StartupList report, 11/15/05, 8:09:44 PM StartupList version: 1.52.2 Started from : C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE Detected: Windows 98 SE (Win9x 4.10.2222A) Detected: Internet Explorer v6.00 SP1 (6.00.2800.1106) * Using default options ================================================== Running processes: C:\WINDOWS\SYSTEM\KERNEL32.DLL C:\WINDOWS\SYSTEM\MSGSRV32.EXE C:\WINDOWS\SYSTEM\SPOOL32.EXE C:\WINDOWS\SYSTEM\MPREXE.EXE C:\WINDOWS\SYSTEM\MSTASK.EXE C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE C:\WINDOWS\IECK32.EXE C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCEVTMGR.EXE C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINJECT.EXE C:\PROGRAM FILES\SIMPLY\CBWATTN.EXE C:\PROGRAM FILES\SIMPLY\CBWHOST.EXE C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON UTILITIES\NPROTECT.EXE C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\SYMTRAY.EXE C:\WINDOWS\SYSTEM\TAPISRV.EXE C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\SYSTEM\mmtask.tsk C:\WINDOWS\SYSTEM\RNAAPP.EXE C:\WINDOWS\TASKMON.EXE C:\WINDOWS\SYSTEM\SYSTRAY.EXE C:\WINDOWS\SYSTEM\STIMON.EXE C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE C:\PROGRAM FILES\SIMPLY\CBWUSER.EXE C:\WINDOWS\ESSSPK.EXE C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCAPP.EXE C:\WINDOWS\SYSTEM\WMIEXE.EXE C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOTDD01.EXE C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOHMR08.EXE C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WORKS SHARED\WKCALREM.EXE C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINSM32.EXE C:\Program Files\Norton SystemWorks\Norton CleanSweep\Monwow.exe C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOEVM08.EXE C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOSTS08.EXE C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE C:\WINDOWS\NOTEPAD.EXE -------------------------------------------------- Listing of startup folders: Shell folders Startup: [C:\WINDOWS\Start Menu\Programs\StartUp] hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe hp instant support.lnk = C:\Program Files\Hewlett-Packard\hpis\bin\matcli.exe hp psc 1000 series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe Microsoft Works Calendar Reminders.lnk = C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE CleanSweep Smart Sweep-Internet Sweep.lnk = C:\Program Files\Norton SystemWorks\Norton CleanSweep\csinsm32.exe -------------------------------------------------- Autorun entries from Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run ScanRegistry = C:\WINDOWS\scanregw.exe /autorun TaskMonitor = C:\WINDOWS\taskmon.exe SystemTray = SysTray.Exe StillImageMonitor = C:\WINDOWS\SYSTEM\STIMON.EXE LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme AVG7_CC = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP AVG7_EMC = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE AVG7_AMSVR = C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE CBWUser = "C:\Program Files\Simply\CBWUser.exe" EssSpkPhone = essspk.exe CriticalUpdate = C:\WINDOWS\SYSTEM\wucrtupd.exe -startup QuickTime Task = "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime Zone Labs Client = C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe 40B5.TMP = C:\WINDOWS\TEMP\40B5.TMP.exe 4003.TMP.EXE = C:\WINDOWS\TEMP\4003.TMP.EXE ccApp = C:\Program Files\Common Files\Symantec Shared\ccApp.exe ccRegVfy = C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe NPROTECT = C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE Symantec NetDriver Monitor = C:\PROGRA~1\SYMNET~1\SNDMON.EXE 40B5.TMP.EXE = C:\WINDOWS\TEMP\40B5.TMP.EXE 4003.TMP = C:\WINDOWS\TEMP\4003.TMP.exe NTET.EXE = C:\WINDOWS\SYSTEM\NTET.EXE -------------------------------------------------- Autorun entries from Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices HeavensDeclare = c:\program files\heavens\heavinit.exe LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme SchedulingAgent = mstask.exe TrueVector = C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service CBWHost = C:\PROGRA~1\SIMPLY\CBWEXEC.EXE /Run C:\PROGRA~1\SIMPLY\CBWHOST.EXE CBWAttn = C:\PROGRA~1\SIMPLY\CBWEXEC.EXE /Run C:\PROGRA~1\SIMPLY\CBWATTN.EXE IECK32.EXE = C:\WINDOWS\IECK32.EXE /s ccEvtMgr = C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe ScriptBlocking = "C:\Program Files\Common Files\Symantec Shared\Script Blocking\SBServ.exe" -reg CSINJECT.EXE = C:\Program Files\Norton SystemWorks\Norton CleanSweep\CSINJECT.EXE NPROTECT = C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE SymTray - Norton SystemWorks = C:\Program Files\Common Files\Symantec Shared\SymTray.exe "Norton SystemWorks" -------------------------------------------------- Autorun entries from Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run PhoneTray = C:\PROGRAM FILES\TRAYSOFT\PHONETRAY\PHONETRAY.EXE Windows installer = C:\winstall.exe -------------------------------------------------- File association entry for .TXT: HKEY_CLASSES_ROOT\txtfile\shell\open\command (Default) = C:\WINDOWS\NOTEPAD.EXE %1 -------------------------------------------------- C:\WINDOWS\WININIT.BAK listing: (Created 14/11/2005, 21:55:24) [Rename] C:\WINDOWS\SYSTEM\SYMREDIR.DLL=C:\WINDOWS\SYSTEM\TBM5283.TMP C:\WINDOWS\SYSTEM\SYMSTORE.DLL=C:\WINDOWS\SYSTEM\SYM57DA.TMP C:\PROGRA~1\NORTON~1\NORTON~1\BOOTWARN.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\BOOTWARN.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\ABOUTPLG.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\ABOUTPLG.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\APWUTIL.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\APWUTIL.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\CCIMSCAN.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\CCIMSCAN.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\CCIMSCAN.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\CCIMSCAN.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\CFGWIZ.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\CFGWIZ.