Brian - 06-11-05 21:01:44.92 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Brian\Desktop"
(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\issearch.exe
C:\Program Files\Common Files\Yazzle1162OinUninstaller.exe
C:\WINDOWS\system32\ixt0.dll
C:\Program Files\Inetget2
C:\Program Files\Safety Bar
C:\WINDOWS\system32\components
C:\Program Files\Common Files\{34158645-063F-1033-0705-050411050001}
C:\Program Files\Common Files\{84158645-063F-1033-0705-050411050001}
((((((((((((((((((((((((((((((( Files Created from 2006-10-05 to 2006-11-05 ))))))))))))))))))))))))))))))))))
2006-11-05 20:38 752,426 ---hs---- C:\WINDOWS\system32\lnnmp.bak1
2006-11-05 19:28 53,248 --a------ C:\WINDOWS\system32\Process.exe
2006-11-05 19:28 40,960 --a------ C:\WINDOWS\system32\swsc.exe
2006-11-05 19:28 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2006-11-05 19:28 135,168 --a------ C:\WINDOWS\system32\swreg.exe
2006-11-03 16:20 60,436 --a------ C:\WINDOWS\system32\igegenhc.dll
2006-11-03 16:20 110,612 --a------ C:\WINDOWS\system32\ghwtwbex.exe
2006-11-03 16:19 692,276 --------- C:\WINDOWS\system32\pmnnl.dll
2006-11-03 15:49 106,496 --a------ C:\WINDOWS\system32\impgsje.dll
2006-11-03 15:44 59,392 --a------ C:\WINDOWS\system32\drvmac.dll
2006-11-03 15:44 40,973 ---hs---- C:\WINDOWS\system32\iifddee.dll
2006-11-03 15:44 15,872 --a------ C:\WINDOWS\system32\winjyg32.dll
2006-10-26 20:53 4,682 --a------ C:\WINDOWS\system32\npptNT2.sys
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-11-05 21:02 -------- d-------- C:\Program Files\Common Files
2006-11-05 20:58 -------- d-------- C:\Program Files\Mozilla Firefox
2006-11-05 20:40 -------- d-------- C:\Program Files\Hijackthis
2006-11-05 19:27 -------- d-------- C:\Program Files\SmithFraud
2006-11-05 17:24 -------- d-------- C:\Program Files\Lavasoft
2006-11-05 17:24 -------- d-------- C:\Documents and Settings\Brian\Application Data\Lavasoft
2006-11-03 18:29 -------- d---s---- C:\Documents and Settings\Brian\Application Data\Microsoft
2006-11-03 17:47 -------- d-------- C:\Program Files\FTP Commander
2006-11-03 17:09 -------- d-------- C:\Program Files\VirusBursters
2006-11-03 16:20 -------- d-------- C:\Program Files\VSAdd-in
2006-11-03 16:20 -------- d-------- C:\Documents and Settings\Brian\Application Data\SearchToolbarCorp
2006-11-01 11:55 -------- d-------- C:\Program Files\Cheat Engine
2006-10-30 21:28 -------- d-------- C:\Program Files\Silkroad
2006-10-30 20:53 -------- d-------- C:\Documents and Settings\Brian\Application Data\Ventrilo
2006-10-30 19:38 -------- d-------- C:\Program Files\Ventrilo
2006-10-30 19:37 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-10-29 18:46 -------- d-------- C:\Documents and Settings\Brian\Application Data\Help
2006-10-17 21:33 -------- d-------- C:\Documents and Settings\Brian\Application Data\BitTorrent
2006-10-08 21:09 -------- d-------- C:\Program Files\EA GAMES
2006-10-03 17:49 -------- d-------- C:\Program Files\Common Files\EasyInfo
2006-10-02 19:39 -------- d-------- C:\Program Files\Iconic Tray
2006-09-27 19:36 -------- d-------- C:\Program Files\Fake Email Mailer
2006-09-27 16:59 -------- d-------- C:\Program Files\LimeWire
2006-09-27 03:27 -------- d-------- C:\Program Files\Internet Explorer
2006-09-27 03:26 -------- d-------- C:\Program Files\WoScripter v1.3
2006-09-27 02:44 -------- d-------- C:\Documents and Settings\Brian\Application Data\Anvil Studio
2006-09-27 01:55 778656 --a------ C:\WINDOWS\system32\drivers\avg7core.sys
2006-09-26 14:42 -------- d-------- C:\Program Files\Viewpoint
2006-09-26 14:42 -------- d-------- C:\Program Files\Common Files\Viewpoint
2006-09-25 21:30 -------- dr-h----- C:\Documents and Settings\Brian\Application Data\yahoo!
