Unsolved
This post is more than 5 years old
10 Posts
0
1295
November 10th, 2008 18:00
Problem with infected computer
Several days ago I posted a message about my computer being infected on the spyware message board and I received a suggestion that I post a HiJackThis log on this board.
I had been having several issues with the computer completly locking up on me when connected to the internet, but only when connected to the internet. Then a couple of weeks ago I started getting pop-up's like crazy. It started with Internet Speed Monitor. I would delete it and it would be back in a few days. Then my browser started getting hijacked. When I would try to open a link it would redirect me to maxfiles.com. Plus google search was bringing up searches for bediddle.com.
My virus scanner (TrendMicro) found a Windows Security update which I downloaded. I also ran several scanners such as TrendMicro, Ad-Aware, Spybot and Malwarebytes' Anti-Malware. I cleaned off anything that I found and then ran several more scans. Nothing more has come up other that a few tracking cookies that pop each time. My browser is no longer hijacked and so far I have received no more pop-up's. However, my computer is still locking up on me and I have no idea if it is virus related or another problem with the computer.
I also have a question about continuing saftey on my computer. I read somewhere that since it was infected once that I should no longer use sensitive sites such a online banking without reloading my operating system. Is this true and should I just do a complete reload of everything?
Mileigh
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:00:27 PM, on 11/10/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Creative\VoiceCenter\AndreaVC.exe
C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\clclean.0001
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Corel\Corel Snapfire Plus\Corel Photo Downloader.exe
C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\WINDOWS\system32\PSIService.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=3070115
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=3070115
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\Corel Photo Downloader.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: Picture Motion Browser Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215829481890
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D40384A-15EB-49A2-9F37-BD6094C58EF5}: NameServer = 204.111.1.194 204.111.1.210
O18 - Protocol: bw+0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Unknown owner - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE (file missing)
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 21030 bytes


bamajim
10.4K Posts
1
November 11th, 2008 07:00
Save it to your Desktop (but do not run it yet)
2. Reboot into Safe Mode
This can be done by
Begin tapping the F8 key twice a second untill you reach another menu screen (black background with white menu choices)
Use your arrow keys and select Safe Mode and then Enter
3. Rt Click TempFix.zip ->> Extract all ->> And extract it to your Desktop
Additional help on extracting zip files can be found HERE
Rt Click TempFix.vbe ->>Select Open Then Open to confirm.
As the program runs, it will appear that nothing is happening.
When the program is fnished it will produce a log for you C:\TempFix.txt
Copy and paste the contents of that log in your reply.
Note: if your root drive is something other thatn C:\ then the log will default to your designated root drive
4. Then reboot your PC into Normal Windows Mode->> Rerun Hijackthis and post a fresh Hiajckthis log.
As well as the C:\TempFix.txt log
Mileigh
5 Posts
0
November 27th, 2008 10:00
Sorry it took so long. I've been having some connection prombems as well as my computer locking up when connected to the internet. I'm not sure if its connected to this other problem.
========================================
TempFix
Version 1.0.3
By bamajim @ bamajim.com
========================================
Report ran on --->>> 11/27/2008 10:55:27 AM
======== Files created in (System32) last 30 days ========
10/28/2008 5:35:56 PM 684032 32 C:\WINDOWS\system32\DivX.dll
10/28/2008 5:35:50 PM 729088 32 C:\WINDOWS\system32\divxdec.ax
10/28/2008 5:36:00 PM 823296 32 C:\WINDOWS\system32\divx_xx07.dll
10/28/2008 5:35:58 PM 815104 32 C:\WINDOWS\system32\divx_xx0a.dll
10/28/2008 5:36:00 PM 823296 32 C:\WINDOWS\system32\divx_xx0c.dll
10/28/2008 5:35:58 PM 802816 32 C:\WINDOWS\system32\divx_xx11.dll
11/18/2008 8:40:42 AM 588 32 C:\WINDOWS\system32\settings.sfm
11/18/2008 8:40:42 AM 588 32 C:\WINDOWS\system32\settingsbkup.sfm
11/3/2008 7:31:34 PM 255 32 C:\WINDOWS\system32\spupdwxp.log
11/2/2008 7:46:10 PM 8192 38 C:\WINDOWS\system32\Thumbs.db
========= Temp Files Deleted ========
C:\DOCUME~1\Mlp\LOCALS~1\Temp\.Sony_PMBrowser2000_BrowserDiskCache
C:\DOCUME~1\Mlp\LOCALS~1\Temp\.Sony_PMBrowser2000_BrowserDiskCache.idx
C:\DOCUME~1\Mlp\LOCALS~1\Temp\2f294797-9eb7-41a0-88cb-ca814f0ddd7e.wav
C:\DOCUME~1\Mlp\LOCALS~1\Temp\5EEEF6D8.TMP
C:\DOCUME~1\Mlp\LOCALS~1\Temp\6cc248b9-13b0-42fb-83d5-fe8b21550f30.bmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX24.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX25.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX2B.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX30.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX35.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AAX3B.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AC17.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AC182.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AC48.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\AUInst.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\clclean.0001
C:\DOCUME~1\Mlp\LOCALS~1\Temp\control.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\dfrg.chw
C:\DOCUME~1\Mlp\LOCALS~1\Temp\EAInstall.dll
C:\DOCUME~1\Mlp\LOCALS~1\Temp\eauninstall.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Haunting of Castle Malloy.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT2F.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT30.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT31.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT32.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT33.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT34.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT35.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT47.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT48.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT70.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT71.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\IMT72.xml
C:\DOCUME~1\Mlp\LOCALS~1\Temp\java_install_reg.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\LEX19F.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\LEX29.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\LEX3F.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\LEXEE.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\NetFxUpdate_v1.0.3705.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\PCULog0.txt
C:\DOCUME~1\Mlp\LOCALS~1\Temp\PCULog2.txt
C:\DOCUME~1\Mlp\LOCALS~1\Temp\PCULog3.txt
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_30c.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_310.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_314.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_330.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_334.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_354.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_35c.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_360.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_374.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_7b8.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_958.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_99c.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_b1c.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_b38.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_b58.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_b70.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_bb8.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_bfc.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_c10.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_c40.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_cdc.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_d40.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_d94.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Perflib_Perfdata_e4c.dat
C:\DOCUME~1\Mlp\LOCALS~1\Temp\PSK18.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\PSK55.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set11.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set18.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set5C.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set6E.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set6F.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\set89.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\setup_wm.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv10.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv18.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv1B.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv29.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv2B.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srv3A.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\srvC43.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\The Sims Life Stories_uninst.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\TWAIN.LOG
C:\DOCUME~1\Mlp\LOCALS~1\Temp\Twain001.Mtx
C:\DOCUME~1\Mlp\LOCALS~1\Temp\VP6.reg
C:\DOCUME~1\Mlp\LOCALS~1\Temp\VP6Install.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\VP6VFW.dll
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKS1A3.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKS1A6.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKS25.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKS43.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKS46.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSA1.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSA4.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSA9.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSAC.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSF3.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\WKSF6.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\ymemsi.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_is29.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_is2A.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_is3F.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_is40.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_isB.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_NDP_OCM_SetRegNI.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\_NDP_OCM_ToGAC.log
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~DF1A.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~DF24CB.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~DFEB1C.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil1224.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil1365.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil1786.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil1929.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil1992.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil3172.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~Qil3206.tmp
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~qil3D7D.WMF
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~qil5ECD.WMF
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~qil6C87.WMF
C:\DOCUME~1\Mlp\LOCALS~1\Temp\~ROMFN_00000B04
121 Files deleted
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:58:42 AM, on 11/27/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Creative\VoiceCenter\AndreaVC.exe
C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\DOCUME~1\Mlp\LOCALS~1\Temp\clclean.0001
C:\Program Files\Corel\Corel Snapfire Plus\Corel Photo Downloader.exe
C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\WINDOWS\system32\PSIService.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=3070115
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=3070115
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\Corel Photo Downloader.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 14\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: Picture Motion Browser Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215829481890
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O18 - Protocol: bw+0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {64E8A9D1-BAB7-496E-B32C-7BEA8363775B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Unknown owner - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE (file missing)
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 21276 bytes
Thanks for the help,
Mileigh