavirus.com</a><!-- w --><br />O2 - BHO: &amp;Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll<br />O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:Program FilesAIM Toolbaraimtb.dll<br />O2 - BHO: BHO - {BAD4551D-9B24-42cb-9BCD-818CA2DA7B63} - C:WINDOWSsystem32iehelper.dll (file missing)<br />O3 - Toolbar: &amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar2.dll<br />O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll<br />O3 - Toolbar: WikiSearch - {44E7EF6C-6F5C-4AAF-A080-7725A27878ED} - C:PROGRA~1WIKISE~1WIKIPE~1.DLL<br />O3 - Toolbar: YouTube Toolbar - {B63D81CF-90DC-4d13-8782-9524A2752039} - C:Program FilesYouTube ToolbarDCCFBF5.dll<br />O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:Program FilesAIM Toolbaraimtb.dll<br />O4 - HKLM..Run: [TabletTip] &quot;C:Program FilesCommon Filesmicrosoft sharedinktabtip.exe&quot; /resume<br />O4 - HKLM..Run: [Snippet] &quot;C:Program FilesMicrosoft Experience PackSnipping ToolSnippingTool.exe&quot; /i<br />O4 - HKLM..Run: [SynTPLpr] C:Program FilesSynapticsSynTPSynTPLpr.exe<br />O4 - HKLM..Run: [SynTPEnh] C:Program FilesSynapticsSynTPSynTPEnh.exe<br />O4 - HKLM..Run: [Recguard] %WINDIR%SMINSTRECGUARD.EXE<br />O4 - HKLM..Run: [IAAnotif] C:Program FilesIntelIntel Matrix Storage Manageriaanotif.exe<br />O4 - HKLM..Run: [igfxtray] C:WINDOWSsystem32igfxtray.exe<br />O4 - HKLM..Run: [igfxhkcmd] C:WINDOWSsystem32hkcmd.exe<br />O4 - HKLM..Run: [igfxpers] C:WINDOWSsystem32igfxpers.exe<br />O4 - HKLM..Run: [ccApp] &quot;C:Program FilesCommon FilesSymantec SharedccApp.exe&quot;<br />O4 - HKLM..Run: [vptray] C:PROGRA~1SYMANT~1SYMANT~2VPTray.exe<br />O4 - HKLM..Run: [IntelZeroConfig] &quot;C:Program FilesIntelWirelessbinZCfgSvc.exe&quot;<br />O4 - HKLM..Run: [IntelWireless] &quot;C:Program FilesIntelWirelessBinifrmewrk.exe&quot; /tf Intel PROSet/Wireless<br />O4 - HKLM..Run: [SunJavaUpdateSched] &quot;C:Program FilesJavajre1.6.0_07binjusched.exe&quot;<br />O4 - HKLM..Run: [SigmatelSysTrayApp] stsystra.exe<br />O4 - HKLM..Run: [net] &quot;C:WINDOWSsystem32net.net&quot;<br />O4 - HKLM..Run: [MSConfig] C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe /auto<br />O4 - HKLM..Run: [ISTray] &quot;C:Program FilesSpyware DoctorpctsTray.exe&quot;<br />O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe<br />O4 - HKCU..Run: [H/PC Connection Agent] &quot;C:Program FilesMicrosoft ActiveSyncwcescomm.exe&quot;<br />O4 - HKCU..Run: [net] &quot;C:WINDOWSsystem32net.net&quot;<br />O4 - Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:Program FilesMicrosoft OfficeOFFICE11ONENOTEM.EXE<br />O4 - Global Startup: Bluetooth.lnk = ?<br />O8 - Extra context menu item: &amp;AIM Toolbar Search - C:Documents and SettingsAll UsersApplication DataAIM ToolbarieToolbarresourcesen-USlocalsearch.html<br />O8 - Extra context menu item: E&amp;xport to Microsoft Excel - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:PROGRA~1MI1933~1OFFICE11EXCEL.EXE/3000<br />O8 - Extra context menu item: Find on Wikipedia... - C:Program FilesWikiSearch Toolbarcm.html<br />O8 - Extra context menu item: Send To &amp;Bluetooth - C:Program FilesWIDCOMMBluetooth Softwarebtsendto_ie_ctx.htm<br />O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_07binssv.dll<br />O9 - Extra Tools menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_07binssv.dll<br />O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - C:Program FilesAIM Toolbaraimtb.dll<br />O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:PROGRA~1MI3AA1~1INetRepl.dll<br />O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:PROGRA~1MI3AA1~1INetRepl.dll<br />O9 - Extra Tools menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:PROGRA~1MI3AA1~1INetRepl.dll<br />O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:Program FilesSkypeToolbarsInternet ExplorerSkypeIEPlugin.dll<br />O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MI1933~1OFFICE11REFIEBAR.DLL<br />O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)<br />O9 - Extra Tools menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)<br />O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe<br />O9 - Extra Tools menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe<br />O10 - Unknown file in Winsock LSP: c:program filesjuniper networkssecure application managersamnsp.dll<br />O10 - Unknown file in Winsock LSP: c:program filesjuniper networkssecure application managersamnsp.dll<br />O11 - Options group: [INTERNATIONAL] International*<br />O16 - DPF: {051D0E35-F4E3-4C8D-B411-AB0875F4C683} (Anark Client 4.0 ActiveX Control) - <!-- m --><a class="postlink" href="http://install.anark.com/client/version4/windows-ie/en/AMClient.cab" rel="nofollow" target="_blank">http://install.anark.com/client/version ... Client.cab</a><!-- m --><br />O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - <!-- m --><a class="postlink" href="http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab" rel="nofollow" target="_blank">http://upload.facebook.com/controls/200 ... oader5.cab</a><!-- m --><br />O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - <!-- m --><a class="postlink" href="https://dmcnf02.dmc.org/Citrix/ICAWEB/en/ica32/wficat.cab" rel="nofollow" target="_blank">https://dmcnf02.dmc.org/Citrix/ICAWEB/e ... wficat.cab</a><!-- m --><br />O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - <!-- m --><a class="postlink" href="http://dl.tvunetworks.com/TVUAx.cab" rel="nofollow" target="_blank">http://dl.tvunetworks.com/TVUAx.cab</a><!-- m --><br />O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - <!-- m --><a class="postlink" href="http://lads.myspace.com/upload/MySpaceUploader1005.cab" rel="nofollow" target="_blank">http://lads.myspace.com/upload/MySpaceUploader1005.cab</a><!-- m --><br />O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - <!-- m --><a class="postlink" href="http://upload.facebook.com/controls/FacebookPhotoUploader3.cab" rel="nofollow" target="_blank">http://upload.facebook.com/controls/Fac ... oader3.cab</a><!-- m --><br />O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - <!-- m --><a class="postlink" href="https://remoteaccess.hfhs.org/dana-cached/setup/JuniperSetupSP1.cab" rel="nofollow" target="_blank">https://remoteaccess.hfhs.org/dana-cach ... tupSP1.cab</a><!-- m --><br />O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL<br />O20 - Winlogon Notify: dimsntfy - %SystemRoot%System32dimsntfy.dll (file missing)<br />O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxdev.dll<br />O20 - Winlogon Notify: loginkey - C:Program FilesCommon FilesMicrosoft SharedInkloginkey.dll<br />O20 - Winlogon Notify: NavLogon - C:WINDOWSsystem32NavLogon.dll<br />O20 - Winlogon Notify: TabBtnWL - C:WINDOWSSYSTEM32TabBtnWL.dll<br />O20 - Winlogon Notify: tpgwlnotify - C:WINDOWSSYSTEM32tpgwlnot.dll<br />O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:WINDOWSsystem32WPDShServiceObj.dll<br />O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:Program FilesWIDCOMMBluetooth Softwarebinbtwdins.exe<br />O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe<br />O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccProxy.exe<br />O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccPwdSvc.exe<br />O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSetMgr.exe<br />O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:Program FilesSymantec Client SecuritySymantec AntiVirusDefWatch.exe<br />O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:Program FilesIntelWirelessBinEvtEng.exe<br />O23 - Service: Google Updater Service (gusvc) - Google - C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe<br />O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:Program FilesIntelIntel Matrix Storage Manageriaantmon.exe<br />O23 - Service: IS Service (ISSVC) - Symantec Corporation - C:Program FilesSymantec Client SecuritySymantec Client FirewallISSVC.exe<br />O23 - Service: LibUsb-Win32 - Daemon, Version 0.1.10.1 (libusbd) - <!-- m --><a class="postlink" href="http://libusb-win32.sourceforge.net" rel="nofollow" target="_blank">http://libusb-win32.sourceforge.net</a><!