Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Virus problems and system 32 folder opening at startup


  • Please log in to reply

#1
Windex

Windex

    New Member

  • Member
  • Pip
  • 6 posts
Trying to help my sister clean up her pc. Found tons of stuff while cleaning it up and couldn't get everything off. Besides the threats, system 32 folder opens up on startup.

Followed directions on "must read this" thread. Only problem was that I couldn't run AVG AntiSpyware in safe mode...it said "connection to service failed, reinstall". Tried that and got same problem, so ran it in regular windows.

Also note that there are multiple users on this pc.

________________________________________________________________

Here is the Panda report:


Incident Status Location

Hacktool:Rootkit/XCP Not disinfected C:\WINDOWS\system32\$sys$filesystem\$sys$DRMServer.exe
Adware:adware/sidesearch Not disinfected c:\program files\Lycos
Spyware:spyware/searchcentrix Not disinfected Windows Registry
Adware:adware/purityscan Not disinfected Windows Registry
Spyware:spyware/safesurf Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch Not disinfected hkey_classes_root\clsid\{147A976E-EEE1-4377-8EA7-4716E4CDD239}
Potentially unwanted tool:application/funweb Not disinfected hkey_classes_root\FunWebProducts.HTMLMenu
Adware:adware/comet Not disinfected Windows Registry
Adware:adware/searchexe Not disinfected Windows Registry
Adware:adware/wintools Not disinfected Windows Registry
Spyware:spyware/shopnav Not disinfected Windows Registry
Spyware:spyware/clearsearch Not disinfected Windows Registry
Adware:adware/savenow Not disinfected Windows Registry
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Jackie Canon\Cookies\[email protected][1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Jackie Canon\Cookies\[email protected][1].txt
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Jackie Canon\Cookies\[email protected][2].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Jackie Canon\Cookies\[email protected][1].txt
Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Jackie Canon\Cookies\[email protected][1].txt
Spyware:Cookie/7search Not disinfected C:\Documents and Settings\Zachary Canon\Cookies\zachary [email protected][2].txt
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Zachary Canon\Cookies\zachary [email protected][2].txt
Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Zachary Canon\Cookies\zachary [email protected][2].txt
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~103482.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~105961.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~115340.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~121062.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~122598.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~204981.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~215159.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~263239.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~265659.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~320527.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~326677.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~334688.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~360664.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~375858.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~392375.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~394723.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~395002.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~408377.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~418173.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~418435.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~422292.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~423649.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~431219.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~472983.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~481146.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~494707.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~497695.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~499058.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~508041.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~511998.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~514443.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~533119.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~537673.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~542160.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~549811.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~569308.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~572711.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~575190.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~578389.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~607106.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~621849.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~633385.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~644722.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~648933.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~65558.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~658.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~662403.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~700414.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~740730.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~760.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~774565.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~810206.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~824126.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~827588.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~857025.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~897810.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~903240.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~915795.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~92262.tmp
Adware:Adware/WinTools Not disinfected C:\Documents and Settings\Zachary Canon\Local Settings\Temp\~938990.tmp
Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Documents and Settings\Zachary Canon\Start Menu\Programs\Startup\PowerReg Scheduler V3.exe
Potentially unwanted tool:Application/Altnet Not disinfected C:\RECYCLER\S-1-5-21-1597234714-1733290971-125703898-1006\Dc31\kazaalite_202_b1.zip[first stage/kazaa_lite_202_english.exe]
Potentially unwanted tool:Application/Altnet Not disinfected C:\unzipped\kazaalite_202_b1\first stage\kazaa_lite_202_english.exe
__________________________________________________________________________________________________

Here is the HIJACK THIS file:

Logfile of HijackThis v1.99.1
Scan saved at 10:52:39 PM, on 6/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Nhksrv.exe
C:\WINDOWS\system32\$sys$filesystem\$sys$DRMServer.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\CDProxyServ.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Common Files\AOL\1134232001\ee\AOLHostManager.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\AOL\1134232001\ee\AOLServiceHost.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\AIM95\aim.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\AOL\1134232001\ee\AOLServiceHost.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Documents and Settings\Administrator\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://us.f325.mail....d=3vuh3k2h9omhr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dellnet.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: &Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O4 - HKLM\..\Run: [A] c:\WINDOWS\System32\Array
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ [PATH] => /bin:/usr/bin:/sbin:/usr/sbin:/usr/local/bin:/usr/local/sbin:/usr/local/ssl/bin:/var/qmail/bini:/www] c:\WINDOWS\System32\ [PATH] => /bin:/usr/bin:/sbin:/usr/sbin:/usr/local/bin:/usr/local/sbin:/usr/local/ssl/bin:/var/qmail/bini:/www/bin
O4 - HKLM\..\Run: [ [SERVER_ADDR] => 204.251.1] c:\WINDOWS\System32\ [SERVER_ADDR] => 204.251.10.56
O4 - HKLM\..\Run: [ [SERVER_PORT] =] c:\WINDOWS\System32\ [SERVER_PORT] => 80
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1134232001\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [comaddin] C:\WINDOWS\System32\comaddin.exe
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [196_150_ni] C:\WINDOWS\System32\196_150_ni.exe
O4 - HKCU\..\Run: [197_150_ni_3] C:\WINDOWS\System32\197_150_ni_3.exe
O4 - HKCU\..\Run: [198_150_ni_4] "C:\Documents and Settings\Jackie Canon\198_150_ni_4.exe"
O4 - HKCU\..\Run: [ati2dvaa] "C:\WINDOWS\system32\ati2dvaa.exe"
O4 - HKCU\..\Run: [usrsdpia] "C:\WINDOWS\system32\usrsdpia.exe"
O4 - HKCU\..\Run: [rpcns4] "C:\WINDOWS\system32\rpcns4.exe"
O4 - HKCU\..\Run: [kbdcan] "C:\WINDOWS\system32\kbdcan.exe"
O4 - HKCU\..\Run: [comsnap] "C:\WINDOWS\system32\comsnap.exe"
O4 - HKCU\..\Run: [cscdll] "C:\WINDOWS\system32\cscdll.exe"
O4 - HKCU\..\Run: [wmv9vcm] "C:\WINDOWS\system32\wmv9vcm.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O8 - Extra context menu item: &Define - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM
O8 - Extra context menu item: Look Up in &Encyclopedia - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zon...ry/msgrchkr.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zon...MineSweeper.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {34805D32-AD89-469E-8503-A5666AEE4333} - http://207.188.7.104...etzip/RdxIE.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by24fd.bay24....es/MsnPUpld.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebo...otoUploader.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...StatsClient.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) - http://games-dl.real...ArcadeRdxIE.cab
O16 - DPF: {C62DFDC7-2EEC-4C2C-827A-BC0BFB4260B3} (IMViewerControl Class) - http://companion.log...1/bin/imvid.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com...obat/nos/gp.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.game...aploader_v6.cab
O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} (Yahoo! WebCam Viewer Wrapper) - http://chat.yahoo.com/cab/yvwrctl.cab
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F5C6AF4DE1BD} - http://download.abac...abasetup161.cab
O16 - DPF: {EE5CA45C-BFAC-48E6-BE6C-3C607620FF43} (IMViewerControl Class) - http://companion.log...3/bin/imvid.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Plug and Play Device Manager ($sys$DRMServer) - First 4 Internet Ltd - C:\WINDOWS\system32\$sys$filesystem\$sys$DRMServer.exe
O23 - Service: .NET Framework Service (.NET Connection Service) - Unknown owner - C:\WINDOWS\svchost.exe (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: XCP CD Proxy (CD_Proxy) - Unknown owner - C:\WINDOWS\CDProxyServ.exe
O23 - Service: comaddin - Unknown owner - C:\WINDOWS\system32\comaddin.exe (file missing)
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Roxio Inc. - C:\WINDOWS\System32\ImapiRox.exe
O23 - Service: Netropa NHK Server (Nhksrv) - Unknown owner - C:\WINDOWS\Nhksrv.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP