Thread: Analyze please!
View Single Post
Old 10-20-2007, 04:36 PM   #8 (permalink)
Rawmaterial
Rawmaterial's Avatar
 
True Techie

Join Date: May 2005

Posts: 247

Rawmaterial is on a distinguished road

Default Re: Analyze please!

second post couldn't fit in one post.

O4 - HKLM..Run: [PHIME2002ASync] C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE /SYNC
O4 - HKLM..Run: [PHIME2002A] C:WINDOWSsystem32IMETINTLGNTTINTSETP.EXE /IMEName
O4 - HKLM..Run: [NeroFilterCheck] Crogram FilesCommon FilesAheadLibNeroCheck.exe
O4 - HKLM..Run: [SunJavaUpdateSched] "Crogram FilesJavajre1.6.0_03binjusched.exe"
O4 - HKCU..Run: [ModemOnHold] Crogram FilesNetWaitingnetWaiting.exe
O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [MSMSGS] "Crogram FilesMessengermsmsgs.exe" /background
O4 - HKCU..Run: [DellSupport] "Crogram FilesDellSupportDSAgnt.exe" /startup
O4 - HKCU..Run: [DW4] "Crogram FilesThe Weather Channel FWDesktop WeatherDesktopWeather.exe"
O4 - HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "Crogram FilesCommon FilesAheadLibNMBgMonitor.exe"
O4 - Global Startup: AutoUpdate Monitor.lnk = Crogram FilesSophosAutoUpdateALMon.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = Crogram FilesMicrosoft OfficeOffice10OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = Crogram FilesWinZipWZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://CROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavajre1.6.0_03binssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Crogram FilesJavajre1.6.0_03binssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - CROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:WINDOWSsystem32Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - CROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - CROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - Crogram FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - Crogram FilesMessengermsmsgs.exe
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O17 - HKLMSystemCS1ServicesTcpipParameters: SearchList = usc.edu
O17 - HKLMSystemCCSServicesTcpipParameters: SearchList = usc.edu
O20 - AppInit_DLLs: CROGRA~1SophosSOPHOS~1detoured.dll
O20 - Winlogon Notify: ugywqumf - C:WINDOWSSYSTEM32ugywqumf.dll
O23 - Service: Bonjour Service - Apple Computer, Inc. - Crogram FilesBonjourmDNSResponder.exe
O23 - Service: DSBrokerService - Unknown owner - Crogram FilesDellSupportbrkrsvc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - Crogram FilesIntelWirelessBinEvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - Crogram FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - Crogram FilesiPodbiniPodService.exe
O23 - Service: NBService - Nero AG - Crogram FilesNeroNero 7Nero BackItUpNBService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - Crogram FilesDellQuickSetNICCONFIGSVC.exe
O23 - Service: NMIndexingService - Nero AG - Crogram FilesCommon FilesAheadLibNMIndexingService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - Crogram FilesIntelWirelessBinRegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - Crogram FilesIntelWirelessBinS24EvMon.exe
O23 - Service: Sophos Anti-Virus status reporter (SAVAdminService) - Sophos Plc - Crogram FilesSophosSophos Anti-VirusSAVAdminService.exe
O23 - Service: Sophos Anti-Virus (SAVService) - Sophos Plc - Crogram FilesSophosSophos Anti-VirusSavService.exe
O23 - Service: Sophos AutoUpdate Service - Sophos Plc - Crogram FilesSophosAutoUpdateALsvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - Crogram FilesViewpointCommonViewpointService.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - Crogram FilesIntelWirelessBinWLKeeper.exe
O24 - Desktop Component 1: MuggleNet's Deathly Hallows/Order of the Phoenix Countdown - MuggleNet.com Desktop Countdown
__________________
Rawmaterial is offline