So decided to clean up my pc and finley get around to adblock noscript. This is my combo fix log but idk how to read it, can someone shead some light on it, would like to know if anything bad was found. Also how the hell i get rid of AVG i've uninstalled, its not on my program file list, and i've deleted the program files for it....
Combo fix loghijackthis logCode:ComboFix 09-10-30.01 - Brett 10/30/2009 20:11.1.2 - NTFSx86 Microsoft® Windows Vista™ Home Basic 6.0.6000.0.1252.1.1033.18.1022.407 [GMT -5:00] Running from: e:\clean up files\combo.exe AV: avast! antivirus 4.8.1356 [VPS 091030-0] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D} AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF} SP: avast! antivirus 4.8.1356 [VPS 091030-0] *enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D} SP: AVG Anti-Virus Free *enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF} SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9} SP: Windows Defender *enabled* (Outdated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\$recycle.bin\S-1-5-21-2365545147-1999384947-2466353664-500 c:\$recycle.bin\S-1-5-21-962818335-2667958646-3167542101-500 c:\users\Brett\Documents\notepad.exe . ((((((((((((((((((((((((( Files Created from 2009-09-28 to 2009-10-31 ))))))))))))))))))))))))))))))) . 2009-10-31 01:19 . 2009-10-31 01:19 -------- d-----w- c:\users\Default\AppData\Local\temp 2009-10-31 01:19 . 2009-10-31 01:19 -------- d-----w- c:\users\Brett\AppData\Local\temp 2009-10-31 01:11 . 2006-11-02 09:50 112232 ----a-w- c:\windows\system32\drivers\vsmraid.sys 2009-10-31 01:11 . 2005-07-20 18:52 89088 ----a-w- c:\windows\system32\drivers\viamraid.sys 2009-10-31 01:11 . 2008-11-22 17:12 21560 ----a-w- c:\windows\system32\drivers\atapi.sys 2009-10-30 23:42 . 2009-09-15 10:54 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2009-10-30 23:42 . 2009-09-15 10:54 52368 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2009-10-30 23:42 . 2009-09-15 10:55 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys 2009-10-30 23:42 . 2009-09-15 10:55 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2009-10-30 23:42 . 2009-09-15 10:53 97480 ----a-w- c:\windows\system32\AvastSS.scr 2009-10-30 23:41 . 2009-09-15 10:59 1279968 ----a-w- c:\windows\system32\aswBoot.exe 2009-10-30 23:41 . 2009-09-15 10:55 53328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2009-10-30 23:41 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.dll 2009-10-30 23:41 . 2009-10-30 23:41 -------- d-----w- c:\program files\Alwil Software 2009-10-21 19:55 . 2009-10-21 20:03 -------- d-----w- c:\users\Brett\AppData\Roaming\Ventrilo 2009-10-21 18:21 . 2009-10-21 18:21 -------- d-----w- c:\program files\Ventrilo 2009-10-21 18:13 . 2009-10-21 18:13 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard 2009-10-13 20:21 . 2009-10-13 20:22 -------- d-----w- c:\users\Brett\AppData\Roaming\Notepad++ 2009-10-13 20:21 . 2009-10-13 20:22 -------- d-----w- c:\program files\Notepad++ 2009-10-06 17:19 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll 2009-10-06 17:19 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe 2009-10-06 17:19 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll 2009-10-06 17:19 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll 2009-10-06 17:19 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll 2009-10-06 17:19 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll 2009-10-06 17:19 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll 2009-10-06 17:18 . 2009-08-07 00:23 171608 ----a-w- c:\windows\system32\wuwebv.dll 2009-10-06 17:18 . 2009-08-06 23:44 33792 ----a-w- c:\windows\system32\wuapp.exe . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-10-31 00:54 . 2008-10-12 15:32 -------- d-----w- c:\programdata\NOS 2009-10-30 23:22 . 2008-10-12 15:23 -------- d-----w- c:\program files\Java 2009-10-30 23:09 . 2008-10-12 15:31 1 ----a-w- c:\users\Brett\AppData\Roaming\OpenOffice.org2\user\uno_packages\cache\stamp.sys 2009-10-30 23:09 . 2008-10-12 15:30 -------- d-----w- c:\users\Brett\AppData\Roaming\OpenOffice.org2 2009-10-11 02:42 . 2008-11-14 18:18 -------- d-----w- c:\users\Brett\AppData\Roaming\Apple Computer 2009-09-30 04:46 . 2009-09-30 04:46 -------- d-----w- c:\users\Brett\AppData\Roaming\Hewlett-Packard 2009-09-28 04:59 . 2009-09-28 03:36 20454 ----a-w- c:\windows\hpoins01.dat 2009-09-28 04:58 . 2009-09-28 03:38 -------- d-----w- c:\program files\Hewlett-Packard 2009-09-28 04:58 . 2009-09-28 04:58 77004 ----a-w- c:\windows\system32\drivers\AFS.SYS 2009-09-28 03:42 . 2009-09-28 03:42 -------- d-----w- c:\program files\Common Files\Hewlett-Packard 2009-09-26 17:46 . 2008-10-10 21:43 -------- d-----w- c:\program files\FFXI App 2009-09-26 17:43 . 2009-09-26 03:31 -------- d-----w- c:\program files\Wizbot v2 2009-09-26 05:31 . 2009-09-26 02:01 -------- d-----w- c:\users\Brett\AppData\Roaming\GetRightToGo 2009-09-26 05:22 . 2009-09-26 05:22 -------- d-----w- c:\program files\Perfect World Entertainment 2009-09-26 01:29 . 2009-09-26 01:29 -------- d-----w- c:\program files\Common Files\INCA Shared 2009-09-26 01:14 . 2009-09-26 01:14 -------- d-----w- c:\program files\GALA-NET 2009-09-26 00:28 . 2009-09-26 00:27 -------- d-----w- c:\programdata\PMB Files 2009-09-26 00:27 . 2009-09-26 00:27 -------- d-----w- c:\program files\Pando Networks 2009-09-24 04:03 . 2008-11-14 18:14 -------- d-----w- c:\programdata\Apple 2009-09-21 04:16 . 2009-09-21 04:16 -------- d-----w- c:\programdata\McAfee 2009-09-20 18:35 . 2009-09-20 18:34 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD} 2009-09-20 18:35 . 2009-09-20 18:34 -------- d-----w- c:\program files\iTunes 2009-09-20 18:34 . 2009-09-20 18:34 -------- d-----w- c:\program files\iPod 2009-09-20 18:34 . 2008-11-14 18:14 -------- d-----w- c:\program files\Common Files\Apple 2009-09-20 18:32 . 2009-09-20 18:31 -------- d-----w- c:\program files\QuickTime 2009-09-19 04:11 . 2009-09-19 04:11 -------- d-----w- c:\programdata\McAfee Security Scan 2009-09-19 02:25 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2009-09-16 22:27 . 2009-09-16 22:27 -------- d-----w- c:\program files\Respondus LockDown Browser 2009-09-16 22:27 . 2008-10-10 19:38 -------- d--h--w- c:\program files\InstallShield Installation Information 2009-09-16 22:25 . 2009-09-16 22:25 -------- d-----w- c:\users\Brett\AppData\Roaming\InstallShield 2009-09-14 18:38 . 2008-10-16 19:13 -------- d-----w- c:\programdata\avg8 2009-09-05 03:59 . 2009-09-05 03:59 -------- d-----w- c:\program files\Microsoft 2009-09-05 03:59 . 2009-09-05 03:58 -------- d-----w- c:\program files\Windows Live 2009-09-05 03:58 . 2009-09-05 03:58 -------- d-----w- c:\program files\Windows Live SkyDrive 2009-09-05 03:55 . 2009-09-05 03:55 -------- d-----w- c:\program files\Common Files\Windows Live 2009-08-29 03:41 . 2009-09-03 00:38 1686528 ----a-w- c:\windows\system32\gameux.dll 2009-08-29 03:40 . 2009-09-03 00:38 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2009-08-29 00:42 . 2009-08-29 00:42 40448 ----a-w- c:\windows\system32\drivers\usbaapl.sys 2009-08-29 00:42 . 2009-08-29 00:42 2065696 ----a-w- c:\windows\system32\usbaaplrc.dll 2009-08-28 23:31 . 2009-09-03 00:38 4247552 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2009-08-14 17:16 . 2009-09-08 18:31 213592 ----a-w- c:\windows\system32\drivers\netio.sys 2009-08-14 16:42 . 2009-09-08 18:31 167424 ----a-w- c:\windows\system32\tcpipcfg.dll 2009-08-14 16:40 . 2009-09-08 18:31 103936 ----a-w- c:\windows\system32\netiohlp.dll 2009-08-14 16:40 . 2009-09-08 18:31 15360 ----a-w- c:\windows\system32\netevent.dll 2009-08-14 14:25 . 2009-09-08 18:31 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE 2009-08-14 14:25 . 2009-09-08 18:31 17920 ----a-w- c:\windows\system32\ROUTE.EXE 2009-08-14 14:25 . 2009-09-08 18:31 11264 ----a-w- c:\windows\system32\MRINFO.EXE 2009-08-14 14:25 . 2009-09-08 18:31 27136 ----a-w- c:\windows\system32\NETSTAT.EXE 2009-08-14 14:25 . 2009-09-08 18:31 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE 2009-08-14 14:25 . 2009-09-08 18:31 19968 ----a-w- c:\windows\system32\ARP.EXE 2009-08-14 14:25 . 2009-09-08 18:31 10240 ----a-w- c:\windows\system32\finger.exe 2009-08-14 14:24 . 2009-09-08 18:31 813568 ----a-w- c:\windows\system32\drivers\tcpip.sys 2009-08-14 14:23 . 2009-09-08 18:31 22016 ----a-w- c:\windows\system32\netiougc.exe . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2008-09-16 1833296] "EA Core"="c:\program files\Electronic Arts\EADM\Core.exe" [2009-09-03 3342336] "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ATICCC"="c:\program files\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-07-11 90112] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696] "LWBMOUSE"="c:\program files\Belkin\Wireless Mouse Driver\MOUSE32A.EXE" [2001-11-09 356352] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-09-05 417792] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-09-09 305440] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-07-31 149280] "avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-09-15 81000] "RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2006-11-01 3772416] c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ hp psc 2000 Series.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe [2003-4-6 323646] hpoddt01.exe.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe [2003-4-6 28672] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableLUA"= 0 (0x0) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\System32\avgrsstx.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Kodak EasyShare software.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Kodak EasyShare software.lnk backup=c:\windows\pss\Kodak EasyShare software.lnk.CommonStartup backupExtension=.CommonStartup [HKLM\~\startupfolder\C:^Users^Brett^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 2.4.lnk] path=c:\users\Brett\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 2.4.lnk backup=c:\windows\pss\OpenOffice.org 2.4.lnk.Startup backupExtension=.Startup R0 AFS;AFS;c:\windows\System32\drivers\AFS.SYS [9/27/2009 11:58 PM 77004] R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [10/30/2009 6:42 PM 114768] R1 AvgTdiX;AVG8 Network Redirector;c:\windows\System32\drivers\avgtdix.sys [2/1/2009 2:13 PM 108552] R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [10/30/2009 6:42 PM 20560] R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [10/30/2009 6:41 PM 53328] R2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [10/16/2008 2:09 PM 809296] S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [10/16/2008 2:14 PM 327688] S2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe --> c:\progra~1\AVG\AVG8\avgemc.exe [?] S2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [10/16/2008 2:13 PM 298776] S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc . Contents of the 'Scheduled Tasks' folder 2009-10-04 c:\windows\Tasks\Driver Robot.job - c:\program files\Driver Robot\1.0.7.1\DriverRobot.exe [2009-06-11 17:09] . . ------- Supplementary Scan ------- . uStart Page = hxxp://google.com/ FF - ProfilePath - c:\users\Brett\AppData\Roaming\Mozilla\Firefox\Profiles\uo3pzh8m.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ FF - plugin: c:\program files\Mozilla Firefox\plugins\npPandoWebInst.dll FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX POLICIES ---- c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true); . - - - - ORPHANS REMOVED - - - - HKLM-Run-AVG8_TRAY - c:\progra~1\AVG\AVG8\avgtray.exe ************************************************************************** scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: ************************************************************************** [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . Completion time: 2009-10-31 20:22 ComboFix-quarantined-files.txt 2009-10-31 01:22 Pre-Run: 45,801,197,568 bytes free Post-Run: 45,600,260,096 bytes free Current=4 Default=4 Failed=1 LastKnownGood=5 Sets=1,2,3,4,5 - - End Of File - - 6C78EFFF2333586E2C759DA547DC8C00
Code:Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 8:30:21 PM, on 10/30/2009 Platform: Windows Vista (WinNT 6.00.1904) MSIE: Internet Explorer v8.00 (8.00.6001.18813) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\RtHDVCpl.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE C:\Program Files\Belkin\Wireless Mouse Driver\Mouse32A.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Electronic Arts\EADM\Core.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe C:\Windows\system32\wuauclt.exe C:\Windows\Explorer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Windows\system32\SearchFilterHost.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing) O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [LWBMOUSE] C:\Program Files\Belkin\Wireless Mouse Driver\MOUSE32A.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1103470 -"Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0; Trident/4.0; SLCC1; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30618)" -"http://games.adultswim.com/carls-freakin-strip-poker-puzzle-online-game.html" O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O4 - Global Startup: hpoddt01.exe.lnk = ? O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O20 - AppInit_DLLs: C:\Windows\System32\avgrsstx.dll O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - Unknown owner - C:\PROGRA~1\AVG\AVG8\avgemc.exe (file missing) O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing) O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- End of file - 5464 bytes
XI Wiki


