Here are the problems:
1) RUNDLL error upon bootup
2) Ewido detects C:\windows\system32\ssqrp.dll as adware.virtumonde
3) Ewido guard crashes soon after booting up ( PC-cillin running too - maybe conflict?)
4) Surf side kick reported attempting to connect to net.
Ewido Report follows:
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 10:14:48 PM, 3/12/2006
+ Report-Checksum: 667DF4D5
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{93C6313C-9DB4-4694-8BD0-E378C573A9AD} -> Adware.Virtumonde : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93C6313C-9DB4-4694-8BD0-E378C573A9AD} -> Adware.Virtumonde : Cleaned with backup
[208] C:\WINDOWS\System32\ssqrp.dll -> Adware.Virtumonde : Cleaned with backup
[708] C:\WINDOWS\System32\ssqrp.dll -> Adware.Virtumonde : Cleaned with backup
C:\Documents and Settings\Owner\xQOLDAOBGDY.exe -> Downloader.Agent.am : Cleaned with backup
C:\Documents and Settings\Owner\xSHBYQYSNUV.exe -> Downloader.Agent.am : Cleaned with backup
C:\krw1dn.exe -> Downloader.Agent.afi : Cleaned with backup
C:\NNSCAA638.EXE -> Adware.NewDotNet : Cleaned with backup
C:\Program Files\CMAPP\cmappstub.exe -> Downloader.Agent.tf : Cleaned with backup
C:\Program Files\Common Files\VCClient\SS1001.exe -> Dropper.Small.qn : Cleaned with backup
C:\Program Files\FCAdvice\FCAdvice.dll -> Adware.CASClient : Cleaned with backup
C:\Program Files\FCAdvice\FCAdvice.exe -> Adware.CASClient : Cleaned with backup
C:\Program Files\NewDotNet -> Adware.NewDotNet : Cleaned with backup
C:\Program Files\NoAdware4\noadwareutils.dll -> Adware.WebRebates : Cleaned with backup
C:\RECYCLER\NPROTECT\00969335.exe -> Adware.BargainBuddy : Cleaned with backup
C:\RECYCLER\NPROTECT\00969339.exe -> Adware.BargainBuddy : Cleaned with backup
C:\RECYCLER\S-1-5-21-1592790263-2685651550-2840774482-500\Dc1.exe -> Hijacker.VB.li : Cleaned with backup
C:\visfx500.exe -> Dropper.Agent.aie : Cleaned with backup
C:\WINDOWS\bxxs5.dll -> Adware.BookedSpace : Cleaned with backup
C:\WINDOWS\IA\asappsrv.dll -> Adware.CommAd : Cleaned with backup
C:\WINDOWS\IA\command.exe -> Adware.CommAd : Cleaned with backup
C:\WINDOWS\itdijkp.exe -> Dropper.Agent.vl : Cleaned with backup
C:\WINDOWS\NDNuninstall7_22.exe -> Adware.NewDotNet : Cleaned with backup
C:\WINDOWS\pf79.exe -> Downloader.Dyfuca.ei : Cleaned with backup
C:\WINDOWS\sms112x.exe -> Downloader.VB.tw : Cleaned with backup
C:\WINDOWS\system32\198_150_ni_6.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\AlxRes.dll -> Adware.AlexaBar : Cleaned with backup
C:\WINDOWS\system32\AlxRes.dll.bak -> Adware.AlexaBar : Cleaned with backup
C:\WINDOWS\system32\bho.dll -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\cryptdll.exe -> Downloader.Reqlook.d : Cleaned with backup
C:\WINDOWS\system32\datime.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\exul.exe -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\hnetmon.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\ijkat2.exe -> Adware.Suggestor : Cleaned with backup
C:\WINDOWS\system32\javexulm.vxd -> Adware.BargainBuddy : Cleaned with backup
C:\WINDOWS\system32\kbdbr.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\lanbrup.exe -> Adware.SafeSurfing : Cleaned with backup
C:\WINDOWS\system32\laprxy.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\lmalbeep.dll -> Adware.Agent : Cleaned with backup
