THANKS for your reply, it's very much appreciated.
Had one problem with disabling all anti-virus progs...in AVG Anti-Spyware, the link you gave said to go to 'status', and then 'change status'. Well, I could not see any 'change status' option within 'status'. I looked elsewhere for it but it was nowhere. I 'closed' the program as far as I could tell. Apart from that, all progs disabled.
I followed your instructions. Logs below.
Thanks again!
- Chris
COMBOFIX LOG
ComboFix 08-01-23.1C - Chris 2008-01-25 3:47:34.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.676 [GMT 0:00]
Running from: C:\Documents and Settings\Chris.OWEN-S0JMZQBWPK\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Program Files\Common Files\{30B15~1
C:\Program Files\Common Files\{30B15~1\Uninst.exe
C:\Program Files\Common Files\{D0B15~1
C:\Program Files\Helper
C:\WINDOWS\system32\gebyyxw.dll
C:\WINDOWS\system32\jao.dll
C:\WINDOWS\system32\jjkkj.ini
C:\WINDOWS\system32\jjkkj.ini2
C:\WINDOWS\system32\jkkjj.dll
C:\WINDOWS\system32\khfcdcy.dll
.
((((((((((((((((((((((((( Files Created from 2007-12-25 to 2008-01-25 )))))))))))))))))))))))))))))))
.
2008-01-25 03:43 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\Nircmd.exe
2008-01-24 20:10 . 2008-01-25 03:41 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-01-23 20:05 . 2008-01-23 22:56 53,760 --a------ C:\WINDOWS\system32\Squeeze.dll
2008-01-23 20:05 . 2008-01-23 23:06 34,308 --a------ C:\WINDOWS\system32\Chip.dll
2008-01-22 16:43 . 2008-01-23 23:06 <DIR> d-------- C:\Program Files\Spyware Doctor
2008-01-21 18:09 . 2008-01-23 23:59 <DIR> d-------- C:\Program Files\McAfee.com
2008-01-21 18:09 . 2005-10-18 11:08 349,760 --a------ C:\WINDOWS\system32\mcinsctl.dll
2008-01-21 18:09 . 2003-10-01 04:52 270,336 --a------ C:\WINDOWS\system32\mcgdmgr.dll
2008-01-21 00:18 . 2008-01-21 18:18 <DIR> d-------- C:\Program Files\Enigma Software Group
2008-01-10 20:58 . 2008-01-22 19:00 <DIR> d-------- C:\Program Files\Kontiki
2008-01-07 17:34 . 2008-01-07 17:34 244 --ah----- C:\sqmnoopt01.sqm
2008-01-07 17:34 . 2008-01-07 17:34 232 --ah----- C:\sqmdata01.sqm
2008-01-07 17:30 . 2008-01-07 17:30 244 --ah----- C:\sqmnoopt00.sqm
2008-01-07 17:30 . 2008-01-07 17:30 232 --ah----- C:\sqmdata00.sqm
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-25 02:25 --------- d-----w C:\Program Files\Soulseek
2008-01-24 20:09 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-01-22 19:01 --------- d-----w C:\Program Files\FrostWire
2008-01-22 19:01 --------- d-----w C:\Program Files\DVD X Player Pro
2008-01-22 19:00 --------- d-----w C:\Program Files\AviSynth 2.5
2007-12-06 20:40 --------- d-----w C:\Program Files\Free FLV Converter
2007-05-23 15:43 3,071,488 ----a-w C:\WINDOWS\Internet Logs\xDB13.tmp
2007-05-10 12:55 3,054,592 ----a-w C:\WINDOWS\Internet Logs\xDB12.tmp
2007-05-02 19:42 3,048,448 ----a-w C:\WINDOWS\Internet Logs\xDB11.tmp
2007-05-02 19:42 2,792,448 ----a-w C:\WINDOWS\Internet Logs\xDB10.tmp
2007-04-29 19:11 3,691,520 ----a-w C:\WINDOWS\Internet Logs\xDBF.tmp
2007-02-27 15:49 3,789,312 ----a-w C:\WINDOWS\Internet Logs\xDBD.tmp
2007-02-27 15:49 2,466,304 ----a-w C:\WINDOWS\Internet Logs\xDBE.tmp
2007-02-22 07:35 140,621 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_02_13_03_48_46_small.dmp.zip
2007-01-18 14:30 468,006 ----a-w C:\WINDOWS\Internet Logs\imsDebug.zip
2007-01-12 02:51 2,188,288 ----a-w C:\WINDOWS\Internet Logs\xDBC.tmp
2007-01-08 23:55 183,444 ----a-w C:\WINDOWS\Internet Logs\Explorer_2nd_2007_01_06_16_46_05_small.dmp.zip
2007-01-08 15:24 4,148,736 ----a-w C:\WINDOWS\Internet Logs\xDBA.tmp
2007-01-08 15:24 2,199,552 ----a-w C:\WINDOWS\Internet Logs\xDBB.tmp
2007-01-06 03:19 132,822 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2007_01_06_03_17_09_small.dmp.zip
2006-12-27 03:41 128,603 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_27_03_25_43_small.dmp.zip
2006-12-25 02:51 103,748 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_22_19_21_58_small.dmp.zip
2006-12-22 17:49 162,947 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_22_16_13_00_small.dmp.zip
2006-12-22 17:49 152,536 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_22_16_23_13_small.dmp.zip
2006-12-22 17:49 129,429 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_22_17_42_03_small.dmp.zip
2006-12-22 17:49 122,369 ----a-w C:\WINDOWS\Internet Logs\explorer_2nd_2006_12_22_16_17_58_small.dmp.zip
2006-12-08 20:17 3,125,760 ----a-w C:\WINDOWS\Internet Logs\xDB8.tmp
2006-11-19 16:42 3,393,024 ----a-w C:\WINDOWS\Internet Logs\xDB6.tmp
2006-11-19 16:42 1,961,472 ----a-w C:\WINDOWS\Internet Logs\xDB9.tmp
2006-10-30 17:25 3,066,368 ----a-w C:\WINDOWS\Internet Logs\xDB3.tmp
2006-10-30 17:25 1,580,032 ----a-w C:\WINDOWS\Internet Logs\xDB7.tmp
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F10587E9-0E47-4CBE-84AE-7DD20B8684CC}]
C:\Program Files\Helper\findsiteonline.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PopUpStopperFreeEdition"="C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe" [2003-04-29 10:40 524288]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 23:56 15360]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 16:45 313472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2003-05-02 07:19 4640768]
"nwiz"="nwiz.exe" [2003-05-02 07:19 323584 C:\WINDOWS\system32\nwiz.exe]
"adiras"="adiras.exe" []
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"EPSON Stylus Photo R220 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIE.exe" [2005-03-09 04:00 98304]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 03:00 132496]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-02-08 14:03 278528]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-02-24 21:55 155648]
"RoxioEngineUtility"="C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe" [2003-01-13 13:05 69632]
"RoxioDragToDisc"="C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe" [2003-01-13 09:19 757760]
"SoundMan"="SOUNDMAN.EXE" [2004-01-08 18:54 65536 C:\WINDOWS\SOUNDMAN.EXE]
"McRegWiz"="C:\PROGRA~1\mcafee.com\agent\mcregwiz.exe" [2003-09-02 15:41 135168]
"MSConfig"="C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2004-08-03 23:56 158208]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2007-10-25 08:50 219136]
"Spyware Doctor"="C:\Program Files\Spyware Doctor\swdoctor.exe" [2008-01-23 23:06 2115728]
C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2006-01-08 00:39:05 113664]
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-24 06:05:26 29696]
DSLMON.lnk - C:\Program Files\SAGEM\SAGEM
[email protected] 800-840\dslmon.exe [2006-01-07 23:47:28 962663]
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE [1999-09-05 05:23:00 65588]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\run]
"{D0B159BC-0489-1033-0428-04080603002c}"= "C:\Program Files\Common Files\{D0B159BC-0489-1033-0428-04080603002c}\Update.exe" mc-110-12-0000797
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Start Menu^Programs^Startup^BlackICE PC Protection.lnk]
path=C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\BlackICE PC Protection.lnk
backup=C:\WINDOWS\pss\BlackICE PC Protection.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Start Menu^Programs^Startup^VIA RAID TOOL.lnk]
path=C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\VIA RAID TOOL.lnk
backup=C:\WINDOWS\pss\VIA RAID TOOL.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adware.Srv32]
C:\WINDOWS\system32\runsrv32.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG7_CC]
--a------ 2008-01-07 14:57 579072 C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCAgentExe]
--a------ 2005-09-22 18:29 303104 C:\PROGRA~1\McAfee.com\Agent\McAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCUpdateExe]
--a------ 2006-01-11 12:05 212992 C:\PROGRA~1\McAfee.com\Agent\McUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--------- 2004-10-13 16:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
--a------ 2004-01-08 18:54 65536 C:\WINDOWS\SOUNDMAN.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
--a------ 2007-06-21 14:06 1318912 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
R0 viasraid;viasraid;C:\WINDOWS\system32\DRIVERS\viasraid.sys [2003-06-12 10:31]
S2 ousbehci;%OWC_USBEHCD.DeviceDesc%;C:\WINDOWS\system32\Drivers\ousbehci.sys [2002-01-31 09:39]
S2 ZBJWDGTD;ZBJWDGTD;C:\WINDOWS\System32\zbjwdgtd.vvy []
S3 RapDrv;RapDrv;C:\WINDOWS\system32\drivers\RapDrv.sys [2003-10-24 14:57]
S3 RapFile;RapFile;C:\WINDOWS\system32\drivers\RapFile.sys [2003-02-25 17:26]
S3 RapNet;RapNet;C:\WINDOWS\system32\drivers\RapNet.sys [2003-02-25 17:26]
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-01-25 04:13:51
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-25 4:30:50 - machine was rebooted
ComboFix-quarantined-files.txt 2008-01-25 04:30:38
.
2008-01-09 18:05:59 --- E O F ---
HIJACKTHIS LOG
Logfile of HijackThis v1.99.1
Scan saved at 04:32:18, on 25/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\ISS\BlackICE\blackd.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIE.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\mcafee.com\agent\mcregwiz.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\SAGEM\SAGEM
[email protected] 800-840\dslmon.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.co.uk/O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: e404 helper - {F10587E9-0E47-4CBE-84AE-7DD20B8684CC} - C:\Program Files\Helper\findsiteonline.dll (file missing)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo R220 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIE.EXE /P30 "EPSON Stylus Photo R220 Series" /O6 "USB001" /M "Stylus Photo R220"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [McRegWiz] C:\PROGRA~1\mcafee.com\agent\mcregwiz.exe /autorun
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM
[email protected] 800-840\dslmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O16 - DPF: {2A493D5F-8914-4D3E-8BF3-767F281862F4} (TraderMediaImgX Control) -
http://sell.autotrad...raderMediaX.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.micros...b?1141702308341O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1146016606019O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: BlackICE - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\blackd.exe
O23 - Service: CA ISafe (CAISafe) - Computer Associates International, Inc. - C:\WINDOWS\system32\ZoneLabs\isafe.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: RapApp - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\rapapp.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe