Here it is!
=0=0=0=0=0=0=0=0=0=0=0=0=0=
StartupList report, 2010/08/01, 18:24:49
StartupList version: 1.52
Started from : C:\Users\( x.x )V\Desktop\startuplist.EXE
Detected: Unknown Windows (WinNT 6.00.1906 SP2)
Detected: Internet Explorer v8.00 (8.00.6001.18928)
* Using default options
==================================================
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\OEM02Mon.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\wpcumi.exe
C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\DELL\DELL Webcam Manager\DellWMgr.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Norton Utilities 14\RMTray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\( x.x )V\AppData\Local\Google\Update\1.2.183.29\GoogleCrashHandler.exe
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Users\( x.x )V\Desktop\startuplist.exe
--------------------------------------------------
Listing of startup folders:
Shell folders Startup:
[C:\Users\( x.x )V\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup]
OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
Shell folders Common Startup:
[C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup]
Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
--------------------------------------------------
Checking Windows NT UserInit:
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\Windows\system32\userinit.exe,
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
OEM02Mon.exe = C:\Windows\OEM02Mon.exe
(Default) =
RoxWatchTray = "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
ISUSPM Startup = C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
ISUSScheduler = "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
IntelliPoint = "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
IgfxTray = C:\Windows\system32\igfxtray.exe
HotKeysCmds = C:\Windows\system32\hkcmd.exe
Persistence = C:\Windows\system32\igfxpers.exe
Kernel and Hardware Abstraction Layer = KHALMNPR.EXE
TkBellExe = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
WPCUMI = C:\Windows\system32\WpcUmi.exe
AVFX Engine = C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
Adobe Reader Speed Launcher = "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
Adobe ARM = "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
QuickTime Task = "C:\Program Files\QuickTime\QTTask.exe" -atboottime
DivXUpdate = "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
WindowsWelcomeCenter = rundll32.exe oobefldr.dll,ShowWelcomeCenter
DELL Webcam Manager = "C:\Program Files\DELL\DELL Webcam Manager\DellWMgr.exe" /s
(Default) =
msnmsgr = "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
ehTray.exe = C:\Windows\ehome\ehTray.exe
Rainlendar2 = C:\Program Files\Rainlendar2\Rainlendar2.exe
Google Update = "C:\Users\( x.x )V\AppData\Local\Google\Update\GoogleUpdate.exe" /c
SpybotSD TeaTimer = C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
DriverMax =
Skype = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
NortonUtilities = C:\Program Files\Norton Utilities 14\RMTray.exe /H
Sidebar = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MeepSearchAssist = C:\Program Files\Meep\JixeySearchHelper\Jixeysearchhelper.exe
WMPNSCFG = C:\Program Files\Windows Media Player\WMPNSCFG.exe
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
[OptionalComponents]
=
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
[AdobeUpdater]
=
--------------------------------------------------
Shell & screensaver key from C:\Windows\SYSTEM.INI:
Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*
Shell & screensaver key from Registry:
Shell=explorer.exe
SCRNSAVE.EXE=*Registry value not found*
drivers=*Registry value not found*
Policies Shell key:
HKCU\..\Policies: Shell=*Registry value not found*
HKLM\..\Policies: Shell=*Registry value not found*
--------------------------------------------------
Enumerating Browser Helper Objects:
AcroIEHelperStub - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll - {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
(no name) - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll - {3049C3E9-B461-4BC5-8870-4C09146192CA}
(no name) - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll - {53707962-6F74-2D53-2644-206D7942484F}
(no name) - (no file) - {5C255C8A-E604-49b4-9D64-90988571CECB}
Symantec NCO BHO - C:\Program Files\Norton Internet Security\Engine\17.7.0.12\coIEPlg.dll - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}
Symantec Intrusion Prevention - C:\Program Files\Norton Internet Security\Engine\17.7.0.12\IPSBHO.DLL - {6D53EC84-6AAE-4787-AEEE-F4628F01010C}
(no name) - C:\Program Files\Java\jre6\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
(no name) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}
(no name) - C:\Program Files\Java\jre6\bin\jp2ssv.dll - {DBC80044-A445-435b-BC74-9C25C1C588A9}
--------------------------------------------------
Enumerating Task Scheduler jobs:
GoogleUpdateTaskUserS-1-5-21-4002708316-1989378114-1325055831-1000Core.job
GoogleUpdateTaskUserS-1-5-21-4002708316-1989378114-1325055831-1000UA.job
Norton Security Scan for ( x.x )V.job
--------------------------------------------------
Enumerating Download Program Files:
[Office Genuine Advantage Validation Tool]
InProcServer32 = C:\Windows\system32\OGACheckControl.dll
CODEBASE =
http://download.micr.../OGAControl.cab
[DLM Control]
CODEBASE =
http://dlm.tools.aka...vex-2.2.5.1.cab
[AXIDMDCP Class]
CODEBASE =
http://m1.cdn.gaiaon...ns/IDMFlash.cab
[MSN Photo Upload Tool]
CODEBASE =
http://gfx2.hotmail....NPUplden-us.cab
[{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}]
CODEBASE =
http://fpdownload.ma...t/ultrashim.cab
--------------------------------------------------
Enumerating Winsock LSP files:
NameSpace #1: C:\Windows\system32\NLAapi.dll
NameSpace #2: C:\Windows\system32\napinsp.dll
NameSpace #3: C:\Windows\system32\pnrpnsp.dll
NameSpace #4: C:\Windows\system32\pnrpnsp.dll
NameSpace #5: C:\Windows\system32\wshbth.dll
NameSpace #8: C:\Program Files\Bonjour\mdnsNSP.dll
Protocol #1: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #2: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #3: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #4: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #5: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #6: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #7: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #8: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #9: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #10: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
Protocol #22: C:\Program Files\FoxyProxy\FoxyProxy Video Utility\FPServiceProvider.dll (file MISSING)
--------------------------------------------------
Enumerating ShellServiceObjectDelayLoad items:
WebCheck: C:\Windows\System32\webcheck.dll
--------------------------------------------------
End of report, 10,327 bytes
Report generated in 0.437 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only