First I just would like to say thanks for the reply.
I ran the first thing youve asked me to run and I am about to run the 2nd for you just in a moment.
For the DDS Ive gotten this:
Deckard's System Scanner v20071014.68
Run by AJ on 2008-06-10 11:46:05
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
22: 2008-06-10 15:47:31 UTC - RP126 - Deckard's System Scanner Restore Point
21: 2008-06-09 00:20:20 UTC - RP125 - Uniblue RegistryBooster
20: 2008-06-06 00:41:43 UTC - RP124 - Software Distribution Service 3.0
19: 2008-06-05 22:18:13 UTC - RP123 - Software Distribution Service 3.0
18: 2008-06-05 00:19:37 UTC - RP122 - System Checkpoint
-- First Restore Point --
1: 2008-04-28 01:18:25 UTC - RP105 - Software Distribution Service 3.0
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 511 MiB (512 MiB recommended).-- HijackThis (run as AJ.exe) --------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:15:56 PM, on 6/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.17184)
Boot mode: Normal
Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\Explorer.EXE
F:\Program Files\Ideazon\Zboard Software\Driver\ZboardTray.exe
F:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
F:\WINDOWS\system32\ctfmon.exe
F:\Program Files\Windows Live\Messenger\msnmsgr.exe
F:\Program Files\Ideazon\Zboard Software\Driver\Zboard.exe
F:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDPop3.exe
F:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDCountdown.exe
F:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
F:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDMedia.exe
F:\WINDOWS\System32\svchost.exe
F:\Documents and Settings\AJ\Desktop\dss.exe
F:\PROGRA~1\TRENDM~1\HIJACK~1\AJ.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft..../?LinkId=105563R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://www.mrfindalo.../search.asp?si=R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - F:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O2 - BHO: (no name) - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - (no file)
O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - F:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - f:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - F:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - f:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - F:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\program files\google\googletoolbar4.dll
O3 - Toolbar: AIM Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - F:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O4 - HKLM\..\Run: [LXBUCATS] rundll32 F:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [Launch LGDCore] "F:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [Launch LCDMon] "F:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] F:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "F:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] F:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKLM\..\Policies\Explorer\Run: [ZboardTray] "F:\Program Files\Ideazon\Zboard Software\Driver\ZboardTray.exe" /autolaunch
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "F:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "F:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O8 - Extra context menu item: &AOL Toolbar Search - f:\program files\aol\aim toolbar 5.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://F:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: AIM Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - F:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: f:\windows\system32\nwprovau.dll
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) -
http://pcpitstop.com...t/PCPitStop.CABO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {32305793-C19A-48E7-AD2F-D87FF7B264A4} (TenebrilSpywareScanner Control) -
http://www.tenebril....reScannerV2.ocxO16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} -
http://www.fileplane...C_2.3.3.102.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
http://download.mcaf...01/mcinsctl.cabO16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zon...nt.cab31267.cabO16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) -
http://www.crucial.c.../cpcScanner.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} -
http://download.mcaf...,26/mcgdmgr.cabO16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