-- m --> - C:WINDOWSsystem32libusbd-nt.exe<br />O23 - Service: Linksys Updater (LinksysUpdater) - Unknown owner - C:Program FilesLinksysLinksys UpdaterbinLinksysUpdater.exe&quot;  -s &quot;C:Program FilesLinksysLinksys Updaterconfwrapper.conf (file missing)<br />O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:Program FilesCommon FilesNew BoundaryPrismXLPRISMXL.SYS<br />O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:Program FilesIntelWirelessBinRegSrvc.exe<br />O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation  - C:Program FilesIntelWirelessBinS24EvMon.exe<br />O23 - Service: SAVRoam (SavRoam) - symantec - C:Program FilesSymantec Client SecuritySymantec AntiVirusSavRoam.exe<br />O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:Program FilesSpyware DoctorpctsAuxs.exe<br />O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:Program FilesSpyware DoctorpctsSvc.exe<br />O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe<br />O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe<br />O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - Unknown owner - C:Program FilesComcastDesktop Doctorbinsprtsvc.exe&quot; /service /P ddoctorv2 (file missing)<br />O23 - Service: Symantec AntiVirus - Symantec Corporation - C:Program FilesSymantec Client SecuritySymantec AntiVirusRtvscan.exe<br />O23 - Service: Symantec SecurePort (SymSecurePort) - Symantec Corporation - C:Program FilesSymantec Client SecuritySymantec Client FirewallSymSPort.exe<br />O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe<br /><br />Thanks for your help!]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
				<item>
			<dc:creator>v3ninz</dc:creator>
			<pubDate>Thu, 02 Jul 2009 03:45:41 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/need-help-with-adobe-projector-t98702.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/need-help-with-adobe-projector-t98702.html</link>
			<title>Need help with Adobe Projector</title>
			<description><![CDATA[Hi guys,<br /><br />Got this problem, Im trying to open a .exe file on windows 7. It opened about 2 months ago without a problem but now when i try and open it theres an error which says adobe projector has stopped working. Ive searched around and so far ive found only 1 solution which is to change the compatability to an older version of Windows, Ive tried them all still doesnt work and gives me the same error :S<br /><br />Please help! Thanks a lot,<br />Oxy]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 4</description>
		</item>
				<item>
			<dc:creator>Thunderfudge</dc:creator>
			<pubDate>Wed, 01 Jul 2009 19:35:18 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/suspected-keylogger-t98693.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/suspected-keylogger-t98693.html</link>
			<title>Suspected Keylogger</title>
			<description><![CDATA[Hi, I recently found a keylogger in the &quot;Run&quot; folder of the registry. I deleted it, and then went to C:/Windows/System32, and I couldnt find it there anywhere. Here is my HijackThis log, which I did a full scan with Norton Endpoint Protection beforehand. <br /><br />Logfile of Trend Micro HijackThis v2.0.2<br />Scan saved at 12:33:31 PM, on 2/07/2009<br />Platform: Windows Vista SP2 (WinNT 6.00.1906)<br />MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />Boot mode: Normal<br /><br />Running processes:<br />C:Windowssystem32Dwm.exe<br />C:WindowsExplorer.EXE<br />C:Windowssystem32taskeng.exe<br />C:Program FilesSymantecSymantec Endpoint ProtectionSmcGui.exe<br />C:Program FilesSynapticsSynTPSynTPEnh.exe<br />C:WindowsOEM02Mon.exe<br />C:WindowsWindowsMobilewmdc.exe<br />C:WindowsSystem32ico.exe<br />C:Program FilesDellDell Webcam ManagerDellWMgr.exe<br />C:Program FilesCommon FilesRoxio Shared9.0SharedCOMRoxWatchTray9.exe<br />C:Program FilesDellMediaDirectPCMService.exe<br />C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe<br />C:Program FilesElaborate BytesVirtualCloneDriveVCDDaemon.exe<br />C:Program FilesUnlockerUnlockerAssistant.exe<br />C:Program FilesCommon FilesSymantec SharedccApp.exe<br />C:WindowsSystem32hkcmd.exe<br />C:WindowsSystem32igfxpers.exe<br />C:Program FilesSigmatelC-Major AudioWDMsttray.exe<br />C:Program FilesAdobeAcrobat 8.0AcrobatAcrotray.exe<br />C:Program FilesDell Support Centerbinsprtcmd.exe<br />C:Program FilesDellSupportDSAgnt.exe<br />C:Windowssystem32igfxsrvc.exe<br />C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe<br />C:Program FilesSiber SystemsAI RoboFormrobotaskbaricon.exe<br />C:Program FilesWIDCOMMBluetooth SoftwareBTTray.exe<br />C:Program FilesDellQuickSetquickset.exe<br />C:Program FilesStardockObjectDockObjectDock.exe<br />c:Program FilesWIDCOMMBluetooth SoftwareBtStackServer.exe<br />C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe<br />C:Program FilesCommon FilesRoxio Shared9.0SharedCOMCPSHelpRunner.exe<br />C:Program FilesWindows Media Playerwmpnscfg.exe<br />C:program filesmozilla firefoxfirefox.exe<br />C:Program FilesSymantecSymantec Endpoint ProtectionSavUI.exe<br />C:Program FilesSymantecLiveUpdateluall.exe<br />C:Windowssystem32MsiExec.exe<br />C:Windowssystem32SearchProtocolHost.exe<br />C:Program FilesTrend MicroHijackThisHijackThis.exe<br /><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesCopernic AgentCopernicAgentExt.dll/INTEGRATION_BAND_SEARCHBAR_HTML<br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = <br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = <br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Internet Explorer provided by Dell<br />R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = <br />R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:PROGRA~1COPERN~1COPERN~2.DLL<br />O1 - Hosts: ::1 localhost<br />O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll<br />O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:Program FilesAdobe/Adobe Contribute CS3/contributeieplugin.dll<br />O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll<br />O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:Program FilesSiber SystemsAI RoboFormroboform.dll<br />O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:Program FilesJavajre1.6.0binssv.dll<br />O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll<br />O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll<br />O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:Program FilesGoogleGoogleToolbarNotifier5.1.1309.15642swg.dll<br />O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:Program FilesGoogleGoogle ToolbarComponentfastsearch_A8904FB862BD9564.dll<br />O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:Program FilesDellBAEBAE.dll<br />O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:Program FilesGoogleGoogle ToolbarGoogleToolbar.dll<br />O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:Program FilesCopernic AgentCopernicAgentExt.dll<br />O3 - Toolbar: &amp;RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:Program FilesSiber SystemsAI RoboFormroboform.dll<br />O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll<br />O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:Program FilesAdobe/Adobe Contribute CS3/contributeieplugin.dll<br />O4 - HKLM..Run: [Windows Defender] %ProgramFiles%Windows DefenderMSASCui.exe -hide<br />O4 - HKLM..Run: [ECenter] C:DellE-CenterEULALauncher.exe<br />O4 - HKLM..Run: [SynTPEnh] C:Program FilesSynapticsSynTPSynTPEnh.exe<br />O4 - HKLM..Run: [OEM02Mon.exe] C:WindowsOEM02Mon.exe<br />O4 - HKLM..Run: [Windows Mobile Device Center] %windir%WindowsMobilewmdc.exe<br />O4 - HKLM..Run: [PMX Daemon] ICO.EXE<br />O4 - HKLM..Run: [DELL Webcam Manager] &quot;C:Program FilesDellDell Webcam ManagerDellWMgr.exe&quot; /s<br />O4 - HKLM..Run: [ISUSScheduler] &quot;C:Program FilesCommon FilesInstallShieldUpdateServiceissch.exe&quot; -start<br />O4 - HKLM..Run: [RoxWatchTray] &quot;C:Program FilesCommon FilesRoxio Shared9.0SharedCOMRoxWatchTray9.exe&quot;<br />O4 - HKLM..Run: [PCMService] &quot;C:Program FilesDellMediaDirectPCMService.exe&quot;<br />O4 - HKLM..Run: [dscactivate] c:delldsca.exe 3<br />O4 - HKLM..Run: [Google Desktop Search] &quot;C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe&quot; /startup<br />O4 - HKLM..Run: [VirtualCloneDrive] &quot;C:Program FilesElaborate BytesVirtualCloneDriveVCDDaemon.exe&quot; /s<br />O4 - HKLM..Run: [UnlockerAssistant] &quot;C:Program FilesUnlockerUnlockerAssistant.exe&quot;<br />O4 - HKLM..Run: [Norton Ghost 14.0] &quot;C:Program FilesNorton GhostAgentVProTray.exe&quot;<br />O4 - HKLM..Run: [ccApp] &quot;C:Program FilesCommon FilesSymantec SharedccApp.exe&quot;<br />O4 - HKLM..Run: [IgfxTray] C:Windowssystem32igfxtray.exe<br />O4 - HKLM..Run: [HotKeysCmds] C:Windowssystem32hkcmd.exe<br />O4 - HKLM..Run: [Persistence] C:Windowssystem32igfxpers.exe<br />O4 - HKLM..Run: [SigmatelSysTrayApp] %ProgramFiles%SigmaTelC-Major AudioWDMsttray.exe<br />O4 - HKLM..Run: [Acrobat Assistant 8.0] &quot;C:Program FilesAdobeAcrobat 8.0AcrobatAcrotray.exe&quot;<br />O4 - HKLM..Run: [Adobe_ID0EYTHM] C:PROGRA~1COMMON~1AdobeADOBEV~1ServerbinVERSIO~3.EXE<br />O4 - HKLM..Run: [dellsupportcenter] &quot;C:Program FilesDell Support Centerbinsprtcmd.exe&quot; /P dellsupportcenter<br />O4 - HKCU..Run: [DellSupport] &quot;C:Program FilesDellSupportDSAgnt.exe&quot; /startup<br />O4 - HKCU..