View Single Post
Old 10-15-2005, 01:35 PM   #13 (permalink)
jaddy814
Registered User
 
Join Date: Oct 2005
Posts: 16
OS: WinXP


When I pressed "Yes" to promp a restart on my computer after doing that stuff in HiJackThis, I got a blue screen and on top it said, "c000021a fatal system error". I turned the power off my computer and started it up again. I assumed the file was deleted, but I can't tell. I proceeded with the Registry Search, and this is the log I recieved after searching buddy....


REGEDIT4

; Registry Search by Bobbi Flekman
; Version: 1.0.2.1

; Results at 10/15/2005 3:30:35 PM for strings:
; 'buddy'
; Strings excluded from search:
; (None)
; Search in:
; Registry Keys Registry Values Registry Data
; HKEY_LOCAL_MACHINE HKEY_USERS


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService]
@="BuddyService Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService\CurVer]
@="Buddy.BuddyService.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService.1]
@="BuddyService Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Buddy.BuddyService.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{189504B8-50D1-4AA8-B4D6-95C8F58A6414}]
@="SuperBuddy Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{189504B8-50D1-4AA8-B4D6-95C8F58A6414}\ProgID]
@="Sb.SuperBuddy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{189504B8-50D1-4AA8-B4D6-95C8F58A6414}\VersionIndependentProgID]
@="Sb.SuperBuddy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDDDDBC-3528-41AA-AA6E-237AA8092C08}]
@="BuddyService Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDDDDBC-3528-41AA-AA6E-237AA8092C08}\InprocServer32]
@="C:\\PROGRA~1\\AOLCOM~1\\Buddy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDDDDBC-3528-41AA-AA6E-237AA8092C08}\ProgID]
@="Buddy.BuddyService.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDDDDBC-3528-41AA-AA6E-237AA8092C08}\VersionIndependentProgID]
@="Buddy.BuddyService"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A98ABF1C-107C-44E7-9254-2C3FF435D0C2}]
@="SuperBuddyData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A98ABF1C-107C-44E7-9254-2C3FF435D0C2}\ProgID]
@="Sb.SuperBuddyData.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A98ABF1C-107C-44E7-9254-2C3FF435D0C2}\VersionIndependentProgID]
@="Sb.SuperBuddyData"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{01B7DEEE-5988-4264-A557-A3E6ABF964C7}]
@="ISuperBuddyConfig"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{045EA296-D02B-46AB-AEC9-70DFCE0C7582}]
@="DISuperBuddyEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{22C652DE-4FEA-47DE-AAB0-12D6EC80B073}]
@="ISuperBuddy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66CA0236-D197-4424-B307-A474C4F8B4D7}]
@="IBuddyService"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CC0DA561-8BCC-4BE2-BF42-F0B66F98AAC5}]
@="_IBuddyServiceEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F36D755D-17E6-404E-954F-0FC07574C78D}]
@="IRTCBuddyEvent"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy]
@="SuperBuddy Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy\CurVer]
@="Sb.SuperBuddy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy.1]
@="SuperBuddy Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddy.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData]
@="SuperBuddyData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData\CurVer]
@="Sb.SuperBuddyData.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData.1]
@="SuperBuddyData Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Sb.SuperBuddyData.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{155B3F27-CDEE-4FE2-8CC5-8D08882FDE15}\1.0]
@="Buddy 1.0 Type Library"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{155B3F27-CDEE-4FE2-8CC5-8D08882FDE15}\1.0\0\win32]
@="C:\\PROGRA~1\\AOLCOM~1\\Buddy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Bargain Buddy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyIn]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyIn\.current]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyIn\.current]
@="C:\\Documents and Settings\\All Users\\Application Data\\AOL\\C_America Online 9.0\\aolshare\\sounds\\US\\Default\\buddyin.wav"

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyOut]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyOut\.current]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\AppEvents\Schemes\Apps\AOL_US(Default Sounds)\BuddyOut\.current]
@="C:\\Documents and Settings\\All Users\\Application Data\\AOL\\C_America Online 9.0\\aolshare\\sounds\\US\\Default\\buddyout.wav"

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jad81486\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jad81486\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jad81486\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jad81486\WindowPos]
"BuddyMain"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jad81486\WindowPos]
"BuddyListSetup"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\Buddy]
"FlashBuddyWindow"=dword:00000000

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\WindowPos]
"BuddyMain"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\WindowPos]
"BuddyListSetup"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\WindowPos]
"BuddyMainNoSideBarLeft"=dword:00000000

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\jador814\WindowPos]
"BuddyMainNoSideBarRight"=dword:00000000

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\Buddy]
"FlashBuddyWindow"=dword:00000000

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\BuddyAlertSounds]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\DialogPos]
"AddBuddyDlg"=hex:84,01,00,00,c2,00,00,00

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\WindowPos]
"BuddyListSetup"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\lego814\WindowPos]
"BuddyMain"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\meggep21\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\meggep21\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\meggep21\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\meggep21\WindowPos]
"BuddyMain"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\rachzlicious\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\rachzlicious\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\rachzlicious\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\rachzlicious\Buddy]
"FlashBuddyWindow"=dword:00000000

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\rth3681\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\weggles21\Buddy]

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\weggles21\Buddy]
"BuddyInviteFile"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\weggles21\Buddy]
"BuddyListFileMerged"=dword:00000001

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\America Online\AOL Instant Messenger (TM)\CurrentVersion\Users\weggles21\WindowPos]
"BuddyMain"=hex:2c,00,00,00,00,00,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,\

[HKEY_USERS\S-1-5-21-1713871582-3272965051-120269989-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bargain-buddy.net]

; End Of The Log...

Here is a new HiJackThis log if ya need it...

Logfile of HijackThis v1.99.1
Scan saved at 3:35:13 PM, on 10/15/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\mcshield.exe
C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\DOCUME~1\JEFFDO~1\LOCALS~1\Temp\Temporary Directory 10 for hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/...gameloader.cab
O16 - DPF: {001EE746-A1F9-460E-80AD-269E088D6A01} (Infotl Control) - http://site.ebrary.com.online.librar.../ebraryRdr.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {BAC01377-73DD-4796-854D-2A8997E3D68A} (Yahoo! Photos Easy Upload Tool Class) - http://us.dl1.yimg.com/download.yaho...opper1_4us.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
jaddy814 is offline