http://messenger.zon...nt.cab56907.cabO16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} -
http://download.mcaf...943/mcfscan.cabO16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} (PCPitstop Exam) -
http://utilities.pcp.../pcpitstop2.dllO23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - F:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
--
End of file - 6775 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 MPFIREWL - f:\windows\system32\drivers\mpfirewall.sys <Not Verified; McAfee; McAfee Personal Firewall>
R3 pcouffin (VSO Software pcouffin) - f:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
S2 VIXFBARI - f:\windows\system32\vixfbari.yra (file missing)
S3 UWProSys (Process monitor.) - f:\program files\cyberdefender\antispyware\uwprosys.sys (file missing)
S3 XTrapD12 - f:\windows\system32\xtrapd12.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
S2 McShield (McAfee Real-time Scanner) - f:\progra~1\mcafee\viruss~1\mcshield.exe (file missing)
S4 McODS (McAfee Scanner) - f:\progra~1\mcafee\viruss~1\mcods.exe (file missing)
S4 McSysmon (McAfee SystemGuards) - f:\progra~1\mcafee\viruss~1\mcsysmon.exe (file missing)
S4 RichVideo (Cyberlink RichVideo Service(CRVS)) - "f:\program files\cyberlink\shared files\richvideo.exe" <Not Verified; ; RichVideo Module>
S4 Viewpoint Manager Service - "f:\program files\viewpoint\common\viewpointservice.exe" <Not Verified; Viewpoint Corporation; Viewpoint Manager>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-06-10 11:37:41 432 --a------ F:\WINDOWS\Tasks\RegCure Program Check.job
2008-04-30 15:14:52 366 --a------ F:\WINDOWS\Tasks\RegCure.job
2008-03-15 01:00:02 340 --a------ F:\WINDOWS\Tasks\McDefragTask.job
2008-03-01 02:00:02 332 --a------ F:\WINDOWS\Tasks\McQcTask.job
-- Files created between 2008-05-10 and 2008-06-10 -----------------------------
2008-06-08 18:48:06 0 d-------- F:\Documents and Settings\AJ\Application Data\Uniblue
2008-06-08 18:47:50 0 d-------- F:\Program Files\Uniblue
2008-06-05 19:29:50 0 d-------- F:\Documents and Settings\AJ\Application Data\fretsonfire
2008-06-05 19:28:37 0 d-------- F:\Program Files\Frets on Fire
2008-05-12 14:40:38 315392 --a------ F:\WINDOWS\HideWin.exe <Not Verified; Realtek Semiconductor Corp.; HD Audio Hide windows program>
-- Find3M Report ---------------------------------------------------------------
2008-05-12 14:08:21 0 d-------- F:\Program Files\PCPitstop
2008-05-12 13:13:29 0 d-------- F:\Program Files\SwiftKit
2008-05-12 13:07:15 0 d-------- F:\Program Files\Miranda IM
2008-05-12 12:55:03 0 d-------- F:\Program Files\Viewpoint
2008-05-12 12:53:23 0 d-------- F:\Documents and Settings\AJ\Application Data\Viewpoint
2008-05-06 19:45:31 0 d-------- F:\Program Files\BfSV
2008-05-06 19:29:01 0 d-------- F:\Program Files\Common Files\Adobe
2008-05-03 18:24:16 0 d-------- F:\Program Files\Windows Defender
2008-05-01 15:47:59 0 d-------- F:\Program Files\LimeWire
2008-04-30 15:14:36 0 d-------- F:\Program Files\RegCure
2008-04-30 15:03:42 0 d-------- F:\Program Files\Steam
2008-04-30 14:37:52 0 d-------- F:\Program Files\McAfee
2008-04-30 14:37:52 0 d-------- F:\Program Files\Common Files\McAfee
2008-04-28 18:15:27 0 d-------- F:\Program Files\Lavasoft
2008-04-28 18:08:38 0 d-------- F:\Program Files\Common Files\Wise Installation Wizard
2008-04-28 16:11:42 0 d-------- F:\Program Files\Java
2008-04-27 21:03:20 0 d-------- F:\Program Files\AIM6
2008-04-27 21:03:16 0 d-------- F:\Program Files\Common Files\AOL
2008-04-27 21:02:32 0 d-------- F:\Program Files\AIMTunes
2008-04-27 21:02:31 0 d-------- F:\Program Files\Ogg Converter
2008-04-27 21:02:31 0 d-------- F:\Program Files\Novel Games
2008-04-27 21:02:27 0 d-------- F:\Program Files\Microsoft Xbox 360 Accessories
2008-04-27 21:02:27 0 d-------- F:\Program Files\Common Files\ATI Technologies
2008-04-27 20:59:14 0 d-------- F:\Program Files\AIM6(2)
2008-04-27 20:54:57 0 d-------- F:\Program Files\Windows Media Connect 2
2008-04-27 20:53:23 0 d-------- F:\Program Files\ffdshow
2008-04-27 20:53:23 0 d-------- F:\Program Files\DivX
2008-04-27 20:50:29 0 d-------- F:\Program Files\Common Files\Java
2008-04-27 20:50:25 0 d-------- F:\Program Files\Common Files
2008-04-27 20:50:25 0 d-------- F:\Program Files\Common Files\Java(2)
2008-04-27 20:50:06 0 d-------- F:\Documents and Settings\AJ\Application Data\Ideazon
2008-04-27 20:49:52 0 d--h----- F:\Program Files\InstallShield Installation Information
2008-04-27 20:49:52 0 d-------- F:\Program Files\Ideazon
2008-04-26 13:54:34 0 d-------- F:\Program Files\Trend Micro
2008-04-17 19:37:11 1338 --a------ F:\WINDOWS\mozver.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LXBUCATS"="F:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll" [09/10/2004 07:55 AM]
"Launch LGDCore"="F:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" [12/13/2007 06:57 PM]
"Launch LCDMon"="F:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [12/13/2007 06:43 PM]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="F:\WINDOWS\system32\ctfmon.exe" [08/04/2004 03:56 AM]
"msnmsgr"="F:\Program Files\Windows Live\Messenger\msnmsgr.exe" [10/18/2007 12:34 PM]
"Uniblue RegistryBooster 2"="F:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe" [05/05/2008 12:22 PM]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"DWQueuedReporting"="F:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\Run]
"ZboardTray"="F:\Program Files\Ideazon\Zboard Software\Driver\ZboardTray.exe" /autolaunch
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Zboard]
Winlognotif.dll 09/03/2003 07:14 AM 49152 F:\WINDOWS\system32\Winlognotif.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=interceptor.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\F:^Documents and Settings^AJ^Start Menu^Programs^Startup^lsass.lnk]
path=F:\Documents and Settings\AJ\Start Menu\Programs\Startup\lsass.lnk
backup=F:\WINDOWS\pss\lsass.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\F:^Documents and Settings^AJ^Start Menu^Programs^Startup^Registration .LNK]
backup=F:\WINDOWS\pss\Registration .LNKStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
"F:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]
"F:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
ALCMTR.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
F:\WINDOWS\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Echovoice Gamer Statistics]
F:\Program Files\Echovoice\Gamer Statistics\G15 Echovoice Gamer Statistics.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
"F:\Program Files\iTunes\iTunesHelper.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Load]
F:\WINDOWS\system32\gpiczgld\lsass.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lsass]
"F:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
"F:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
RUNDLL32.EXE F:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Pitstop Optimize2 Reminder]
F:\Program Files\PCPitstop\Optimize2\Reminder.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"F:\Program Files\QuickTime\QTTask.exe" -atboottime
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RegistryMechanic]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
RTHDCPL.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Run]
F:\WINDOWS\system32\gpiczgld\lsass.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"F:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
F:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UserFaultCheck]
%systemroot%\system32\dumprep 0 -u
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirusScan Online]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
F:\Program Files\Windows Media Player\WMPNSCFG.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
"f:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"iPodService"=3 (0x3)
"sdCoreService"=2 (0x2)
"sdAuxService"=2 (0x2)
"Ati HotKey Poller"=2 (0x2)
"ATI Smart"=2 (0x2)
"VRSService"=2 (0x2)
"iPod Service"=3 (0x3)
"usnjsvc"=3 (0x3)
"McSysmon"=2 (0x2)
"McShield"=2 (0x2)
"McODS"=2 (0x2)
"mcmispupdmgr"=3 (0x3)
"IDriverT"=3 (0x3)
"gusvc"=3 (0x3)
"Emproxy"=3 (0x3)
"WMPNetworkSvc"=2 (0x2)
"WLSetupSvc"=3 (0x3)
"Viewpoint Manager Service"=2 (0x2)
"RichVideo"=2 (0x2)
"NVSvc"=2 (0x2)
"MDM"=2 (0x2)
"McRedirector"=2 (0x2)
"mcpromgr"=2 (0x2)
"McNASvc"=2 (0x2)
"mcmscsvc"=2 (0x2)
"McAfee HackerWatch Service"=2 (0x2)
"aawservice"=2 (0x2)
-- End of Deckard's System Scanner: finished at 2008-06-10 12:25:20 ------------
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English
CPU 0: Intel® Pentium® 4 CPU 2.66GHz
Percentage of Memory in Use: 22%
Physical Memory (total/avail): 510.48 MiB / 393.17 MiB
Pagefile Memory (total/avail): 2527.36 MiB / 2336.48 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1934.73 MiB
A: is Removable (No Media)
C: is Fixed (FAT32) - 7.44 GiB total, 3.5 GiB free.
D: is CDROM (No Media)
E: is CDROM (No Media)
F: is Fixed (NTFS) - 67.07 GiB total, 11.94 GiB free.
\\.\PHYSICALDRIVE0 - WDC WD800JB-00CRA1 - 74.53 GiB - 2 partitions
\PARTITION0 (bootable) - Unknown - 7.45 GiB - C:
\PARTITION1 - Extended w/Extended Int 13 - 67.07 GiB - F:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.
AntiVirusDisableNotify is set.
FirewallDisableNotify is set.
UpdatesDisableNotify is set.
AV: CyberDefender Internet Security v2005 (CyberDefender)
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="F:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"F:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="F:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\\Program Files\\LimeWire\\LimeWire.exe"="F:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"F:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="F:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"F:\\Program Files\\Steam\\steam.exe"="F:\\Program Files\\Steam\\steam.exe:*:Enabled:Steam"
"F:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="F:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"F:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="F:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"F:\\Program Files\\AIM6\\aim6.exe"="F:\\Program Files\\AIM6\\aim6.exe:*:Enabled:AIM"
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=F:\Documents and Settings\All Users
APPDATA=F:\Documents and Settings\AJ\Application Data
CLASSPATH=.;F:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
CLIENTNAME=Console
CommonProgramFiles=F:\Program Files\Common Files
COMPUTERNAME=AJPC
ComSpec=F:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=F:
HOMEPATH=\Documents and Settings\AJ
LOGONSERVER=\\AJPC
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=F:\WINDOWS\system32;F:\WINDOWS;F:\WINDOWS\system32\WBEM;F:\Program Files\ATI Technologies\ATI Control Panel;F:\Program Files\QuickTime\QTSystem\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 1, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0401
ProgramFiles=F:\Program Files
PROMPT=$P$G
QTJAVA=F:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=F:
SystemRoot=F:\WINDOWS
TEMP=F:\DOCUME~1\AJ\LOCALS~1\Temp
TMP=F:\DOCUME~1\AJ\LOCALS~1\Temp
USERDOMAIN=AJPC
USERNAME=AJ
USERPROFILE=F:\Documents and Settings\AJ
windir=F:\WINDOWS
-- User Profiles ---------------------------------------------------------------
Admin
(admin)AJ
(admin)-- Add/Remove Programs ---------------------------------------------------------
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 F:\WINDOWS\INF\PCHealth.inf
Ad-Aware 2007 --> MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe Flash Player ActiveX --> F:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin --> F:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Shockwave Player --> F:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE F:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
AIM 6 --> F:\Program Files\AIM6\uninst.exe
AIM Toolbar 5.0 --> "F:\Program Files\AOL\AIM Toolbar 5.0\uninstall.exe"
AIMTunes --> F:\Program Files\AIMTunes\Uninstall.exe
ATI Radeon's Ark v1.3 --> MsiExec.exe /X{886AAAC7-9A7C-43FC-B05D-26539005C3B5}
Audio and Video Recorder version 2.2 --> F:\WINDOWS\uninst.exe -f"F:\Program Files\AiLanSoft\Audio and Video Recorder version 2.2\DeIsL1.isu" -c"F:\Program Files\AiLanSoft\Audio and Video Recorder version 2.2\_ISREG32.DLL"
AVIVO Codecs --> MsiExec.exe /X{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}
Best Buy Rhapsody --> F:\PROGRA~1\BESTBU~1\Unwise32.exe /A F:\PROGRA~1\BESTBU~1\install.log
Connect Four 1.1.0 --> "F:\Program Files\Novel Games\Connect Four\unins000.exe"
Counter-Strike: Source --> MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
dBpoweramp Music Converter --> "F:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>F:\WINDOWS\system32\SpoonUninstall-dBpoweramp Music Converter.dat
Direct MIDI to MP3 Converter 3.0 --> "F:\Program Files\Direct MIDI to MP3 Converter\unins000.exe"
DivX --> F:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Player --> F:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
FEAR MP Demo --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{0C8CD594-4C26-4AD9-AEAB-C6245D8EA9EE}\setup.exe" -l0x9 -removeonly
FEARCombat --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{75E607CF-7BAE-4B88-84B3-97F3DF44BA28}\setup.exe" -l0x9 /zU -removeonly
Frets On Fire --> "F:\Program Files\Frets on Fire\Uninstall.exe"
GalleryPlayer Images --> F:\WINDOWS\GalleryPlayer Images Uninstaller.exe
Google Toolbar for Firefox --> MsiExec.exe /X{2CCBABCB-6427-4A55-B091-49864623C43F}
Google Toolbar for Internet Explorer --> regsvr32 /u /s "f:\program files\google\googletoolbar4.dll"
Guild Wars --> "F:\Program Files\Guild Wars\Gw.exe" -uninstall
GW Team Builder 1.1.2 --> "F:\Program Files\GW Team Builder\setup\unins000.exe"
High Definition Audio Driver Package - KB888111 --> "F:\WINDOWS\$NtUninstallKB888111WXP$\spuninst\spuninst.exe"
HijackThis 2.0.2 --> "F:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399) --> "F:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HyperCam --> F:\WINDOWS\UnHyCam.bat
J2SE Runtime Environment 5.0 Update 10 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
J2SE Runtime Environment 5.0 Update 9 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150090}
Java 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Lexmark 6200 Series --> F:\WINDOWS\system32\spool\drivers\w32x86\3\lxbuUNST.EXE -NOLICENSE
LimeWire 4.16.6 --> "F:\Program Files\LimeWire\uninstall.exe"
Logitech GamePanel Software 2.02 --> MsiExec.exe /X{0523EAF4-402C-4435-A0DA-13C40193D811}
Macromedia Flash Player 8 --> F:\WINDOWS\System32\Macromed\Flash\UninstFl.exe
McAfee SecurityCenter --> F:\Program Files\McAfee\MSC\mcuninst.exe
Messenger Control Plugin for Ad-aware --> \MESSEN~1\UNWISE.EXE \MESSEN~1\INSTALL.LOG
Microsoft Compression Client Pack 1.0 for Windows XP --> "F:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1 --> "F:\WINDOWS\$NtUninstallWdf01001$\spuninst\spuninst.exe"
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "F:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Xbox 360 Accessories 1.1 --> MsiExec.exe /X{66F0AC35-4805-44BC-A3D4-347D4196F9B3}
MIDI Converter Studio 5.6 --> "F:\Program Files\MIDI Converter Studio\unins000.exe"
Mozilla Firefox (2.0.0.14) --> F:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Music Assistant --> rundll32 advpack.dll,LaunchINFSection F:\WINDOWS\INF\msninst.inf,Uninstall
No One Lives Forever 2 (Official Demo) --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "F:\Program Files\Fox\No One Lives Forever 2 (Official Demo)\SETUP.EXE"
NVIDIA Drivers --> F:\WINDOWS\system32\nvudisp.exe UninstallGUI
Ogg Converter --> F:\PROGRA~1\OGGCON~1\UNWISE.EXE F:\PROGRA~1\OGGCON~1\INSTALL.LOG
p2pnetworks --> "F:\Program Files\p2pnetworks\uninst.exe"
PC Pitstop Driver Alert 1.0 --> "F:\Program Files\PCPitstop\Driver Alert\unins000.exe"
PC Pitstop Optimize2 2.0 --> "F:\Program Files\PCPitstop\Optimize2\unins000.exe"
PowerDVD --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
QuickTime --> MsiExec.exe /I{6EC874C2-F950-4B7E-A5B7-B1066D6B74AA}
REALTEK Gigabit and Fast Ethernet NIC Driver --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{94FB906A-CF42-4128-A509-D353026A607E}\setup.exe" -l0x9 REMOVE
Realtek High Definition Audio Driver --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
RegCure 1.5.0.1 --> F:\Program Files\RegCure\uninst.exe
Registry Mechanic 5.1 --> "F:\Program Files\Registry Mechanic\unins000.exe"
ResChanger 2005 --> F:\WINDOWS\iun6002.exe "F:\Program Files\ResChanger 2005\irunin.ini"
Rhapsody Player Engine --> MsiExec.exe /I{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}
Security Update for CAPICOM (KB931906) --> MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906) --> MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