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe<br />O4 - HKCU..Run: [msnmsgr] &quot;C:Program FilesWindows LiveMessengermsnmsgr.exe&quot; /background<br />O4 - HKCU..Run: [RoboForm] &quot;C:Program FilesSiber SystemsAI RoboFormRoboTaskBarIcon.exe&quot;<br />O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User NETWORK SERVICE)<br />O4 - Startup: Stardock ObjectDock.lnk = C:Program FilesStardockObjectDockObjectDock.exe<br />O4 - Global Startup: Bluetooth.lnk = ?<br />O4 - Global Startup: QuickSet.lnk = C:Program FilesDellQuickSetquickset.exe<br />O8 - Extra context menu item: Append to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert link target to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: Convert link target to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert selected links to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />O8 - Extra context menu item: Convert selected links to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />O8 - Extra context menu item: Convert selection to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: Convert selection to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: Customize Menu - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComCustomizeIEMenu.html<br />O8 - Extra context menu item: E&amp;xport to Microsoft Excel - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:PROGRA~1MICROS~2Office12EXCEL.EXE/3000<br />O8 - Extra context menu item: Fill Forms - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html<br />O8 - Extra context menu item: RoboForm Toolbar - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html<br />O8 - Extra context menu item: Save Forms - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html<br />O8 - Extra context menu item: Search Using Copernic Agent - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesCopernic AgentCopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT<br />O8 - Extra context menu item: Send image to &amp;Bluetooth Device... - c:Program FilesWIDCOMMBluetooth Softwarebtsendto_ie_ctx.htm<br />O8 - Extra context menu item: Send page to &amp;Bluetooth Device... - c:Program FilesWIDCOMMBluetooth Softwarebtsendto_ie.htm<br />O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:Program FilesJavajre1.6.0binnpjpi160.dll<br />O9 - Extra Tools menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:Program FilesJavajre1.6.0binnpjpi160.dll<br />O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:Program FilesCopernic AgentCopernicAgent.exe<br />O9 - Extra Tools menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:Program FilesCopernic AgentCopernicAgent.exe<br />O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll<br />O9 - Extra Tools menuitem: &amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll<br />O9 - Extra button: @C:WindowsWindowsMobileINetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:WindowsWindowsMobileINetRepl.dll<br />O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:WindowsWindowsMobileINetRepl.dll<br />O9 - Extra Tools menuitem: @C:WindowsWindowsMobileINetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:WindowsWindowsMobileINetRepl.dll<br />O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html<br />O9 - Extra Tools menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComFillForms.html<br />O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html<br />O9 - Extra Tools menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComSavePass.html<br />O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:Program FilesCopernic AgentCopernicAgent.exe<br />O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html<br />O9 - Extra Tools menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - <!-- m --><a class="postlink" href="file://C" rel="nofollow" target="_blank">file://C</a><!-- m -->:Program FilesSiber SystemsAI RoboFormRoboFormComShowToolbar.html<br />O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2Office12REFIEBAR.DLL<br />O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:Program FilesWIDCOMMBluetooth Softwarebtsendto_ie.htm<br />O9 - Extra Tools menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:Program FilesWIDCOMMBluetooth Softwarebtsendto_ie.htm<br />O10 - Unknown file in Winsock LSP: c:windowssystem32securenet.dll<br />O10 - Unknown file in Winsock LSP: c:windowssystem32securenet.dll<br />O10 - Unknown file in Winsock LSP: c:windowssystem32securenet.dll<br />O13 - Gopher Prefix: <br />O16 - DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} (WMI Class) - <!-- m --><a class="postlink" href="http://support.ap.dell.com/systemprofiler/SysProExe.CAB" rel="nofollow" target="_blank">http://support.ap.dell.com/systemprofiler/SysProExe.CAB</a><!-- m --><br />O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:Program FilesGoogleGoogle ToolbarComponentfastsearch_A8904FB862BD9564.dll<br />O20 - AppInit_DLLs: C:PROGRA~1GoogleGOOGLE~2GOEC62~1.DLL<br />O23 - Service: Adobe Version Cue CS3 - Adobe Systems Incorporated - C:Program FilesCommon FilesAdobeAdobe Version Cue CS3ServerbinVersionCueCS3.exe<br />O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:Windowssystem32aestsrv.exe<br />O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe<br />O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe<br />O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe<br />O23 - Service: DSBrokerService - Unknown owner - C:Program FilesDellSupportbrkrsvc.exe<br />O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:Program FilesIntelWirelessBinEvtEng.exe<br />O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:Program FilesCommon FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe<br />O23 - Service: GoogleDesktopManager - Google - C:Program FilesGoogleGoogle Desktop SearchGoogleDesktop.exe<br />O23 - Service: Google Software Updater (gusvc) - Google - C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe<br />O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver1050Intel 32IDriverT.exe<br />O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe<br />O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~2.EXE<br />O23 - Service: Norton Ghost - Symantec Corporation - C:Program FilesNorton GhostAgentVProSvc.exe<br />O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:Program FilesIntelWirelessBinRegSrvc.exe<br />O23 - Service: RoxMediaDB9 - Sonic Solutions - C:Program FilesCommon FilesRoxio Shared9.0SharedCOMRoxMediaDB9.exe<br />O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:Program FilesCommon FilesRoxio Shared9.0SharedCOMRoxWatch9.exe<br />O23 - Service: SecureSrv - My Privacy Tools, Inc. - C:Program FilesHide My IP 2009SecureSrv.exe<br />O23 - Service: Symantec Management Client (SmcService) - Symantec Corporation - C:Program FilesSymantecSymantec Endpoint ProtectionSmc.exe<br />O23 - Service: Symantec Network Access Control (SNAC) - Symantec Corporation - C:Program FilesSymantecSymantec Endpoint ProtectionSNAC.EXE<br />O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:Program FilesDell Support Centerbinsprtsvc.exe<br />O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:Windowssystem32STacSV.exe<br />O23 - Service: stllssvr - MicroVision Development, Inc. - C:Program FilesCommon FilesSureThing Sharedstllssvr.exe<br />O23 - Service: Symantec Endpoint Protection (Symantec AntiVirus) - Symantec Corporation - C:Program FilesSymantecSymantec Endpoint ProtectionRtvscan.exe<br />O23 - Service: SymSnapService - Symantec - C:Program FilesNorton GhostSharedDriversSymSnapService.exe<br />O23 - Service: @%SystemRoot%System32TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:WindowsSystem32TuneUpDefragService.exe<br />O23 - Service: @%SystemRoot%System32TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:WindowsSystem32TUProgSt.exe<br />O23 - Service: WeOnlyDo wodAppUpdate Service - WeOnlyDo Software - C:Program FilesBraid Art LabsGroBotobinwodUpdSv.exe<br />O23 - Service: XAudioService - Conexant Systems, Inc. - C:Windowssystem32DRIVERSxaudio.exe<br /><br />--<br />End of file - 17551 bytes]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 0</description>
		</item>
				<item>
			<dc:creator>a1cbecker</dc:creator>
			<pubDate>Wed, 01 Jul 2009 15:25:53 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/possible-keylogger-t98684.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/possible-keylogger-t98684.html</link>
			<title>Possible Keylogger</title>
			<description><![CDATA[Logfile of Trend Micro HijackThis v2.0.2<br />Scan saved at 5:21:12 PM, on 7/1/2009<br />Platform: Windows Vista SP1 (WinNT 6.00.1905)<br />MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />Boot mode: Normal<br /><br />Running processes:<br />C:Program Files (x86)WebrootWebrootSecuritySpySweeperUI.exe<br />C:Program Files (x86)Mozilla Firefoxfirefox.exe<br />C:Program Files (x86)Common FilesAdobeUpdater6Adobe_Updater.exe<br />C:Program Files (x86)Trend MicroHijackThisHijackThis.exe<br /><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://homepage.gateway.com/rdr.aspx?b=ACGW&amp;l=0409&amp;s=2&amp;o=vp64&amp;d=0109&amp;m=p-7805u&amp;c=BB" rel="nofollow" target="_blank">http://homepage.gateway.com/rdr.aspx?b= ... 7805u&amp;c=BB</a><!-- m --><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://www.worldofwarcraft.com/" rel="nofollow" target="_blank">http://www.worldofwarcraft.com/</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://homepage.gateway.com/rdr.aspx?b=ACGW&amp;l=0409&amp;s=2&amp;o=vp64&amp;d=0109&amp;m=p-7805u&amp;c=BB" rel="nofollow" target="_blank">http://homepage.gateway.com/rdr.aspx?b= ... 7805u&amp;c=BB</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://homepage.gateway.com/rdr.aspx?b=ACGW&amp;l=0409&amp;s=2&amp;o=vp64&amp;d=0109&amp;m=p-7805u&amp;c=BB" rel="nofollow" target="_blank">http://homepage.gateway.com/rdr.aspx?b= ... 7805u&amp;c=BB</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = <br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = <br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm<br />R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = <br />F2 - REG:system.ini: UserInit=userinit.exe<br />O1 - Hosts: ::1 localhost<br />O2 - BHO: (no name) - MRI_DISABLED - (no file)<br />O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:Program Files (x86)AskBarDisbarbinaskBar.dll<br />O2 - BHO: Spybot-S&amp;D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:Program Files (x86)Spybot - Search &amp; DestroySDHelper.dll<br />O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:Program Files (x86)AskBarDisbarbinaskBar.dll<br />O4 - HKLM..Run: [SpySweeper] &quot;C:Program Files (x86)WebrootWebrootSecuritySpySweeperUI.exe&quot; /startintray<br />O4 - HKCU..Run: [WMPNSCFG] C:Program Files (x86)Windows Media PlayerWMPNSCFG.exe<br />O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User NETWORK SERVICE)<br />O8 - Extra context menu item: E&amp;xport to Microsoft Excel - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:PROGRA~2MICROS~2Office12EXCEL.EXE/3000<br />O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~2MICROS~2Office12ONBttnIE.dll<br />O9 - Extra Tools menuitem: S&amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~2MICROS~2Office12ONBttnIE.dll<br />O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~2MICROS~2Office12REFIEBAR.DLL<br />O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:Program Files (x86)Spybot - Search &amp; DestroySDHelper.dll<br />O9 - Extra Tools menuitem: Spybot - Search &amp;&amp; Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:Program Files (x86)Spybot - Search &amp; DestroySDHelper.dll<br />O13 - Gopher Prefix: <br />O23 - Service: Application Layer Gateway Service (ALG) - Unknown owner - C:WindowsSystem32alg.exe (file missing)<br />O23 - Service: ASKService - Unknown owner - C:Program Files (x86)AskBarDisbarbinAskService.exe<br />O23 - Service: ASKUpgrade - Unknown owner - C:Program Files (x86)AskBarDisbarbinASKUpgrade.exe<br />O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - (no file)<br />O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:Windowssystem32DFSR.exe (file missing)<br />O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:Program FilesGATEWAYGateway Recovery ManagementServiceETService.exe<br />O23 - Service: Intel PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:Program FilesIntelWiFibinEvtEng.exe<br />O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:Program Files (x86)IntelIntel Matrix Storage ManagerIAANTMon.exe<br />O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program Files (x86)Common FilesInstallShieldDriver1050Intel 32IDriverT.exe<br />O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:Windowssystem32lsass.exe (file missing)<br />O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:WindowsSystem32msdtc.exe (file missing)<br />O23 - Service: @%SystemRoot%System32netlogon.dll,-102 (Netlogon) - Unknown owner - C:Windowssystem32lsass.exe (file missing)<br />O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:Windowssystem32nvvsvc.exe (file missing)<br />O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:Program Files (x86)O2Micro Flash Memory Card Drivero2flash.exe<br />O23 - Service: @%systemroot%system32psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:Windowssystem32lsass.exe (file missing)<br />O23 - Service: Intel PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:Program FilesCommon FilesIntelWirelessCommonRegSrvc.exe<br />O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - (no file)<br />O23 - Service: Remote Procedure Call (RPC) Locator (RpcLocator) - Unknown owner - C:Windowssystem32locator.exe (file missing)<br />O23 - Service: @%SystemRoot%system32samsrv.dll,-1 (SamSs) - Unknown owner - C:Windowssystem32lsass.exe (file missing)<br />O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:Program Files (x86)Spybot - Search &amp; DestroySDWinSec.exe<br />O23 - Service: @%SystemRoot%system32SLsvc.exe,-101 (slsvc) - Unknown owner - C:Windowssystem32SLsvc.exe (file missing)<br />O23 - Service: @%SystemRoot%system32snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:WindowsSystem32snmptrap.exe (file missing)<br />O23 - Service: @%systemroot%system32spoolsv.exe,-1 (Spooler) - Unknown owner - C:WindowsSystem32spoolsv.exe (file missing)<br />O23 - Service: Steam Client Service - Valve Corporation - C:Program Files (x86)Common FilesSteamSteamService.exe<br />O23 - Service: @%SystemRoot%system32ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:Windowssystem32UI0Detect.exe (file missing)<br />O23 - Service: @%SystemRoot%system32vds.exe,-100 (vds) - Unknown owner - C:WindowsSystem32vds.exe (file missing)<br />O23 - Service: @%systemroot%system32vssvc.exe,-102 (VSS) - Unknown owner - C:Windowssystem32vssvc.exe (file missing)<br />O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. (<!-- w --><a class="postlink" href="http://www.webroot.com" rel="nofollow" target="_blank">http://www.webroot.com</a><!-- w -->) - C:Program Files (x86)WebrootWebrootSecuritySpySweeper.exe<br />O23 - Service: @%Systemroot%system32wbemwmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:Windowssystem32wbemWmiApSrv.exe (file missing)<br />O23 - Service: @%ProgramFiles%Windows Media Playerwmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:Program Files (x86)Windows Media Playerwmpnetwk.exe (file missing)<br />O23 - Service: Webroot Client Service (WRConsumerService) - Webroot Software, Inc.  - C:Program Files (x86)WebrootWebrootSecurityWRConsumerService.exe<br />O23 - Service: XAudioService - Unknown owner - C:Windowssystem32DRIVERSxaudio64.exe (file missing)<br />O23 - Service: Marvell Yukon Service (yksvc) - Unknown owner - RUNDLL32.EXE (file missing)<br /><br />--<br />End of file - 7813 bytes<br /><br />Hey all, feel like I may have a keylogger. Any ideas?]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
				<item>
			<dc:creator>TwistedpF</dc:creator>
			<pubDate>Tue, 30 Jun 2009 22:18:33 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/keylogger-help-t98671.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/keylogger-help-t98671.html</link>
			<title>Keylogger help</title>
			<description><![CDATA[Hello I recently downloaded a file and it ran and nothing happened, Im scared it might be a keylogger. I usually never download and open thing right away but I accidently clicked open instead of save so i could scan it. How would i check if i am being keylogged? <br /><br />heres my HijackThis log<br /><br />Logfile of Trend Micro HijackThis v2.0.2<br />Scan saved at 9:56:08 PM, on 6/30/2009<br />Platform: Windows Vista SP1 (WinNT 6.00.1905)<br />MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />Boot mode: Normal<br /><br />Running processes:<br />C:WindowsSystem32smss.exe<br />C:Windowssystem32csrss.exe<br />C:Windowssystem32wininit.exe<br />C:Windowssystem32csrss.exe<br />C:Windowssystem32services.exe<br />C:Windowssystem32lsass.exe<br />C:Windowssystem32lsm.exe<br />C:Windowssystem32winlogon.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32nvvsvc.exe<br />C:Windowssystem32svchost.exe<br />C:WindowsSystem32svchost.exe<br />C:Windowssystem32Ati2evxx.exe<br />C:WindowsSystem32svchost.exe<br />C:WindowsSystem32svchost.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32SLsvc.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32rundll32.exe<br />C:Windowssystem32Ati2evxx.exe<br />C:Windowssystem32svchost.exe<br />C:WindowsSystem32spoolsv.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32taskeng.exe<br />C:Windowssystem32Dwm.exe<br />C:WindowsExplorer.EXE<br />C:Windowssystem32taskeng.exe<br />C:Program FilesWindows DefenderMSASCui.exe<br />C:WindowsRtHDVCpl.exe<br />C:Program FilesJavajre6binjusched.exe<br />C:WindowsSystem32rundll32.exe<br />C:Program FilesPC Tools AntiVirusPCTAV.exe<br />C:Program FilesVista Start MenuVistaStartMenu.exe<br />C:Program FilesLogitechSetPoint IISetpointII.exe<br />C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />C:Program FilesBonjourmDNSResponder.exe<br />C:Program FilesPC Tools AntiVirusPCTAVSvc.exe<br />C:Windowssystem32PnkBstrA.exe<br />C:Windowssystem32svchost.exe<br />C:Windowssystem32svchost.exe<br />C:WindowsSystem32svchost.exe<br />C:Windowssystem32SearchIndexer.exe<br />C:Program FilesWindows Media Playerwmpnscfg.exe<br />C:Program FilesWindows Media Playerwmpnetwk.exe<br />C:Program FilesSteamSteam.exe<br />C:Windowssystem32wbemunsecapp.exe<br />C:Program FilesVentriloVentrilo.exe<br />C:Windowssystem32wbemwmiprvse.exe<br />C:Program FilesCommon FilesLogishrdKHAL2KHALMNPR.EXE<br />C:Program FilesCommon FilesSteamSteamService.exe<br />C:Program FilesiPodbiniPodService.exe<br />C:WindowsservicingTrustedInstaller.exe<br />C:Windowssystem32wuauclt.exe<br />C:Program FilesMozilla Firefoxfirefox.exe<br />C:Program FilesTrend MicroHijackThisHijackThis.exe<br />C:Windowssystem32wbemwmiprvse.exe<br /><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = <br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = <br />R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local<br />R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = <br />F2 - REG:system.ini: Shell=Explorer.exe C:WINDOWSConfigcsrss.exe<br />O1 - Hosts: ::1 localhost<br />O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:Program FilesAskBarDisbarbinaskBar.dll<br />O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:Program FilesAVGAVG8avgssie.dll (file missing)<br />O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6binjp2ssv.dll<br />O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:Program FilesAskBarDisbarbinaskBar.dll<br />O4 - HKLM..Run: [Windows Defender] %ProgramFiles%Windows DefenderMSASCui.exe -hide<br />O4 - HKLM..Run: [RtHDVCpl] RtHDVCpl.exe<br />O4 - HKLM..Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE<br />O4 - HKLM..Run: [StartCCC] &quot;C:Program FilesATI TechnologiesATI.ACECore-StaticCLIStart.exe&quot; MSRun<br />O4 - HKLM..Run: [WinampAgent] &quot;C:Program FilesWinampwinampa.exe&quot;<br />O4 - HKLM..Run: [SunJavaUpdateSched] &quot;C:Program FilesJavajre6binjusched.exe&quot;<br />O4 - HKLM..Run: [Skytel] Skytel.exe<br />O4 - HKLM..Run: [QuickTime Task] &quot;C:Program FilesQuickTimeQTTask.exe&quot; -atboottime<br />O4 - HKLM..Run: [iTunesHelper] &quot;C:Program FilesiTunesiTunesHelper.exe&quot;<br />O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:Windowssystem32NvCpl.dll,NvStartup<br />O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:Windowssystem32NvMcTray.dll,NvTaskbarInit<br />O4 - HKLM..Run: [PCTAVApp] &quot;C:Program FilesPC Tools AntiVirusPCTAV.exe&quot; /MONITORSCAN<br />O4 - HKCU..Run: [Steam] &quot;c:program filessteamsteam.exe&quot; -silent<br />O4 - HKCU..Run: [VistaStartMenu] &quot;C:Program FilesVista Start MenuVistaStartMenu.exe&quot;<br />O4 - HKCU..Run: [CurseClient] C:Program FilesCurseCurseClient.exe -silent<br />O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media PlayerWMPNSCFG.exe<br />O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User NETWORK SERVICE)<br />O4 - Global Startup: F1U201.401.lnk = ?<br />O4 - Global Startup: SetPointII.lnk = ?<br />O13 - Gopher Prefix: <br />O16 - DPF: {99CAAA27-FA0C-4FA4-B88A-4AB1CC7A17FE} (MGLaunch_v1004 Class) - <!-- m --><a class="postlink" href="http://ghost.netgame.com/launch/object/mglaunch_USAv1004.cab" rel="nofollow" target="_blank">http://ghost.netgame.com/launch/object/ ... Av1004.cab</a><!-- m --><br />O16 - DPF: {B8A48F42-30E1-48f8-AE87-7BD7C75DB8AA} (System Requirements Lab) - <!-- m --><a class="postlink" href="http://www.systemrequirementslab.com/srl_bin/sysreqlab_test.cab" rel="nofollow" target="_blank">http://www.systemrequirementslab.com/sr ... b_test.cab</a><!-- m --><br />O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:Windowssystem32Ati2evxx.exe<br />O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe<br />O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver1050Intel 32IDriverT.exe<br />O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe<br />O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:Windowssystem32GameMon.des.exe (file missing)<br />O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:Windowssystem32nvvsvc.exe<br />O23 - Service: PC Tools AntiVirus Engine (PCTAVSvc) - PC Tools Research Pty Ltd - C:Program FilesPC Tools AntiVirusPCTAVSvc.exe<br />O23 - Service: PnkBstrA - Unknown owner - C:Windowssystem32PnkBstrA.exe<br />O23 - Service: Steam Client Service - Valve Corporation - C:Program FilesCommon FilesSteamSteamService.exe<br /><br />--<br />End of file - 7169 bytes<br /><br /><br />Also if theres any easy way for you to explain how i could find stuff that isnt supposed to be, like the keyloggers, that would be greatly appreciated so i wouldnt have to keep coming back here]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
				<item>
			<dc:creator>albin</dc:creator>
			<pubDate>Tue, 30 Jun 2009 19:45:18 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/registry-cleaner-t98670.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/registry-cleaner-t98670.html</link>
			<title>Registry Cleaner</title>
			<description><![CDATA[Does anyone knows a good registry cleaner..free registry cleaner and those being purchased..tnx! <img src="http://www.ozzu.com/images/smilies/icon_biggrin.gif" alt=":D" title="Very Happy">]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
				<item>
			<dc:creator>jecepede</dc:creator>
			<pubDate>Tue, 30 Jun 2009 14:57:38 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/with-shared-folders-some-say-access-denied-vista-t98656.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/with-shared-folders-some-say-access-denied-vista-t98656.html</link>
			<title>XP with shared folders, some say access denied to Vista.</title>
			<description><![CDATA[Aloha !<br /><br /><br />This is to weird to actually ask but I have searched and searched and searched and........<br /><br />Anyway... The problem exists in my moms network, so if I get some advice dont be mad if i dont react right away,<br />I have to drive to my moms house, no RPD there, and try it...<br /><br />So what the BLEEP is going on...<br />My moms bought a new pre installed PC with Windows Vista so we formatted her old PC and installed XP.<br />This PC is just standing in the corner with uTorrent and E-mule being busy.<br />So far so good.<br /><br />I have a folder on the XP-machine called E:Downloads and it is shared (DUH)<br />The Vista machine has a network drive N: (download-bakE-downloads)<br />I can see this folder in the Vista machine...<br />Still good right ? Wrong...<br /><br />Lets just say these folders have been made by uTorrent :<br /><br />E:DownloadsBugsbunny-adventure<br />E:DownloadsWatchmen<br />E:DownloadsZion-treasures-of-the-wild<br /><br />From the Vista machine I double click : N:DownloadsWatchmen<br />And get the message : Access denied.<br /><br />I go back to the XP machine and make a 4th folder in Windows Explorer like :<br /><br />E:DownloadsBugsbunny-adventure<br />E:DownloadsTest-folder<br />E:DownloadsWatchmen<br />E:DownloadsZion-treasures-of-the-wild<br /><br />I put some files in the folder and go back to the Vista machine.<br />From the Vista machine I double click : N:DownloadsTest-folder : and voila, I see the content of that folder !<br /><br />Since I CAN make my own folders like : E:DownloadsTest-folder : and read those using the Vista machine.<br />Thus, I copied the folder : E:DownloadsBugsbunny-adventure : using the [CTRL]+[C] / [CTRL]+[V] keys.<br /><br />The following folders now reside in the XP machine :<br /><br />E:DownloadsBugsbunny-adventure<br />E:DownloadsCopy of Bugsbunny-adventure<br />E:DownloadsTest-folder<br />E:DownloadsWatchmen<br />E:DownloadsZion-treasures-of-the-wild<br /><br /><br />The folders I now CAN read on the Vista machine :<br />---<br />E:DownloadsCopy of Bugsbunny-adventure<br />E:DownloadsTest-folder<br /><br /><br />The folders I now can NOT read on the Vista machine :<br />---<br />E:DownloadsBugsbunny-adventure<br />E:DownloadsWatchmen<br />E:DownloadsZion-treasures-of-the-wild<br /><br /><br />So it appears I can only ready files/folder that are NOT downloaded from the internet......<br />Can it be that applications like uTorrent run under different user names ?<br /><br /><br />So what have I checked already :<br />----------------------------------------<br />- The two PCs are in the same domain :Leeuw<br />- The two PCs both have a user called Gerri with the same pwd<br />- User Gerri on the XP machines and the Vista machine is member of the Administrator group<br />- All the files in E:Downloads have the same owner : Gerri<br />- I linked the N:-drive on the Vista machine using the user download-bakGerri and the pwd<br />- No other users besides Gerri are connected to the XP-machine<br />- The event and security logs stay empty, no errors like : Unknown user<br />- I even enabled the guest on the XP machine<br />- When I ping download-bak on the Vista machine I get the correct IP (192.168.1.100)<br />- The Vista machine has 192.168.1.101 and the same subnet 255.255.255.0<br />- Installed all updates and patches on both Windows machines<br />- Disable firewall on both machines<br />- Disable Viruskiller on both machines<br /><br /><br />Soooooooo<br /><br /><br />If ANYONE can help my poor lil ma, Id be much obliged...<br /><br /><br />Thanks for you time !!!!<br /><br /><br />Jecepede]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 10</description>
		</item>
				<item>
			<dc:creator>craniul 26</dc:creator>
			<pubDate>Tue, 30 Jun 2009 13:50:21 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/networking-troubles-t98655.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/networking-troubles-t98655.html</link>
			<title>Networking Troubles</title>
			<description><![CDATA[Hello everyone I am having problems networking my computers I have done this many times before and never had problems like this!  I have three laptops and one desktop I am trying to share folders between them on a linksys wrt54g2 router and I can share internet just fine however I cannot view the other computers on the desktop and on my laptop I cannot access the shared folders of the other laptops.  I can ping all of the computers from all of the computers however I recieve the password popup when I try to get onto the other computers from my laptop.  I have checked sharing settings, firewall settings, workgroup settings, and have run the network wizard on all of the computers however they still wont work.  The desktop runs windows xp home one laptop runs windows xp pro one is a mac and one is a vista.  HELP!]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 3</description>
		</item>
				<item>
			<dc:creator>IIHoSTiiiLeII</dc:creator>
			<pubDate>Mon, 29 Jun 2009 12:18:54 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/hpprintspool-exe-help-t98631.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/hpprintspool-exe-help-t98631.html</link>
			<title>HPprintspool.exe Help.</title>
			<description><![CDATA[okay i know i have to look in my reg. for the hpprintspool.exe the only problem is that it isnt there. but everytime i start my pc up i get the error message saying cannot connect to *****. so maybe some one here can help. ill post the Hijack this report<br /><br /><p>CODE:</p><blockquote style="border:1px solid #000000; padding:5px; background-color:#eeeeee;"><p><div id="cb69881" style="font-family: monospace;">Logfile of Trend Micro HijackThis v2.0.2<br />Scan saved at 3:18:04 PM, on 6/29/2009<br />Platform: Windows XP SP2 (WinNT 5.01.2600)<br />MSIE: Internet Explorer v7.00 (7.00.6000.16850)<br />Boot mode: Normal<br /><br />Running processes:<br />C:WINDOWSsystem32csrss.exe<br />C:WINDOWSsystem32winlogon.exe<br />C:WINDOWSsystem32services.exe<br />C:WINDOWSsystem32lsass.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSSystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe<br />C:Program FilesAlwil SoftwareAvast4ashServ.exe<br />C:WINDOWSExplorer.EXE<br />C:WINDOWSsystem32spoolsv.exe<br />C:WINDOWSehomeehtray.exe<br />C:WINDOWSsystem32RUNDLL32.EXE<br />C:Program FilesAnalog DevicesCoresmax4pnp.exe<br />C:WINDOWSCTHELPER.EXE<br />C:Program FilesCyberLinkPowerDVDDVDLauncher.exe<br />C:Program FilesRealRealPlayerRealPlay.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesCommon FilesAOL1204499571eeAOLSoftware.exe<br />C:Program FilesJavajre6binjusched.exe<br />C:Program FilesComcastDesktop Doctorbinsprtcmd.exe<br />C:Program FilesHPHP Software UpdateHPWuSchd2.exe<br />C:Program FilesQuickTimeQTTask.exe<br />C:Program FilesiTunesiTunesHelper.exe<br />C:PROGRA~1ALWILS~1Avast4ashDisp.exe<br />C:WINDOWSsystem32ctfmon.exe<br />C:Program FilesMessengermsmsgs.exe<br />C:Program FilesCommon FilesAOLACSAOLacsd.exe<br />C:Program FilesComcastUIUniversal Installeruinstaller.exe<br />C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />C:Program FilesAIM6aim6.exe<br />C:Program FilesComcastUIUniversal Installeruinstaller.exe<br />C:Program FilesBonjourmDNSResponder.exe<br />C:Program FilesAOL 9.1waol.exe<br />C:WINDOWSeHomeehSched.exe<br />C:Program FilesHPDigital Imagingbinhpqtra08.exe<br />C:Program FilesJavajre6binjqs.exe<br />C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE<br />C:WINDOWSsystem32nvsvc32.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesComcastDesktop Doctorbinsprtsvc.exe<br />C:WINDOWSsystem32svchost.exe<br />C:WINDOWSsystem32svchost.exe<br />C:Program FilesViewpointCommonViewpointService.exe<br />C:WINDOWSwanmpsvc.exe<br />C:WINDOWSehomemcrdsvc.exe<br />C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe<br />C:Program FilesAlwil SoftwareAvast4ashWebSv.exe<br />C:Program FilesiPodbiniPodService.exe<br />C:WINDOWSsystem32dllhost.exe<br />C:WINDOWSeHomeehRecvr.exe<br />C:Program FilesHPDigital ImagingbinhpqSTE08.exe<br />C:Program FilesAIM6aolsoftware.exe<br />C:Program FilesHPDigital Imagingbinhpqnrs08.exe<br />C:Program FilesAOL 9.1shellmon.exe<br />C:WINDOWSsystem32wuauclt.exe<br />C:Program FilesCommon FilesAOLTopspeed3.0aoltpsd3.exe<br />C:Program FilesMozilla Firefoxfirefox.exe<br />C:Program FilesTrend MicroHijackThisHijackThis.exe<br />C:WINDOWSsystem32wbemwmiprvse.exe<br /><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=69157" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><!-- m --><br />R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local<br />R3 - URLSearchHook: IAOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:Program FilesAOL Toolbaraoltb.dll<br />R3 - URLSearchHook: AIM Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:Program FilesAIM Toolbaraimtb.dll<br />F2 - REG:system.ini: UserInit=C:WINDOWSsystem32userinit.exe,C:WINDOWSsystem32sdra64.exe,C:WINDOWSsystem32win32avs.exe,<br />O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelperShim.dll<br />O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre6binssv.dll<br />O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:Program FilesAOL Toolbaraoltb.dll<br />O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:Program FilesAIM Toolbaraimtb.dll<br />O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6binjp2ssv.dll<br />O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:Program FilesJavajre6libdeployjqsiejqs_plugin.dll<br />O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:Program FilesAIM Toolbaraimtb.dll<br />O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:Program FilesAOL Toolbaraoltb.dll<br />O4 - HKLM..Run: [ehTray] C:WINDOWSehomeehtray.exe<br />O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup<br />O4 - HKLM..Run: [nwiz] nwiz.exe /install<br />O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit<br />O4 - HKLM..Run: [SoundMAXPnP] C:Program FilesAnalog DevicesCoresmax4pnp.exe<br />O4 - HKLM..Run: [CTHelper] CTHELPER.EXE<br />O4 - HKLM..Run: [CTxfiHlp] CTXFIHLP.EXE<br />O4 - HKLM..Run: [DVDLauncher] &quot;C:Program FilesCyberLinkPowerDVDDVDLauncher.exe&quot;<br />O4 - HKLM..Run: [RealTray] C:Program FilesRealRealPlayerRealPlay.exe SYSTEMBOOTHIDEPLAYER<br />O4 - HKLM..Run: [HostManager] C:Program FilesCommon FilesAOL1204499571eeAOLSoftware.exe<br />O4 - HKLM..Run: [SunJavaUpdateSched] &quot;C:Program FilesJavajre6binjusched.exe&quot;<br />O4 - HKLM..Run: [ddoctorv2] &quot;C:Program FilesComcastDesktop Doctorbinsprtcmd.exe&quot; /P ddoctorv2<br />O4 - HKLM..Run: [HP Software Update] C:Program FilesHPHP Software UpdateHPWuSchd2.exe<br />O4 - HKLM..Run: [QuickTime Task] &quot;C:Program FilesQuickTimeQTTask.exe&quot; -atboottime<br />O4 - HKLM..Run: [iTunesHelper] &quot;C:Program FilesiTunesiTunesHelper.exe&quot;<br />O4 - HKLM..Run: [Adobe Reader Speed Launcher] &quot;C:Program FilesAdobeReader 9.0ReaderReader_sl.exe&quot;<br />O4 - HKLM..Run: [internat] C:WINDOWSinternat.exe<br />O4 - HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe<br />O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe<br />O4 - HKCU..Run: [MSMSGS] &quot;C:Program FilesMessengermsmsgs.exe&quot; /background<br />O4 - HKCU..Run: [Universal Installer] &quot;C:Program FilesComcastUIUniversal Installeruinstaller.exe&quot; /fromrun /starthidden<br />O4 - HKCU..Run: [Aim6] &quot;C:Program FilesAIM6aim6.exe&quot; /d locale=en-US <!-- m --><a class="postlink" href="ee://aol/imApp" rel="nofollow" target="_blank">ee://aol/imApp</a><!-- m --><br />O4 - HKCU..Run: [Desktop Software] &quot;C:Program FilesComcastUIUniversal Installeruinstaller.exe&quot; /ini &quot;uinstaller.ini&quot; /fromrun /starthidden<br />O4 - Startup: RollerCoaster Tycoon 3 Registration.lnk = C:Documents and SettingsFamilyLocal SettingsTemp{A7D71DE4-9507-4068-9302-C50EDFA13528}{907B4640-266B-4A21-92FB-CD1A86CD0F63}ATR1.exe<br />O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:Program FilesHPDigital Imagingbinhpqtra08.exe<br />O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:Program FilesHPDigital Imagingbinhpqthb08.exe<br />O8 - Extra context menu item: &amp;AIM Toolbar Search - C:Documents and SettingsAll UsersApplication DataAIM ToolbarieToolbarresourcesen-USlocalsearch.html<br />O8 - Extra context menu item: &amp;AOL Toolbar Search - C:Documents and SettingsAll UsersApplication DataAOLieToolbarresourcesen-USlocalsearch.html<br />O8 - Extra context menu item: E&amp;xport to Microsoft Excel - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000<br />O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - C:Program FilesAIM Toolbaraimtb.dll<br />O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL<br />O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:WINDOWSsystem32Shdocvw.dll<br />O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe<br />O9 - Extra Tools menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe<br />O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe<br />O9 - Extra Tools menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe<br />O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - <!-- m --><a class="postlink" href="http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab" rel="nofollow" target="_blank">http://upload.facebook.com/controls/200 ... oader5.cab</a><!-- m --><br />O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - <!-- m --><a class="postlink" href="http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1203817351968" rel="nofollow" target="_blank">http://www.update.microsoft.com/windows ... 3817351968</a><!-- m --><br />O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - <!-- m --><a class="postlink" href="http://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab" rel="nofollow" target="_blank">http://www.nvidia.com/content/DriverDow ... eqlab2.cab</a><!-- m --><br />O16 - DPF: {B516CA4E-A5BA-405C-AFCF-A97F08CC7429} (GoBit Games Player) - <!-- m --><a class="postlink" href="http://aolsvc.aol.com/onlinegames/free-trial-burger-shop/GoBitGamesPlayer_v4.cab" rel="nofollow" target="_blank">http://aolsvc.aol.com/onlinegames/free- ... yer_v4.cab</a><!-- m --><br />O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - <!-- m --><a class="postlink" href="http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v10.cab" rel="nofollow" target="_blank">http://aolsvc.aol.com/onlinegames/bejew ... er_v10.cab</a><!-- m --><br />O20 - Winlogon Notify: GoToAssist - C:Program FilesCitrixGoToAssist508G2AWinLogon.dll<br />O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:PROGRA~1COMMON~1AOLACSacsd.exe<br />O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe<br />O23 - Service: Autodesk Licensing Service - Autodesk - C:Program FilesCommon FilesAutodesk SharedServiceAdskScSrv.exe<br />O23 - Service: avast! Antivirus - ALWIL Software - C:Program FilesAlwil SoftwareAvast4ashServ.exe<br />O23 - Service: avast! Mail Scanner - ALWIL Software - C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe<br />O23 - Service: avast! Web Scanner - ALWIL Software - C:Program FilesAlwil SoftwareAvast4ashWebSv.exe<br />O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe<br />O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:Program FilesCitrixGoToAssist508g2aservice.exe<br />O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:WINDOWSsystem32spooldriversw32x863HPBPRO.EXE<br />O23 - Service: HP Status Server - Hewlett-Packard Company - C:WINDOWSsystem32spooldriversw32x863HPBOID.EXE<br />O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe<br />O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:Program FilesJavajre6binjqs.exe<br />O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32nvsvc32.exe<br />O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSsystem32HPZipm12.exe<br />O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:Program FilesComcastDesktop Doctorbinsprtsvc.exe<br />O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe<br />O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:WINDOWSwanmpsvc.exe<br /><br />--<br />End of file - 11431 bytes<br /><br /></div></p></blockquote>]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
				<item>
			<dc:creator>acousticus</dc:creator>
			<pubDate>Mon, 29 Jun 2009 00:37:07 -0700</pubDate>
			<guid>http://www.ozzu.com/mswindows-forum/msn-virus-please-help-t98609.html</guid>
			<link>http://www.ozzu.com/mswindows-forum/msn-virus-please-help-t98609.html</link>
			<title>MSN Virus, please help! :)</title>
			<description><![CDATA[Hi, my friends have been telling me that a virus has been using my MSN account to send them offline messages such as the one below: <br /><br /><span style="font-style: italic">&quot;acousticus sent 6/29/2009 3:25 AM:<br />Howdy, I just spoke to Becca and Brice, and they told me to check out some pills they saw on Oprah. They said they lost 23 pounds in about amonth with them. Anyway you can find them here for only $5  [domain removed]</span><br /><br />Below is my logfile<br /><br /><br />-----------------------------------------------------------------------------<br /><br />Logfile of Trend Micro HijackThis v2.0.2<br />Scan saved at 3:20:05 PM, on 29/06/2009<br />Platform: Windows Vista SP1 (WinNT 6.00.1905)<br />MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />Boot mode: Normal<br /><br />Running processes:<br />C:Windowssystem32taskeng.exe<br />C:Windowssystem32Dwm.exe<br />C:WindowsExplorer.EXE<br />C:Program FilesWindows DefenderMSASCui.exe<br />C:WindowsRtHDVCpl.exe<br />C:WindowsSystem32SysMonitor.exe<br />C:AcerEmpowering TechnologyeDataSecurityeDSloader.exe<br />C:Program FilesBitDefenderBitDefender 2008bdagent.exe<br />C:Program FilesCanonCanon IJ Network Scan UtilityCNMNSUT.EXE<br />C:Program FilesiTunesiTunesHelper.exe<br />C:Program FilesJavajre6binjusched.exe<br />C:Program FilesQuickTimeQTTask.exe<br />C:Program FilesWindows LiveMessengermsnmsgr.exe<br />C:Windowsehomeehtray.exe<br />C:Program FilesWindows Media Playerwmpnscfg.exe<br />C:Windowsehomeehmsas.exe<br />C:AcerEmpowering TechnologyACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE<br />C:AcerEmpowering TechnologyeRecoveryERAGENT.EXE<br />C:Program FilesWindows LiveContactswlcomm.exe<br />C:Program FilesInternet Exploreriexplore.exe<br />C:Program FilesInternet Exploreriexplore.exe<br />C:Program FilesWindows LiveToolbarwltuser.exe<br />C:Program FilesTrend MicroHijackThisHijackThis.exe<br />C:Windowssystem32SearchFilterHost.exe<br />C:Program FilesInternet Exploreriexplore.exe<br /><br />R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://sg.rd.yahoo.com/customize/ycomp/defaults/sp/*http://sg.yahoo.com" rel="nofollow" target="_blank">http://sg.rd.yahoo.com/customize/ycomp/ ... .yahoo.com</a><!-- m --><br />R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://en.sg.acer.yahoo.com/" rel="nofollow" target="_blank">http://en.sg.acer.yahoo.com/</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = <!-- m --><a class="postlink" href="http://en.sg.acer.yahoo.com" rel="nofollow" target="_blank">http://en.sg.acer.yahoo.com</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = <!-- m --><a class="postlink" href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = <!-- m --><a class="postlink" href="http://en.sg.acer.yahoo.com" rel="nofollow" target="_blank">http://en.sg.acer.yahoo.com</a><!-- m --><br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = <br />R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = <br />R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = <!-- m --><a class="postlink" href="http://sg.rd.yahoo.com/customize/ycomp/defaults/su/*http://sg.yahoo.com" rel="nofollow" target="_blank">http://sg.rd.yahoo.com/customize/ycomp/ ... .yahoo.com</a><!-- m --><br />R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = proxy.singnet.com.sg:8080<br />R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local<br />R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = <br />O1 - Hosts: ::1 localhost<br />O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll<br />O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:Program FilesSkypeToolbarsInternet ExplorerSkypeIEPlugin.dll<br />O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:Program FilesRealRealPlayerrpbrowserrecordplugin.dll<br />O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSEPsearchhelperie.dll<br />O2 - BHO: EndNote Web - {82D2E569-25A7-4e4d-9FA3-C5025B4B7912} - C:Program FilesEndNote WebENWIEPlug.dll<br />O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:Windowssystem32ActiveToolBand.dll<br />O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll<br />O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll<br />O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:Program FilesJavajre6binjp2ssv.dll<br />O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:Program FilesWindows LiveToolbarwltcore.dll<br />O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:Windowssystem32eDStoolbar.dll<br />O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:Program FilesBitDefenderBitDefender 2008IEToolbar.dll<br />O3 - Toolbar: &amp;Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:Program FilesWindows LiveToolbarwltcore.dll<br />O4 - HKLM..Run: [Windows Defender] %ProgramFiles%Windows DefenderMSASCui.exe -hide<br />O4 - HKLM..Run: [RtHDVCpl] RtHDVCpl.exe<br />O4 - HKLM..Run: [Acer Empowering Technology Monitor] C:Windowssystem32SysMonitor.exe<br />O4 - HKLM..Run: [eDataSecurity Loader] C:AcerEmpowering TechnologyeDataSecurityeDSloader.exe<br />O4 - HKLM..Run: [BDAgent] &quot;C:Program FilesBitDefenderBitDefender 2008bdagent.exe&quot;<br />O4 - HKLM..Run: [IJNetworkScanUtility] C:Program FilesCanonCanon IJ Network Scan UtilityCNMNSUT.EXE<br />O4 - HKLM..Run: [iTunesHelper] &quot;C:Program FilesiTunesiTunesHelper.exe&quot;<br />O4 - HKLM..Run: [SunJavaUpdateSched] &quot;C:Program FilesJavajre6binjusched.exe&quot;<br />O4 - HKLM..Run: [QuickTime Task] &quot;C:Program FilesQuickTimeQTTask.exe&quot; -atboottime<br />O4 - HKCU..Run: [msnmsgr] &quot;C:Program FilesWindows LiveMessengermsnmsgr.exe&quot; /background<br />O4 - HKCU..Run: [ehTray.exe] C:WindowsehomeehTray.exe<br />O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media PlayerWMPNSCFG.exe<br />O4 - HKUSS-1-5-19..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-19..Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User LOCAL SERVICE)<br />O4 - HKUSS-1-5-20..Run: [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /detectMem (User NETWORK SERVICE)<br />O4 - Global Startup: Empowering Technology Launcher.lnk = ?<br />O8 - Extra context menu item: Add to Windows &amp;Live Favorites - <!-- m --><a class="postlink" href="http://favorites.live.com/quickadd.aspx" rel="nofollow" target="_blank">http://favorites.live.com/quickadd.aspx</a><!-- m --><br />O8 - Extra context menu item: Append to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert link target to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: Convert link target to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert selected links to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />O8 - Extra context menu item: Convert selected links to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />O8 - Extra context menu item: Convert selection to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: Convert selection to existing PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIEAppend.html<br />O8 - Extra context menu item: Convert to Adobe PDF - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:Program FilesAdobeAcrobat 8.0AcrobatAcroIEFavClient.dll/AcroIECapture.html<br />O8 - Extra context menu item: E&amp;xport to Microsoft Excel - <!-- m --><a class="postlink" href="res://C" rel="nofollow" target="_blank">res://C</a><!-- m -->:PROGRA~1MICROS~2Office12EXCEL.EXE/3000<br />O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll<br />O9 - Extra Tools menuitem: &amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll<br />O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll<br />O9 - Extra Tools menuitem: S&amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll<br />O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2Office12REFIEBAR.DLL<br />O13 - Gopher Prefix: <br />O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - <!-- m --><a class="postlink" href="http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab" rel="nofollow" target="_blank">http://upload.facebook.com/controls/200 ... oader5.cab</a><!-- m --><br />O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL<br />O23 - Service: Adobe LM Service - Adobe Systems - C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe<br />O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportbinAppleMobileDeviceService.exe<br />O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:Windowssystem32Ati2evxx.exe<br />O23 - Service: Bonjour Service - Apple Inc. - C:Program FilesBonjourmDNSResponder.exe<br />O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:Windowssystem32brsvc01a.exe<br />O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:AcerEmpowering TechnologyeRecoveryeRecoveryService.exe<br />O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:Program FilesCommon FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe<br />O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodbiniPodService.exe<br />O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:Program FilesLavasoftAd-AwareAAWService.exe<br />O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:Program FilesCommon FilesLightScribeLSSrvc.exe<br />O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:Program FilesCommon FilesBitDefenderBitDefender Update Servicelivesrv.exe<br />O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:Program FilesSpybot - Search &amp; DestroySDWinSec.exe<br />O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:Program FilesBitDefenderBitDefender 2008vsserv.exe<br />O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:Program FilesCommon FilesBitDefenderBitDefender Communicatorxcommsvr.exe<br /><br />--<br />End of file - 10105 bytes<br /><br /><br />-------------------<br /><br />thank you! <img src="http://www.ozzu.com/images/smilies/icon_smile.gif" alt=":)" title="Smile">]]>&lt;br /&gt;&lt;br /&gt;Topic Replies: 1</description>
		</item>
			</channel>
</rss>