2006-09-25 15:24 2622976 --a------ C:\astudio.exe
2006-09-24 21:31 -------- d-------- C:\Program Files\WinRAR
2006-09-23 23:06 -------- d-------- C:\Program Files\Symantec
2006-09-23 02:32 -------- d-------- C:\Program Files\AC Tool
2006-09-23 01:32 -------- d-------- C:\Documents and Settings\Brian\Application Data\Media Player Classic
2006-09-23 01:31 -------- d-------- C:\Program Files\Satsuki Decoder Pack
2006-09-23 01:19 -------- d-------- C:\Program Files\GPL MPEG Decoder
2006-09-22 22:49 -------- d-------- C:\Program Files\DivX
2006-09-22 21:57 -------- d-------- C:\Program Files\AIM
2006-09-22 15:26 -------- d-------- C:\Program Files\BitTorrent
2006-09-21 09:17 -------- d-------- C:\Program Files\Microsoft Office
2006-09-21 09:16 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-09-21 09:09 -------- d-------- C:\Program Files\Microsoft ActiveSync
2006-09-21 09:09 -------- d-------- C:\Program Files\Common Files\System
2006-09-21 09:09 -------- d-------- C:\Program Files\Common Files\Designer
2006-09-19 18:34 -------- d-------- C:\Program Files\VisualKore
2006-09-19 17:21 -------- d-------- C:\Documents and Settings\Brian\Application Data\Kore
2006-09-18 12:11 778240 --a------ C:\WINDOWS\system32\divx_xx0c.dll
2006-09-18 12:11 778240 --a------ C:\WINDOWS\system32\divx_xx07.dll
2006-09-18 12:11 761856 --a------ C:\WINDOWS\system32\divx_xx11.dll
2006-09-18 12:11 620180 --a------ C:\WINDOWS\system32\DivX.dll
2006-09-18 02:03 -------- d-------- C:\Documents and Settings\Brian\Application Data\Sun
2006-09-17 19:26 -------- d-------- C:\Program Files\Yahoo!
2006-09-17 18:55 -------- d-------- C:\Program Files\Java
2006-09-17 18:54 -------- d-------- C:\Program Files\Common Files\Java
2006-09-17 00:47 -------- d-------- C:\Documents and Settings\Brian\Application Data\Adobe
2006-09-15 15:47 -------- d-------- C:\Program Files\WinPcap
2006-09-15 15:46 -------- d-------- C:\Program Files\Ethereal
2006-09-15 15:45 -------- d-------- C:\Documents and Settings\Brian\Application Data\Ethereal
2006-09-13 14:55 -------- d-------- C:\Program Files\MsnMusic
2006-09-13 14:51 -------- d-------- C:\Program Files\Windows Media Player
2006-09-12 23:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-11 22:48 -------- d-------- C:\Program Files\Gravity
2006-09-07 02:31 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-09-05 01:30 -------- d-------- C:\Documents and Settings\Brian\Application Data\Ahead
2006-09-05 01:18 -------- d-------- C:\Program Files\Nero
2006-09-05 01:18 -------- d-------- C:\Program Files\Common Files\Ahead
2006-09-01 23:27 499712 --a------ C:\WINDOWS\system32\msvcp71.dll
2006-09-01 23:27 348160 --------- C:\WINDOWS\system32\msvcr71.dll
2006-09-01 12:43 0 -rahs---- C:\MSDOS.SYS
2006-09-01 12:43 0 -rahs---- C:\IO.SYS
2006-09-01 12:43 0 --a------ C:\CONFIG.SYS
2006-09-01 12:43 0 --a------ C:\AUTOEXEC.BAT
2006-09-01 07:33 62 --ahs---- C:\Documents and Settings\Brian\Application Data\desktop.ini
2006-08-25 09:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-23 15:14 5120 --a------ C:\WINDOWS\system32\ff_vfw.dll
2006-08-21 06:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 03:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 05:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-11 11:35 520192 --a------ C:\WINDOWS\system32\DivXsm.exe
2006-08-11 11:35 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2006-08-11 11:35 200704 --a------ C:\WINDOWS\system32\ssldivx.dll
2006-08-11 11:35 109568 --------- C:\WINDOWS\system32\pxinsi64.exe
2006-08-11 11:35 108544 --------- C:\WINDOWS\system32\pxcpyi64.exe
2006-08-11 11:35 1044480 --a------ C:\WINDOWS\system32\libdivx.dll
2006-08-11 11:31 73728 --a------ C:\WINDOWS\system32\dpl100.dll
2006-08-11 11:31 593920 --a------ C:\WINDOWS\system32\dpuGUI11.dll
2006-08-11 11:31 57344 --a------ C:\WINDOWS\system32\dpv11.dll
2006-08-11 11:31 53248 --a------ C:\WINDOWS\system32\dpuGUI10.dll
2006-08-11 11:31 344064 --a------ C:\WINDOWS\system32\dpus11.dll
2006-08-11 11:31 294912 --a------ C:\WINDOWS\system32\dpu11.dll
2006-08-11 11:31 294912 --a------ C:\WINDOWS\system32\dpu10.dll
2006-08-11 11:31 196608 --a------ C:\WINDOWS\system32\dtu100.dll
2006-08-11 11:31 12288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
2006-08-11 11:31 118784 --a------ C:\WINDOWS\system32\DivXCodecUpdateChecker.exe
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"MsnMsgr"="\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"AIM"="C:\\Program Files\\AIM\\aim.exe -cnetwait.odl"
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Common Files\\Ahead\\lib\\NMBgMonitor.exe\""
"Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"LaunchAp"="\"C:\\Program Files\\Launch Manager\\LaunchAp.exe\""
"PowerKey"="\"C:\\Program Files\\Launch Manager\\PowerKey.exe\""
"LManager"="\"C:\\Program Files\\Launch Manager\\HotkeyApp.exe\""
"CtrlVol"="\"C:\\Program Files\\Launch Manager\\CtrlVol.exe\""
"LMgrOSD"="\"C:\\Program Files\\Launch Manager\\OSDCtrl.exe\""
"Wbutton"="\"C:\\Program Files\\Launch Manager\\Wbutton.exe\""
"ACU"="\"C:\\Program Files\\Atheros\\ACU.exe\" -nogui"
"Broadcom Wireless Manager UI"="C:\\WINDOWS\\system32\\WLTRAY"
"SoundMan"="SOUNDMAN.EXE"
"SynTPLpr"="C:\\Program Files\\Synaptics\\SynTP\\SynTPLpr.exe"
"SynTPEnh"="C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgcc.exe /STARTUP"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_08\\bin\\jusched.exe\""
"ViewMgr"="C:\\Program Files\\Viewpoint\\Viewpoint Manager\\ViewMgr.exe"
"ViewpointPhotosDeviceConnect"="C:\\Program Files\\Common Files\\Viewpoint\\Toolbar Runtime\\3.6.0\\FotomatDeviceConnect.exe"
"CTDrive"="rundll32.exe C:\\WINDOWS\\system32\\drvmac.dll,startup"
"fvcbsbg.dll"="C:\\WINDOWS\\system32\\rundll32.exe C:\\WINDOWS\\system32\\fvcbsbg.dll,hyvxiue"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="
http://www.gunzonlin...cher/front.jpg""SubscribedURL"="
http://www.gunzonlin...cher/front.jpg""FriendlyName"=""
"Flags"=dword:00000001
"Position"=hex:2c,00,00,00,e4,01,00,00,f4,00,00,00,60,02,00,00,68,01,00,00,e8,\
03,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:01,00,00,00
"OriginalStateInfo"=hex:18,00,00,00,d2,03,00,00,23,01,00,00,58,02,00,00,68,01,\
00,00,01,00,00,40
"RestoredStateInfo"=hex:14,6d,f7,03,41,c0,b4,74,10,60,1e,00,68,de,f7,03,20,6d,\
f7,03,2e,b8,00,00
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\1]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,fe,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,4b,00,00,00,00,00,00,00,b5,04,00,00,02,03,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,4b,00,00,00,00,00,00,00,b5,04,00,00,02,03,\
00,00,01,00,00,00
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgw.exe /RUNONCE"
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgw.exe /RUNONCE"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
"{d7bdd42a-7e69-4bb8-aac3-d76ff65a3aa3}"="archenteric"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"NoDrives"=dword:00000000
"NoViewOnDrive"=dword:00000000
"NoLogoff"=dword:00000000
"NoWindowsUpdate"=dword:00000000
"NoFavoritesMenu"=dword:00000001
"NoSMHelp"=dword:00000001
"StartMenuLogOff"=dword:00000000
"ClearRecentDocsOnExit"=dword:00000001
"NoLowDiskSpaceChecks"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
"issearch.exe"="issearch.exe"
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"archenteric"="{d7bdd42a-7e69-4bb8-aac3-d76ff65a3aa3}"
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\pmnnl
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\winjyg32
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Completion time: 06-11-05 21:03:29.70
C:\ComboFix.txt ... 06-11-05 21:03
Logfile of HijackThis v1.99.1
Scan saved at 9:06:34 PM, on 11/5/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Acer\eManager\anbmServ.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Launch Manager\LaunchAp.exe
C:\Program Files\Launch Manager\PowerKey.exe
C:\Program Files\Launch Manager\HotkeyApp.exe
C:\Program Files\Launch Manager\OSDCtrl.exe
C:\Program Files\Launch Manager\Wbutton.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Common Files\Viewpoint\Toolbar Runtime\3.6.0\FotomatDeviceConnect.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\System32\svchost.exe
C:\WoS\Souls.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis\sunday.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {2906B0DE-ADB8-F99D-83C5-02F67010A1F5} - C:\WINDOWS\system32\jvzdcpe.dll (file missing)
O2 - BHO: (no name) - {39f25b12-74ff-4079-a51f-1d70f5b08b84} - C:\WINDOWS\system32\ixt0.dll (file missing)
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - C:\Program Files\VSAdd-in\VSAdd-in.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\3.6.0\ViewBarBHO.dll
O2 - BHO: (no name) - {DC187234-2E61-48E7-83F2-C3E76E983431} - C:\WINDOWS\system32\pmnnl.dll
O2 - BHO: (no name) - {F18F04B0-9CF1-4b93-B004-77A288BEE28B} - C:\WINDOWS\system32\igegenhc.dll
O3 - Toolbar: ImageShack Toolbar - {6932D140-ABC4-4073-A44C-D4A541665E35} - C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Common Files\Viewpoint\Toolbar Runtime\3.6.0\ViewBar.dll
O3 - Toolbar: &VSAdd-in - {74DD705D-6834-439C-A735-A6DBE2677452} - C:\Program Files\VSAdd-in\VSAdd-in.dll
O4 - HKLM\..\Run: [LaunchAp] "C:\Program Files\Launch Manager\LaunchAp.exe"
O4 - HKLM\..\Run: [PowerKey] "C:\Program Files\Launch Manager\PowerKey.exe"
O4 - HKLM\..\Run: [LManager] "C:\Program Files\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [CtrlVol] "C:\Program Files\Launch Manager\CtrlVol.exe"
O4 - HKLM\..\Run: [LMgrOSD] "C:\Program Files\Launch Manager\OSDCtrl.exe"
O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [ViewpointPhotosDeviceConnect] C:\Program Files\Common Files\Viewpoint\Toolbar Runtime\3.6.0\FotomatDeviceConnect.exe
O4 - HKLM\..\Run: [CTDrive] rundll32.exe C:\WINDOWS\system32\drvmac.dll,startup
O4 - HKLM\..\Run: [fvcbsbg.dll] C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\fvcbsbg.dll,hyvxiue
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Post Image to Blog - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5003
O8 - Extra context menu item: Tag This Image - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5002
O8 - Extra context menu item: Upload All Images to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5000
O8 - Extra context menu item: Upload Image to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5001
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone:
http://toolbar.imageshack.usO16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6932D140-ABC4-4073-A44C-D4A541665E35} (ImageShack Toolbar) -
http://toolbar.image...hackToolbar.cabO16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) -
http://gamedownload....GPlugin9USA.cabO18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: pmnnl - C:\WINDOWS\system32\pmnnl.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winjyg32 - C:\WINDOWS\SYSTEM32\winjyg32.dll
O21 - SSODL: archenteric - {d7bdd42a-7e69-4bb8-aac3-d76ff65a3aa3} - C:\WINDOWS\system32\impgsje.dll
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe