Menu
Forum
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Gallery
New media
New comments
Search media
Members
Registered members
Current visitors
Classifieds Member Feedback
SHOP
Shop Head Units
Shop Amplifiers
Shop Speakers
Shop Subwoofers
Shop eBay Car Audio
Log in / Register
Forum
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
Log in / Join
What’s new
Search
Search titles and first posts only
Search titles only
Search titles and first posts only
Search titles only
General Car Audio
Subwoofers
Speakers
Amplifiers
Head Units
Car Audio Build Logs
Wiring, Electrical and Installation
Enclosure Design & Construction
Car Audio Classifieds
Home Audio
Off-topic Discussion
The Lounge
What's new
Search forums
Menu
Reply to thread
Forum
Off-topic Discussion
The Lounge
Virus help....
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="packerfan" data-source="post: 851082" data-attributes="member: 546825"><p>Logfile of HijackThis v1.99.1</p><p></p><p>Scan saved at 10:24:12 PM, on 4/29/2005</p><p></p><p>Platform: Windows XP SP1 (WinNT 5.01.2600)</p><p></p><p>MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)</p><p></p><p>Running processes:</p><p></p><p>C:\WINDOWS\System32\smss.exe</p><p></p><p>C:\WINDOWS\system32\winlogon.exe</p><p></p><p>C:\WINDOWS\system32\services.exe</p><p></p><p>C:\WINDOWS\system32\lsass.exe</p><p></p><p>C:\WINDOWS\system32\svchost.exe</p><p></p><p>C:\WINDOWS\System32\svchost.exe</p><p></p><p>C:\WINDOWS\system32\spoolsv.exe</p><p></p><p>C:\WINDOWS\System32\cmdtel.exe</p><p></p><p>C:\WINDOWS\system32\drivers\KodakCCS.exe</p><p></p><p>C:\WINDOWS\System32\ahtun.exe</p><p></p><p>C:\WINDOWS\System32\nvsvc32.exe</p><p></p><p>C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS</p><p></p><p>C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe</p><p></p><p>C:\WINDOWS\System32\CTHELPER.EXE</p><p></p><p>C:\Program Files\QuickTime\qttask.exe</p><p></p><p>C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe</p><p></p><p>C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe</p><p></p><p>C:\windows\system32\taskmg.exe</p><p></p><p>C:\Program Files\Messenger\msmsgs.exe</p><p></p><p>C:\Program Files\AIM\aim.exe</p><p></p><p>C:\windows\bdocsay.exe</p><p></p><p>C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe</p><p></p><p>C:\Documents and Settings\Justin\Start Menu\Programs\Startup\winupdate16323874[1].exe</p><p></p><p>C:\Program Files\Windows Media Player\wmplayer.exe</p><p></p><p>C:\Program Files\WinMX\WinMX.exe</p><p></p><p>C:\WINDOWS\explorer.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\Program Files\Internet Explorer\iexplore.exe</p><p></p><p>C:\Program Files\WinRAR\WinRAR.exe</p><p></p><p>C:\DOCUME~1\Justin\LOCALS~1\Temp\Rar$EX00.313\HijackThis.exe</p><p></p><p>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <a href="http://w-find.com/sp.htm" target="_blank">http://w-find.com/sp.htm</a></p><p></p><p>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://w-find.com/index.htm" target="_blank">http://w-find.com/index.htm</a></p><p></p><p>R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://w-find.com/index.htm" target="_blank">http://w-find.com/index.htm</a></p><p></p><p>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://www.gatewaybiz.com" target="_blank">http://www.gatewaybiz.com</a></p><p></p><p>R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://www.gatewaybiz.com" target="_blank">http://www.gatewaybiz.com</a></p><p></p><p>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <a href="http://w-find.com/sp.htm" target="_blank">http://w-find.com/sp.htm</a></p><p></p><p>R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = <a href="http://w-find.com/index.htm" target="_blank">http://w-find.com/index.htm</a></p><p></p><p>R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1</p><p></p><p>O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search &amp; Destroy\SDHelper.dll</p><p></p><p>O2 - BHO: BHOmodObj Class - {7F6828CA-9E42-462C-BC60-418C8144012C} - c:\windows\system\BHOmod.dll</p><p></p><p>O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll</p><p></p><p>O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll</p><p></p><p>O3 - Toolbar: &amp;Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx</p><p></p><p>O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll</p><p></p><p>O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll</p><p></p><p>O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe</p><p></p><p>O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup</p><p></p><p>O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE</p><p></p><p>O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe</p><p></p><p>O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime</p><p></p><p>O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe</p><p></p><p>O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe</p><p></p><p>O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe</p><p></p><p>O4 - HKLM\..\RunOnce: [srv32 spool service] C:\WINDOWS\System32\spoolsrv32.exe</p><p></p><p>O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background</p><p></p><p>O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl</p><p></p><p>O4 - HKCU\..\Run: [tcrauvl] c:\windows\bdocsay.exe</p><p></p><p>O4 - HKCU\..\Run: [vpcmvss] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [ihschxf] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [tqocsva] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [kcmncgu] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [xristvr] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [pllklit] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [riclmfp] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [dfmefko] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [ugbmxdp] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [grsuyur] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [chlewem] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [ivtcebd] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [urdgowe] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [eaiqbpb] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [cdpdltq] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [ntfooyu] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [tchkkru] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [ejjkvtl] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [jehxlbp] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [floctxi] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [rlfnfpy] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [njhucte] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [lylmokl] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [unqfqjj] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [lfscpwm] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [rldnavo] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [tsegsxc] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [fiipirp] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [prflqdm] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [xjvjtkw] c:\windows\qumdsra.exe</p><p></p><p>O4 - HKCU\..\Run: [pktaqfm] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [rtdrxrd] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [agemyrc] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [qwbjmhj] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [dpcjvgm] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [mdrexrf] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [agwrxhm] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [bvkpfkr] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [hcgmger] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [txinlvt] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [pndsnwm] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [hkknnkh] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [mrhcwcs] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [nvjhupl] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [ltqwwqh] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [ufmdlcl] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [ijkywuj] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [lcjeuwn] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [fahxobq] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [tadkjsf] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [hmxwdem] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [hrswrhd] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [jsdahih] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [aiyqbps] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [lfpldkm] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [qdmfupq] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [ssusqau] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [lscvymh] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [bdqdjuk] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [vqswdjp] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [hepyqdc] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [aeeciym] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [mmeelya] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [gsrkbec] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [uipuqwk] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\Run: [ctognxr] c:\windows\xsxsfee.exe</p><p></p><p>O4 - HKCU\..\RunOnce: [srv32 spool service] C:\WINDOWS\System32\spoolsrv32.exe</p><p></p><p>O4 - Startup: winupdate16323874[1].exe</p><p></p><p>O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe</p><p></p><p>O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe</p><p></p><p>O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE</p><p></p><p>O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll</p><p></p><p>O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll</p><p></p><p>O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe</p><p></p><p>O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE</p><p></p><p>O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE</p><p></p><p>O9 - Extra button: Microsoft AntiSpyware helper - {4DB2EBAE-F08D-4B31-B9B6-AC507DB3D65F} - (no file) (HKCU)</p><p></p><p>O9 - Extra 'Tools' menuitem: Microsoft AntiSpyware helper - {4DB2EBAE-F08D-4B31-B9B6-AC507DB3D65F} - (no file) (HKCU)</p><p></p><p>O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll</p><p></p><p>O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll</p><p></p><p>O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll</p><p></p><p>O23 - Service: Loading Outpost Connections (KDE) - Unknown owner - C:\WINDOWS\System32\cmdtel.exe</p><p></p><p>O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe</p><p></p><p>O23 - Service: Debug oupost relations (LAGOS) - Unknown owner - C:\WINDOWS\System32\ahtun.exe</p><p></p><p>O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe</p><p></p><p>O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe</p><p></p><p>O23 - Service: PrismXL - Lanovation - C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS</p></blockquote><p></p>
[QUOTE="packerfan, post: 851082, member: 546825"] Logfile of HijackThis v1.99.1 Scan saved at 10:24:12 PM, on 4/29/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\cmdtel.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\System32\ahtun.exe C:\WINDOWS\System32\nvsvc32.exe C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe C:\WINDOWS\System32\CTHELPER.EXE C:\Program Files\QuickTime\qttask.exe C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe C:\windows\system32\taskmg.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\AIM\aim.exe C:\windows\bdocsay.exe C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe C:\Documents and Settings\Justin\Start Menu\Programs\Startup\winupdate16323874[1].exe C:\Program Files\Windows Media Player\wmplayer.exe C:\Program Files\WinMX\WinMX.exe C:\WINDOWS\explorer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\WinRAR\WinRAR.exe C:\DOCUME~1\Justin\LOCALS~1\Temp\Rar$EX00.313\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [URL="http://w-find.com/sp.htm"]http://w-find.com/sp.htm[/URL] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [URL="http://w-find.com/index.htm"]http://w-find.com/index.htm[/URL] R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL="http://w-find.com/index.htm"]http://w-find.com/index.htm[/URL] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [URL="http://www.gatewaybiz.com"]http://www.gatewaybiz.com[/URL] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [URL="http://www.gatewaybiz.com"]http://www.gatewaybiz.com[/URL] R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = [URL="http://w-find.com/sp.htm"]http://w-find.com/sp.htm[/URL] R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [URL="http://w-find.com/index.htm"]http://w-find.com/index.htm[/URL] R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1 O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: BHOmodObj Class - {7F6828CA-9E42-462C-BC60-418C8144012C} - c:\windows\system\BHOmod.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe O4 - HKLM\..\RunOnce: [srv32 spool service] C:\WINDOWS\System32\spoolsrv32.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl O4 - HKCU\..\Run: [tcrauvl] c:\windows\bdocsay.exe O4 - HKCU\..\Run: [vpcmvss] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [ihschxf] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [tqocsva] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [kcmncgu] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [xristvr] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [pllklit] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [riclmfp] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [dfmefko] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [ugbmxdp] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [grsuyur] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [chlewem] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [ivtcebd] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [urdgowe] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [eaiqbpb] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [cdpdltq] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [ntfooyu] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [tchkkru] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [ejjkvtl] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [jehxlbp] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [floctxi] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [rlfnfpy] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [njhucte] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [lylmokl] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [unqfqjj] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [lfscpwm] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [rldnavo] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [tsegsxc] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [fiipirp] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [prflqdm] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [xjvjtkw] c:\windows\qumdsra.exe O4 - HKCU\..\Run: [pktaqfm] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [rtdrxrd] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [agemyrc] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [qwbjmhj] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [dpcjvgm] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [mdrexrf] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [agwrxhm] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [bvkpfkr] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [hcgmger] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [txinlvt] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [pndsnwm] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [hkknnkh] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [mrhcwcs] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [nvjhupl] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [ltqwwqh] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [ufmdlcl] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [ijkywuj] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [lcjeuwn] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [fahxobq] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [tadkjsf] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [hmxwdem] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [hrswrhd] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [jsdahih] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [aiyqbps] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [lfpldkm] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [qdmfupq] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [ssusqau] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [lscvymh] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [bdqdjuk] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [vqswdjp] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [hepyqdc] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [aeeciym] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [mmeelya] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [gsrkbec] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [uipuqwk] c:\windows\xsxsfee.exe O4 - HKCU\..\Run: [ctognxr] c:\windows\xsxsfee.exe O4 - HKCU\..\RunOnce: [srv32 spool service] C:\WINDOWS\System32\spoolsrv32.exe O4 - Startup: winupdate16323874[1].exe O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra button: Microsoft AntiSpyware helper - {4DB2EBAE-F08D-4B31-B9B6-AC507DB3D65F} - (no file) (HKCU) O9 - Extra 'Tools' menuitem: Microsoft AntiSpyware helper - {4DB2EBAE-F08D-4B31-B9B6-AC507DB3D65F} - (no file) (HKCU) O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll O23 - Service: Loading Outpost Connections (KDE) - Unknown owner - C:\WINDOWS\System32\cmdtel.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: Debug oupost relations (LAGOS) - Unknown owner - C:\WINDOWS\System32\ahtun.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: PrismXL - Lanovation - C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS [/QUOTE]
Insert quotes…
Verification
Post reply
Forum
Off-topic Discussion
The Lounge
Virus help....
Top
Menu
What's new
Forum list