SiS 650 --> Rundll32.exe SiSInst.dll,InfUnInst Driver.Uninst 4 sisgr.inf
Smart Audio Converter Pro --> "F:\Program Files\SmartAudioConverterPro\unins000.exe"
Spybot - Search & Destroy --> "F:\Program Files\Spybot - Search & Destroy\unins000.exe"
Steam --> F:\PROGRA~1\Steam\UNWISE.EXE F:\PROGRA~1\Steam\INSTALL.LOG
StreamAuthor 3.5 --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{088EC90C-CF7B-11D5-97EE-0050BACBF861}\Setup.exe" -uninstall
SwiftKit --> F:\Program Files\SwiftKit\Uninstall.exe
System Requirements Lab --> F:\Program Files\SystemRequirementsLab\Uninstall.exe
TeamSpeak 2 RC2 --> "F:\Program Files\Teamspeak2_RC2\unins000.exe"
Tunatic --> "F:\WINDOWS\lsb_un20.exe" /C=UC /N=Tunatic
Uniblue RegistryBooster 2 --> "F:\Program Files\Uniblue\RegistryBooster 2\unins000.exe"
USB Dual Vibration Joystick --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{59354E6C-B36F-49EF-9419-D904B86C9C57}\setup.exe" -l0x9
Ventrilo Client --> MsiExec.exe /I{789289CA-F73A-4A16-A331-54D498CE069F}
Windows Internet Explorer 8 Beta 1 --> "F:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live installer --> MsiExec.exe /X{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}
Windows Live Messenger --> MsiExec.exe /X{508CE775-4BA4-4748-82DF-FE28DA9F03B0}
Windows Live Sign-in Assistant --> MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
Windows Media Format 11 runtime --> "F:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Zboard Software --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{12B5658E-5E34-45C1-AAFA-8AF997684928}\Setup.exe" -l0x9
-- Application Event Log -------------------------------------------------------
Event Record #/Type7125 / Error
Event Submitted/Written: 06/10/2008 11:49:42 AM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application firefox.exe, version 1.8.20080.40413, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Event Record #/Type7112 / Error
Event Submitted/Written: 06/05/2008 05:10:57 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application firefox.exe, version 1.8.20080.40413, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Event Record #/Type7107 / Error
Event Submitted/Written: 06/03/2008 08:21:25 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application msnmsgr.exe, version 8.5.1302.1018, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Event Record #/Type7106 / Error
Event Submitted/Written: 06/03/2008 04:23:00 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application moviemk.exe, version 2.1.4026.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
Event Record #/Type7104 / Error
Event Submitted/Written: 06/02/2008 08:12:01 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application firefox.exe, version 1.8.20080.40413, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
-- Security Event Log ----------------------------------------------------------
No Errors/Warnings found.
-- System Event Log ------------------------------------------------------------
Event Record #/Type32289 / Error
Event Submitted/Written: 06/10/2008 11:37:35 AM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service failed to start due to the following error:
%%2
Event Record #/Type32267 / Error
Event Submitted/Written: 06/09/2008 09:11:41 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service failed to start due to the following error:
%%2
Event Record #/Type32244 / Error
Event Submitted/Written: 06/08/2008 06:14:15 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service failed to start due to the following error:
%%2
Event Record #/Type32239 / Warning
Event Submitted/Written: 06/07/2008 08:39:45 PM
Event ID/Source: 4226 / Tcpip
Event Description:
TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Event Record #/Type32219 / Error
Event Submitted/Written: 06/07/2008 07:07:44 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service failed to start due to the following error:
%%2
-- End of Deckard's System Scanner: finished at 2008-06-10 12:25:20 ------------