C:\WINDOWS\system32\mimefilt.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\msvcr70.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\msvcrt20.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\nsf31.dll -> Adware.HotSearchBar : Cleaned with backup
C:\WINDOWS\system32\qrdsregl.exe -> Adware.ZenoSearch : Cleaned with backup
C:\WINDOWS\system32\rsvpmsg.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\sccsccp.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\spsublsp.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\ssqpm.dll -> Downloader.Small : Cleaned with backup
C:\WINDOWS\system32\ssqrp.dll -> Adware.Virtumonde : Cleaned with backup
C:\WINDOWS\system32\swprv.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\symredir.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\test.bmp -> Downloader.Reqlook.d : Cleaned with backup
C:\WINDOWS\system32\winscard.exe -> Downloader.Agent.am : Cleaned with backup
C:\WINDOWS\system32\wirelanb.dll -> Adware.SafeSurfing : Cleaned with backup
C:\WINDOWS\system32\{8110581C-FEA4-47AC-ADBC-DE958DD0F354}.dll -> Trojan.VB.aft : Cleaned with backup
C:\WINDOWS\system32\{FBD2EBD0-E6DF-456E-B300-A4D10A90C683}.dll -> Trojan.VB.aft : Cleaned with backup
C:\WINDOWS\unin101.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\uni_eh.exe -> Trojan.VB.tg : Cleaned with backup
C:\WINDOWS\Xiusdqrn.dll -> Adware.BookedSpace : Cleaned with backup
C:\WINDOWS\yckqxgej.exe -> Adware.BookedSpace : Cleaned with backup
C:\ZICORN001.exe -> Adware.ZenoSearch : Cleaned with backup
::Report End
HJT LOG:
Logfile of HijackThis v1.99.1
Scan saved at 8:27:11 PM, on 3/13/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\PROGRAM FILES\EWIDO ANTI-MALWARE\EWIDOGUARD.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PCCTLCOM.EXE
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TMPFW.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\WINDOWS\LTMSG.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb08.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\WINDOWS\SYSTEM32\D5D2D4D6DBD7D9E.EXE
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\CheckS02.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE
C:\PROGRAM FILES\AIM\AIM.EXE
C:\WINDOWS\SYSTEM32\NETCFGX.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\HJT\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://us10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: (no name) - _{6AD6BA4D-E793-B79B-02FA-371ADE0B4336} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Yvakt Class - {2335EA94-74D6-46B4-BA93-8567DAC6CC9B} - C:\WINDOWS\System32\fpdrnznx.dll
O2 - BHO: (no name) - {46A9A398-4310-E492-3D44-C9DC26FD1CB3} - C:\WINDOWS\Xiusdqrn.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: BMG3.LongTooth - {8110581C-FEA4-47AC-ADBC-DE958DD0F354} - C:\WINDOWS\System32\{8110581C-FEA4-47AC-ADBC-DE958DD0F354}.dll (file missing)
O2 - BHO: ATLDistrib Object - {93C6313C-9DB4-4694-8BD0-E378C573A9AD} - C:\WINDOWS\System32\ssqrp.dll
O2 - BHO: AlxTB BHO - {F1FABE79-25FC-46de-8C5A-2C6DB9D64333} - (no file)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Alexa - {3CEFF6CD-6F08-4E4D-BCCD-FF7415288C3B} - C:\WINDOWS\System32\SHDOCVW.DLL
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [LTMSG] LTMSG.exe 7
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb08.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [E5E2E4E6EBE7E9F0E] D5D2D4D6DBD7D9E.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [TheMonitor] C:\WINDOWS\CheckS02.exe
O4 - HKLM\..\Run: [keyboard] C:\\keyboard1.exe
O4 - HKLM\..\Run: [gimmysmileys] C:\\gimmysmileys1.exe
O4 - HKLM\..\Run: [BrowserUpdateSched] C:\WINDOWS\system32\lwinsrag.exe CORN001
O4 - HKLM\..\Run: [IpNetwork] C:\Program Files\Network\ipnetwork.exe
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2006\pccguide.exe"
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [Steam] C:\Program Files\Valve\Steam\\Steam.exe -silent
O4 - HKCU\..\Run: [198_150_ni_6] "C:\Documents and Settings\Owner\198_150_ni_6.exe"
O4 - HKCU\..\Run: [ils] "C:\WINDOWS\System32\ils.exe"
O4 - HKCU\..\Run: [kbdbr] "C:\Documents and Settings\Owner\kbdbr.exe"
O4 - HKCU\..\Run: [ipxpromn] "C:\WINDOWS\System32\ipxpromn.exe"
O4 - HKCU\..\Run: [msorc32r] "C:\WINDOWS\System32\msorc32r.exe"
O4 - HKCU\..\Run: [wuweb] "C:\WINDOWS\System32\wuweb.exe"
O4 - HKCU\..\Run: [netcfgx] "C:\WINDOWS\System32\netcfgx.exe"
O4 - HKCU\..\Run: [ssdpapi] "C:\WINDOWS\System32\ssdpapi.exe"
O4 - HKCU\..\Run: [ulib] "C:\WINDOWS\System32\ulib.exe"
O4 - HKCU\..\Run: [tsddd] "C:\WINDOWS\System32\tsddd.exe"
O4 - HKCU\..\Run: [sdpblb] "C:\WINDOWS\System32\sdpblb.exe"
O4 - HKCU\..\Run: [rsvpmsg] "C:\WINDOWS\System32\rsvpmsg.exe"
O4 - HKCU\..\Run: [msvcr70] "C:\WINDOWS\System32\msvcr70.exe"
O4 - HKCU\..\Run: [swprv] "C:\WINDOWS\System32\swprv.exe"
O4 - HKCU\..\Run: [sccsccp] "C:\WINDOWS\System32\sccsccp.exe"
O4 - HKCU\..\Run: [sisgl] "C:\WINDOWS\System32\sisgl.exe"
O4 - HKCU\..\Run: [spsublsp] "C:\WINDOWS\System32\spsublsp.exe"
O4 - HKCU\..\Run: [laprxy] "C:\WINDOWS\System32\laprxy.exe"
O4 - HKCU\..\Run: [msvcrt20] "C:\WINDOWS\System32\msvcrt20.exe"
O4 - HKCU\..\Run: [datime] "C:\WINDOWS\System32\datime.exe"
O4 - HKCU\..\Run: [mimefilt] "C:\WINDOWS\System32\mimefilt.exe"
O4 - HKCU\..\Run: [hnetmon] "C:\WINDOWS\System32\hnetmon.exe"
O4 - HKCU\..\Run: [symredir] "C:\WINDOWS\System32\symredir.exe"
O4 - HKCU\..\Run: [winscard] "C:\WINDOWS\System32\winscard.exe"
O4 - HKCU\..\Run: [CU1] C:\Program Files\Common Files\VCClient\VCClient.exe
O4 - HKCU\..\Run: [CU2] C:\Program Files\Common Files\VCClient\VCMain.exe
O4 - Startup: Zeno.lnk = C:\WINDOWS\system32\lwinsrag.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Mail to a Friend... - http://client.alexa....ions/mailto.htm
O8 - Extra context menu item: See Related Links - http://client.alexa....ons/related.htm
O8 - Extra context menu item: Write a Review... - http://client.alexa....ions/review.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O16 - DPF: RaptisoftGameLoader - http://www.miniclip....tgameloader.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.c...nst20040510.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterf...ds/Uploader.cab
O18 - Filter: text/html - {7B1EE13A-FE1E-48B0-AC2C-8ACC5E3BB7CB} - C:\WINDOWS\System32\fpdrnznx.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: ssqrp - C:\WINDOWS\System32\ssqrp.dll
O23 - Service: cryptdll - Unknown owner - C:\WINDOWS\System32\cryptdll.exe (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
If you need further info just let me know
Thanks, in advance