Well, some more stuff...
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 7:47:05 AM, 6/19/2005
+ Report-Checksum: A990384A
+ Date of database: 6/19/2005
+ Version of scan engine: v3.0
+ Duration: 29 min
+ Scanned Files: 55171
+ Speed: 31.22 Files/Second
+ Infected files: 168
+ Removed files: 168
+ Files put in quarantine: 168
+ Files that could not be opened: 0
+ Files that could not be cleaned: 0
+ Binder: Yes
+ Crypter: Yes
+ Archives: Yes
+ Scanned items:
C:\
+ Scan result:
C:\Documents and Settings\Kathy\Cookies\kathy@bluestreak[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Documents and Settings\Kathy\Cookies\kathy@z1.adserver[1].txt -> Spyware.Tracking-Cookie -> Cleaned with backup
C:\Program Files\HiJackThis\backups\backup-20050616-193302-437.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\748D409D-BDA6-4363-9EF2-9890A8\3F258855-1BED-40FC-A3B6-048D45 -> TrojanDropper.Tibsis.b -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\7FDAF75B-06CD-429F-9BE6-102A04\0FEB4BB9-DB32-4963-8FBC-FC2DB3 -> Spyware.WebRebates.d -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\7FDAF75B-06CD-429F-9BE6-102A04\A71A8B22-0C03-4643-91D0-139143 -> Spyware.WebRebates.c -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\C17ECB23-CFF7-402B-8C77-97E233\D45321CB-2BA5-4D69-A485-3A3759 -> Spyware.NoName -> Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\C7EBAD50-855B-4800-9757-845AEE\75EBF4FD-BB7F-4BFF-831E-E11E0A -> Spyware.DealHelper.aa -> Cleaned with backup
C:\WINDOWS\addbd.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\addco.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\addds.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\addhx.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\addjc32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\addji32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\apinq32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\apivu.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\apiyb32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\apiyp.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\appja32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\appjd.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\apptk32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\atldb32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\atldq32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\atlek.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\atloq32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\atlvr32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\atlvu.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\crbz32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\crdu32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\crnq.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\crpa.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\crpd.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\crud.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\cruu32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\crwq32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\d3aj32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\d3ro32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\d3tm.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\iejp.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\iekv.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\ieme32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\iepf32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\iepx32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\ipjr32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\ipoa32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\ipwf32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\javaax32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\javadh32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\javaow32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\javaxx32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\javazr32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\mfchc32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\mfcxo32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\mfcyv.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\mscx32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\msfh.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\msqo32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\msqu.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\msqw32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\mswp32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\msyw32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\netha32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\netwp32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\ntxw32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\n_acvywk.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_cwymbz.txt -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\n_dwsezj.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_eqcizb.txt -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_exbyrf.txt -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_lcgien.txt -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_lmkwlu.log -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_pzajgn.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_qbhjhb.log -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\n_smllnx.dat -> TrojanDownloader.Agent.oq -> Cleaned with backup
C:\WINDOWS\n_tkmyma.txt -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_ujyrhd.dat -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_vgmxxb.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_wxxfff.txt -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_xorjfy.log -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_xtkpns.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_xzuzub.log -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\n_ysstzv.log -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\n_zpfbgu.dat -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\sdkdy32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\sdkhf32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\sdkrs32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\sdkui.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\sdkzb32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\snbho.exe -> Trojan.Imiserv.c -> Cleaned with backup
C:\WINDOWS\sysdz.exe -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\syslx.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\syson.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\sysst32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\systc32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\addaz32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\addip.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\addty32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\addyz32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apiak32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apiex.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apigk.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apiil32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apivj32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apphl32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\apppo.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\appyr32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\atlih.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\atlze.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\crbw32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\crkw32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\crsf.exe -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\SYSTEM32\d2kpax.exe -> Dialer.Generic -> Cleaned with backup
C:\WINDOWS\SYSTEM32\d3ex32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\d3wu.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ieat.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\iens32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\iesq32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ieui.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\iewx.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipbj.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipbk.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipbr.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipcj.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipfo32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipit32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\iprx.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipsp.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipti32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipvk32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipvt32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ipxy32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\javajq.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\javatm32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\javaut32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\javavo.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfcaq.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfceb.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfcfq32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfcir.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfcpd.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mfcsd32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mscr32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mskz.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\mspv.exe -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\SYSTEM32\nettv.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\netzk.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\ntfq32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdkhe.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdknb.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdknz32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdksy.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdktb32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sdkve.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sysnu32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\sysxx32.exe -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winda.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winem.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winfm.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winfo.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\wingt.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winvd.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winwl32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
C:\WINDOWS\SYSTEM32\winyd32.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\SYSTEM32\wіnword.exe -> TrojanDownloader.PurityScan.k -> Cleaned with backup
C:\WINDOWS\windo32.exe -> TrojanDownloader.Agent.bq -> Cleaned with backup
C:\WINDOWS\winlu.exe -> Trojan.Agent.bi -> Cleaned with backup
C:\WINDOWS\winrq.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\wints32.dll -> TrojanDownloader.Agent.bc -> Cleaned with backup
::Report End
and the HijackThis Log:
Logfile of HijackThis v1.99.1
Scan saved at 7:49:03 AM, on 6/19/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HiJackThis\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [HPAIO_PrintFolderMgr] C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net/7/840/537/2004 ... scan53.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
Thanks and Happy Father's Day!
Michael