Here is the Ad-Aware log:
Ad-Aware SE Build 1.06r1
Logfile Created on:Friday, July 29, 2005 10:01:22 PM
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R56 21.07.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):5 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Definition File:
=========================
Definitions File Loaded:
Reference Number : SE1R56 21.07.2005
Internal build : 65
File location : C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref
File size : 501264 Bytes
Total size : 1511688 Bytes
Signature data size : 1479157 Bytes
Reference data size : 32019 Bytes
Signatures total : 42142
CSI Fingerprints total : 979
CSI data size : 34474 Bytes
Target categories : 15
Target families : 718
Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Intel Pentium IV
Memory available:47 %
Total physical memory:261196 kb
Available physical memory:122108 kb
Total page file size:631828 kb
Available on page file:547420 kb
Total virtual memory:2097024 kb
Available virtual memory:2044292 kb
OS:Microsoft Windows XP Professional Service Pack 2 (Build 2600)
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Obtain command line of scanned processes
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Write-protect system files after repair (Hosts file, etc.)
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
7-29-2005 10:01:22 PM - Scan started. (Custom mode)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [smss.exe]
ModuleName : \SystemRoot\System32\smss.exe
Command Line : n/a
ProcessID : 252
ThreadCreationTime : 7-29-2005 10:59:07 PM
BasePriority : Normal
#:2 [csrss.exe]
ModuleName : \??\C:\WINDOWS\system32\csrss.exe
Command Line : C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestTh
ProcessID : 308
ThreadCreationTime : 7-29-2005 10:59:10 PM
BasePriority : Normal
#:3 [winlogon.exe]
ModuleName : \??\C:\WINDOWS\system32\winlogon.exe
Command Line : winlogon.exe
ProcessID : 332
ThreadCreationTime : 7-29-2005 10:59:12 PM
BasePriority : High
#:4 [services.exe]
ModuleName : C:\WINDOWS\system32\services.exe
Command Line : C:\WINDOWS\system32\services.exe
ProcessID : 376
ThreadCreationTime : 7-29-2005 10:59:14 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : services.exe
#:5 [lsass.exe]
ModuleName : C:\WINDOWS\system32\lsass.exe
Command Line : C:\WINDOWS\system32\lsass.exe
ProcessID : 388
ThreadCreationTime : 7-29-2005 10:59:14 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe
#:6 [svchost.exe]
ModuleName : C:\WINDOWS\system32\svchost.exe
Command Line : C:\WINDOWS\system32\svchost -k DcomLaunch
ProcessID : 528
ThreadCreationTime : 7-29-2005 10:59:16 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:7 [svchost.exe]
ModuleName : C:\WINDOWS\system32\svchost.exe
Command Line : C:\WINDOWS\system32\svchost -k rpcss
ProcessID : 576
ThreadCreationTime : 7-29-2005 10:59:17 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:8 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k netsvcs
ProcessID : 624
ThreadCreationTime : 7-29-2005 10:59:18 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:9 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k NetworkService
ProcessID : 676
ThreadCreationTime : 7-29-2005 10:59:18 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:10 [svchost.exe]
ModuleName : C:\WINDOWS\System32\svchost.exe
Command Line : C:\WINDOWS\System32\svchost.exe -k LocalService
ProcessID : 732
ThreadCreationTime : 7-29-2005 10:59:19 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:11 [explorer.exe]
ModuleName : C:\WINDOWS\Explorer.EXE
Command Line : C:\WINDOWS\Explorer.EXE
ProcessID : 960
ThreadCreationTime : 7-29-2005 10:59:30 PM
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : EXPLORER.EXE
#:12 [ctfmon.exe]
ModuleName : C:\WINDOWS\system32\ctfmon.exe
Command Line : ctfmon.exe
ProcessID : 1276
ThreadCreationTime : 7-29-2005 10:59:54 PM
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : CTFMON.EXE
#:13 [ad-aware.exe]
ModuleName : C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe
Command Line : "C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe"
ProcessID : 1832
ThreadCreationTime : 7-30-2005 2:01:10 AM
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
MRU List Object Recognized!
Location: : C:\Documents and Settings\Katy\recent
Description : list of recently opened documents
MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw
MRU List Object Recognized!
Location: : S-1-5-21-1078081533-764733703-854245398-1003\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
Description : list of recent programs opened
MRU List Object Recognized!
Location: : S-1-5-21-1078081533-764733703-854245398-1003\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
Description : list of recently saved files, stored according to file extension
MRU List Object Recognized!
Location: : S-1-5-21-1078081533-764733703-854245398-1003\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
0 entries scanned.
New critical objects:0
Objects found so far: 5
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
10:07:27 PM Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:06:04.464
Objects scanned:120938
Objects identified:0
Objects ignored:0
New critical objects:0
The Edwido log:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 9:16:52 AM, 7/30/2005
+ Report-Checksum: 9965186F
+ Scan result:
:mozilla.24:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.198:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.199:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.256:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.269:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.270:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.274:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.275:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.286:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.287:C:\Documents and Settings\Katy\Application Data\Mozilla\Firefox\Profiles\9x27hq7a.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\System Volume Information\_restore{EA638BAD-21B4-40F1-982D-3F6403F625FA}\RP742\A0089711.dll -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{EA638BAD-21B4-40F1-982D-3F6403F625FA}\RP742\A0089712.exe -> TrojanProxy.Agent.fh : Cleaned with backup
C:\System Volume Information\_restore{EA638BAD-21B4-40F1-982D-3F6403F625FA}\RP742\A0089715.dll -> Spyware.WildTangent : Cleaned with backup
C:\System Volume Information\_restore{EA638BAD-21B4-40F1-982D-3F6403F625FA}\RP742\A0089716.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\System Volume Information\_restore{EA638BAD-21B4-40F1-982D-3F6403F625FA}\RP742\A0089717.exe -> Worm.Bagle.o : Cleaned with backup
::Report End
And the HijackThis log:
Logfile of HijackThis v1.99.1
Scan saved at 9:17:13 AM, on 7/30/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Katy\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [PopUpKiller] C:\Program Files\PopUp Killer\PopUpKiller.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [VisualElementFXad] C:\WINDOWS\VisualElementFXad\VisualElementFXad.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [TraySantaCruz] C:\WINDOWS\SYSTEM32\tbctray.exe
O4 - HKLM\..\RunOnce: [MicrosoftAntiSpywareCleaner] C:\Program Files\Microsoft AntiSpyware\gcASCleaner.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Kerberos Authentication.lnk = C:\WINDOWS\Tman.exe
O4 - Global Startup: DellTouch Programmable Keys.lnk = C:\Program Files\Netropa\Multimedia Keyboard\MMKbCfg7.exe
O4 - Global Startup: Wireless PCI Card Configuration Utility.lnk = C:\Program Files\Linksys\WMP11 Config Utility\WMP11CFG.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: Dell Home - {DE9F7D9E-71AE-44E3-8DE5-D741FBFD7B86} -
http://www.dellnet.com/ (file missing) (HKCU)
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O16 - DPF: DigiChat Applet -
http://host8.digicha...s/Client_IE.cabO16 - DPF: Yahoo! Euchre -
http://download.game...nts/y/et0_x.cabO16 - DPF: Yahoo! Poker -
http://download.game...nts/y/pt0_x.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....738&clcid=0x409O16 - DPF: {19597B66-2CCF-11D4-B6C9-00C0F04E6DA8} (MPEG4 Image Control Object) -
http://www.e-vue.com...ds/mpeg4img.cabO16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.syma...bin/AvSniff.cabO16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1540.g.akama...meInstaller.exeO16 - DPF: {4E888414-DB8F-11D1-9CD9-00C04F98436A} (Microsoft.WinRep) -
https://webresponse....iveX/winrep.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...96/mcinsctl.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1094263816921O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.syma...n/bin/cabsa.cabO16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) -
http://www3.ca.com/s...nfo/webscan.cabO16 - DPF: {90A29DA5-D020-4B18-8660-6689520C7CD7} (DmiReader Class) -
http://ftp.us.dell.c...es/PROFILER.CABO16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) -
http://carpoint.msn....id/MSSurVid.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft.../as5/asinst.cabO16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) -
http://carpoint.msn....ior/Outside.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcaf...,26/mcgdmgr.cabO16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) -
http://security1.nor...c/bin/cabsa.cabO16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcaf...409/mcfscan.cabO16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) -
http://cdn.digitalci...illama/ampx.cabO23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe