﻿<?xml version='1.0' encoding='UTF-8'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>Tweaks.com Forum  / Windows &amp; System Security / HiJack This Logs  / I downloaded program quick start and it lead me to think my java version is hijacked / Latest Posts</title><generator>InstantForum.NET v4.1.4</generator><description>Tweaks.com Forum </description><link>http://forum.tweaks.com/forum/</link><webMaster>forum@tweaks.com</webMaster><lastBuildDate>Thu, 21 Aug 2008 22:03:44 GMT</lastBuildDate><ttl>20</ttl><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>Your log is clean:),please do the following:&lt;br&gt;&lt;br&gt;Please download [b]OTMoveIt[/b] by [b]OldTimer[/b]:&lt;br&gt;[url]http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe[/url]&lt;br&gt;Save it to your desktop.&lt;br&gt;Please double-click OTMoveIt.exe to run it.&lt;br&gt;Click on the 'Cleanup' button [IMG]http://img.photobucket.com/albums/v624/29wood/Clipboard01cleanup.gif[/IMG]&lt;br&gt;When you do this a text file named cleanup.txt will be downloaded from the internet. &lt;br&gt;If you get a warning from your firewall or other security programs regarding OTMoveIt attempting to contact the internet you should allow it to do so. &lt;br&gt;When the 'Confirm' box appears click 'Yes'.&lt;br&gt;[b]Restart your pc when prompted.[/b]&lt;br&gt;&lt;br&gt;Re-enable [b]UAC[/b] by following the steps above.&lt;br&gt;&lt;br&gt;You should take the time to read and follow the information found in the links below,to help you prevent any possible future infections and stay safe and secure while online:&lt;br&gt;&lt;br&gt;[b][color="blue"]Simple and easy ways to keep your computer safe and secure on the Internet[/color][/b]:&lt;br&gt;[url]http://www.bleepingcomputer.com/tutorials/tutorial82.html[/url]&lt;br&gt;&lt;br&gt;[b][color="blue"]How to prevent Malware[/color][/b]:&lt;br&gt;[url]http://users.telenet.be/bluepatchy/miekiemoes/prevention.html[/url]&lt;br&gt;&lt;br&gt;[B][color="blue"]So how did I get infected in the first place[/color][/B]:&lt;br&gt;[URL]http://forums.spybot.info/showthread.php?t=279[/URL]&lt;br&gt;&lt;br&gt;[B][color="blue"]Malware Cleanup Programs and Preventative Procedures[/color][/B]: &lt;br&gt;[URL]http://russelltexas.com/malware/allclear.htm[/URL]&lt;br&gt;&lt;br&gt;[b][color="blue"]Hardening Windows Security - Part 1[/color][/b]:&lt;br&gt;[url]http://www.malwarehelp.org/Malware-Prevention-Hardening-Windows-Security1.html[/url]&lt;br&gt;&lt;br&gt;[b][color="blue"]Hardening Windows Security - Part 2[/color][/b]:&lt;br&gt;[url]http://www.malwarehelp.org/malware-prevention-hardening-windows-security2.html[/url]</description><pubDate>Sat, 29 Mar 2008 19:55:44 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>thankyou there seem to be no issues and it is clean i appreciate your time&lt;/P&gt;&lt;P&gt;Malwarebytes' Anti-Malware 1.09&lt;BR&gt;Database version: 567&lt;/P&gt;&lt;P&gt;Scan type: Quick Scan&lt;BR&gt;Objects scanned: 30063&lt;BR&gt;Time elapsed: 2 minute(s), 24 second(s)&lt;/P&gt;&lt;P&gt;Memory Processes Infected: 0&lt;BR&gt;Memory Modules Infected: 0&lt;BR&gt;Registry Keys Infected: 0&lt;BR&gt;Registry Values Infected: 0&lt;BR&gt;Registry Data Items Infected: 0&lt;BR&gt;Folders Infected: 0&lt;BR&gt;Files Infected: 0&lt;/P&gt;&lt;P&gt;Memory Processes Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Memory Modules Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Keys Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Values Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Data Items Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Folders Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Files Infected:&lt;BR&gt;(No malicious items detected)&lt;BR&gt;&lt;/P&gt;&lt;P&gt;Malwarebytes' Anti-Malware 1.09&lt;BR&gt;Database version: 567&lt;/P&gt;&lt;P&gt;Scan type: Full Scan (C:\|D:\|E:\|K:\|L:\|)&lt;BR&gt;Objects scanned: 207056&lt;BR&gt;Time elapsed: 43 minute(s), 27 second(s)&lt;/P&gt;&lt;P&gt;Memory Processes Infected: 0&lt;BR&gt;Memory Modules Infected: 0&lt;BR&gt;Registry Keys Infected: 0&lt;BR&gt;Registry Values Infected: 0&lt;BR&gt;Registry Data Items Infected: 0&lt;BR&gt;Folders Infected: 0&lt;BR&gt;Files Infected: 0&lt;/P&gt;&lt;P&gt;Memory Processes Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Memory Modules Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Keys Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Values Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Registry Data Items Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Folders Infected:&lt;BR&gt;(No malicious items detected)&lt;/P&gt;&lt;P&gt;Files Infected:&lt;BR&gt;(No malicious items detected)&lt;BR&gt;</description><pubDate>Sat, 29 Mar 2008 19:46:10 GMT</pubDate><dc:creator>Capuchin</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>Have Hijack This fix the following by placing a check in the appropriate boxes and selecting 'Fix checked'. &lt;br&gt;Make sure all browser and all Windows Explorer windows are closed before fixing:&lt;br&gt;[b]O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)[/b]&lt;br&gt;&lt;br&gt;Everything else looks good,no problems at all.&lt;br&gt;Lets run the following just to make sure:&lt;br&gt;&lt;br&gt;Please download [b][color="red"]Malwarebytes Anti-Malware[/color][/b]:&lt;br&gt;[url]http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html[/url]&lt;br&gt;[url]http://www.besttechie.net/tools/mbam-setup.exe[/url]&lt;br&gt;&lt;br&gt;Double Click mbam-setup.exe to install the application.&lt;br&gt;(If using Windows Vista,be sure to [b][url=http://windowshelp.microsoft.com/Windows/en-US/Help/fb464905-31d5-4427-89a2-ed5322327fc21033.mspx][color="blue"]"Run As Administrator"[/color][/url][/b]).&lt;br&gt;&lt;br&gt;* Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.&lt;br&gt;* If an update is found, it will download and install the latest version.&lt;br&gt;* Once the program has loaded, select "Perform Quick Scan", then click Scan.&lt;br&gt;* The scan may take some time to finish,so please be patient.&lt;br&gt;* When the scan is complete, click OK, then Show Results to view the results.&lt;br&gt;* Make sure that everything is checked, and click Remove Selected.&lt;br&gt;* When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)&lt;br&gt;* The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.&lt;br&gt;* [b]Copy and paste the entire report into your next reply along with a new HijackThis log[/b].&lt;br&gt;&lt;br&gt;Extra Note:&lt;br&gt;[b][color="green"]If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.[/color][/b]&lt;br&gt;&lt;br&gt;Let me know if you're experiencing any problems still.</description><pubDate>Fri, 28 Mar 2008 19:57:29 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>thankyou for trying to help me the dss program worked and here are the logs your requested.  Please inform me on what state my computer may be in if you can.  sorry I missed you yesterday.&lt;/P&gt;&lt;P&gt;Deckard's System Scanner v20071014.68&lt;BR&gt;Run by ThomPC on 2008-03-28 17:06:36&lt;BR&gt;Computer is in Normal Mode.&lt;BR&gt;--------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;-- Last 3 Restore Point(s) --&lt;BR&gt;3: 2008-03-28 01:05:00 UTC - RP126 - Windows Update&lt;BR&gt;2: 2008-03-27 16:28:26 UTC - RP125 - Restore Operation&lt;BR&gt;1: 2008-03-27 08:53:46 UTC - RP124 - 24&lt;/P&gt;&lt;P&gt;&lt;BR&gt;Backed up registry hives.&lt;BR&gt;Performed disk cleanup.&lt;/P&gt;&lt;P&gt;-- HijackThis (run as ThomPC.exe) ----------------------------------------------&lt;/P&gt;&lt;P&gt;Logfile of Trend Micro HijackThis v2.0.2&lt;BR&gt;Scan saved at 5:08:01 PM, on 3/28/2008&lt;BR&gt;Platform: Windows Vista SP1 (WinNT 6.00.1905)&lt;BR&gt;MSIE: Internet Explorer v7.00 (7.00.6001.18000)&lt;BR&gt;Boot mode: Normal&lt;/P&gt;&lt;P&gt;Running processes:&lt;BR&gt;C:\Windows\system32\Dwm.exe&lt;BR&gt;C:\Windows\Explorer.EXE&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe&lt;BR&gt;C:\hp\support\hpsysdrv.exe&lt;BR&gt;C:\WINDOWS\RtHDVCpl.exe&lt;BR&gt;C:\WINDOWS\System32\rundll32.exe&lt;BR&gt;C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&lt;BR&gt;C:\Program Files\HP\HP Software Update\hpwuSchd2.exe&lt;BR&gt;C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe&lt;BR&gt;C:\WINDOWS\ehome\ehtray.exe&lt;BR&gt;C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe&lt;BR&gt;C:\Windows\ehome\ehmsas.exe&lt;BR&gt;C:\Program Files\Logitech\SetPoint\LBTWiz.exe&lt;BR&gt;C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnscfg.exe&lt;BR&gt;C:\Windows\system32\wbem\unsecapp.exe&lt;BR&gt;C:\Program Files\Internet Download Manager\IDMan.exe&lt;BR&gt;C:\Program Files\Internet Download Manager\IEMonitor.exe&lt;BR&gt;C:\hp\kbd\kbd.exe&lt;BR&gt;C:\Users\ThomPC\Desktop\dss.exe&lt;BR&gt;C:\Windows\system32\SearchFilterHost.exe&lt;BR&gt;C:\Windows\system32\DllHost.exe&lt;BR&gt;C:\PROGRA~1\TRENDM~1\HIJACK~1\ThomPC.exe&lt;/P&gt;&lt;P&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = &lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = &lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = &lt;BR&gt;O1 - Hosts: ::1 localhost&lt;BR&gt;O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll&lt;BR&gt;O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll&lt;BR&gt;O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll&lt;BR&gt;O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll&lt;BR&gt;O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)&lt;BR&gt;O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll&lt;BR&gt;O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll&lt;BR&gt;O3 - Toolbar: &amp;amp;RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll&lt;BR&gt;O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O4 - HKLM\..\Run: [Bluetooth Connection Assistant] C:\Program Files\Logitech\SetPoint\LBTWiz.exe -silent&lt;BR&gt;O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup&lt;BR&gt;O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"&lt;BR&gt;O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe&lt;BR&gt;O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart&lt;BR&gt;O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe&lt;BR&gt;O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"&lt;BR&gt;O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"&lt;BR&gt;O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe&lt;BR&gt;O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe&lt;BR&gt;O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide&lt;BR&gt;O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"&lt;BR&gt;O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe&lt;BR&gt;O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe&lt;BR&gt;O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')&lt;BR&gt;O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present&lt;BR&gt;O8 - Extra context menu item: &amp;amp;ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM&lt;BR&gt;O8 - Extra context menu item: &amp;amp;Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm&lt;BR&gt;O8 - Extra context menu item: Add to Windows &amp;amp;Live Favorites - &lt;A href="http://favorites.live.com/quickadd.aspx"&gt;http://favorites.live.com/quickadd.aspx&lt;/A&gt;&lt;BR&gt;O8 - Extra context menu item: Check &amp;amp;Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM&lt;BR&gt;O8 - Extra context menu item: Customize Menu - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html&lt;BR&gt;O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm&lt;BR&gt;O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm&lt;BR&gt;O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm&lt;BR&gt;O8 - Extra context menu item: Fill Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O8 - Extra context menu item: Lookup on Merriam Webster - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\Merriam Webster.HTM&lt;BR&gt;O8 - Extra context menu item: Lookup on Wikipedia - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\wikipedia.HTM&lt;BR&gt;O8 - Extra context menu item: RoboForm Toolbar - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O8 - Extra context menu item: Save Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage&lt;BR&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: &amp;amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O13 - Gopher Prefix: &lt;BR&gt;O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - &lt;A href="http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab"&gt;http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab&lt;/A&gt;&lt;BR&gt;O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - &lt;BR&gt;O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - &lt;A href="http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab"&gt;http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab&lt;/A&gt;&lt;BR&gt;O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL&lt;BR&gt;O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe&lt;BR&gt;O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe&lt;BR&gt;O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe&lt;BR&gt;O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe&lt;BR&gt;O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe&lt;BR&gt;O23 - Service: HP Chasis Button Service (HPBtnSrv) - Unknown owner - c:\hp\HPEZBTN\HPBtnSrv.exe&lt;BR&gt;O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe&lt;BR&gt;O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe&lt;BR&gt;O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe&lt;BR&gt;O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe&lt;BR&gt;O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe&lt;BR&gt;O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe&lt;BR&gt;O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe&lt;BR&gt;O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe&lt;BR&gt;O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search &amp;amp; Destroy\SDWinSec.exe&lt;BR&gt;O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe&lt;BR&gt;O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe&lt;BR&gt;O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe&lt;/P&gt;&lt;P&gt;--&lt;BR&gt;End of file - 15181 bytes&lt;/P&gt;&lt;P&gt;-- File Associations -----------------------------------------------------------&lt;/P&gt;&lt;P&gt;All associations okay.&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------&lt;/P&gt;&lt;P&gt;R2 MCSTRM - c:\windows\system32\drivers\mcstrm.sys &amp;lt;Not Verified; RealNetworks, Inc.; RealNetworks Virtual Path Manager® (32-bit)&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------&lt;/P&gt;&lt;P&gt;R2 DQLWinService - "c:\program files\common files\intel\inteldh\nms\adpplugins\dqlwinservice.exe" &amp;lt;Not Verified; ; DQLWinSe Application&amp;gt;&lt;BR&gt;R2 HP Health Check Service - "c:\program files\hewlett-packard\hp health check\hphc_service.exe" &amp;lt;Not Verified; Hewlett-Packard; HP Health Check Service&amp;gt;&lt;/P&gt;&lt;P&gt;S2 IntelDHSvcConf (Intel DH Service) - "c:\program files\intel\inteldh\intel media server\tools\inteldhsvcconf.exe" &amp;lt;Not Verified; Intel(R) Corporation; Intel(R) Viiv(TM) Software&amp;gt;&lt;BR&gt;S3 AlertService (Intel(R) Alert Service) - "c:\program files\intel\inteldh\ccu\alertservice.exe" &amp;lt;Not Verified; Intel(R) Corporation; Intel(R) Viiv(TM) Software&amp;gt;&lt;BR&gt;S3 ISSM (Intel(R) Software Services Manager) - "c:\program files\intel\inteldh\intel media server\media server\bin\issm.exe" &amp;lt;Not Verified; Intel(R) Corporation; Intel(R) Viiv(TM) Software&amp;gt;&lt;BR&gt;S3 M1 Server (Intel(R) Viiv(TM) Media Server) - c:\program files\intel\inteldh\intel media server\media server\bin\mediaserver.exe&lt;BR&gt;S3 MCLServiceATL (Intel(R) Application Tracker) - "c:\program files\intel\inteldh\intel media server\shells\mclserviceatl.exe" &amp;lt;Not Verified; Intel(R) Corporation; Intel(R) Viiv(TM) Software&amp;gt;&lt;BR&gt;S3 Remote UI Service (Intel(R) Remoting Service) - "c:\program files\intel\inteldh\intel media server\shells\remote ui service.exe" &amp;lt;Not Verified; Intel(R) Corporation; Intel(R) Viiv(TM) Software&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Device Manager: Disabled ----------------------------------------------------&lt;/P&gt;&lt;P&gt;No disabled devices found.&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Scheduled Tasks -------------------------------------------------------------&lt;/P&gt;&lt;P&gt;2008-03-28 15:50:18       424 --ah----- C:\Windows\Tasks\User_Feed_Synchronization-{EA113DD5-6253-4ABB-88E5-E0DA48715D6D}.job&lt;BR&gt;2008-03-24 22:00:00       548 --a------ C:\Windows\Tasks\Norton Internet Security - Run Full System Scan - ThomPC.job&lt;BR&gt;2008-03-10 19:01:40       256 --a------ C:\Windows\Tasks\Check Updates for Windows Live Toolbar.job&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Files created between 2008-02-28 and 2008-03-28 -----------------------------&lt;/P&gt;&lt;P&gt;2008-03-27 13:57:53         0 d-------- C:\Users\All Users\WindowsSearch&lt;BR&gt;2008-03-27 00:02:49        39 --a------ C:\MUI00&lt;BR&gt;2008-03-27 00:02:45      3542 --a------ C:\Start_.cmd&lt;BR&gt;2008-03-27 00:02:45         0 d-------- C:\327882R2FWJFW&lt;BR&gt;2008-03-26 23:25:40         0 d-------- C:\Program Files\CCleaner&lt;BR&gt;2008-03-26 08:57:56         0 d-------- C:\Program Files\SmartFTP Client&lt;BR&gt;2008-03-26 08:56:53         0 d-------- C:\Program Files\SmartFTP Client 3.0 Setup Files&lt;BR&gt;2008-03-25 15:45:32         0 d-------- C:\Program Files\Quick StartUp&lt;BR&gt;2008-03-25 15:43:38         0 d-------- C:\Program Files\Lavasoft&lt;BR&gt;2008-03-25 15:41:37    764416 --a------ C:\Windows\system32\NCTRMFile.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTRMFile ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:37    249856 --a------ C:\Windows\system32\NCTQuickTimeFile.dll &amp;lt;Not Verified; Online Media Technologies Company Ltd.; NCTQuickTimeFile Module&amp;gt;&lt;BR&gt;2008-03-25 15:41:37    626688 --a------ C:\Windows\system32\NCTImageFile.dll &amp;lt;Not Verified; Online Media Technologies Ltd.; NCTImageFile ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:37     61440 --a------ C:\Windows\system32\cygz.dll&lt;BR&gt;2008-03-25 15:41:37   1295582 --a------ C:\Windows\system32\cygwin1.dll &amp;lt;Not Verified; Red Hat; Cygwin&amp;gt;&lt;BR&gt;2008-03-25 15:41:37   4755968 --a------ C:\Windows\system32\apexconverter.exe&lt;BR&gt;2008-03-25 15:41:37     86016 --a------ C:\Windows\system32\AddiTunes.exe&lt;BR&gt;2008-03-25 15:41:36    495104 --a------ C:\Windows\system32\NCTVideoCoreM.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTVideoCoreM ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:36    780288 --a------ C:\Windows\system32\NCTVideoCompress.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTVideoCompress ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:36    382464 --a------ C:\Windows\system32\NCTAVIFile.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAVIFile ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:36     90112 --a------ C:\Windows\system32\NCTAudioFormatSettings3.dll &amp;lt;Not Verified; Online Media Technologies Ltd.; NCTAudioFormatSettings3 Module&amp;gt;&lt;BR&gt;2008-03-25 15:41:35    215552 --a------ C:\Windows\system32\NCTWMVFile.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTWMVFile ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:35    312320 --a------ C:\Windows\system32\NCTVideoView.dll &amp;lt;Not Verified; Online Media Technologies Ltd.; NCTVideoView ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:35    188416 --a------ C:\Windows\system32\NCTVideoFile.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTVideoFile ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-25 15:41:35   2846720 --a------ C:\Windows\system32\NCTAudioCompress3.dll &amp;lt;Not Verified; Online Media Technologies Ltd.; NCTAudioCompress3 Module&amp;gt;&lt;BR&gt;2008-03-25 15:41:35    778240 --a------ C:\Windows\system32\NCTAudioCompress2.dll &amp;lt;Not Verified; Online Media Technologies Ltd.; NCTAudioCompress2 Module&amp;gt;&lt;BR&gt;2008-03-25 15:41:34    237568 --a------ C:\Windows\system32\lame_enc.dll&lt;BR&gt;2008-03-25 15:41:34   1700352 --a------ C:\Windows\system32\gdiplus.dll &amp;lt;Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System&amp;gt;&lt;BR&gt;2008-03-25 15:41:33     81920 --a------ C:\Windows\system32\viscomwave.dll &amp;lt;Not Verified; Viscom Software; &amp;gt;&lt;BR&gt;2008-03-25 15:41:33    147456 --a------ C:\Windows\system32\viscomqtenc.dll &amp;lt;Not Verified; Viscom Software &lt;A href="http://www.viscomsoft.com"&gt;www.viscomsoft.com&lt;/A&gt;; &amp;gt;&lt;BR&gt;2008-03-25 15:41:33    139264 --a------ C:\Windows\system32\viscomqtde.dll &amp;lt;Not Verified; Viscom Software &lt;A href="http://www.viscomsoft.com"&gt;www.viscomsoft.com&lt;/A&gt;; &amp;gt;&lt;BR&gt;2008-03-25 15:41:33         0 d-------- C:\Windows\system32\RMBin&lt;BR&gt;2008-03-25 15:41:32         0 d-------- C:\Program Files\Apex&lt;BR&gt;2008-03-25 15:41:32         0 d-------- C:\Apex&lt;BR&gt;2008-03-24 23:10:29         0 d-------- C:\Windows\system32\HouseCall 6.6&lt;BR&gt;2008-03-23 16:11:12         0 d-------- C:\Program Files\StumbleUpon&lt;BR&gt;2008-03-23 15:58:26         0 d-------- C:\Windows\system32\directx&lt;BR&gt;2008-03-23 14:13:38         0 d-------- C:\Program Files\Safer Networking&lt;BR&gt;2008-03-19 17:48:17         0 d-------- C:\PerfLogs&lt;BR&gt;2008-03-19 16:53:12         0 d-------- C:\Program Files\IncrediMail&lt;BR&gt;2008-03-18 13:22:43       836 --a------ C:\Windows\bthservsdp.dat&lt;BR&gt;2008-03-18 13:19:20         0 d-------- C:\Program Files\Common Files\Logishrd&lt;BR&gt;2008-03-18 13:19:18         0 d-------- C:\Program Files\Logitech&lt;BR&gt;2008-03-18 00:29:31         0 d-------- C:\Users\All Users\Apple Computer&lt;BR&gt;2008-03-18 00:28:36         0 d-------- C:\Users\All Users\Apple&lt;BR&gt;2008-03-18 00:28:36         0 d-------- C:\Program Files\Apple Software Update&lt;BR&gt;2008-03-18 00:23:54         0 d-------- C:\Program Files\Sony Setup&lt;BR&gt;2008-03-16 20:51:29         0 d-------- C:\Program Files\QuickTime&lt;BR&gt;2008-03-16 08:48:14         0 d-------- C:\Program Files\Datel&lt;BR&gt;2008-03-16 05:10:57         0 d-------- C:\Program Files\Windows Live Writer&lt;BR&gt;2008-03-16 00:41:26    170496 --a------ C:\Windows\IPE110E1.exe &amp;lt;Not Verified; Ulead Systems, Inc.; &amp;gt;&lt;BR&gt;2008-03-16 00:41:25         0 d-------- C:\Windows\Ulead.dat&lt;BR&gt;2008-03-15 22:01:16         0 d-------- C:\Program Files\Notepad++&lt;BR&gt;2008-03-14 04:27:38         0 d-------- C:\Users\All Users\Webcammax&lt;BR&gt;2008-03-14 04:27:08         0 d-------- C:\Program Files\WebcamMax&lt;BR&gt;2008-03-14 03:36:25         0 d-------- C:\Program Files\Visicron&lt;BR&gt;2008-03-14 03:35:55         0 d-------- C:\Program Files\Common Files\Wise Installation Wizard&lt;BR&gt;2008-03-14 03:29:39         0 d-------- C:\Program Files\Paint.NET&lt;BR&gt;2008-03-14 03:27:16    317440 --a------ C:\Windows\IsUninst.exe &amp;lt;Not Verified; InstallShield Software Corporation; InstallShield® unInstaller&amp;gt;&lt;BR&gt;2008-03-14 03:27:09         0 -rahs---- C:\MSDOS.SYS&lt;BR&gt;2008-03-14 03:27:09         0 -rahs---- C:\IO.SYS&lt;BR&gt;2008-03-14 03:25:59         0 d-------- C:\Program Files\Google&lt;BR&gt;2008-03-14 03:25:53         0 d-------- C:\Program Files\Picasa2&lt;BR&gt;2008-03-14 03:24:08         0 d-------- C:\Program Files\ScottIsAFool&lt;BR&gt;2008-03-13 01:33:11         0 d-------- C:\Windows\Sun&lt;BR&gt;2008-03-12 17:47:25    101888 --a------ C:\Windows\system32\VB6STKIT.DLL &amp;lt;Not Verified; Microsoft Corporation; Microsoft® Visual Basic pour Windows&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    119568 --a------ C:\Windows\system32\VB6FR.DLL &amp;lt;Not Verified; Microsoft Corporation; Environnement Visual Basic&amp;gt;&lt;BR&gt;2008-03-12 17:47:25     21504 --a------ C:\Windows\system32\TABCTFR.DLL &amp;lt;Not Verified; Microsoft Corporation; Bibliothèque d'objets TabCtl32&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    141312 --a------ C:\Windows\system32\MSCMCFR.DLL &amp;lt;Not Verified; Microsoft Corporation; COMCTL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25     59904 --a------ C:\Windows\system32\Mscc2fr.dll &amp;lt;Not Verified; Microsoft Corporation; Bibliothèque d'objets de Microsoft Common Controls 2&amp;gt;&lt;BR&gt;2008-03-12 17:47:25     15360 --a------ C:\Windows\system32\inetfr.DLL &amp;lt;Not Verified; Microsoft Corporation; DLL du contrôle Microsoft Internet Transfer&amp;gt;&lt;BR&gt;2008-03-12 17:47:25     32768 --a------ C:\Windows\system32\CMDLGFR.DLL &amp;lt;Not Verified; Microsoft Corporation; CMDIALOG&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    458752 --a------ C:\Windows\system32\AudPlayer.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioPlayer2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    479232 --a------ C:\Windows\system32\AudioVisu.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioVisualization2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    454656 --a------ C:\Windows\system32\AudioRecord.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioRecord2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25   1212416 --a------ C:\Windows\system32\AudioInfos.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioInformation2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25   1986560 --a------ C:\Windows\system32\AudFile.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioFile2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25    417792 --a------ C:\Windows\system32\AudDisplay.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioDisplay2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:25   2084864 --a------ C:\Windows\system32\AudDesign.dll &amp;lt;Not Verified; NCT Company Ltd.; NCTAudioDesign2 ActiveX DLL&amp;gt;&lt;BR&gt;2008-03-12 17:47:24         0 d-------- C:\Program Files\Free Audio Pack&lt;BR&gt;2008-03-12 17:39:11         0 d-------- C:\Program Files\TechSmith&lt;BR&gt;2008-03-12 04:16:43         0 d-------- C:\Program Files\ieSpell&lt;BR&gt;2008-03-11 14:23:38         0 d-------- C:\Program Files\YouTube Downloader&lt;BR&gt;2008-03-11 12:58:13         0 d-------- C:\Windows\pss&lt;BR&gt;2008-03-11 06:38:51         0 d-------- C:\Program Files\Auslogics&lt;BR&gt;2008-03-11 04:28:08         0 d-------- C:\Program Files\Audacity&lt;BR&gt;2008-03-11 04:27:44         0 d-------- C:\Program Files\Any Video Converter&lt;BR&gt;2008-03-11 04:05:06        32 --a------ C:\Users\All Users\ezsid.dat&lt;BR&gt;2008-03-11 03:57:03         0 d-------- C:\Program Files\Participatory Culture Foundation&lt;BR&gt;2008-03-11 03:55:26         0 d-------- C:\Program Files\Skype&lt;BR&gt;2008-03-11 03:55:26         0 d-------- C:\Program Files\Common Files\Skype&lt;BR&gt;2008-03-11 03:55:12         0 d-------- C:\Users\All Users\Skype&lt;BR&gt;2008-03-11 01:55:04         0 d-------- C:\Windows\Ct&lt;BR&gt;2008-03-10 23:49:21         4 --a------ C:\Windows\system32\F75C28&lt;BR&gt;2008-03-10 23:48:56      8413 --a------ C:\Windows\system32\drivers\mcstrm.sys &amp;lt;Not Verified; RealNetworks, Inc.; RealNetworks Virtual Path Manager® (32-bit)&amp;gt;&lt;BR&gt;2008-03-10 22:48:23         0 d-------- C:\Program Files\GoPets Ltd&lt;BR&gt;2008-03-10 22:47:18         0 d-------- C:\Program Files\ManyCam 2.2&lt;BR&gt;2008-03-10 22:46:49         0 d-------- C:\Program Files\VS Revo Group&lt;BR&gt;2008-03-10 21:54:57         0 d-------- C:\Users\All Users\Symantec Temporary Files&lt;BR&gt;2008-03-10 21:40:56         0 d-------- C:\Program Files\Common Files\Adobe&lt;BR&gt;2008-03-10 20:48:39         0 d-------- C:\Users\All Users\Google&lt;BR&gt;2008-03-10 20:18:39         0 d-------- C:\Users\All Users\Spybot - Search &amp;amp; Destroy&lt;BR&gt;2008-03-10 19:23:14         0 d-------- C:\Program Files\Microsoft Silverlight&lt;BR&gt;2008-03-10 19:21:14     98304 --a------ C:\Windows\RTKAUDIOSERVICE.EXE &amp;lt;Not Verified; Realtek Semiconductor; Realtek Audio Service&amp;gt;&lt;BR&gt;2008-03-10 19:01:16         0 d-------- C:\Program Files\Windows Live Toolbar&lt;BR&gt;2008-03-10 19:01:14         0 d-------- C:\Program Files\Windows Live Favorites&lt;BR&gt;2008-03-10 18:59:57         0 d-------- C:\Program Files\Microsoft SQL Server Compact Edition&lt;BR&gt;2008-03-10 18:59:17         0 d-------- C:\Windows\PCHEALTH&lt;BR&gt;2008-03-10 18:55:17         0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller&lt;BR&gt;2008-03-10 18:54:57         0 d-------- C:\Program Files\Windows Live&lt;BR&gt;2008-03-10 18:54:40         0 d-------- C:\Users\All Users\WLInstaller&lt;BR&gt;2008-03-10 18:33:58         0 d-------- C:\Users\All Users\Logitech&lt;BR&gt;2008-03-10 18:33:32         0 d-------- C:\Users\All Users\LogiShrd&lt;BR&gt;2008-03-10 18:29:29     45056 --a------ C:\Windows\system32\wnaspi32.dll &amp;lt;Not Verified; Adaptec; Adaptec's ASPI Layer&amp;gt;&lt;BR&gt;2008-03-10 18:29:29     25244 --a------ C:\Windows\system32\drivers\aspi32.sys &amp;lt;Not Verified; Adaptec; Adaptec's ASPI Layer&amp;gt;&lt;BR&gt;2008-03-10 18:29:29      4672 --a------ C:\Windows\system\wowpost.exe &amp;lt;Not Verified; Adaptec; Adaptec's ASPI Layer&amp;gt;&lt;BR&gt;2008-03-10 18:29:29      5600 --a------ C:\Windows\system\winaspi.dll &amp;lt;Not Verified; Adaptec; Adaptec's ASPI Layer&amp;gt;&lt;BR&gt;2008-03-10 18:29:28    203776 --a------ C:\Windows\system32\clrviddc.dll &amp;lt;Not Verified; Iterated Systems, Inc.; ClearVideo Decoder DLL&amp;gt;&lt;BR&gt;2008-03-10 18:27:53         0 d-------- C:\Program Files\Common Files\xing shared&lt;BR&gt;2008-03-10 18:27:36         0 d-------- C:\Program Files\Common Files\Real&lt;BR&gt;2008-03-10 18:15:12         0 d-------- C:\Users\All Users\Lavasoft&lt;BR&gt;2008-03-10 18:13:39         0 d-------- C:\Program Files\Trend Micro&lt;BR&gt;2008-03-10 18:13:06         0 d-------- C:\Users\All Users\GRETECH&lt;BR&gt;2008-03-10 18:12:24         0 d-------- C:\Program Files\GRETECH&lt;BR&gt;2008-03-10 18:11:22         0 d-------- C:\Users\All Users\RoboForm&lt;BR&gt;2008-03-10 18:10:46         0 d-------- C:\Program Files\Siber Systems&lt;BR&gt;2008-03-10 18:10:17         0 d-------- C:\Program Files\Internet Download Manager&lt;BR&gt;2008-03-10 18:07:38         0 d-a------ C:\Users\All Users\TEMP&lt;BR&gt;2008-03-10 18:07:34    118784 --a------ C:\Windows\system32\MSSTDFMT.DLL &amp;lt;Not Verified; Microsoft Corporation; MSSTDFMT Object Library&amp;gt;&lt;BR&gt;2008-03-10 18:07:34         0 d-------- C:\Program Files\SpywareBlaster&lt;BR&gt;2008-03-10 17:56:39         0 --a------ C:\Windows\nsreg.dat&lt;BR&gt;2008-03-10 17:45:13         0 d-------- C:\Program Files\Java&lt;BR&gt;2008-03-10 17:44:56         0 d-------- C:\Program Files\Common Files\Java&lt;BR&gt;2008-03-10 17:40:53         0 d-------- C:\Windows\SoftwareDistribution&lt;BR&gt;2008-03-10 17:38:53         0 d--hs---- C:\System Volume Information&lt;BR&gt;2008-03-10 17:24:35         0 d-------- C:\NVIDIA&lt;BR&gt;2008-03-10 16:59:10         0 d-------- C:\Users\All Users\NVIDIA&lt;BR&gt;2008-03-10 16:50:28         0 d-------- C:\inetpub&lt;BR&gt;2008-03-10 16:24:55         0 d-------- C:\Program Files\MSXML 4.0&lt;BR&gt;2008-03-10 16:19:04         0 dr------- C:\Users\ThomPC\Searches&lt;BR&gt;2008-03-10 16:18:54         0 dr------- C:\Users\ThomPC\Contacts&lt;BR&gt;2008-03-10 16:18:51        44 --a------ C:\Windows\system\hpsysdrv.dat&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Templates&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Start Menu&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\SendTo&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Recent&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\PrintHood&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\NetHood&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\My Documents&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Local Settings&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Cookies&lt;BR&gt;2008-03-10 16:04:11         0 d--hs---- C:\Users\ThomPC\Application Data&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Videos&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Saved Games&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Pictures&lt;BR&gt;2008-03-10 16:04:09   6815744 --ahs---- C:\Users\ThomPC\ntuser.dat&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Music&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Links&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Favorites&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Downloads&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Documents&lt;BR&gt;2008-03-10 16:04:09         0 dr------- C:\Users\ThomPC\Desktop&lt;BR&gt;2008-03-10 16:04:09         0 d--h----- C:\Users\ThomPC\AppData&lt;BR&gt;2008-03-10 15:56:04         0 d--hs---- C:\Users\All Users\Templates&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Templates&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Start Menu&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\SendTo&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Recent&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\PrintHood&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\NetHood&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\My Documents&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Local Settings&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Cookies&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\Default\Application Data&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\All Users\Start Menu&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\All Users\Favorites&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\All Users\Documents&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\All Users\Desktop&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Users\All Users\Application Data&lt;BR&gt;2008-03-10 15:56:03         0 d--hs---- C:\Documents and Settings&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Find3M Report ---------------------------------------------------------------&lt;/P&gt;&lt;P&gt;2008-03-28 17:05:27         0 d-------- C:\Users\ThomPC\AppData\Roaming\StumbleUpon&lt;BR&gt;2008-03-28 16:55:22         0 d-------- C:\Users\ThomPC\AppData\Roaming\DMCache&lt;BR&gt;2008-03-27 18:29:33         0 d-------- C:\Program Files\Rhapsody&lt;BR&gt;2008-03-27 11:38:08         0 d-------- C:\Program Files\Common Files\Symantec Shared&lt;BR&gt;2008-03-26 09:08:57         0 d-------- C:\Users\ThomPC\AppData\Roaming\PCF-VLC&lt;BR&gt;2008-03-25 00:58:42         0 d-------- C:\Users\ThomPC\AppData\Roaming\HouseCall 6.6&lt;BR&gt;2008-03-24 15:45:59         0 d-------- C:\Users\ThomPC\AppData\Roaming\Notepad++&lt;BR&gt;2008-03-20 03:53:29         0 d-------- C:\Users\ThomPC\AppData\Roaming\IDM&lt;BR&gt;2008-03-19 17:58:55       174 --ahs---- C:\Program Files\desktop.ini&lt;BR&gt;2008-03-19 17:49:53         0 d-------- C:\Program Files\Windows Sidebar&lt;BR&gt;2008-03-19 17:49:53         0 d-------- C:\Program Files\Windows Calendar&lt;BR&gt;2008-03-19 17:49:53         0 d-------- C:\Program Files\Movie Maker&lt;BR&gt;2008-03-19 17:49:52         0 d-------- C:\Program Files\Windows Mail&lt;BR&gt;2008-03-19 17:49:50         0 d-------- C:\Program Files\Windows Journal&lt;BR&gt;2008-03-19 17:49:50         0 d-------- C:\Program Files\Windows Collaboration&lt;BR&gt;2008-03-19 17:49:49         0 d-------- C:\Program Files\Windows Photo Gallery&lt;BR&gt;2008-03-19 17:49:46         0 d-------- C:\Program Files\Windows Defender&lt;BR&gt;2008-03-18 13:22:20         0 d-------- C:\Users\ThomPC\AppData\Roaming\Logitech&lt;BR&gt;2008-03-18 13:19:22         0 d--h----- C:\Program Files\InstallShield Installation Information&lt;BR&gt;2008-03-18 13:19:20         0 d-------- C:\Program Files\Common Files&lt;BR&gt;2008-03-18 13:19:17         0 d-------- C:\Users\ThomPC\AppData\Roaming\InstallShield&lt;BR&gt;2008-03-18 03:10:10         0 d-------- C:\Users\ThomPC\AppData\Roaming\Roxio&lt;BR&gt;2008-03-18 00:38:46         0 d-------- C:\Users\ThomPC\AppData\Roaming\Sony&lt;BR&gt;2008-03-18 00:12:37         0 d-------- C:\Users\ThomPC\AppData\Roaming\Thinstall&lt;BR&gt;2008-03-17 07:26:18         0 d-------- C:\Users\ThomPC\AppData\Roaming\Skype&lt;BR&gt;2008-03-17 02:26:23         0 d-------- C:\Users\ThomPC\AppData\Roaming\skypePM&lt;BR&gt;2008-03-16 08:49:55         0 d-------- C:\Users\ThomPC\AppData\Roaming\Adobe&lt;BR&gt;2008-03-16 08:49:21         0 d-------- C:\Users\ThomPC\AppData\Roaming\Datel&lt;BR&gt;2008-03-15 23:58:51         0 d-------- C:\Users\ThomPC\AppData\Roaming\Any Video Converter&lt;BR&gt;2008-03-15 06:32:00         0 d-------- C:\Program Files\Realtek&lt;BR&gt;2008-03-14 04:27:38         0 d-------- C:\Users\ThomPC\AppData\Roaming\Webcammax&lt;BR&gt;2008-03-14 03:23:04         0 d-------- C:\Users\ThomPC\AppData\Roaming\SmartFTP&lt;BR&gt;2008-03-14 02:45:32         0 d-------- C:\Users\ThomPC\AppData\Roaming\Windows Live Writer&lt;BR&gt;2008-03-13 04:29:43         0 d-------- C:\Users\ThomPC\AppData\Roaming\muvee Technologies&lt;BR&gt;2008-03-12 17:48:35         0 d-------- C:\Program Files\Microsoft Works&lt;BR&gt;2008-03-12 00:29:28       490 --a------ C:\Users\ThomPC\AppData\Roaming\wklnhst.dat&lt;BR&gt;2008-03-11 20:54:25         0 d-------- C:\Program Files\Symantec&lt;BR&gt;2008-03-11 17:36:47     24206 --a------ C:\Users\ThomPC\AppData\Roaming\UserTile.png&lt;BR&gt;2008-03-11 17:36:43         0 d-------- C:\Users\ThomPC\AppData\Roaming\PeerNetworking&lt;BR&gt;2008-03-11 14:17:05         0 d-------- C:\Users\ThomPC\AppData\Roaming\Template&lt;BR&gt;2008-03-11 07:00:52         0 d-------- C:\Users\ThomPC\AppData\Roaming\Auslogics&lt;BR&gt;2008-03-11 04:59:15         0 d-------- C:\Program Files\Online Services&lt;BR&gt;2008-03-11 03:57:58         0 d-------- C:\Users\ThomPC\AppData\Roaming\Participatory Culture Foundation&lt;BR&gt;2008-03-11 01:51:59         0 d-------- C:\Users\ThomPC\AppData\Roaming\Symantec&lt;BR&gt;2008-03-11 01:18:39         0 d-------- C:\Users\ThomPC\AppData\Roaming\Media Player Classic&lt;BR&gt;2008-03-10 23:48:56         0 d-------- C:\Users\ThomPC\AppData\Roaming\Real&lt;BR&gt;2008-03-10 19:54:02         0 d-------- C:\Program Files\Microsoft Games&lt;BR&gt;2008-03-10 19:18:00         0 d-------- C:\Users\ThomPC\AppData\Roaming\WinBatch&lt;BR&gt;2008-03-10 18:12:35         0 d-------- C:\Users\ThomPC\AppData\Roaming\GRETECH&lt;BR&gt;2008-03-10 18:07:01         0 d-------- C:\Users\ThomPC\AppData\Roaming\WinRAR&lt;BR&gt;2008-03-10 17:56:53         0 d-------- C:\Users\ThomPC\AppData\Roaming\Talkback&lt;BR&gt;2008-03-10 17:56:37         0 d-------- C:\Users\ThomPC\AppData\Roaming\Mozilla&lt;BR&gt;2008-03-10 17:20:11         0 d-------- C:\Program Files\Norton Internet Security&lt;BR&gt;2008-03-10 16:26:41         0 d-------- C:\Users\ThomPC\AppData\Roaming\Snapfish&lt;BR&gt;2008-03-10 16:20:51         0 d-------- C:\Users\ThomPC\AppData\Roaming\Hewlett-Packard&lt;BR&gt;2008-03-10 16:18:57         0 d-------- C:\Users\ThomPC\AppData\Roaming\Identities&lt;BR&gt;2008-03-10 16:18:38         0 d-------- C:\Users\ThomPC\AppData\Roaming\Macromedia&lt;BR&gt;2008-02-01 11:11:10    586240 --a------ C:\Windows\WLXPGSS.SCR &amp;lt;Not Verified; Microsoft Corporation; Windows Live Photo Gallery&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Registry Dump ---------------------------------------------------------------&lt;/P&gt;&lt;P&gt;*Note* empty entries &amp;amp; legit default entries are not shown&lt;/P&gt;&lt;P&gt;&lt;BR&gt;[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]&lt;BR&gt;"@"="" []&lt;BR&gt;"Bluetooth Connection Assistant"="C:\Program Files\Logitech\SetPoint\LBTWiz.exe" [01/09/2008 12:30 PM]&lt;BR&gt;"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [11/06/2007 08:00 PM]&lt;BR&gt;"LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [10/25/2007 04:33 PM]&lt;BR&gt;"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [04/18/2007 10:01 AM]&lt;BR&gt;"NvSvc"="C:\Windows\system32\nvsvc.dll" [11/06/2007 08:00 PM]&lt;BR&gt;"RtHDVCpl"="RtHDVCpl.exe" [01/15/2008 11:26 AM C:\WINDOWS\RtHDVCpl.exe]&lt;BR&gt;"KBD"="C:\HP\KBD\KbdStub.EXE" [12/08/2006 03:16 PM]&lt;BR&gt;"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [02/22/2008 04:25 AM]&lt;BR&gt;"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [09/06/2007 05:30 PM]&lt;BR&gt;"HP Software Update"="c:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [02/17/2005 01:11 AM]&lt;BR&gt;"HP Health Check Scheduler"="c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [05/24/2007 03:13 PM]&lt;BR&gt;"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [01/19/2008 02:38 AM]&lt;BR&gt;"OsdMaestro"="C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [02/15/2007 06:59 AM]&lt;/P&gt;&lt;P&gt;[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]&lt;BR&gt;"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [01/19/2008 02:33 AM]&lt;BR&gt;"RoboForm"="C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" [03/10/2008 08:43 PM]&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]&lt;BR&gt;"Launcher"=%WINDIR%\SMINST\launcher.exe&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]&lt;BR&gt;"ConsentPromptBehaviorAdmin"=2 (0x2)&lt;BR&gt;"EnableLUA"=0 (0x0)&lt;BR&gt;"EnableUIADesktopToggle"=0 (0x0)&lt;/P&gt;&lt;P&gt;[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]&lt;BR&gt;"disableregistrytools"=0 (0x0)&lt;/P&gt;&lt;P&gt;[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]&lt;BR&gt;"NoViewOnDrive"=0 (0x0)&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]&lt;BR&gt;@="Service"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]&lt;BR&gt;@="Driver"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]&lt;BR&gt;@="Driver"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]&lt;BR&gt;@="Volume shadow copy"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]&lt;BR&gt;@="IEEE 1394 Bus host controllers"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]&lt;BR&gt;@="SBP2 IEEE 1394 Devices"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]&lt;BR&gt;@="SecurityDevices"&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]&lt;BR&gt;"Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"&lt;BR&gt;"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup&lt;BR&gt;"WebcamMaxMoniter"="C:\Program Files\WebcamMax\wcmmon.exe" /a&lt;BR&gt;"NvMediaCenter"=RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit&lt;BR&gt;"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]&lt;BR&gt;LocalService nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE Mcx2Svc WebClient SstpSvc&lt;BR&gt;LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum&lt;BR&gt;iissvcs w3svc was&lt;BR&gt;CtServ CtServ&lt;BR&gt;rsmsvcs ntmssvc&lt;BR&gt;ipripsvc iprip&lt;BR&gt;bthsvcs BthServ&lt;BR&gt;apphost apphostsvc&lt;/P&gt;&lt;P&gt;*Newly Created Service* - COMHOST&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\&amp;gt;{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]&lt;BR&gt;C:\Windows\system32\unregmp2.exe /ShowWMP&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]&lt;BR&gt;%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI&lt;/P&gt;&lt;P&gt;-- Hosts -----------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;127.0.0.1 &lt;A href="http://www.007guard.com"&gt;www.007guard.com&lt;/A&gt;&lt;BR&gt;127.0.0.1 007guard.com&lt;BR&gt;127.0.0.1 008i.com&lt;BR&gt;127.0.0.1 &lt;A href="http://www.008k.com"&gt;www.008k.com&lt;/A&gt;&lt;BR&gt;127.0.0.1 008k.com&lt;BR&gt;127.0.0.1 &lt;A href="http://www.00hq.com"&gt;www.00hq.com&lt;/A&gt;&lt;BR&gt;127.0.0.1 00hq.com&lt;BR&gt;127.0.0.1 010402.com&lt;BR&gt;127.0.0.1 &lt;A href="http://www.032439.com"&gt;www.032439.com&lt;/A&gt;&lt;BR&gt;127.0.0.1 032439.com&lt;/P&gt;&lt;P&gt;8072 more entries in hosts file.&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- End of Deckard's System Scanner: finished at 2008-03-28 17:09:46 ------------&lt;/P&gt;&lt;P&gt;Deckard's System Scanner v20071014.68&lt;BR&gt;Extra logfile - please post this as an attachment with your post.&lt;BR&gt;--------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;-- System Information ----------------------------------------------------------&lt;/P&gt;&lt;P&gt;Microsoft® Windows Vista™ Home Premium  (build 6001) SP 1.0&lt;BR&gt;Architecture: X86; Language: English&lt;/P&gt;&lt;P&gt;CPU 0: Intel(R) Core(TM)2 Quad CPU    Q6600  @ 2.40GHz&lt;BR&gt;Percentage of Memory in Use: 28%&lt;BR&gt;Physical Memory (total/avail): 3070.57 MiB / 2192.88 MiB&lt;BR&gt;Pagefile Memory (total/avail): 6356.18 MiB / 5503.28 MiB&lt;BR&gt;Virtual Memory (total/avail): 2047.88 MiB / 1889.9 MiB&lt;/P&gt;&lt;P&gt;C: is Fixed (NTFS) - 289.04 GiB total, 256.43 GiB free. &lt;BR&gt;D: is Fixed (NTFS) - 9.05 GiB total, 0.9 GiB free. &lt;BR&gt;E: is Fixed (NTFS) - 298.09 GiB total, 296.87 GiB free. &lt;BR&gt;F: is CDROM (No Media)&lt;BR&gt;G: is Removable (No Media)&lt;BR&gt;H: is Removable (No Media)&lt;BR&gt;I: is Removable (No Media)&lt;BR&gt;J: is Removable (No Media)&lt;BR&gt;K: is Fixed (NTFS) - 74.56 GiB total, 37.01 GiB free. &lt;BR&gt;L: is Fixed (NTFS) - 232.88 GiB total, 183.26 GiB free. &lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE0"&gt;\\.\PHYSICALDRIVE0&lt;/A&gt; - Hitachi HDT725032VLA380 ATA Device - 298.09 GiB - 2 partitions&lt;BR&gt;  \PARTITION0 (bootable) - Installable File System - 289.04 GiB - C:&lt;BR&gt;  \PARTITION1 - Installable File System - 9.05 GiB - D:&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE1"&gt;\\.\PHYSICALDRIVE1&lt;/A&gt; - Hitachi HDT725032VLA380 ATA Device - 298.09 GiB - 1 partition&lt;BR&gt;  \PARTITION0 - Installable File System - 298.09 GiB - E:&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE4"&gt;\\.\PHYSICALDRIVE4&lt;/A&gt; - Generic- Compact Flash USB Device&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE7"&gt;\\.\PHYSICALDRIVE7&lt;/A&gt; - Generic- MS/MS-Pro USB Device&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE6"&gt;\\.\PHYSICALDRIVE6&lt;/A&gt; - Generic- SD/MMC USB Device&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE5"&gt;\\.\PHYSICALDRIVE5&lt;/A&gt; - Generic- SM/xD-Picture USB Device&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE3"&gt;\\.\PHYSICALDRIVE3&lt;/A&gt; - SAMSUNG SP0822N USB Device - 74.56 GiB - 1 partition&lt;BR&gt;  \PARTITION0 - Installable File System - 74.56 GiB - K:&lt;/P&gt;&lt;P&gt;&lt;A href="file://\\.\PHYSICALDRIVE2"&gt;\\.\PHYSICALDRIVE2&lt;/A&gt; - WDC WD25 00AAJB-00TYA0 USB Device - 232.88 GiB - 1 partition&lt;BR&gt;  \PARTITION0 - Installable File System - 232.88 GiB - L:&lt;/P&gt;&lt;P&gt;-- Security Center -------------------------------------------------------------&lt;/P&gt;&lt;P&gt;AUOptions is scheduled to auto-install.&lt;BR&gt;Windows Internal Firewall is disabled.&lt;/P&gt;&lt;P&gt;FW: Norton Internet Security v2007 (Symantec Corporation) [COLOR=RED]Disabled[/COLOR]&lt;BR&gt;AV: Norton Internet Security v2007 (Symantec Corporation) [COLOR=RED]Disabled[/COLOR]&lt;BR&gt;AS: Spybot - Search and Destroy v1.0.0.5 (Safer Networking Ltd.) [COLOR=RED]Disabled[/COLOR]&lt;BR&gt;AS: Windows Defender v1.1.1505.0 (Microsoft Corporation)&lt;BR&gt;AS: Norton Internet Security v2007 (Symantec Corporation) [COLOR=RED]Disabled[/COLOR]&lt;/P&gt;&lt;P&gt;[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]&lt;/P&gt;&lt;P&gt;[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]&lt;BR&gt;"C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe"="C:\\Program Files\\EarthLink TotalAccess\\TaskPanl.exe:*:Enabled:Earthlink"&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Environment Variables -------------------------------------------------------&lt;/P&gt;&lt;P&gt;ALLUSERSPROFILE=C:\ProgramData&lt;BR&gt;APPDATA=C:\Users\ThomPC\AppData\Roaming&lt;BR&gt;CLASSPATH=.;C:\Program Files\Java\jre1.6.0_05\lib\ext\QTJava.zip&lt;BR&gt;CommonProgramFiles=C:\Program Files\Common Files&lt;BR&gt;COMPUTERNAME=THOMPC-PC&lt;BR&gt;ComSpec=C:\Windows\system32\cmd.exe&lt;BR&gt;FP_NO_HOST_CHECK=NO&lt;BR&gt;HOMEDRIVE=C:&lt;BR&gt;HOMEPATH=\Users\ThomPC&lt;BR&gt;LOCALAPPDATA=C:\Users\ThomPC\AppData\Local&lt;BR&gt;LOGONSERVER=\\THOMPC-PC&lt;BR&gt;NUMBER_OF_PROCESSORS=4&lt;BR&gt;OnlineServices=Online Services&lt;BR&gt;OS=Windows_NT&lt;BR&gt;Path=C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;C:\hp\bin\Python;c:\Program Files\Common Files\Roxio Shared\DLLShared;c:\Program Files\Common Files\Roxio Shared\9.0\DLLShared;C:\Program Files\QuickTime\QTSystem&lt;BR&gt;PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC&lt;BR&gt;PCBRAND=Pavilion&lt;BR&gt;PLATFORM=HPD&lt;BR&gt;PROCESSOR_ARCHITECTURE=x86&lt;BR&gt;PROCESSOR_IDENTIFIER=x86 Family 6 Model 15 Stepping 11, GenuineIntel&lt;BR&gt;PROCESSOR_LEVEL=6&lt;BR&gt;PROCESSOR_REVISION=0f0b&lt;BR&gt;ProgramData=C:\ProgramData&lt;BR&gt;ProgramFiles=C:\Program Files&lt;BR&gt;PROMPT=$P$G&lt;BR&gt;PUBLIC=C:\Users\Public&lt;BR&gt;QTJAVA=C:\Program Files\Java\jre1.6.0_05\lib\ext\QTJava.zip&lt;BR&gt;RoxioCentral=c:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\&lt;BR&gt;SESSIONNAME=Console&lt;BR&gt;SystemDrive=C:&lt;BR&gt;SystemRoot=C:\Windows&lt;BR&gt;TEMP=C:\Users\ThomPC\AppData\Local\Temp&lt;BR&gt;TMP=C:\Users\ThomPC\AppData\Local\Temp&lt;BR&gt;USERDOMAIN=ThomPC-PC&lt;BR&gt;USERNAME=ThomPC&lt;BR&gt;USERPROFILE=C:\Users\ThomPC&lt;BR&gt;windir=C:\Windows&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- User Profiles ---------------------------------------------------------------&lt;/P&gt;&lt;P&gt;IUSR_NMPR [I](new local, net ready)[/I]&lt;BR&gt;ThomPC [I](admin)[/I]&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Add/Remove Programs ---------------------------------------------------------&lt;/P&gt;&lt;P&gt; --&amp;gt; C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0&lt;BR&gt;Ad-Aware 2007 --&amp;gt; MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}&lt;BR&gt;Adobe Flash Player ActiveX --&amp;gt; C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe&lt;BR&gt;Adobe Flash Player Plugin --&amp;gt; C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe&lt;BR&gt;Adobe Reader 8.1.2 --&amp;gt; MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003}&lt;BR&gt;Adobe Shockwave Player --&amp;gt; C:\WINDOWS\System32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\System32\Macromed\SHOCKW~1\Install.log&lt;BR&gt;AI RoboForm (All Users) --&amp;gt; "C:\Program Files\Siber Systems\AI RoboForm\rfwipeout.exe"&lt;BR&gt;Any Video Converter 2.5.8 --&amp;gt; "C:\Program Files\Any Video Converter\unins000.exe"&lt;BR&gt;Apex Video to MP3 WMA WAV Converter Free 4.22 --&amp;gt; "C:\Program Files\Apex\Apex Video to MP3 WMA WAV Converter Free\unins000.exe"&lt;BR&gt;AppCore --&amp;gt; MsiExec.exe /I{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}&lt;BR&gt;Apple Software Update --&amp;gt; MsiExec.exe /I{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}&lt;BR&gt;Audacity 1.2.6 --&amp;gt; "C:\Program Files\Audacity\unins000.exe"&lt;BR&gt;AusLogics Disk Defrag --&amp;gt; "C:\Program Files\Auslogics\AusLogics Disk Defrag\unins000.exe"&lt;BR&gt;AV --&amp;gt; MsiExec.exe /I{F4DB525F-A986-4249-B98B-42A8066251CA}&lt;BR&gt;BlueDot.us Live Writer Plugin --&amp;gt; MsiExec.exe /I{D840FAE2-2132-4A8A-B6F8-C8698C62ADE2}&lt;BR&gt;ccCommon --&amp;gt; MsiExec.exe /I{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}&lt;BR&gt;CCleaner (remove only) --&amp;gt; "C:\Program Files\CCleaner\uninst.exe"&lt;BR&gt;CDDRV_Installer --&amp;gt; MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}&lt;BR&gt;Enhanced Multimedia Keyboard Solution --&amp;gt; C:\HP\KBD\Install.exe /u&lt;BR&gt;GOM Player --&amp;gt; "C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"&lt;BR&gt;Google Desktop --&amp;gt; C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall&lt;BR&gt;GoPets --&amp;gt; "C:\Program Files\GoPets Ltd\Uninstall GoPets.exe"&lt;BR&gt;Hardware Diagnostic Tools --&amp;gt; C:\Program Files\PC-Doctor 5 for Windows\uninst.exe&lt;BR&gt;Hewlett-Packard Active Check for Health Check --&amp;gt; MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}&lt;BR&gt;Hewlett-Packard Asset Agent for Health Check --&amp;gt; MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}&lt;BR&gt;Highlight Viewer (Windows Live Toolbar) --&amp;gt; MsiExec.exe /X{A5C4AD72-25FE-4899-B6DF-6D8DF63C93CF}&lt;BR&gt;HijackThis 2.0.2 --&amp;gt; "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall&lt;BR&gt;HouseCall 6.6 --&amp;gt; "C:\Users\ThomPC\AppData\Roaming\HouseCall 6.6\uninstaller.exe"&lt;BR&gt;HP Active Support Library --&amp;gt; C:\Program Files\InstallShield Installation Information\{0A47BAFF-D4FF-4BD3-96CA-02A22EA62722}\setup.exe -runfromtemp -l0x0409&lt;BR&gt;HP Active Support Library 32 bit components --&amp;gt; MsiExec.exe /I{6D3DB611-D5E8-4E4B-8952-0D3F549F9CC6}&lt;BR&gt;HP Customer Experience Enhancements --&amp;gt; RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9  -removeonly&lt;BR&gt;HP Customer Feedback --&amp;gt; MsiExec.exe /I{9DBA770F-BF73-4D39-B1DF-6035D95268FC}&lt;BR&gt;HP Easy Setup - Frontend --&amp;gt; RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9  -removeonly&lt;BR&gt;HP On-Screen Cap/Num/Scroll Lock Indicator --&amp;gt; C:\Windows\system32\OsdRemove.exe&lt;BR&gt;HP Photosmart Essential 2.01 --&amp;gt; C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat&lt;BR&gt;HP Picasso Media Center Add-In --&amp;gt; MsiExec.exe /I{55979C41-7D6A-49CC-B591-64AC1BBE2C8B}&lt;BR&gt;HP Total Care Advisor --&amp;gt; MsiExec.exe /X{0DDA7620-4F8B-43B3-8828-CA5EE292FA3B}&lt;BR&gt;HP Update --&amp;gt; MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}&lt;BR&gt;ieSpell --&amp;gt; "C:\Program Files\ieSpell\uninst.exe"&lt;BR&gt;Insert Video --&amp;gt; MsiExec.exe /I{1A238924-45D4-4673-912C-808A4FF72B4C}&lt;BR&gt;Intel(R) Network Connections Drivers --&amp;gt; Prounstl.exe&lt;BR&gt;Intel® Viiv™ Software --&amp;gt; MsiExec.exe /X{6E7BF6EC-C3E7-43A7-8A03-0D204E3EC01B} /qb!&lt;BR&gt;Internet Download Manager --&amp;gt; C:\Program Files\Internet Download Manager\Uninstall.exe&lt;BR&gt;Java(TM) 6 Update 5 --&amp;gt; MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}&lt;BR&gt;KhalInstallWrapper --&amp;gt; MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}&lt;BR&gt;LiveUpdate 3.2 (Symantec Corporation) --&amp;gt; "C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U&lt;BR&gt;LiveUpdate Notice (Symantec Corporation) --&amp;gt; MsiExec.exe /X{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}&lt;BR&gt;Logitech Legacy USB Camera Driver Package --&amp;gt; "C:\Program Files\Common Files\LogiShrd\LogiDriverStore\legacyqcam\11.10.2016\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\legacyqcam\" -enumdelay=2000 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"legacyqcam_11.10" /clone_wait /hide_progress&lt;BR&gt;Logitech QuickCam --&amp;gt; MsiExec.exe /X{945AC98B-3DC8-45BE-BAE0-22CEEE37A103}&lt;BR&gt;Logitech QuickCapture Gadget --&amp;gt; MsiExec.exe /X{F2EC3CA2-1136-45C1-B5AE-AB03DED6E98C}&lt;BR&gt;Logitech SetPoint --&amp;gt; C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x0009 -removeonly&lt;BR&gt;ManyCam 2.2 (remove only) --&amp;gt; "C:\Program Files\ManyCam 2.2\uninstall.exe"&lt;BR&gt;Map Button (Windows Live Toolbar) --&amp;gt; MsiExec.exe /X{7745B7A9-F323-4BB9-9811-01BF57A028DA}&lt;BR&gt;Microsoft Office Home and Student 60 day trial --&amp;gt; c:\hp\bin\MSOffice\uninst2.cmd&lt;BR&gt;Microsoft Silverlight --&amp;gt; MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}&lt;BR&gt;Microsoft SQL Server 2005 Compact Edition [ENU] --&amp;gt; MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}&lt;BR&gt;Microsoft Visual C++ 2005 Redistributable --&amp;gt; MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}&lt;BR&gt;Microsoft Visual C++ 2005 Redistributable --&amp;gt; MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}&lt;BR&gt;Microsoft Works --&amp;gt; MsiExec.exe /I{6D52C408-B09A-4520-9B18-475B81D393F1}&lt;BR&gt;Microsoft Works 6-9 Converter --&amp;gt; MsiExec.exe /X{172423F9-522A-483A-AD65-03600CE4CA4F}&lt;BR&gt;Miro --&amp;gt; C:\Program Files\Participatory Culture Foundation\Miro\uninstall.exe&lt;BR&gt;Mozilla Firefox (2.0.0.13) --&amp;gt; C:\Program Files\Mozilla Firefox\uninstall\helper.exe&lt;BR&gt;MSRedist --&amp;gt; MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}&lt;BR&gt;MSXML 4.0 SP2 (KB936181) --&amp;gt; MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}&lt;BR&gt;MSXML 4.0 SP2 (KB941833) --&amp;gt; MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}&lt;BR&gt;muvee autoProducer 6.0 --&amp;gt; C:\Program Files\InstallShield Installation Information\{775B9052-3517-47FA-817D-1BB28363D43A}\setup.exe -runfromtemp -l0x0009 -removeonly&lt;BR&gt;MVision --&amp;gt; MsiExec.exe /I{35725FBC-A136-4A46-9F29-091759D9BB93}&lt;BR&gt;NetAlyzer 0.3 --&amp;gt; "C:\Program Files\PepiMK Software\NetAlyzer\unins000.exe"&lt;BR&gt;Norton AntiVirus --&amp;gt; MsiExec.exe /X{830D8CBD-C668-49e2-A969-C2C2106332E0}&lt;BR&gt;Norton Confidential Browser Component --&amp;gt; MsiExec.exe /I{4843B611-8FCB-4428-8C23-31D0A5EAE164}&lt;BR&gt;Norton Confidential Web Protection Component --&amp;gt; MsiExec.exe /I{D353CC51-430D-4C6F-9B7E-52003DA1E05A}&lt;BR&gt;Norton Internet Security --&amp;gt; MsiExec.exe /I{3672B097-EA69-4bfe-B92F-29AE6D9D2B34}&lt;BR&gt;Norton Internet Security --&amp;gt; MsiExec.exe /I{48185814-A224-447A-81DA-71BD20580E1B}&lt;BR&gt;Norton Internet Security --&amp;gt; MsiExec.exe /I{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}&lt;BR&gt;Norton Internet Security --&amp;gt; MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}&lt;BR&gt;Norton Internet Security --&amp;gt; MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}&lt;BR&gt;Norton Internet Security (Symantec Corporation) --&amp;gt; "C:\Program Files\Common Files\Symantec Shared\SymSetup\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}_10_2_0_30\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}.exe" /X&lt;BR&gt;Norton Protection Center --&amp;gt; MsiExec.exe /I{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8}&lt;BR&gt;Notepad++ --&amp;gt; C:\Program Files\Notepad++\uninstall.exe&lt;BR&gt;NVIDIA Drivers --&amp;gt; C:\Windows\system32\NVUNINST.EXE UninstallGUI&lt;BR&gt;Paint.NET v3.22 --&amp;gt; MsiExec.exe /X{96C267DA-0926-4C11-B4E7-4D3EF85130D0}&lt;BR&gt;Picasa 2 --&amp;gt; "C:\Program Files\Picasa2\Uninstall.exe"&lt;BR&gt;PSP Max Media Manager Pro --&amp;gt; "C:\Program Files\Datel\PSP Max Media Manager Pro\unins000.exe"&lt;BR&gt;Python 2.5 --&amp;gt; MsiExec.exe /I{0A2C5854-557E-48C8-835A-3B9F074BDCAA}&lt;BR&gt;Quick StartUp 2.3 --&amp;gt; "C:\Program Files\Quick StartUp\unins000.exe"&lt;BR&gt;QuickTime --&amp;gt; MsiExec.exe /I{BFD96B89-B769-4CD6-B11E-E79FFD46F067}&lt;BR&gt;RealPlayer --&amp;gt; C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0&lt;BR&gt;Realtek High Definition Audio Driver --&amp;gt; RtlUpd.exe -r -m&lt;BR&gt;RegAlyzer --&amp;gt; "C:\Program Files\Safer Networking\RegAlyzer\unins000.exe"&lt;BR&gt;Revo Uninstaller 1.50 --&amp;gt; C:\Program Files\VS Revo Group\Revo Uninstaller\uninst.exe&lt;BR&gt;Rhapsody --&amp;gt; C:\PROGRA~1\Rhapsody\Unwise32.exe /A C:\PROGRA~1\Rhapsody\install.log&lt;BR&gt;Rhapsody Player Engine --&amp;gt; MsiExec.exe /I{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}&lt;BR&gt;Rhapsody Player Engine --&amp;gt; MsiExec.exe /I{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}&lt;BR&gt;Roxio Activation Module --&amp;gt; MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}&lt;BR&gt;Roxio Creator Audio --&amp;gt; MsiExec.exe /X{83FFCFC7-88C6-41c6-8752-958A45325C82}&lt;BR&gt;Roxio Creator Basic v9 --&amp;gt; MsiExec.exe /X{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}&lt;BR&gt;Roxio Creator Copy --&amp;gt; MsiExec.exe /X{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}&lt;BR&gt;Roxio Creator Data --&amp;gt; MsiExec.exe /X{0D397393-9B50-4c52-84D5-77E344289F87}&lt;BR&gt;Roxio Creator EasyArchive --&amp;gt; MsiExec.exe /X{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}&lt;BR&gt;Roxio Creator Tools --&amp;gt; MsiExec.exe /X{0394CDC8-FABD-4ed8-B104-03393876DFDF}&lt;BR&gt;Roxio Express Labeler 3 --&amp;gt; MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}&lt;BR&gt;Roxio MyDVD Basic v9 --&amp;gt; MsiExec.exe /X{938B1CD7-7C60-491E-AA90-1F1888168240}&lt;BR&gt;Serif PhotoPlus 5.5 --&amp;gt; C:\Windows\IsUninst.exe -f"k:\program files\PhotoPlus50Uninst.isu"&lt;BR&gt;Setup --&amp;gt; MsiExec.exe /I{5F66FDA9-E372-41BB-A0DE-457C8E1486AB}&lt;BR&gt;Skype™ 3.6 --&amp;gt; MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}&lt;BR&gt;Smart Menus (Windows Live Toolbar) --&amp;gt; MsiExec.exe /X{F084395C-40FB-4DB3-981C-B51E74E1E83D}&lt;BR&gt;SmartFTP Client --&amp;gt; MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}&lt;BR&gt;SmartFTP Client 3.0 Setup Files (remove only) --&amp;gt; C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe&lt;BR&gt;SnagIt 7 --&amp;gt; C:\Program Files\TechSmith\SnagIt 7\SIUNINST.EXE&lt;BR&gt;Soft Data Fax Modem with SmartCP --&amp;gt; C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&amp;amp;DEV_2F20&amp;amp;SUBSYS_200C14F1\UIU32m.exe -U -ITrx200Cz.INF&lt;BR&gt;SPBBC 32bit --&amp;gt; MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}&lt;BR&gt;Spybot - Search &amp;amp; Destroy --&amp;gt; "C:\Program Files\Spybot - Search &amp;amp; Destroy\unins000.exe"&lt;BR&gt;SpywareBlaster 4.0 --&amp;gt; "C:\Program Files\SpywareBlaster\unins000.exe"&lt;BR&gt;StumbleUpon IE Toolbar --&amp;gt; C:\Program Files\StumbleUpon\uninstall.exe&lt;BR&gt;VZOchat --&amp;gt; MsiExec.exe /X{057DA6A8-0DB2-43DF-9A8B-6175CE4C78E1}&lt;BR&gt;WeatherBug Gadget --&amp;gt; MsiExec.exe /I{209CDA54-D390-46A2-A97C-7BF61734418D}&lt;BR&gt;WebcamMax --&amp;gt; "C:\Program Files\WebcamMax\uninst.exe"&lt;BR&gt;Windows Live Favorites for Windows Live Toolbar --&amp;gt; MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}&lt;BR&gt;Windows Live installer --&amp;gt; MsiExec.exe /X{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}&lt;BR&gt;Windows Live Mail --&amp;gt; MsiExec.exe /I{184E7118-0295-43C4-B72C-1D54AA75AAF7}&lt;BR&gt;Windows Live Messenger --&amp;gt; MsiExec.exe /X{508CE775-4BA4-4748-82DF-FE28DA9F03B0}&lt;BR&gt;Windows Live Photo Gallery --&amp;gt; MsiExec.exe /X{2D4F6BE3-6FEF-4FE9-9D01-1406B220D08C}&lt;BR&gt;Windows Live Sign-in Assistant --&amp;gt; MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}&lt;BR&gt;Windows Live Toolbar --&amp;gt; "C:\Program Files\Windows Live Toolbar\UnInstall.exe" {D5A145FC-D00C-4F1A-9119-EB4D9D659750}&lt;BR&gt;Windows Live Toolbar --&amp;gt; MsiExec.exe /X{D5A145FC-D00C-4F1A-9119-EB4D9D659750}&lt;BR&gt;Windows Live Toolbar Extension (Windows Live Toolbar) --&amp;gt; MsiExec.exe /X{341201D4-4F61-4ADB-987E-9CCE4D83A58D}&lt;BR&gt;Windows Live Toolbar Feed Detector (Windows Live Toolbar) --&amp;gt; MsiExec.exe /X{328420FA-7638-4AB1-81DF-E0FECEFF24E3}&lt;BR&gt;Windows Live Writer --&amp;gt; MsiExec.exe /X{9176251A-4CC1-4DDB-B343-B487195EB397}&lt;BR&gt;Windows Live Writer Blog This for Mozilla Firefox --&amp;gt; MsiExec.exe /X{39E705C7-669D-42EC-90F0-38F376D24774}&lt;BR&gt;Windows Media Player Firefox Plugin --&amp;gt; MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}&lt;BR&gt;WinRAR archiver --&amp;gt; C:\Program Files\WinRAR\uninstall.exe&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- Application Event Log -------------------------------------------------------&lt;/P&gt;&lt;P&gt;Event Record #/Type12469 / Warning&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:54:10 PM&lt;BR&gt;Event ID/Source: 3 / LBTServ&lt;BR&gt;Event Description:&lt;BR&gt;The Bluetooth solution has encountered a problem and may not function properly.&lt;BR&gt;Keyboard connection failed after 2 retries (Timeout).&lt;/P&gt;&lt;P&gt;Event Record #/Type12465 / Success&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:53:52 PM&lt;BR&gt;Event ID/Source: 5617 / WinMgmt&lt;BR&gt;Event Description:&lt;/P&gt;&lt;P&gt;&lt;BR&gt;Event Record #/Type12464 / Success&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:53:51 PM&lt;BR&gt;Event ID/Source: 5615 / WinMgmt&lt;BR&gt;Event Description:&lt;/P&gt;&lt;P&gt;&lt;BR&gt;Event Record #/Type12455 / Success&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:53:41 PM&lt;BR&gt;Event ID/Source: 902 / Software Licensing Service&lt;BR&gt;Event Description:&lt;BR&gt;The Software Licensing service has started.&lt;/P&gt;&lt;P&gt;Event Record #/Type12431 / Warning&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:52:03 PM&lt;BR&gt;Event ID/Source: 1530 / profsvc&lt;BR&gt;Event Description:&lt;BR&gt;Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.  &lt;/P&gt;&lt;P&gt; DETAIL - &lt;BR&gt; 1 user registry handles leaked from \Registry\User\S-1-5-21-21629679-2298410412-1160609800-1001_Classes:&lt;BR&gt;Process 940 (\Device\HarddiskVolume1\WINDOWS\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-21629679-2298410412-1160609800-1001_CLASSES&lt;/P&gt;&lt;P&gt;-- Security Event Log ----------------------------------------------------------&lt;/P&gt;&lt;P&gt;No Errors/Warnings found.&lt;/P&gt;&lt;P&gt;&lt;BR&gt;-- System Event Log ------------------------------------------------------------&lt;/P&gt;&lt;P&gt;Event Record #/Type25891 / Error&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:53:50 PM&lt;BR&gt;Event ID/Source: 15016 / HTTP&lt;BR&gt;Event Description:&lt;BR&gt;\Device\Http\ReqQueueKerberos&lt;/P&gt;&lt;P&gt;Event Record #/Type25846 / Error&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:41:11 PM&lt;BR&gt;Event ID/Source: 7031 / Service Control Manager&lt;BR&gt;Event Description:&lt;BR&gt;Ad-Aware 2007 Service150001Restart the service&lt;/P&gt;&lt;P&gt;Event Record #/Type25845 / Error&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:40:51 PM&lt;BR&gt;Event ID/Source: 7034 / Service Control Manager&lt;BR&gt;Event Description:&lt;BR&gt;SBSD Security Center Service1&lt;/P&gt;&lt;P&gt;Event Record #/Type25839 / Error&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:39:51 PM&lt;BR&gt;Event ID/Source: 15016 / HTTP&lt;BR&gt;Event Description:&lt;BR&gt;\Device\Http\ReqQueueKerberos&lt;/P&gt;&lt;P&gt;Event Record #/Type25614 / Error&lt;BR&gt;Event Submitted/Written: 03/28/2008 04:09:38 PM&lt;BR&gt;Event ID/Source: 15016 / HTTP&lt;BR&gt;Event Description:&lt;BR&gt;\Device\Http\ReqQueueKerberos&lt;/P&gt;&lt;P&gt;-- End of Deckard's System Scanner: finished at 2008-03-28 17:09:46 ------------</description><pubDate>Fri, 28 Mar 2008 17:25:05 GMT</pubDate><dc:creator>Capuchin</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>Please disable [b]UAC[/b] [User Account Control].&lt;br&gt;1. Click Start and then click the picture at the top of the right column on the Start menu,this opens the User Accounts Control Panel.&lt;br&gt;2. Click Turn User Account Control on or off,you will have to respond to a UAC prompt to complete this action.&lt;br&gt;3. Clear the Use User Account Control (UAC) to help protect your computer check box and click OK.&lt;br&gt;4. Click Restart Now when prompted,after your computer restarts,UAC will be off.&lt;br&gt;You can repeat these steps to re-enable UAC,just click to select the check box in Step 3 when we've finished.&lt;br&gt;&lt;br&gt;Try Combofix again,if still no joy do the following:&lt;br&gt;Please download [b][url=http://www.techsupportforum.com/sectools/Deckard/dss.exe]Deckard's System Scanner (DSS)[/url][/b] and save it to your Desktop.&lt;br&gt;* Close all other windows before proceeding.&lt;br&gt;* Double-click on dss.exe and follow the prompts.&lt;br&gt;* When it has finished, DSS will open two Notepads: [b]main.txt[/b] and [b]extra.txt[/b]&lt;br&gt;* Use [b]Save As[/b] to save both Notepad files to your Desktop and [b]post them in your next reply.[/b]</description><pubDate>Thu, 27 Mar 2008 05:36:17 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>My APOLOGIES for the time taken but for the life of me combofix and I didn't get along. &lt;/P&gt;&lt;P&gt;from the first time I ran it it did like you said and opened a cmnd window and it looked like it was going fine until symantec which I cannot understand firewall butted in and I turned all things off but I guess windows fire wall takes over etc.  So honestly after my 5th time of trying again it would just sit with no anything no log file where you said it would be but there was a folder called combofix with a command exe in it but not to rush it I sat and waited played my ps3 until just now.  I did all the other stuff and hear is a new logfile from hijack.  my computer seems to be working and is not in shock but the Javupdate reg key along with the launcer key spybot seems to think is a huge threat isnt for some reason  on mine I read up on the launcher and it is misdiagnosed or something.  truly beat, i hope you understand&lt;/P&gt;&lt;P&gt;Logfile of Trend Micro HijackThis v2.0.2&lt;BR&gt;Scan saved at 3:14:29 AM, on 3/27/2008&lt;BR&gt;Platform: Windows Vista SP1 MSIE: Internet Explorer v7.00 (7.00.6001.18000)&lt;BR&gt;Boot mode: Normal&lt;/P&gt;&lt;P&gt;Running processes:&lt;BR&gt;C:\Windows\system32\Dwm.exe&lt;BR&gt;C:\Windows\Explorer.EXE&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe&lt;BR&gt;C:\Program Files\Logitech\SetPoint\LBTWiz.exe&lt;BR&gt;C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe&lt;BR&gt;C:\hp\support\hpsysdrv.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&lt;BR&gt;C:\Program Files\HP\HP Software Update\hpwuSchd2.exe&lt;BR&gt;C:\WINDOWS\RtHDVCpl.exe&lt;BR&gt;C:\WINDOWS\System32\rundll32.exe&lt;BR&gt;C:\WINDOWS\ehome\ehtray.exe&lt;BR&gt;C:\Windows\ehome\ehmsas.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnscfg.exe&lt;BR&gt;C:\Windows\system32\wbem\unsecapp.exe&lt;BR&gt;C:\hp\kbd\kbd.exe&lt;BR&gt;C:\Program Files\Spybot - Search &amp;amp; Destroy\SpybotSD.exe&lt;BR&gt;C:\Program Files\Internet Explorer\ieuser.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe&lt;BR&gt;C:\Windows\system32\Macromed\Flash\FlashUtil9c.exe&lt;BR&gt;C:\Program Files\Trend Micro\HijackThis\HijackThis.exe&lt;/P&gt;&lt;P&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = &lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = &lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = &lt;BR&gt;O1 - Hosts: ::1 localhost&lt;BR&gt;O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll&lt;BR&gt;O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll&lt;BR&gt;O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll&lt;BR&gt;O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll&lt;BR&gt;O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)&lt;BR&gt;O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll&lt;BR&gt;O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll&lt;BR&gt;O3 - Toolbar: &amp;amp;RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll&lt;BR&gt;O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete&lt;BR&gt;O4 - HKLM\..\Run: [Bluetooth Connection Assistant] C:\Program Files\Logitech\SetPoint\LBTWiz.exe -silent&lt;BR&gt;O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup&lt;BR&gt;O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"&lt;BR&gt;O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe&lt;BR&gt;O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"&lt;BR&gt;O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe&lt;BR&gt;O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart&lt;BR&gt;O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe&lt;BR&gt;O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE&lt;BR&gt;O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe&lt;BR&gt;O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')&lt;BR&gt;O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present&lt;BR&gt;O8 - Extra context menu item: &amp;amp;ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM&lt;BR&gt;O8 - Extra context menu item: &amp;amp;Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm&lt;BR&gt;O8 - Extra context menu item: Add to Windows &amp;amp;Live Favorites - &lt;A href="http://favorites.live.com/quickadd.aspx"&gt;http://favorites.live.com/quickadd.aspx&lt;/A&gt;&lt;BR&gt;O8 - Extra context menu item: Check &amp;amp;Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM&lt;BR&gt;O8 - Extra context menu item: Customize Menu - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html&lt;BR&gt;O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm&lt;BR&gt;O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm&lt;BR&gt;O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm&lt;BR&gt;O8 - Extra context menu item: Fill Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O8 - Extra context menu item: Lookup on Merriam Webster - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\Merriam Webster.HTM&lt;BR&gt;O8 - Extra context menu item: Lookup on Wikipedia - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\wikipedia.HTM&lt;BR&gt;O8 - Extra context menu item: RoboForm Toolbar - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O8 - Extra context menu item: Save Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage&lt;BR&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: &amp;amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O13 - Gopher Prefix: &lt;BR&gt;O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - &lt;A href="http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab"&gt;http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab&lt;/A&gt;&lt;BR&gt;O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - &lt;A href="http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab"&gt;http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab&lt;/A&gt;&lt;BR&gt;O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL&lt;BR&gt;O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe&lt;BR&gt;O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe&lt;BR&gt;O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe&lt;BR&gt;O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe&lt;BR&gt;O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe&lt;BR&gt;O23 - Service: HP Chasis Button Service (HPBtnSrv) - Unknown owner - c:\hp\HPEZBTN\HPBtnSrv.exe&lt;BR&gt;O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe&lt;BR&gt;O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe&lt;BR&gt;O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe&lt;BR&gt;O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe&lt;BR&gt;O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe&lt;BR&gt;O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe&lt;BR&gt;O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe&lt;BR&gt;O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe&lt;BR&gt;O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search &amp;amp; Destroy\SDWinSec.exe&lt;BR&gt;O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe&lt;BR&gt;O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe&lt;BR&gt;O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe&lt;/P&gt;&lt;P&gt;--&lt;BR&gt;End of file - 14777 bytes&lt;BR&gt;</description><pubDate>Thu, 27 Mar 2008 03:26:27 GMT</pubDate><dc:creator>Capuchin</dc:creator></item><item><title>RE: I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>Welcome:)&lt;br&gt;&lt;br&gt;Download and scan with [b]CCleaner[/b]:&lt;br&gt;[url]http://www.ccleaner.com/downloadbuilds.asp[/url]&lt;br&gt;1. Starting with v1.27.260, CCleaner installs the [b]Yahoo Toolbar[/b] as an option which IS checkmarked by default during the installation. IF you do NOT want it, REMOVE the checkmark when provided with the option OR download the toolbar-free Basic or Slim versions instead of the Standard Build.&lt;br&gt;&lt;br&gt;2. Before first use, select Options &gt; Advanced and UNCHECK [b]"Only delete files in Windows Temp folder older than 48 hours"[/b]&lt;br&gt;&lt;br&gt;3. Then select the items you wish to clean up.&lt;br&gt;&lt;br&gt;[b]In the Windows Tab:[/b]&lt;br&gt;* Clean all entries in the "Internet Explorer" section except Cookies.&lt;br&gt;* Clean all the entries in the "Windows Explorer" section.&lt;br&gt;* Clean all entries in the "System" section.&lt;br&gt;* Clean all entries in the "Advanced" section.&lt;br&gt;* Clean any others that you choose.&lt;br&gt;&lt;br&gt;[b]In the Applications Tab:[/b]&lt;br&gt;* Clean all except cookies in the Firefox/Mozilla section if you use it.&lt;br&gt;* Clean all in the Opera section if you use it.&lt;br&gt;* Clean Sun Java in the Internet Section.&lt;br&gt;* Clean any others that you choose.&lt;br&gt;&lt;br&gt;4. Click the "Run Cleaner" button.&lt;br&gt;5. A pop up box will appear advising this process will permanently delete files from your system.&lt;br&gt;6. Click "OK" and it will scan and clean your system.&lt;br&gt;7. Click "Exit" when done.&lt;br&gt;&lt;br&gt;&lt;br&gt;Download [b][url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color="blue"]Combofix[/color][/url][/b] by [b]sUBs[/b] and save to your desktop.&lt;br&gt;Alternative Combofix download link [b][url=http://subs.geekstogo.com/ComboFix.exe][color="blue"]HERE[/color][/url][/b].&lt;br&gt;[color="red"][b][u]Note[/u][/b] &lt;br&gt;It is important that it is saved directly to your desktop[/color]&lt;br&gt;&lt;br&gt;Now close any open browsers.&lt;br&gt;Double click on Combofix.exe and follow the prompts. &lt;br&gt;When it's finished it will produce a log. &lt;br&gt;[b]Post the entire contents of C:\ComboFix.txt into your next reply[/b]. &lt;br&gt;[color="red"][b][u]Note[/u][/b] &lt;br&gt;Do not mouseclick combofix's window or do anything else on your pc while it's running. &lt;br&gt;That may cause the program/system to freeze/hang. [/color]&lt;br&gt;Do NOT post the ComboFix-quarantined-files.txt unless I ask.&lt;br&gt;[b][color="RED"][U]Note[/U][/color][/b]&lt;br&gt;In case your Antivirus or any other realtime scanner is displaying an alert after you downloaded Combofix or while you use Combofix,please disable your scanner and redownload Combofix again.&lt;br&gt;Some scanners may see some combofix related components as suspicious and block or delete them while there's nothing wrong with them.&lt;br&gt;&lt;br&gt;Also post a new Hijackthis log please.</description><pubDate>Wed, 26 Mar 2008 03:51:09 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>I downloaded program quick start and it lead me to think my java version is hijacked</title><link>http://forum.tweaks.com/forum/Topic236792-29-1.aspx</link><description>Here is my hijack this, I had just did a cleanup of my system restores along with a trend micro free scan.  here is my log:&lt;/P&gt;&lt;P&gt;Logfile of Trend Micro HijackThis v2.0.2&lt;BR&gt;Scan saved at 6:58:11 PM, on 3/25/2008&lt;BR&gt;Platform: Windows Vista SP1 (WinNT 6.00.1905)&lt;BR&gt;MSIE: Internet Explorer v7.00 (7.00.6001.18000)&lt;BR&gt;Boot mode: Normal&lt;/P&gt;&lt;P&gt;Running processes:&lt;BR&gt;C:\Windows\system32\Dwm.exe&lt;BR&gt;C:\Windows\Explorer.EXE&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;C:\Program Files\Windows Defender\MSASCui.exe&lt;BR&gt;C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe&lt;BR&gt;C:\WINDOWS\RtHDVCpl.exe&lt;BR&gt;C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe&lt;BR&gt;C:\Program Files\HP\HP Software Update\hpwuSchd2.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&lt;BR&gt;C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe&lt;BR&gt;C:\Program Files\Logitech\SetPoint\LBTWiz.exe&lt;BR&gt;C:\WINDOWS\System32\rundll32.exe&lt;BR&gt;C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe&lt;BR&gt;C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe&lt;BR&gt;C:\WINDOWS\System32\rundll32.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnscfg.exe&lt;BR&gt;C:\Windows\system32\wbem\unsecapp.exe&lt;BR&gt;C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe&lt;BR&gt;C:\Windows\system32\SearchFilterHost.exe&lt;BR&gt;C:\Program Files\Trend Micro\HijackThis\HijackThis.exe&lt;/P&gt;&lt;P&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = &lt;A href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop"&gt;http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;amp;tp=iehome&amp;amp;locale=EN_US&amp;amp;c=74&amp;amp;bd=Pavilion&amp;amp;pf=desktop&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = &lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = &lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = &lt;A href="http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR"&gt;http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR&lt;/A&gt;&lt;BR&gt;R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = &lt;BR&gt;O1 - Hosts: ::1 localhost&lt;BR&gt;O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll&lt;BR&gt;O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll&lt;BR&gt;O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll&lt;BR&gt;O2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll&lt;BR&gt;O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)&lt;BR&gt;O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll&lt;BR&gt;O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll&lt;BR&gt;O3 - Toolbar: &amp;amp;RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll&lt;BR&gt;O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll&lt;BR&gt;O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll&lt;BR&gt;O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll&lt;BR&gt;O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide&lt;BR&gt;O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"&lt;BR&gt;O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe&lt;BR&gt;O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete&lt;BR&gt;O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe&lt;BR&gt;O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"&lt;BR&gt;O4 - HKLM\..\Run: [Bluetooth Connection Assistant] C:\Program Files\Logitech\SetPoint\LBTWiz.exe -silent&lt;BR&gt;O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart&lt;BR&gt;O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup&lt;BR&gt;O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit&lt;BR&gt;O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"&lt;BR&gt;O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide&lt;BR&gt;O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe&lt;BR&gt;O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')&lt;BR&gt;O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present&lt;BR&gt;O8 - Extra context menu item: &amp;amp;ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM&lt;BR&gt;O8 - Extra context menu item: &amp;amp;Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm&lt;BR&gt;O8 - Extra context menu item: Add to Windows &amp;amp;Live Favorites - &lt;A href="http://favorites.live.com/quickadd.aspx"&gt;http://favorites.live.com/quickadd.aspx&lt;/A&gt;&lt;BR&gt;O8 - Extra context menu item: Check &amp;amp;Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM&lt;BR&gt;O8 - Extra context menu item: Customize Menu - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html&lt;BR&gt;O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm&lt;BR&gt;O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm&lt;BR&gt;O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm&lt;BR&gt;O8 - Extra context menu item: Fill Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O8 - Extra context menu item: Lookup on Merriam Webster - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\Merriam Webster.HTM&lt;BR&gt;O8 - Extra context menu item: Lookup on Wikipedia - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\ieSpell\wikipedia.HTM&lt;BR&gt;O8 - Extra context menu item: RoboForm Toolbar - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O8 - Extra context menu item: Save Forms - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage&lt;BR&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll&lt;BR&gt;O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: &amp;amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll&lt;BR&gt;O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html&lt;BR&gt;O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html&lt;BR&gt;O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk (file missing)&lt;BR&gt;O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - &lt;A href="file://C:\Program"&gt;file://C:\Program&lt;/A&gt; Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html&lt;BR&gt;O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll&lt;BR&gt;O13 - Gopher Prefix: &lt;BR&gt;O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - &lt;A href="http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab"&gt;http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab&lt;/A&gt;&lt;BR&gt;O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - &lt;A href="http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab"&gt;http://javadl-esd.sun.com/update/1.6.0/jinstall-6u5-windows-i586-jc.cab&lt;/A&gt;&lt;BR&gt;O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL&lt;BR&gt;O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL&lt;BR&gt;O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe&lt;BR&gt;O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe&lt;BR&gt;O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe&lt;BR&gt;O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe&lt;BR&gt;O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe&lt;BR&gt;O23 - Service: HP Chasis Button Service (HPBtnSrv) - Unknown owner - c:\hp\HPEZBTN\HPBtnSrv.exe&lt;BR&gt;O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe&lt;BR&gt;O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe&lt;BR&gt;O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe&lt;BR&gt;O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe&lt;BR&gt;O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe&lt;BR&gt;O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe&lt;BR&gt;O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe&lt;BR&gt;O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe&lt;BR&gt;O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe&lt;BR&gt;O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search &amp;amp; Destroy\SDWinSec.exe&lt;BR&gt;O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe&lt;BR&gt;O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe&lt;BR&gt;O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe&lt;/P&gt;&lt;P&gt;--&lt;BR&gt;End of file - 15242 bytes&lt;BR&gt;</description><pubDate>Tue, 25 Mar 2008 19:05:13 GMT</pubDate><dc:creator>Capuchin</dc:creator></item></channel></rss>