-----------------------------------------------------------------------------
SPYBOT S&D
1. BDHelper
A. Interface
HKEY_CLASSES_ROOT\Interface{CE7C3EF-4B15-11D1-ABED- 709549C10000
B. Type Library
HKEY_CLASSES_ROOT\Typelib{CE7C3EF-4B15-11D1-ABED- 709549C10000
2. ShopNav
A. Browser Helper Object
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{CE7C3EF-4B15-11D1-ABED-709549C10000
B. Class ID
HKEY_CLASSES_ROOT\CLSID\{CE7C3EF-4B15-11D1-ABED- 709549C10000
3. Comet Cursors
A. Interface (IFileInfo)
HKEY_LOCAL_MACHINE\Software\Classes|Interface|{74F7D6F8- A844-4F29-B9C7-294721D91C10}
-----------------------------------------------------------------------------
LAVASOFT AD-AWARE SE
ArchiveData(auto-quarantine- 2005-06-20 14-56-54.bckp)
Referencefile : SE1R50 13.06.2005
MRU LIST
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\(2003) ruckus.lnk
obj[1]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\00-the_detroit_escalator_co--black_buildings-2001-sb.lnk
obj[2]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\01-[bleep].lnk
obj[3]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\02.twinkle brothers - dub assassinator (in a murder style).lnk
obj[4]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\03 - Superstition.lnk
obj[5]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\16-rjd2 - work.lnk
obj[6]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\201-al_green-lets_stay_together_(intro).lnk
obj[7]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\202-al_green-lets_stay_together.lnk
obj[8]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\al green - anthology (disc 2).lnk
obj[9]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\albumart_{3bc89580-ab17-48a5-a12f-7cc9c6712d9e}_large.lnk
obj[10]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Anglo Bay Area DJ.lnk
obj[11]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\search assistant\acmru\5603
obj[12]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\search assistant\acmru\5604
obj[13]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\big l 2.lnk
obj[14]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\applets\regedit lastkey
obj[15]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru\*
obj[16]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.doc
obj[17]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.htm
obj[18]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.jpg
obj[19]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.mov
obj[20]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.mp3
obj[21]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.mpg
obj[22]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.pls
obj[23]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.rtf
obj[24]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.txt
obj[25]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.wps
obj[26]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\.zip
obj[27]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\recentdocs\Folder
obj[28]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\hotel costes, vol. 2- la suite - 14 - femi kuti - sorry sorry [old school afro dub].lnk
obj[29]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows\currentversion\explorer\runmru
obj[30]=MRU RegReference : .DEFAULT\software\microsoft\windows media\wmsdk\general computername
obj[31]=MRU RegReference : S-1-5-18\software\microsoft\windows media\wmsdk\general computername
obj[32]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\windows media\wmsdk\general computername
obj[33]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\IMG_1070.lnk
obj[34]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\IMG_1071.lnk
obj[35]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Improvement Notes.lnk
obj[36]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\INCOMPLETE~Up In Smoke Tour - WC Crip Walk (1).lnk
obj[37]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Instrumental - brand nubian - The Return (DJ Premier remix).lnk
obj[38]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\jazz - vol.33 - wayne shorter.lnk
obj[39]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\jenna jameson, brittany andrews, jasmine st. claire, sylvia saint, houston, kendra jade.lnk
obj[40]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\jobs.lnk
obj[41]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Keys'.lnk
obj[42]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\listen.lnk
obj[43]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\masta ace - lost remixes & b-sides ep.lnk
obj[44]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Masta ace - sittin' on chrome (1995).lnk
obj[45]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Michael Franti & spearhead - rare & unreleased.lnk
obj[46]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Music Editing.lnk
obj[47]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\My Music.lnk
obj[48]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Nicolette Scorsese 1.lnk
obj[49]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Nicolette Scorsese 2.lnk
obj[50]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\nikki tyler janine jenna jameson janine nikki nova cori nadine sex boobs hot babes tits playboy hustler britany spears nude.lnk
obj[51]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Notary instructions.lnk
obj[52]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\OemLink.lnk
obj[53]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\pharcyde - bizarre ride ii the pharcyde.lnk
obj[54]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\pharcyde - labcabincalifornia.lnk
obj[55]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\QuickTime.lnk
obj[56]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\ron carter with eric dolphy & mal waldron - where - 03 - 3 softly, as in a morning sunrise.lnk
obj[57]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\ron carter with eric dolphy & mal waldron - where [1961].lnk
obj[58]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Solomon Jabby.lnk
obj[59]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Summer Active.lnk
obj[60]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Summer Business.lnk
obj[61]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Summer Exchange.lnk
obj[62]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\System32.lnk
obj[63]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Taxes car.lnk
obj[64]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\the soothsayer -1965-.lnk
obj[65]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\TO DO - SUMMER.lnk
obj[66]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\TrustAccount (2).lnk
obj[67]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\TrustAccount.lnk
obj[68]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\twinkle brothers - dub massacre part 1-2.lnk
obj[69]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\twinkle brothers - old cuts - dub pack.lnk
obj[70]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\Vocab Words.lnk
obj[71]=MRU FileReference : C:\Documents and Settings\DANIEL ALVAREZ\recent\wayne shorter - the young lions.lnk
obj[73]=MRU RegReference : software\microsoft\direct3d\mostrecentapplication name
obj[74]=MRU RegReference : software\microsoft\direct3d\mostrecentapplication name
obj[75]=MRU RegReference : software\microsoft\directdraw\mostrecentapplication name
obj[76]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\internet explorer download directory
obj[77]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\internet explorer\typedurls
obj[78]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\mediaplayer\player\recentfilelist
obj[79]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\mediaplayer\player\settings opendir
obj[80]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\mediaplayer\preferences lastplaylistindex
obj[81]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\mediaplayer\preferences lastplaylist
obj[82]=MRU RegReference : S-1-5-21-1754673014-2248542830-3445778448-1007\software\microsoft\microsoft management console\recent file list
DIALER.UDCONNECT
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[21]=Regkey : typelib\{dc3185ae-864f-4e62-9321-0e9fa1cbe6a4}
obj[22]=Regkey : udconn.udconnect
obj[23]=Regkey : udconn.udconnect.1
TRANSPONDER
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[24]=Regkey : iehlprobj.iehlprobj
obj[25]=Regkey : iehlprobj.iehlprobj.1
TRACKING COOKIE
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[26]=IECache Entry : Cookie:daniel [email protected]/
obj[27]=IECache Entry : Cookie:daniel [email protected]/
obj[28]=IECache Entry : Cookie:daniel [email protected]/
obj[29]=IECache Entry : Cookie:daniel [email protected]/
obj[30]=IECache Entry : Cookie:daniel [email protected]/
obj[31]=IECache Entry : Cookie:daniel [email protected]/
obj[32]=IECache Entry : Cookie:daniel [email protected]/
obj[33]=IECache Entry : Cookie:daniel [email protected]/
obj[34]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@2o7[1].txt
obj[35]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@apmebf[2].txt
obj[36]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@atdmt[2].txt
obj[37]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond [email protected][1].txt
obj[38]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@centrport[1].txt
obj[39]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond [email protected][1].txt
obj[40]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@doubleclick[2].txt
obj[41]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@mediaplex[1].txt
obj[42]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@overture[1].txt
obj[43]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@qksrv[2].txt
obj[44]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond alvarez@serving-sys[1].txt
obj[45]=IECache Entry : C:\Documents and Settings\RAYMOND ALVAREZ\Cookies\raymond [email protected][2].txt
obj[46]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia [email protected][1].txt
obj[47]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia [email protected][1].txt
obj[48]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@advertising[2].txt
obj[49]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@atdmt[2].txt
obj[50]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@bluestreak[2].txt
obj[51]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@centrport[2].txt
obj[52]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@cgi-bin[2].txt
obj[53]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@doubleclick[2].txt
obj[54]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@mediaplex[1].txt
obj[55]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@qksrv[1].txt
obj[56]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@questionmarket[1].txt
obj[57]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@realmedia[1].txt
obj[58]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia [email protected][1].txt
obj[59]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@tickle[1].txt
obj[60]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@tmpad[2].txt
obj[61]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@trafficmp[1].txt
obj[62]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia guerrero@valueclick[2].txt
obj[63]=IECache Entry : C:\Documents and Settings\VIRGINIA GUERRERO\Cookies\virginia [email protected][1].txt
-----------------------------------------------------------------------------
HIJACK THIS
Logfile of HijackThis v1.99.1
Scan saved at 4:51:04 PM, on 6/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Norton Password Manager\AcctMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\DANIEL ALVAREZ\Desktop\Cleansing\Setups\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.emachines.com/
O1 - Hosts: 64.91.255.87 www.dcsresearch.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\DOCUME~1\DANIEL~1\Desktop\CLEANS~1\Setups\SPYBOT~1\SDHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DeviceDiscovery] C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - HKLM\..\Run: [AcctMgr] C:\Program Files\Norton Password Manager\AcctMgr.exe /startup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....204&clcid=0x409
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1118939194125
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1118939101718
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe