Below are the three logs that you requested. Thank you for your help.
Incident
Status Location
Potentially unwanted tool:application/funweb
Not disinfected C:\WINNT\DOWNLOADED PROGRAM
FILES\f3initialsetup1.0.0.8.inf
Adware:adware/cws.searchmeup
Not disinfected C:\WINNT\SYSTEM32\bose.ico
Spyware:spyware/whazit
Not disinfected C:\WINNT\SYSTEM32\fiz1
Adware:adware/navipromo
Not disinfected C:\WINNT\SYSTEM32\msegcompid.dll
Adware:adware/dealhelper
Not disinfected C:\WINNT\dsearch1.bin
Adware:adware/gator
Not disinfected C:\WINNT\GatorGainInstaller.log
Adware:adware/adurl
Not disinfected C:\WINNT\icont.exe
Adware:adware/delfinmedia
Not disinfected C:\keys.ini
Adware:adware/downloadware
Not disinfected C:\PROGRAM FILES\DownloadWare(2)
Adware:adware/novo
Not disinfected C:\WINNT\SYSTEM32\CdmFiles
Adware:adware/activshopper
Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch
Not disinfected
HKEY_CLASSES_ROOT\CLSID\{147A976E-EEE1-4377-8EA7-4716E4CDD239}
Potentially unwanted tool:application/errorguard
Not disinfected
HKEY_CLASSES_ROOT\CLSID\{205FF73B-CA67-11D5-99DD-444553540006}
Adware:adware/sahagent
Not disinfected Windows Registry
Spyware:Cookie/24/7 Realmedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@247realmedia[1].txt
Spyware:Cookie/2o7
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@2o7[1].txt
Spyware:Cookie/YieldManager
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt
Spyware:Cookie/Adrevolver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@adrevolver[1].txt
Spyware:Cookie/Adrevolver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@adrevolver[2].txt
Spyware:Cookie/PointRoll
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@ads.pointroll[2].txt
Spyware:Cookie/Advertising
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@advertising[2].txt
Spyware:Cookie/Apmebf
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@apmebf[2].txt
Spyware:Cookie/Atlas DMT
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@atdmt[2].txt
Spyware:Cookie/Atwola
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@atwola[1].txt
Spyware:Cookie/Bilbo.counted
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bilbo.counted[1].txt
Spyware:Cookie/Bluestreak
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bluestreak[1].txt
Spyware:Cookie/bravenetA
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bravenet[2].txt
Spyware:Cookie/Zedo
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@c5.zedo[1].txt
Spyware:Cookie/Casalemedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@casalemedia[2].txt
Spyware:Cookie/Com.com
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@com[1].txt
Spyware:Cookie/Doubleclick
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@doubleclick[2].txt
Spyware:Cookie/Entrepreneur
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@entrepreneur[1].txt
Spyware:Cookie/FastClick
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@fastclick[1].txt
Spyware:Cookie/Hitbox
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@hitbox[2].txt
Spyware:Cookie/Maxserving
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@maxserving[2].txt
Spyware:Cookie/Mediaplex
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@mediaplex[2].txt
Spyware:Cookie/Overture
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@overture[2].txt
Spyware:Cookie/Overture
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@perf.overture[1].txt
Spyware:Cookie/QkSrv
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@qksrv[2].txt
Spyware:Cookie/QuestionMarket
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@questionmarket[2].txt
Spyware:Cookie/RealMedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@realmedia[1].txt
Spyware:Cookie/Server.iad.Liveperson
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@server.iad.liveperson[2].txt
Spyware:Cookie/Statcounter
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@statcounter[1].txt
Spyware:Cookie/Tribalfusion
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@tribalfusion[1].txt
Spyware:Cookie/Adserver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@z1.adserver[1].txt
Spyware:Cookie/Zedo
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@zedo[1].txt
Spyware:Cookie/24/7 Realmedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@247realmedia[1].txt
Spyware:Cookie/2o7
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@2o7[1].txt
Spyware:Cookie/YieldManager
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt
Spyware:Cookie/Adrevolver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@adrevolver[1].txt
Spyware:Cookie/Adrevolver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@adrevolver[2].txt
Spyware:Cookie/PointRoll
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@ads.pointroll[2].txt
Spyware:Cookie/Advertising
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@advertising[2].txt
Spyware:Cookie/Apmebf
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@apmebf[2].txt
Spyware:Cookie/Atlas DMT
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@atdmt[2].txt
Spyware:Cookie/Atwola
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@atwola[1].txt
Spyware:Cookie/Bilbo.counted
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bilbo.counted[1].txt
Spyware:Cookie/Bluestreak
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bluestreak[1].txt
Spyware:Cookie/bravenetA
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@bravenet[2].txt
Spyware:Cookie/Zedo
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@c5.zedo[1].txt
Spyware:Cookie/Casalemedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@casalemedia[2].txt
Spyware:Cookie/Com.com
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@com[1].txt
Spyware:Cookie/Doubleclick
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@doubleclick[2].txt
Spyware:Cookie/Entrepreneur
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@entrepreneur[1].txt
Spyware:Cookie/FastClick
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@fastclick[1].txt
Spyware:Cookie/Hitbox
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@hitbox[2].txt
Spyware:Cookie/Maxserving
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@maxserving[2].txt
Spyware:Cookie/Mediaplex
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@mediaplex[2].txt
Spyware:Cookie/Overture
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@overture[2].txt
Spyware:Cookie/Overture
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@perf.overture[1].txt
Spyware:Cookie/QkSrv
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@qksrv[2].txt
Spyware:Cookie/QuestionMarket
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@questionmarket[2].txt
Spyware:Cookie/RealMedia
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@realmedia[1].txt
Spyware:Cookie/Server.iad.Liveperson
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@server.iad.liveperson[2].txt
Spyware:Cookie/Statcounter
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@statcounter[1].txt
Spyware:Cookie/Tribalfusion
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@tribalfusion[1].txt
Spyware:Cookie/Adserver
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@z1.adserver[1].txt
Spyware:Cookie/Zedo
Not disinfected C:\Documents and
Settings\Owner\Cookies\owner@zedo[1].txt
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\98E664D6-2DC4-4764-B249-75A54A\3C3851CA-772D-44F9-97CE-FEE9F9
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\98E664D6-2DC4-4764-B249-75A54A\C3A4A85E-739C-458D-B453-6CCB65
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\98E664D6-2DC4-4764-B249-75A54A\F1ACF35A-6E36-484F-B17A-80637C
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\98E664D6-2DC4-4764-B249-75A54A\F3ACAB4B-A705-40BC-B568-9FD7E7
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\9C8213A4-35BC-472F-A1CB-E621BD\BBD769B0-84C1-4E52-A4D3-33D9AB
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\9C8213A4-35BC-472F-A1CB-E621BD\DB4F1A98-5CE9-4FAD-B284-90CFAB
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\9C8213A4-35BC-472F-A1CB-E621BD\E56D3DF2-8AAD-4495-BCB4-F73145
Adware:Adware/Exact.BargainBuddy
Not disinfected C:\Program Files\Microsoft
AntiSpyware\Quarantine\9C8213A4-35BC-472F-A1CB-E621BD\F6A95355-9143-4A67-900F-9F456A
Adware:Adware/ActivShopper
Not disinfected C:\Program Files\TBONAS\TBONcomp.dll
Potentially unwanted tool:Application/FunWeb
Not disinfected C:\WINNT\Downloaded Program
Files\f3initialsetup1.0.0.8.inf
Spyware:Spyware/SafeSurf
Not disinfected C:\WINNT\system32\InstallerV4.exe
Adware:Adware/PurityScan
Not disinfected C:\WINNT\system32\??sembly\winspool.exe
Adware:Adware/PurityScan
Not disinfected C:\WINNT\system32\??sembly\wuauboot.exe
Ad-Aware SE Personal
Adobe Acrobat 5.0
AltaVista FreeAccess
America Online (Choose which version to remove)
ArcSoft PhotoImpression
BroadJump Client Foundation
CardRd81
CCScore
CleanUp!
CR2
Do More 7.0
DVD
eAcceleration
Easy CD Creator 5 Basic
EPSON Copy Utility
EPSON Photo Print
EPSON Printer Software
EPSON Smart Panel
EPSON TWAIN 5
EPSON User's Guide
ESSBrwr
ESSCDBK
ESScore
ESSCT
ESSEMAIL
ESSgui
ESShelp
ESSini
ESSPCD
ESSPDock
ESSSONIC
ESSTOOLS
essvcpt
ESSvpaht
ESSvpot
ewido anti-malware
Gateway Drivers and Applications Recovery
Gateway Ink Monitor
Gateway Rhapsody
Google Earth
HijackThis 1.99.1
HLPIndex
HLPPDOCK
HLPSFO
IE Host R3
Intel(R) 537EP Data Fax Modem
Intel(R) PRO Network Adapters and Drivers
Intel(R) PROSet
Kodak EasyShare software
KSU
LiveReg (Symantec Corporation)
LiveUpdate 1.80 (Symantec Corporation)
Macromedia Flash Player 8
Macromedia Shockwave Player
Microsoft .NET Framework (English)
Microsoft .NET Framework (English) v1.0.3705
Microsoft AntiSpyware
Microsoft Encarta Encyclopedia Standard 2003
Microsoft Learning and Research Plus Support Files
Microsoft Money 2003
Microsoft Money 2003 System Pack
Microsoft Picture It! Photo 7.0
Microsoft Streets and Trips 2002
Microsoft Word 2002
Microsoft Works 2003 Setup Launcher
Microsoft Works 7.0
Microsoft Works Suite Add-in for Microsoft Word
Monitor 1.0
Mozilla Firefox (1.0.4)
MSN Internet Software
MSXP 1.0
MUSICMATCH® Jukebox
nkyjih
Notifier
OfotoXMI
OTtBP
OTtBPSDK
Panda ActiveScan
PC-Doctor for Windows
PhotoShow Express 4
pressplay
PS/2 Millennium Keyboard
Quicken 2003 New User Edition
QuickTime
RealPlayer Basic
SBC Self Support Tool
SBC Yahoo! Applications
ScanToWeb
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 9 (KB911565)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893066)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB896688)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB903235)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB908531)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912812)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913446)
SFR
SFR2
SHASTA
SKIN0001
SKINXSDK
Snood for Windows version 3.0-W
Spybot - Search & Destroy 1.4
Stop-Sign System Protect
SysSnap
Update for Windows XP (KB894391)
Update for Windows XP (KB896727)
Update for Windows XP (KB898461)
Update for Windows XP (KB910437)
Visual IP InSight(SBC)
VPRINTOL
Windows Genuine Advantage v1.3.0254.0
Windows Installer 3.1 (KB893803)
Windows Media Format Runtime
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB885884
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893086
WIRELESS
YourEnhance 1.0
Plain Text Attachment [ Download File | Save to Yahoo! Briefcase ]
Logfile of HijackThis v1.99.1
Scan saved at 2:20:08 PM, on 4/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\Explorer.EXE
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINNT\System32\hkcmd.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Yahoo!\Yahoo! Music Engine\ymetray.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\Visual Networks\Visual IP InSight\SBC\IPClient.exe
C:\Program Files\Visual Networks\Visual IP InSight\SBC\IPMon32.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\WINNT\system32\SK9910DM.EXE
C:\Program Files\Gateway Utilities\GWInkMonitor.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\PROGRA~1\SIMPLE~1\PHOTOS~1\data\xtras\mssysmgr.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Microsoft Money\System\mnyexpr.exe
C:\Program Files\Kodak\Kodak EasyShare Software\bin\EasyShare.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINNT\wanmpsvc.exe
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\WINNT\system32\wscntfy.exe
C:\WINNT\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Yahoo!\browser\ybrowser.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINNT\system32\NOTEPAD.EXE
C:\Documents and Settings\Owner\Desktop\Computer
Tools\HJT\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://yahoo.sbc.com/dsl
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://yahoo.sbc.com/dsl
F2 - REG:system.ini: UserInit=C:\WINNT\system32\Userinit.exe
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH
Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft
AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [YBrowser] C:\Program
Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program
Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ymetray] "C:\Program Files\Yahoo!\Yahoo! Music
Engine\ymetray.exe"
O4 - HKLM\..\Run: [YOP] C:\PROGRA~1\Yahoo!\YOP\yop.exe /autostart
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client
Foundation\CFD.exe
O4 - HKLM\..\Run: [IPInSightLAN 02] "C:\Program Files\Visual
Networks\Visual IP InSight\SBC\IPClient.exe" -l
O4 - HKLM\..\Run: [IPInSightMonitor 02] "C:\Program Files\Visual
Networks\Visual IP InSight\SBC\IPMon32.exe"
O4 - HKLM\..\Run: [WorkFlo] D:\BrdJmp\WorkFlow.exe
O4 - HKLM\..\Run: [Motive SmartBridge]
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [Keyboard Preload Check] C:\OEMDRVRS\KEYB\Preload.exe
/DEVID: /CLASS:Keyboard /RunValue:"Keyboard Preload Check"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Hot Key Kbd 9910 Daemon] SK9910DM.EXE
O4 - HKLM\..\Run: [Gateway Ink Monitor] "C:\Program Files\Gateway
Utilities\GWInkMonitor.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec
Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "c:\Program Files\Roxio\Easy CD
Creator 5\DirectCD\DirectCD.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN
Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager]
C:\PROGRA~1\SIMPLE~1\PHOTOS~1\data\xtras\mssysmgr.exe
O4 - HKCU\..\Run: [Yahoo! Pager] 1
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft
Money\System\mnyexpr.exe"
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program
Files\Kodak\Kodak EasyShare Software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program
Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC
Self Support Tool\bin\matcli.exe
O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program
Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! Search - file:///C:\Program
Files\Yahoo!\Common/ycsrch.htm
O9 - Extra button: SBC Yahoo! Services -
{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: PartyPoker.com -
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com -
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file
missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
C:\WINNT\System32\Shdocvw.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} -
C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet
Explorer\Plugins\NPDocBox.dll
O16 - DPF: JT's Blocks -
http://download.games.yahoo.com/game...s/y/blt1_x.cab
O16 - DPF: Yahoo! Backgammon -
http://download.games.yahoo.com/game...ts/y/at0_x.cab
O16 - DPF: Yahoo! Blackjack -
http://download.games.yahoo.com/game...ts/y/jt0_x.cab
O16 - DPF: Yahoo! Bridge -
http://download.games.yahoo.com/game...ts/y/bt1_x.cab
O16 - DPF: Yahoo! Chess -
http://download.games.yahoo.com/game...ts/y/ct1_x.cab
O16 - DPF: Yahoo! Hearts -
http://download.games.yahoo.com/game...ts/y/ht1_x.cab
O16 - DPF: Yahoo! MahJong Solitaire -
http://download.games.yahoo.com/game.../y/mjst3_x.cab
O16 - DPF: Yahoo! Towers 2.0 -
http://download.games.yahoo.com/game...s/y/ywt0_x.cab
O16 - DPF: Yahoo! Word Racer -
http://download.games.yahoo.com/game...ts/y/wt0_x.cab
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) -
http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {0F04992B-E661-4DB9-B223-903AB628225D}
(DoMoreRunExe.DoMoreRun) - file://C:\Program Files\Gateway\Do More\DoMoreRunExe.CAB
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) -
http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class)
-
http://files.member.yahoo.com/dl/installs/sbc/yinst.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
-
http://update.microsoft.com/windowsu...?1123364265156
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class)
-
http://update.microsoft.com/microsof...?1145472866651
O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX
6.5) -
http://housecall65.trendmicro.com/ho...vex/hcImpl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) -
http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) -
http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object)
-
http://download.games.yahoo.com/game...ploader_v5.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcafee.com/molbin/is...39/mcfscan.cab
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: CAISafe - Unknown owner - C:\Program
Files\Yahoo!\Antivirus\ISafe.exe (file missing)
O23 - Service: Indexing Service (CiSvc) - Unknown owner -
C:\WINNT\system32\cisvc.exe (file missing)
O23 - Service: ewido security suite control - ewido networks -
C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown
owner - C:\WINNT\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation -
C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: VET Message Service (VETMSGNT) - Unknown owner -
C:\Program Files\Yahoo!\Antivirus\VetMsg.exe (file missing)
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) -
America Online, Inc. - C:\WINNT\wanmpsvc.exe
O23 - Service: YPCService - Yahoo! Inc. -
C:\WINNT\system32\YPCSER~1.EXE