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\CFGWIZ.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\CFGWIZ.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2AMG.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2AMG.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ARJ.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ARJ.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2CAB.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2CAB.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2EXE.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2EXE.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2GZIP.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2GZIP.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2HQX.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2HQX.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ID.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ID.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2LHA.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2LHA.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2LZ.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2LZ.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2RTF.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2RTF.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2SS.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2SS.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TAR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TAR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TEXT.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TEXT.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TNEF.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2TNEF.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2UUE.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2UUE.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ZIP.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEC2ZIP.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DECSDK.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DECSDK.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\DEFALERT.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\DEFALERT.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\N32CALL.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\N32CALL.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\N32EXCLU.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\N32EXCLU.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\N32VLIST.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\N32VLIST.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVAP32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVAP32.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPI.VXD=C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPI.VX^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPI32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPI32.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPSCR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPSCR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVCOMUI.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVCOMUI.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVDEFS.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVDEFS.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVDX.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\NAVDX.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVDX.OVL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVDX.OV^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVEMAIL.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVEMAIL.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVERROR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVERROR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVEVENT.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVEVENT.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVINOC.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVINOC.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVKRNLO.VXD=C:\PROGRA~1\NORTON~1\NORTON~1\NAVKRNLO.VX^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVLCOM.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVLCOM.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVLNCH.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVLNCH.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVLOGV.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVLOGV.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVLUCBK.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVLUCBK.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVOPTS.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVOPTS.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVPROD.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVPROD.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVSCAN.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVSCAN.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVSHEXT.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVSHEXT.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVSTATS.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVSTATS.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVSTUB.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\NAVSTUB.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVTASKS.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVTASKS.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVTSKWZ.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVTSKWZ.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVUI.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVUI.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\NAVW32.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\NAVW32.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\NETBREXT.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NETBREXT.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\OEHEUR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\OEHEUR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\OFFICEAV.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\OFFICEAV.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\PATCH32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\PATCH32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\QCONRES.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\QCONRES.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\QCONSOLE.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\QCONSOLE.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\QSPAK32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\QSPAK32.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\QUAR32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\QUAR32.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\S32ALOGO.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\S32ALOGO.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\S32INTEG.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\S32INTEG.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\S32NAVO.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\S32NAVO.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SAVRT.VXD=C:\PROGRA~1\NORTON~1\NORTON~1\SAVRT.VX^ C:\PROGRA~1\NORTON~1\NORTON~1\SAVRT32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SAVRT32.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SAVRTPEL.VXD=C:\PROGRA~1\NORTON~1\NORTON~1\SAVRTPEL.VX^ C:\PROGRA~1\NORTON~1\NORTON~1\SCANDLVR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SCANDLVR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SCANDRES.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SCANDRES.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SCANMGR.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SCANMGR.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SCRIPTUI.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SCRIPTUI.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SDFLT32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SDFLT32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SDPCK32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SDPCK32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SDSND32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SDSND32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SDSOK32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SDSOK32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SDSTP32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SDSTP32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SFSTR32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SFSTR32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SMSTR32I.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SMSTR32I.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\SYMNAVO.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\SYMNAVO.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\TKNV16O.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\TKNV16O.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\TKNV32O.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\TKNV32O.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\UNDOBOOT.EXE=C:\PROGRA~1\NORTON~1\NORTON~1\UNDOBOOT.EX^ C:\PROGRA~1\NORTON~1\NORTON~1\V32SCAN.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\V32SCAN.DL^ C:\WINDOWS\SYSTEM\SAVRTGUI.DLL=C:\WINDOWS\SYSTEM\SAVRTGUI.DL^ C:\PROGRA~1\NORTON~1\NORTON~1\APWCMD9X.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\APWCMD9X.000 C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPW32.DLL=C:\PROGRA~1\NORTON~1\NORTON~1\NAVAPW32.000 -------------------------------------------------- C:\AUTOEXEC.BAT listing: C:\PROGRA~1\GRISOFT\AVGFRE~1\BOOTUP.EXE Set tvdumpflags=8 Set tvdumpflags=8 -------------------------------------------------- Enumerating Browser Helper Objects: (no name) - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL - {53707962-6F74-2D53-2644-206D7942484F} (no name) - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (no name) - C:\WINDOWS\JAVADZ.DLL - {8D1F5508-6A6E-5EA4-B010-5E880FBC9119} NAV Helper - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll - {BDF3E430-B101-42AD-A544-FADC6B084872} -------------------------------------------------- Enumerating Task Scheduler jobs: Tune-up Application Start.job FRU Task #Hewlett-Packard#hp psc 1100 series#1122426808.job Maintenance-Defragment programs.job Maintenance-ScanDisk.job Maintenance-Disk cleanup.job Windows Critical Update Notification.job Symantec NetDetect.job Norton SystemWorks One Button Checkup.job Norton AntiVirus - Scan my computer.job -------------------------------------------------- Enumerating Download Program Files: [Shockwave Flash Object] InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH8.OCX CODEBASE = http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab [{33564D57-0000-0010-8000-00AA00389B71}] CODEBASE = http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB [Update Class] InProcServer32 = C:\WINDOWS\SYSTEM\IUCTL.DLL CODEBASE = http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38579.7902893519 [ICSScanner Class] InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\ICSSCAN.DLL CODEBASE = http://download.zonelabs.com/bin/promotions/spywaredetector/ICSScanner37240.cab [QuickTime Object] InProcServer32 = C:\WINDOWS\SYSTEM\QTPLUGIN.OCX CODEBASE = http://www.apple.com/qtactivex/qtplugin.cab -------------------------------------------------- Enumerating ShellServiceObjectDelayLoad items: WebCheck: C:\WINDOWS\SYSTEM\WEBCHECK.DLL -------------------------------------------------- End of report, 16,094 bytes Report generated in 0.265 seconds Command line options: /verbose - to add additional info on each section /complete - to include empty sections and unsuspicious data /full - to include several rarely-important sections /force9x - to include Win9x-only startups even if running on WinNT /forcent - to include WinNT-only startups even if running on Win9x /forceall - to include all Win9x and WinNT startups, regardless of platform /history - to list version history only