Logfile of HijackThis v1.99.1
Scan saved at 11:22:39 AM, on 08/05/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
C:\WINDOWS\System32\atiptaxx.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Xerox\NWWia\XrxFTPLt.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\ctfmon.exe
C:\windows\oduoaqh.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
C:\WINDOWS\System32\ZoneLabs\vsmon.exe
C:\Downloads\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://w-find.com/sp.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://w-find.com/index.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://w-find.com/index.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://w-find.com/sp.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://w-find.com/index.htm
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Loader Class - {2E246FAE-8420-11D9-870D-000C2917DE7F} - C:\WINDOWS\SYSTEM\Loader.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O2 - BHO: (no name) - {D80C4E21-C346-4E21-8E64-20746AA20AEB} - (no file)
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [InstantAccess] C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE /h
O4 - HKLM\..\Run: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\LastGood\System32\spool\DRIVERS\W32X86\lexmarklexmark_z1189c1\printray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [XeroxScannerDaemon] C:\Program Files\Xerox\NWWia\XrxFTPLt.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [vnxhbbw] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [rqanxnd] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [akkcxup] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [fhojevg] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [mpmhrgr] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [lmfejjb] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [rsjcurr] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [qsdfnps] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [fmiaopu] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [biaesbc] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [ysdqygn] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [wiallyp] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [snpwtrl] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [wnugtvx] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [rymimae] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [hbwkscg] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [vvmdoph] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [lbmxsqs] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [xxsunki] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [cacvxsb] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [wmvcbut] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [wvlbuyc] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [tclgodh] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [wwhvrmk] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [jrljjnt] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [hwlnned] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [jfokcau] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [adpjjwm] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [ccudhwr] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [hlqbhrd] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [qmdwuld] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [vwlafpj] c:\windows\oduoaqh.exe
O4 - HKCU\..\Run: [muwnvak] c:\windows\lvhevni.exe
O4 - HKCU\..\Run: [lylmmly] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [fspqgyx] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [clndpba] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [vxxcghk] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [vrdbqav] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [vpojsqi] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [hkuibyo] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [eqgpehv] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [npyweue] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [gcwrdam] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [ajslacl] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [rsoxrcg] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [pxddpxx] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [xeuimhb] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [sycbtvt] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [hcqvolh] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [imxplgq] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [vwvhhbi] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [hphrxyb] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [hllgjmx] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [nauofkc] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [dnspxih] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [jnfsdra] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [rgdxrbh] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [acelcff] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [iuhwear] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [ucicftq] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [qxycutn] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [yrklhpg] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [xbkemup] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [calrwyf] c:\windows\biuqixy.exe
O4 - HKCU\..\Run: [pfevoye] c:\windows\dxbvlyo.exe
O4 - HKCU\..\Run: [eotxxey] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [jgbrssh] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [pbwqoch] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [sagdvfl] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [ydbyvpx] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [ppsuqux] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [mlrqvrf] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [psoxxuu] c:\windows\weqqhgf.exe
O4 - HKCU\..\Run: [iulrsda] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [wkeuenx] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [sbcdniv] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [adndfph] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [rlihfkj] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [amlgkou] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [ajubupx] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [qabtkmf] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [upumrtp] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [pwiftjo] c:\windows\acknlrk.exe
O4 - HKCU\..\Run: [sdgnfwb] c:\windows\chwpgnv.exe
O4 - HKCU\..\Run: [hhmnprg] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [jhddbte] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rmpvjmw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [qckprsa] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pxqjwhr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [cmksgth] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rvpopch] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pcdnshh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ywsviks] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wbwcfpe] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nxpwica] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [safcdcd] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [dbxxlgn] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [kmmwmmi] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [qmdatkl] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ncoxubt] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [etbiikb] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [drjavck] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [cqyvmqf] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ebqbhdb] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [blxleiq] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ddlfcub] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [iemwymc] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [fqnynxp] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [oxmdara] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ooiholh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ubsfnbl] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [gxerixx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [uvyvlyl] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rhqublr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rtpiskj] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rtpkhcq] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [weclisa] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [hqeeiim] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nvfgibs] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [jierhgq] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [tqfekfv] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [jkanxhu] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [aitetgo] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [hlohknk] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ueqpbod] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [chussmx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [oacsynd] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [gbfcgsa] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [kdppxok] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [bjyfroh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [deptadc] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [oqgccwj] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [vesfqtv] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [lluaqax] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [stmfujt] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ttwhfqo] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [xgynmdg] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ipqptsl] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [hyafrdi] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [fjnrqqt] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pjvvejj] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pogwmhf] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [foruhjx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [yhxdbds] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rtvkjlb] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ocrgaos] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [dnidbkw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [fqkifdr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ophimxk] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [noufcxr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [qgjgdlw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ejbusct] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wettloc] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rhhrsad] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wcbysbh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [qnwrwgb] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [fndpeoh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [tauquvr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [gtnxfnb] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [uudwdds] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rtxmldf] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nfghsku] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [cyeplhg] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [vaeuuun] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wojslvx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ruatidv] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nmoyrmw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pkbkyqo] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [honjqfu] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [liyhggi] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wwwrehm] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [jflcxjt] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [awrwhwr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [hnwawgc] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [owbywiy] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [mavrbvy] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [rlklelx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [oqkwyio] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [stumcfx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [yfyjhfd] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wlsnijs] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [hdksevt] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [vvbigxw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [llpncpm] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [yxjyrye] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [stcdysr] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ovvxnhk] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [pcdvvku] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [tyxbwkp] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [egeggwk] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [iluynii] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wpldtsn] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [eiafslq] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nqcxxtg] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wofmbsx] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [jyjeluw] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [wwndbqn] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [bvhpspa] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [iabnrkd] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [ghqyqoh] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [evspkbd] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [cweevad] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [nqmjmtp] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [qafhyyg] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [klpnpig] c:\windows\xpnkpwn.exe
O4 - HKCU\..\Run: [tjoatfy] c:\windows\ulbtwdr.exe
O4 - HKCU\..\Run: [icgwlcc] c:\windows\ulbtwdr.exe
O4 - Global Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: ZoneAlarm.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: Microsoft AntiSpyware helper - {839A2AEF-586D-4AA2-AF9C-CC052F421985} - (no file) (HKCU)
O9 - Extra 'Tools' menuitem: Microsoft AntiSpyware helper - {839A2AEF-586D-4AA2-AF9C-CC052F421985} - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\flsmngr.dll
O16 - DPF: {32B989C2-13D4-426C-81F3-D68D7393E487} (ChainCast VMR Client Proxy) - http://64.124.45.181...d/ccpm_0200.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akama...meInstaller.exe
O16 - DPF: {4EF8EE93-36A6-0C8A-B35F-143F7D43A013} - http://69.50.182.94/1/rdgCA1882.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {74FFE28D-2378-11D5-990C-006094235084} (IBM Access Support) - https://www-3.ibm.co...ad/IbmEgath.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/.../GrooveAX27.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft.../as5/asinst.cab
O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivi...n/ravonline.cab
O16 - DPF: {CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA} (Java Runtime Environment 1.4.0) -
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F5C6AF4DE1BD} - http://www.abacast.c...es/Abasetup.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcaf...240/mcfscan.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe