View Single Post
Old 10-20-2007, 10:28 PM   #5 (permalink)
SANDWICHMASTA
Registered User
 
Join Date: Oct 2007
Posts: 22
OS: xp sp2


Re: Multiple serious problems...

Hello LonnyRJones, and thank you for helping me out ^_^

Main txt:
Deckard's System Scanner v20071014.68
Run by Chris on 2007-10-20 00:50:15
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Unable to create WMI object; The operation completed successfully.


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as Chris.exe) -----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:50:57 AM, on 10/20/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
F:\chris's Shiz\Programs and such\ramboosteraksdasd\RAMBoosterPro.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
F:\chris's Shiz\Programs and such\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Chris.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.yahoo.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [RAMBoosterPro] "F:\chris's Shiz\Programs and such\ramboosteraksdasd\RAMBoosterPro.exe" auto
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [XboxStat] "c:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKUS\S-1-5-21-329068152-1708537768-839522115-1007\..\Run: [SetDefaultMIDI] MIDIDef.exe (User '?')
O4 - Global Startup: Run Nintendo Wi-Fi USB Connector Registration Tool.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: AOL Instant Messenger (SM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Dice Derby by pogo - http://game1.pogo.com/applet-6.2.4.3...-ob-assets.cab
O16 - DPF: Phlinx by pogo - http://game1.pogo.com/applet-6.2.4.3...-ob-assets.cab
O16 - DPF: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} (Microsoft VM) - file://D:\GAMES\msjavx86_3805.exe
O16 - DPF: {0A50726E-51A2-42BB-8392-98F050C40A10} (SkillJamLoader Class) - http://aol.skilljam.com/ssp/SkillJamLoader.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1A781DED-C22D-4153-3213-A3211E29DF13} (GameDesire Card Games) - http://67.15.101.3/g_bin/eng/cards_2_0_0_65.cab
O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn...taller_gmn.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {41D1977F-4161-4720-800F-EA4903983A38} (Jigsaw Genius Control) - http://www.worldwinner.com/games/v42/jigsaw/jigsaw.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {94299420-321F-4FF9-A247-62A23EBB640B} (WordMojo Control) - http://www.worldwinner.com/games/v45...o/wordmojo.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10...o.cab34246.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://aolsvc.aol.com/onlinegames/be...ploader_v7.cab
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6497 bytes

-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

3 catchme - c:\docume~1\chris\locals~1\temp\catchme.sys (file missing)
2 CdaD10BA - c:\windows\system32\drivers\cdad10ba.sys <Not Verified; Macrovision Europe Ltd; Security Windows NT>
3 MAC607 (MAC607 Filter) - c:\windows\system32\drivers\mac607.sys
2 MDC8021X (AEGIS Protocol (IEEE 802.1x) v2.3.1.9) - c:\windows\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>
3 MR97310_VGA_DUAL_CAMERA (MR97310 VGA Dual Mode Camera) - c:\windows\system32\drivers\mr97310v.sys <Not Verified; Mars Semiconductor Corp.; USB Dual-Mode Camera>
3 pfc (Padus ASPI Shell) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus(R) ASPI Shell>
3 ROOTMODEM (Microsoft Legacy Modem Driver) - c:\windows\system32\drivers\rootmdm.sys <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
3 RT25USBAP (Nintendo Wi-Fi USB Connector Service) - c:\windows\system32\drivers\rt25usbap.sys <Not Verified; Ralink Technology Inc.; Ralink 802.11g Wireless USB Adapters>
3 StillCam (Still Serial Digital Camera Driver) - c:\windows\system32\drivers\serscan.sys <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
3 USR1806 (U.S. Robotics Faxmodem Driver 1806) - c:\windows\system32\drivers\usr1806.sys <Not Verified; U.S. Robotics, Inc.; U.S. Robotics 56K Win INT>
3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys <Not Verified; America Online, Inc.; Wan Miniport (ATW)>
2 windrvNT - c:\windows\system32\windrvnt.sys (file missing)
3 XBox (XBox Filter) - c:\windows\system32\drivers\xbox.sys
3 XPAD910 (XPADFilter Service 910) - c:\windows\system32\drivers\xpad910.sys <Not Verified; Compuware Corporation; DriverStudio>

-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

2 Bonjour Service (##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##) - c:\program files\bonjour\mdnsresponder.exe
3 FLEXnet Licensing Service - c:\program files\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe


-- Device Manager: Disabled ----------------------------------------------------

Unable to create WMI object.

-- Scheduled Tasks -------------------------------------------------------------

2007-10-10 19:38:15 370 --a------ C:\WINDOWS\Tasks\RegCure.job
2007-10-10 19:38:15 436 --a------ C:\WINDOWS\Tasks\RegCure Program Check.job
2007-10-04 13:15:00 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2005-06-15 09:45:52 412 --a------ C:\WINDOWS\Tasks\Symantec NetDetect.job


-- Files created between 2007-09-20 and 2007-10-20 -----------------------------

2007-10-15 01:05:09 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-10-11 12:46:20 0 d-------- C:\Documents and Settings\Administrator.MIKE6-1-81\Application Data\Mozilla
2007-10-10 19:38:11 0 d-------- C:\Program Files\RegCure
2007-10-10 01:01:37 0 d-------- C:\RM
2007-10-10 00:52:17 0 d-------- C:\Program Files\Trend Micro
2007-10-09 00:30:02 0 d--h----- C:\Documents and Settings\Administrator.MIKE6-1-81\Templates
2007-10-09 00:30:02 0 dr------- C:\Documents and Settings\Administrator.MIKE6-1-81\Start Menu
2007-10-09 00:30:02 0 dr-h----- C:\Documents and Settings\Administrator.MIKE6-1-81\SendTo
2007-10-09 00:30:02 0 d--h----- C:\Documents and Settings\Administrator.MIKE6-1-81\Recent
2007-10-09 00:30:02 0 d--h----- C:\Documents and Settings\Administrator.MIKE6-1-81\PrintHood
2007-10-09 00:30:02 0 d--h----- C:\Documents and Settings\Administrator.MIKE6-1-81\NetHood
2007-10-09 00:30:02 0 d-------- C:\Documents and Settings\Administrator.MIKE6-1-81\My Documents
2007-10-09 00:30:02 0 d--h----- C:\Documents and Settings\Administrator.MIKE6-1-81\Local Settings
2007-10-09 00:30:02 0 d-------- C:\Documents and Settings\Administrator.MIKE6-1-81\Favorites
2007-10-09 00:30:02 0 d-------- C:\Documents and Settings\Administrator.MIKE6-1-81\Desktop
2007-10-09 00:30:02 0 d---s---- C:\Documents and Settings\Administrator.MIKE6-1-81\Cookies
2007-10-09 00:30:02 0 dr-h----- C:\Documents and Settings\Administrator.MIKE6-1-81\Application Data
2007-10-09 00:30:02 0 d---s---- C:\Documents and Settings\Administrator.MIKE6-1-81\Application Data\Microsoft
2007-10-09 00:30:01 786432 --ah----- C:\Documents and Settings\Administrator.MIKE6-1-81\NTUSER.DAT
2007-10-08 16:23:03 0 d-------- C:\Program Files\AOD
2007-10-08 14:47:14 0 d-------- C:\Documents and Settings\mike.MIKE6-1-81\Application Data\Media Player Classic
2007-10-08 14:46:54 0 d-------- C:\Documents and Settings\mike.MIKE6-1-81\Application Data\DivX
2007-10-08 14:45:21 221184 --a------ C:\WINDOWS\system32\wmpns.dll <Not Verified; Microsoft Corporation; Microsoft(R) Windows Media Player>
2007-10-08 02:08:27 125 --a------ C:\WINDOWS\system32\svchost
2007-10-04 18:04:52 0 d-------- C:\Program Files\Trillian
2007-10-04 02:07:54 0 d-------- C:\Documents and Settings\Chris\Incomplete
2007-10-04 02:07:44 0 d-------- C:\Documents and Settings\Chris\Application Data\LimeWire
2007-10-04 02:07:24 0 d-------- C:\Program Files\LimeWire
2007-10-03 11:44:25 0 d-------- C:\Program Files\Common Files\Blizzard Entertainment
2007-10-03 11:41:20 0 d-------- C:\Program Files\World of Warcraft
2007-09-30 22:52:46 0 d-------- C:\Documents and Settings\Chris\Application Data\Sun
2007-09-30 20:41:31 0 d-------- C:\Program Files\Java
2007-09-30 20:40:46 0 d-------- C:\Program Files\Common Files\Java
2007-09-30 20:40:26 671 --a------ C:\WINDOWS\mozver.dat
2007-09-29 04:56:11 299392 --a------ C:\WINDOWS\system32\imon.dll <Not Verified; Eset; NOD32 Antivirus System>
2007-09-27 17:56:09 0 d---s---- C:\Documents and Settings\Chris\UserData
2007-09-27 12:08:59 0 d-------- C:\Documents and Settings\mike.MIKE6-1-81\Application Data\Mozilla
2007-09-26 02:09:12 0 d-------- C:\Program Files\WiFiConnector
2007-09-26 02:07:46 162944 --a------ C:\WINDOWS\system32\drivers\RT25USBAP.SYS <Not Verified; Ralink Technology Inc.; Ralink 802.11g Wireless USB Adapters>
2007-09-26 01:54:53 0 d-------- C:\Program Files\uTorrent
2007-09-26 01:54:50 0 d-------- C:\Documents and Settings\Chris\Application Data\uTorrent
2007-09-26 01:52:18 0 d-------- C:\Program Files\DSL Speed
2007-09-25 20:25:31 0 d-------- C:\Program Files\Yahoo!
2007-09-25 20:25:20 929792 -ra------ C:\WINDOWS\system32\PRISME5.dll <Not Verified; Meetinghouse Data Communications; AEGIS Client API>
2007-09-25 20:25:20 15781 -ra------ C:\WINDOWS\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.3.1.9>
2007-09-25 20:24:16 0 d-------- C:\Program Files\2Wire


-- Find3M Report ---------------------------------------------------------------

2007-10-15 01:05:09 0 d-------- C:\Program Files\Common Files
2007-10-11 12:39:13 0 d-------- C:\Program Files\Common Files\AOL
2007-10-11 12:39:12 0 d-------- C:\Documents and Settings\Chris\Application Data\AOL
2007-10-08 16:51:07 0 d-------- C:\Documents and Settings\Chris\Application Data\Creative
2007-10-01 22:35:02 0 d-------- C:\Program Files\Microsoft Xbox 360 Accessories
2007-09-26 02:04:08 0 d-------- C:\Program Files\Common Files\Symantec Shared
2007-09-26 02:01:34 0 d-------- C:\Program Files\Symantec
2007-09-25 20:25:19 0 d--h----- C:\Program Files\InstallShield Installation Information


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [02/24/2005 07:32 AM]
"nwiz"="nwiz.exe" [02/24/2005 07:32 AM C:\WINDOWS\system32\nwiz.exe]
"AOL Spyware Protection"="C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe" []
"P17Helper"="P17.dll" [05/03/2005 04:38 AM C:\WINDOWS\system32\P17.dll]
"CTSysVol"="C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [10/31/2005 10:51 AM]
"UpdReg"="C:\WINDOWS\UpdReg.EXE" [05/11/2000 01:00 AM]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\point32.exe" [03/23/2005 04:26 PM]
"RAMBoosterPro"="F:\chris's Shiz\Programs and such\ramboosteraksdasd\RAMBoosterPro.exe" [08/02/2006 09:49 PM]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [06/29/2007 06:24 AM]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [05/11/2007 03:06 AM]
"PRISMSVR.EXE"="C:\WINDOWS\system32\PRISMSVR.exe" []
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [09/29/2007 12:40 PM]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [09/25/2007 01:11 AM]
"XboxStat"="c:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" [09/26/2007 06:05 PM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SetDefaultMIDI"="MIDIDef.exe" [12/03/2002 02:16 AM C:\WINDOWS\MIDIDEF.EXE]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Spike^Start Menu^Programs^Startup^PowerReg Scheduler.exe]
path=C:\Documents and Settings\Spike\Start Menu\Programs\Startup\PowerReg Scheduler.exe
backup=C:\WINDOWS\pss\PowerReg Scheduler.exeStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AIM]
C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOL Fast Start]
"C:\Program Files\America Online 9.0c\AOL.EXE" -b

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOL Spyware Protection]
"C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOLDialer]
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BMUpdate]
C:\WINDOWS\system32\BMUpdate.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HostManager]
C:\Program Files\Common Files\AOL\1118837898\EE\AOLHostManager.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndexSearch]
C:\Program Files\Scansoft\PaperPort\IndexSearch.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mirabilis ICQ]
C:\Program Files\ICQ\NDetect.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OneTouch Monitor]
C:\Program Files\Visioneer OneTouch\OneTouchMon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"C:\Program Files\QuickTime\qttask.exe" -atboottime

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
"C:\Program Files\Winamp\Winampa.exe"


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
AutoRun\command- G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{390db900-2534-11dc-a1d3-00038a000015}]
AutoRun\command- G:\LaunchU3.exe -a




-- End of Deckard's System Scanner: finished at 2007-10-20 00:51:41 ------------

For some reason I cannot use the Panda or Kapersky scanners, there maybe something wrong with my ActiveX (IE as a whole is completly screwed up, nothing displays right). So sorry I couldnt post any logs from those, hopefuly DSS's log will help for now.
Attached Files
File Type: txt extra.txt (20.0 KB, 4 views)
SANDWICHMASTA is offline