---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 2:58:34 PM, 6/11/2005
+ Report-Checksum: A6FA5D01
+ Date of database: 6/11/2005
+ Version of scan engine: v3.0
+ Duration: 55 min
+ Scanned Files: 98525
+ Speed: 29.80 Files/Second
+ Infected files: 64
+ Removed files: 64
+ Files put in quarantine: 64
+ Files that could not be opened: 0
+ Files that could not be cleaned: 0
+ Binder: Yes
+ Crypter: Yes
+ Archives: Yes
+ Scanned items:
D:\
+ Scan result:
D:\Documents and Settings\j\Local Settings\Temp\temp.fr2EBA -> Trojan.Agent.db -> Cleaned with backup
D:\Program Files\NetMeeting\netmeet.htm -> Worm.Nimda -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038779.exe -> Spyware.WebRebates.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038784.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038786.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038817.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038819.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0038820.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039785.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039807.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039812.exe -> Spyware.BetterInternet.f -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039813.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039817.exe -> TrojanDownloader.Intexp.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039820.exe -> Spyware.NoName.f -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039821.exe -> Trojan.Imiserv.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039828.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039841.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039842.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039854.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039861.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039864.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039873.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039875.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039877.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0039903.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040133.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040134.exe -> Trojan.Nail -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040190.dll -> Spyware.ImiBar.d -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040191.exe -> Trojan.Imiserv.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040193.exe -> TrojanDownloader.Intexp.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040195.dll -> Trojan.Agent.db -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040199.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040201.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040205.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\System Volume Information\_restore{0C6BF893-8518-4013-936A-5DF9D8B18104}\RP362\A0040206.exe -> Trojan.Nail -> Cleaned with backup
D:\WINDOWS\apiqu.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\crcn.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.PornWare.PopCap.b -> Cleaned with backup
D:\WINDOWS\Downloaded Program Files\xncfdvgs.exe -> TrojanDownloader.Small.Lb -> Cleaned with backup
D:\WINDOWS\javaiw32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\Nail.exe -> Trojan.Nail -> Cleaned with backup
D:\WINDOWS\nxmiuw.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\n_gszgux.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\n_hlberp.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\n_isjbpc.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\n_wglabu.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\sdkfj32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\sdknt32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\svcproc.exe -> Trojan.Stervis.c -> Cleaned with backup
D:\WINDOWS\systb.dll -> Spyware.ImiBar.d -> Cleaned with backup
D:\WINDOWS\system32\appnf32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\appoe32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\atlio32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\crle.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\ipex.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\ipje32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\mfchq.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\mfcxt32.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\winhh.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\system32\__delete_on_reboot__DrPMon.dll -> Trojan.Agent.db -> Cleaned with backup
D:\WINDOWS\system32\__delete_on_reboot__stfbvh.exe -> Spyware.BetterInternet -> Cleaned with backup
D:\WINDOWS\tdtb.exe -> Trojan.Imiserv.c -> Cleaned with backup
D:\WINDOWS\winyj.dll -> TrojanDownloader.Agent.bq -> Cleaned with backup
D:\WINDOWS\wupdt.exe -> TrojanDownloader.Intexp.c -> Cleaned with backup
::Report End
Logfile of HijackThis v1.99.1
Scan saved at 3:25:58 PM, on 6/11/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\System32\CTsvcCDA.EXE
D:\Program Files\ewido\security suite\ewidoctrl.exe
D:\Program Files\ewido\security suite\ewidoguard.exe
d:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\Explorer.exe
d:\PROGRA~1\mcafee.com\vso\mcshield.exe
D:\Program Files\Common Files\AOL\ACS\AOLDial.exe
D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
D:\Program Files\Hercules\Audio\Gamesurround Fortissimo III\ForceUpdate.exe
D:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
D:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
D:\PROGRA~1\mcafee.com\agent\mcagent.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\Program Files\AWS\WeatherBug\Weather.exe
D:\Program Files\AIM3\aim.exe
D:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
D:\Program Files\Messenger\msmsgs.exe
d:\progra~1\mcafee.com\vso\mcvsescn.exe
D:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
d:\progra~1\mcafee.com\vso\mcvsftsn.exe
D:\Program Files\America Online 9.0\waol.exe
D:\Program Files\America Online 9.0\shellmon.exe
D:\Program Files\Common Files\Aol\aoltpspd.exe
D:\PROGRA~1\NETSCAPE\NETSCAPE\NETSCP.EXE
D:\hjt\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = res://trtcd.dll/index.html#96676
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=Explorer.exe D:\WINDOWS\Nail.exe
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://home.netscape.../7_2/home.html"); (D:\Documents and Settings\j\Application Data\Mozilla\Profiles\default\z5ja7pfo.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://D%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (D:\Documents and Settings\j\Application Data\Mozilla\Profiles\default\z5ja7pfo.slt\prefs.js)
O2 - BHO: Band Class - {01F44A8A-8C97-4325-A378-76E68DC4AB2E} - D:\WINDOWS\systb.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar2.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - d:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O4 - HKLM\..\Run: [AOLDialer] D:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [HFUpdate] D:\Program Files\Hercules\Audio\Gamesurround Fortissimo III\ForceUpdate.exe -v4089 -pD:\Program Files\Hercules\Audio\Gamesurround Fortissimo III\wdmaherc.inf
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
O4 - HKLM\..\Run: [VSOCheckTask] "d:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "d:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MCAgentExe] d:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] D:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [xompskf] d:\windows\system32\vjdqkgx.exe r
O4 - HKLM\..\Run: [Win Server Updt] D:\WINDOWS\wupdt.exe
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "D:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [WhenUSearch] "D:\Program Files\WhenUSearch\Search.exe"
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Pure Networks Port Magic] "D:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] D:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [ieuu.exe] D:\WINDOWS\ieuu.exe
O4 - HKLM\..\Run: [HPHUPD04] "D:\Program Files\HP Photosmart 11\hphinstall\UniPatch\hphupd04.exe"
O4 - HKLM\..\Run: [HPHmon04] D:\WINDOWS\System32\hphmon04.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe
O4 - HKLM\..\Run: [HGTXPEI] D:\WINDOWS\System32\FirstReboot.exe
O4 - HKLM\..\Run: [gruooyy] d:\windows\system32\srdarkd.exe r
O4 - HKLM\..\Run: [fdehcpj] d:\windows\system32\mrpvnel.exe r
O4 - HKLM\..\Run: [EbatesMoeMoneyMaker0] "D:\Program Files\Ebates_MoeMoneyMaker\EbatesMoeMoneyMaker0.exe"
O4 - HKCU\..\Run: [Weather] D:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [AIM] D:\Program Files\AIM3\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [Creative Detector] D:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Uoas] D:\Documents and Settings\j\Application Data\wrne.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = D:\Program Files\America Online 9.0\aoltray.exe
O8 - Extra context menu item: &AIM Search - res://D:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar search - res://D:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Download with &DAP - D:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: &Google Search - res://d:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://d:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://d:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download &all with DAP - D:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: Download all by Net Transport - D:\Program Files\Xi\NetTransport 2\NTAddList.html
O8 - Extra context menu item: Download by Net Transport - D:\Program Files\Xi\NetTransport 2\NTAddLink.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://d:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://d:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - D:\Program Files\AIM3\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - D:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - D:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
O10 - Broken Internet access because of LSP provider 'connwsp.dll' missing
O12 - Plugin for .spop: D:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {0122955E-1FB0-11D2-A238-006097FAEE8B} (CscClnt Class) - http://205.159.125.1...everContent.cab
O16 - DPF: {02CF1781-EA91-4FA5-A200-646E8241987C} (VaioInfo.CMClass) - http://esupport.sony...ct/VaioInfo.CAB
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weat...Transporter.cab?
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com...kup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.av.a...83/mcinsctl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.r...ip/RdxIE601.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/.../GrooveAX27.cab
O16 - DPF: {BAC01377-73DD-4796-854D-2A8997E3D68A} (Yahoo! Photos Easy Upload Tool Class) - http://us.dl1.yimg.c...ropper1_6us.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.av.a...,20/mcgdmgr.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://utu.popcap.co...aploader_v6.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5A8C7B7E-C17B-4BFD-965C-598EEA583771}: NameServer = 205.188.146.145
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\WINDOWS\System32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - D:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - D:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - D:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - d:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - D:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - d:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: Pml Driver HPH11 - HP - D:\WINDOWS\System32\HPHipm11.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - d:\windows\SvcProc.exe (file missing)