Tags: anti-virus, attached, browser, dissapeared, hjt, log, network, parts, security
IE dissapeared. help please HJT log attached
On Networking » security & Anti-Virus
45,980 words with 4 Comments; publish: Sun, 02 Mar 2008 05:47:00 GMT; (45078.13, « »)
Please find the HJT log in two parts below.
Thanks
http://antivirus.itags.org/q_security-anti-virus_108190.html
All Comments
Leave a comment...
- 4 Comments

- Logfile of HijackThis v1.99.1
Scan saved at 10:38:27 AM, on 5/28/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Microsoft Money\System\urlmap.exe
C:\Program Files\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.iquicksearch.net/search.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\System32\ntos.exe,
O1 - Hosts file is located at: C:\WINDOWS\nsdb\hosts
O1 - Hosts: 81.211.105.69 lender-search.com
O1 - Hosts: 81.211.105.68 hot-searches.com
O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem220.dll
O2 - BHO: (no name) - {008DB894-99ED-445D-8547-0E7C9808898D} - (no file)
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: BhoApp Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll
O2 - BHO: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: (no name) - {36DBC179-A19F-48F2-B16A-6A3E19B42A87} - C:\WINDOWS\System32\ipv6monl.dll
O2 - BHO: (no name) - {54698A2F-2247-4538-82FC-2B5443D66945} - C:\WINDOWS\system32\drivera.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: BHObj Class - {8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} - C:\WINDOWS\wsem303.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {ACB3E0B7-7D0C-40B7-99B3-3EEACDF86BFB} - C:\WINDOWS\mslagent\4b_1,0,1,1_mslagent.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {C8D730FF-78AB-4DC7-B744-A208FAF94AAE} - C:\WINDOWS\system32\driverg.dll
O2 - BHO: BHO Class - {D3F01312-8A3D-4D41-A4FA-FB61D295CB6B} - C:\WINDOWS\System32\surebar.dll
O2 - BHO: (no name) - {DE0B3210-B828-475B-96F0-6796FE533E46} - C:\WINDOWS\system32\drivere.dll
O2 - BHO: BHObj Class - {F7F808F0-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem218.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Search Bar - {270B845C-712C-4773-BEE0-AE2D2001CD0F} - C:\WINDOWS\System32\surebar.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_0.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [Internet Optimizer] "C:\Program Files\Internet Optimizer\optimize.exe"
O4 - HKLM\..\Run: [WindowsCRC] wscrc.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1150074650\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VerizonServicepoint.exe] C:\Program Files\Verizon\Servicepoint\VerizonServicepoint.exe
O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~1\HELPSU~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [Kceklny] C:\Program Files\Xbuptlg\Hxlef.exe
O4 - HKLM\..\Run: [Vsyukfgs] C:\Program Files\Kxeav\Crjn.exe
O4 - HKLM\..\Run: [Eseafbrl] C:\Program Files\Xuxd\Hxmkef.exe
O4 - HKLM\..\Run: [Nbqvnc] C:\Program Files\Kqhihx\Aztuo.exe
O4 - HKLM\..\Run: [Iqtqyeij] C:\Program Files\Fzdf\Gtrrarz.exe
O4 - HKLM\..\Run: [Erzss] C:\Program Files\Xjyvm\Wsqw.exe
O4 - HKLM\..\Run: [Zzocb] C:\Program Files\Hcgvrwm\Gohdzd.exe
O4 - HKLM\..\Run: [Qpunepy] C:\Program Files\Fnnbxi\Saiqxtl.exe
O4 - HKLM\..\Run: [Rinrv] C:\Program Files\Khmsqhh\Fuoscom.exe
O4 - HKLM\..\Run: [Kgighn] C:\Program Files\Ixcot\Veusrpr.exe
O4 - HKLM\..\Run: [Tokmhfp] C:\Program Files\Ezolcj\Nviz.exe
O4 - HKLM\..\Run: [Fiqcfkf] C:\Program Files\Jlggvb\Gisfsb.exe
O4 - HKLM\..\Run: [Pxyvt] C:\Program Files\Qrundpr\Ctewh.exe
O4 - HKLM\..\Run: [Lvassva] C:\Program Files\Zcfmh\Lsvyu.exe
O4 - HKLM\..\Run: [Clrgzqni] C:\Program Files\Ihvh\Lbgodq.exe
O4 - HKLM\..\Run: [Ntikt] C:\Program Files\Kpufd\Mingo.exe
O4 - HKLM\..\Run: [Ymxti] C:\Program Files\Nzqfirn\Opudgm.exe
O4 - HKLM\..\Run: [Wlcmxee] C:\Program Files\Pvpjmit\Cpea.exe
O4 - HKLM\..\Run: [Scigdarf] C:\Program Files\Zxvuna\Cqyw.exe
O4 - HKLM\..\Run: [Dttefm] C:\Program Files\Thkthv\Mjfxpj.exe
O4 - HKLM\..\Run: [Tdrxdpz] C:\Program Files\Dbyli\Dgxnp.exe
O4 - HKLM\..\Run: [Vrnbuz] C:\Program Files\Oddei\Oilvh.exe
O4 - HKLM\..\Run: [Dumhz] C:\Program Files\Qdzzcj\Cyxcaab.exe
O4 - HKLM\..\Run: [Zlctnod] C:\Program Files\Iiwfmu\Upzwht.exe
O4 - HKLM\..\Run: [Xnwithh] C:\Program Files\Wguxe\Cdsyc.exe
O4 - HKLM\..\Run: [Otidkvw] C:\Program Files\Gzwrhte\Vivthji.exe
O4 - HKLM\..\Run: [Sxbejfkk] C:\Program Files\Hzrdb\Ongro.exe
O4 - HKLM\..\Run: [Azmoie] C:\Program Files\Odysok\Vyae.exe
O4 - HKLM\..\Run: [Qsyfvuvd] C:\Program Files\Yqozsy\Fypqqcm.exe
O4 - HKLM\..\Run: [Onzwtk] C:\Program Files\Sfcqox\Qmlu.exe
O4 - HKLM\..\Run: [Wzpmjxe] C:\Program Files\Feecn\Tkcx.exe
O4 - HKLM\..\Run: [Ghyvvgr] C:\Program Files\Exhiiw\Aoddxz.exe
O4 - HKLM\..\Run: [Qrpzic] C:\Program Files\Ztatj\Ovqtnp.exe
O4 - HKLM\..\Run: [Bsjuuc] C:\Program Files\Ehau\Uruau.exe
O4 - HKLM\..\Run: [Yjrskd] C:\Program Files\Oofmlz\Dajajfu.exe
O4 - HKLM\..\Run: [Unktxmg] C:\Program Files\Mfdi\Vsaqicf.exe
O4 - HKLM\..\Run: [Attmbpez] C:\Program Files\Ybvlhg\Vaymxpp.exe
O4 - HKLM\..\Run: [Lxqhs] C:\Program Files\Lcsxdb\Yximz.exe
O4 - HKLM\..\Run: [Mcwbvgmi] C:\Program Files\Ubtajcm\Jeffyj.exe
O4 - HKLM\..\Run: [Dltsgpa] C:\Program Files\Evklzo\Vxmrcht.exe
O4 - HKLM\..\Run: [Zwtvpd] C:\Program Files\Bmih\Jbsul.exe
O4 - HKLM\..\Run: [Lehhjb] C:\Program Files\Monz\Bmli.exe
O4 - HKLM\..\Run: [Cjnjof] C:\Program Files\Kvhgmc\Kmbevih.exe
O4 - HKLM\..\Run: [Unffzrz] C:\Program Files\Ilmzjnx\Ijoj.exe
O4 - HKLM\..\Run: [Bhdgqfxy] C:\Program Files\Idpo\Iwnupik.exe
O4 - HKLM\..\Run: [Cvslz] C:\Program Files\Daarft\Iwfs.exe
O4 - HKLM\..\Run: [Xltumtb] C:\Program Files\Fpayfrt\Kpae.exe
O4 - HKLM\..\Run: [Guijq] C:\Program Files\Mnsjap\Cftrqd.exe
O4 - HKLM\..\Run: [Lpapqg] C:\Program Files\Kkupqfh\Woqks.exe
O4 - HKLM\..\Run: [Hhnrkqkl] C:\Program Files\Isjh\Tjub.exe
O4 - HKLM\..\Run: [Hewqmtm] C:\Program Files\Asse\Qheaglr.exe
O4 - HKLM\..\Run: [Hdualc] C:\Program Files\Xjerh\Wuvq.exe
O4 - HKLM\..\Run: [Bvgeidc] C:\Program Files\Fmztmw\Bklv.exe
O4 - HKLM\..\Run: [Qseotw] C:\Program Files\Chpm\Ioqci.exe
O4 - HKLM\..\Run: [Iiceng] C:\Program Files\Iqylkze\Kzbhepq.exe
O4 - HKLM\..\Run: [Czzsjvw] C:\Program Files\Alhsfnn\Knnv.exe
O4 - HKLM\..\Run: [Khyno] C:\Program Files\Pmooea\Doztn.exe
O4 - HKLM\..\Run: [Tetidq] C:\Program Files\Kgdl\Oiot.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Tgkfz] C:\Program Files\Cjqzec\Utnrjiw.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [Scnwbv] C:\Program Files\Bdappg\Zjpqx.exe
O4 - HKLM\..\Run: [Szdzj] C:\Program Files\Kjqb\Mnlk.exe
O4 - HKLM\..\Run: [Nvjcmz] C:\Program Files\Ljknwd\Evble.exe
O4 - HKLM\..\Run: [Guzuoed] C:\Program Files\Prbm\Wrtj.exe
O4 - HKLM\..\Run: [Qmsrp] C:\Program Files\Zlgfcpc\Xyyykj.exe
O4 - HKLM\..\Run: [Qwvvy] C:\Program Files\Mhyie\Xqho.exe
O4 - HKLM\..\Run: [Qyyqxt] C:\Program Files\Okkc\Aayzt.exe
O4 - HKLM\..\Run: [Bzykohq] C:\Program Files\Tkmiw\Flgan.exe
O4 - HKLM\..\Run: [Exsph] C:\Program Files\Evrhwm\Imkfklv.exe
O4 - HKLM\..\Run: [Bkiguk] C:\Program Files\Opeao\Fcasxp.exe
O4 - HKLM\..\Run: [Xqrirt] C:\Program Files\Trjyo\Bgneooj.exe
O4 - HKLM\..\Run: [Qmawar] C:\Program Files\Dtnwt\Qiofsmc.exe
O4 - HKLM\..\Run: [Mfyoky] C:\Program Files\Nowvp\Asouf.exe
O4 - HKLM\..\Run: [Ouusb] C:\Program Files\Xijnp\Kmccx.exe
O4 - HKLM\..\Run: [Jaerrla] C:\Program Files\Hmfmzte\Iqpbu.exe
O4 - HKLM\..\Run: [Pvrrcw] C:\Program Files\Rzot\Znzie.exe
O4 - HKLM\..\Run: [Xtprvcmw] C:\Program Files\Ncnxwe\Zxzpvp.exe
O4 - HKLM\..\Run: [Fahftw] C:\Program Files\Hektekf\Vtjdevd.exe
O4 - HKLM\..\Run: [Wbpxhb] C:\Program Files\Edipg\Mutslz.exe
O4 - HKLM\..\Run: [Wibhn] C:\Program Files\Btgkbrs\Rqnw.exe
O4 - HKLM\..\Run: [Jazsqju] C:\Program Files\Hhwhw\Wlwvhz.exe
O4 - HKLM\..\Run: [Dkhsmipr] C:\Program Files\Tepl\Jagylrr.exe
O4 - HKLM\..\Run: [Tqwrseqp] C:\Program Files\Ivliq\Ykzyxa.exe
O4 - HKLM\..\Run: [Amsnm] C:\Program Files\Dretsft\Bohsp.exe
O4 - HKLM\..\Run: [Lusjl] C:\Program Files\Qnpwtq\Alercc.exe
O4 - HKLM\..\Run: [Xofnhmrw] C:\Program Files\Xvlika\Qiarebl.exe
O4 - HKLM\..\Run: [Lczyfsd] C:\Program Files\Jsgjf\Lizta.exe
O4 - HKLM\..\Run: [Iaptxwn] C:\Program Files\Tfwii\Nazimyn.exe
O4 - HKLM\..\Run: [Cyqklmpj] C:\Program Files\Ayzwdz\Qkogam.exe
O4 - HKLM\..\Run: [Yentrbt] C:\Program Files\Pammxn\Rnoa.exe
O4 - HKLM\..\Run: [Mpbloe] C:\Program Files\Gktkk\Zawfh.exe
O4 - HKLM\..\Run: [Ibrhpvkq] C:\Program Files\Jbklxg\Lwsz.exe
O4 - HKLM\..\Run: [Dglwuy] C:\Program Files\Oygctt\Pndujyf.exe
O4 - HKLM\..\Run: [Gtmxh] C:\Program Files\Hgnb\Cqccce.exe
O4 - HKLM\..\Run: [Zjfvhmq] C:\Program Files\Jlok\Phdkati.exe
O4 - HKLM\..\Run: [Qkibh] C:\Program Files\Xboq\Dsxovu.exe
O4 - HKLM\..\Run: [Gnmpi] C:\Program Files\Mfgvcaa\Ersz.exe
O4 - HKLM\..\Run: [Aoevynf] C:\Program Files\Rgklcnw\Rcizata.exe
O4 - HKLM\..\Run: [Uxtxb] C:\Program Files\Sjdnx\Jxgcu.exe
O4 - HKLM\..\Run: [Ocugpcpl] C:\Program Files\Hozpe\Ivoki.exe
O4 - HKLM\..\Run: [Oepjywk] C:\Program Files\Hyhlh\Lydrcdb.exe
O4 - HKLM\..\Run: [Hzaqbh] C:\Program Files\Rdzhhg\Fsmaln.exe
O4 - HKLM\..\Run: [Bdbnvg] C:\Program Files\Ztzjakn\Htrrc.exe
O4 - HKLM\..\Run: [Awcil] C:\Program Files\Gxerczb\Brtl.exe
O4 - HKLM\..\Run: [Rczctdoo] C:\Program Files\Ycyeb\Uomma.exe
O4 - HKLM\..\Run: [Llasulu] C:\Program Files\Rftlr\Daxa.exe
O4 - HKLM\..\Run: [Hwfcwag] C:\Program Files\Vhxcj\Zvkll.exe
O4 - HKLM\..\Run: [Fcufiisq] C:\Program Files\Ejvezvx\Dxkvq.exe
O4 - HKLM\..\Run: [Ehjae] C:\Program Files\Oweddbh\Dmwjruv.exe
O4 - HKLM\..\Run: [Ewttpbs] C:\Program Files\Wbxbwvz\Jfxy.exe
O4 - HKLM\..\Run: [Mjgkvke] C:\Program Files\Nuzrqyh\Zhwvga.exe
O4 - HKLM\..\Run: [Sunll] C:\Program Files\Jheuaze\Slismrf.exe
O4 - HKLM\..\Run: [Rqquh] C:\Program Files\Mafepna\Gpem.exe
O4 - HKLM\..\Run: [Mttqf] C:\Program Files\Dgyz\Padjkk.exe
O4 - HKLM\..\Run: [Ptperry] C:\Program Files\Ekbos\Epeophj.exe
O4 - HKLM\..\Run: [Jqvxpa] C:\Program Files\Dceunn\Gqujjii.exe
O4 - HKLM\..\Run: [Bnsxc] C:\Program Files\Nvho\Vfyb.exe
O4 - HKLM\..\Run: [Ffcim] C:\Program Files\Kgqzgr\Khgty.exe
O4 - HKLM\..\Run: [Icaoxf] C:\Program Files\Wlhe\Swuv.exe
O4 - HKLM\..\Run: [Ngasdda] C:\Program Files\Hunfh\Scabvc.exe
O4 - HKLM\..\Run: [Vawccxx] C:\Program Files\Rpwmdy\Mzqh.exe
O4 - HKLM\..\Run: [Udrof] C:\Program Files\Ofuhfci\Xojnsbv.exe
O4 - HKLM\..\Run: [Ccurkkh] C:\Program Files\Plymd\Bfgvxvw.exe
O4 - HKLM\..\Run: [Ttkzvmf] C:\Program Files\Mvsw\Kglp.exe
O4 - HKLM\..\Run: [Cfbsanyc] C:\Program Files\Hrkzcv\Grqdlxu.exe
O4 - HKLM\..\Run: [Vzmcfcsf] C:\Program Files\Mmtuqm\Jfnczr.exe
O4 - HKLM\..\Run: [Fhnpfxgx] C:\Program Files\Yimfr\Lepemqe.exe
O4 - HKLM\..\Run: [Mppnlmau] C:\Program Files\Tewi\Zhzruwa.exe
O4 - HKLM\..\Run: [Fmyobly] C:\Program Files\Kyzmew\Wcxbtfv.exe
O4 - HKLM\..\Run: [Qcourdwi] C:\Program Files\Hpxi\Rztrv.exe
O4 - HKLM\..\Run: [Ykxdymuo] C:\Program Files\Jkmjtns\Vgtr.exe
O4 - HKLM\..\Run: [Wzqea] C:\Program Files\Agpmrvb\Ljuy.exe
O4 - HKLM\..\Run: [Zdtofji] C:\Program Files\Izsa\Rsgwqp.exe
O4 - HKLM\..\Run: [Wdrippuq] C:\Program Files\Fqqwov\Vmor.exe
O4 - HKLM\..\Run: [Arfdmywy] C:\Program Files\Ogsyjk\Ydmqyi.exe
O4 - HKLM\..\Run: [Sgshmax] C:\Program Files\Syahvx\Lvgn.exe
O4 - HKLM\..\Run: [Kabgw] C:\Program Files\Oncc\Fmmhqsh.exe
O4 - HKLM\..\Run: [Wlnoz] C:\Program Files\Joojo\Vgtms.exe
O4 - HKLM\..\Run: [Isestm] C:\Program Files\Lofpo\Hisxq.exe
O4 - HKLM\..\Run: [Rufoiu] C:\Program Files\Ykys\Kcdco.exe
O4 - HKLM\..\Run: [Xcvfka] C:\Program Files\Zeccdw\Bvssj.exe
O4 - HKLM\..\Run: [Onkkxy] C:\Program Files\Buxlswt\Imgyau.exe
O4 - HKLM\..\Run: [Flevx] C:\Program Files\Kdsni\Lmtduv.exe
O4 - HKLM\..\Run: [Jrgvoh] C:\Program Files\Utvjesm\Llegkg.exe
O4 - HKLM\..\Run: [Brkbcjv] C:\Program Files\Pqfmf\Hfvboyx.exe
O4 - HKLM\..\Run: [Qgjxsry] C:\Program Files\Rknzz\Dgbqcot.exe
O4 - HKLM\..\Run: [Tzhcr] C:\Program Files\Ebwwfl\Fpqqn.exe
O4 - HKLM\..\Run: [Yfpov] C:\Program Files\Tedq\Unmed.exe
O4 - HKLM\..\Run: [Nlputz] C:\Program Files\Xzrcrri\Puonp.exe
O4 - HKLM\..\Run: [Ktdlxb] C:\Program Files\Hkocpd\Sejbt.exe
O4 - HKLM\..\Run: [Dbihs] C:\Program Files\Gupoawf\Ncstiyq.exe
O4 - HKLM\..\Run: [Xpjtm] C:\Program Files\Nzlje\Jofxl.exe
O4 - HKLM\..\Run: [Ernpwaj] C:\Program Files\Uroyhl\Eqegtx.exe
O4 - HKLM\..\Run: [Hdvtkoye] C:\Program Files\Kgibgxt\Jaiwsia.exe
O4 - HKLM\..\Run: [Rifevu] C:\Program Files\Twlxb\Mmjis.exe
O4 - HKLM\..\Run: [Wqquoil] C:\Program Files\Gsvadcp\Kzdzedp.exe
O4 - HKLM\..\Run: [Ynbkwzny] C:\Program Files\Qmjtvva\Yhvegj.exe
O4 - HKLM\..\Run: [Eukei] C:\Program Files\Qddwbvh\Yordtni.exe
O4 - HKLM\..\Run: [Puaapjlq] C:\Program Files\Vmegyu\Qztn.exe
O4 - HKLM\..\Run: [Czleio] C:\Program Files\Nzmeubo\Zhzprh.exe
O4 - HKLM\..\Run: [Fifvt] C:\Program Files\Vhqu\Adwzvl.exe
O4 - HKLM\..\Run: [Bbjwguh] C:\Program Files\Tqrdpi\Kqzeuk.exe
O4 - HKLM\..\Run: [Tuqmsx] C:\Program Files\Fozqjot\Zuuuy.exe
O4 - HKLM\..\Run: [Lejjtrn] C:\Program Files\Cxaao\Qkjyqsn.exe
O4 - HKLM\..\Run: [Kyshnoeu] C:\Program Files\Zwyvjie\Zxsoc.exe
O4 - HKLM\..\Run: [Jlzaaaby] C:\Program Files\Rpijs\Dztyl.exe
O4 - HKLM\..\Run: [Yxpeecqw] C:\Program Files\Sjbsnkf\Rlpnvoe.exe
O4 - HKLM\..\Run: [Awirlt] C:\Program Files\Feie\Lazq.exe
O4 - HKLM\..\Run: [Aobdz] C:\Program Files\Rnpg\Rmnil.exe
O4 - HKLM\..\Run: [Kmgziho] C:\Program Files\Qdvkrb\Epwvhqr.exe
O4 - HKLM\..\Run: [Ewisal] C:\Program Files\Aqejnp\Oplinsm.exe
O4 - HKLM\..\Run: [Ngojuryg] C:\Program Files\Slviiw\Gozucc.exe
O4 - HKLM\..\Run: [Ergsqu] C:\Program Files\Jhojjoo\Veindf.exe
O4 - HKLM\..\Run: [Cpcuzus] C:\Program Files\Rsrp\Cfeh.exe
O4 - HKLM\..\Run: [Dotbat] C:\Program Files\Bhixb\Qxcqujy.exe
O4 - HKLM\..\Run: [Kehuufo] C:\Program Files\Wweog\Djxmz.exe
O4 - HKLM\..\Run: [Jtcsvwv] C:\Program Files\Vohdbn\Zbtt.exe
O4 - HKLM\..\Run: [Rixtb] C:\Program Files\Uggu\Pkvox.exe
O4 - HKLM\..\Run: [Qspnid] C:\Program Files\Yoyfygq\Ylok.exe
O4 - HKLM\..\Run: [Lddfxci] C:\Program Files\Babfoy\Rfdpxvv.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [Uhpwn] C:\Program Files\Zcck\Ilyj.exe
O4 - HKLM\..\Run: [Yzueitmw] C:\Program Files\Wktnhi\Zuzmjbj.exe
O4 - HKLM\..\Run: [Nkxeahk] C:\Program Files\Qrhneh\Khwq.exe
O4 - HKLM\..\Run: [Jmqbbvpc] C:\Program Files\Vbgufr\Yljtvw.exe
O4 - HKLM\..\Run: [Pfvmjcg] C:\Program Files\Rqtras\Myjvj.exe
O4 - HKLM\..\Run: [Ykowhq] C:\Program Files\Wawcy\Xpxu.exe
O4 - HKLM\..\Run: [Ziobv] C:\Program Files\Domx\Xnmbbd.exe
O4 - HKLM\..\Run: [Ypizw] C:\Program Files\Lgxlv\Ddnix.exe
O4 - HKLM\..\Run: [Ydcwpvsy] C:\Program Files\Kzbzqh\Tror.exe
O4 - HKLM\..\Run: [Tvlxsrwr] C:\Program Files\Apxpp\Nxquzua.exe
O4 - HKLM\..\Run: [Eheuf] C:\Program Files\Zbkmmou\Sdsr.exe
O4 - HKLM\..\Run: [Mbxkcc] C:\Program Files\Guna\Klav.exe
O4 - HKLM\..\Run: [Cxzwawn] C:\Program Files\Omqoj\Krhq.exe
O4 - HKLM\..\Run: [Lyquge] C:\Program Files\Ugcc\Pytokjb.exe
O4 - HKLM\..\Run: [Zaedf] C:\Program Files\Zpdekgd\Ypgzd.exe
O4 - HKLM\..\Run: [Ieawhxu] C:\Program Files\Jokear\Gcdgpx.exe
O4 - HKLM\..\Run: [Fgalelg] C:\Program Files\Bcer\Bigoy.exe
O4 - HKLM\..\Run: [Vrftk] C:\Program Files\Zvfxjuh\Totpfto.exe
O4 - HKLM\..\Run: [Nqezagwa] C:\Program Files\Goil\Qyef.exe
O4 - HKLM\..\Run: [Urigbnjq] C:\Program Files\Qbykh\Iwfjzf.exe
O4 - HKLM\..\Run: [Ifmszkw] C:\Program Files\Xenfu\Vnirm.exe
O4 - HKLM\..\Run: [Tgssgt] C:\Program Files\Eiuz\Lkuge.exe
O4 - HKLM\..\Run: [Fohcv] C:\Program Files\Ltacpc\Avrp.exe
O4 - HKLM\..\Run: [Kokyfz] C:\Program Files\Vipubch\Wzkfpho.exe
O4 - HKLM\..\Run: [Svhkaavh] C:\Program Files\Cipiihm\Miage.exe
O4 - HKLM\..\Run: [Uolbxre] C:\Program Files\Mvyh\Voimw.exe
O4 - HKLM\..\Run: [stonedrv] c:\windows\system32\stonedrv.exe
O4 - HKLM\..\Run: [Zkvau] C:\Program Files\Uvhvr\Kpraiqf.exe
O4 - HKLM\..\Run: [Ayaajk] C:\Program Files\Vxbioxx\Atsppev.exe
O4 - HKLM\..\Run: [Dpkljoak] C:\Program Files\Uojal\Nejzlv.exe
O4 - HKLM\..\Run: [Fidtugqw] C:\Program Files\Wtjcvm\Civyoa.exe
O4 - HKLM\..\Run: [Kbtcc] C:\Program Files\Fjbuio\Bgumn.exe
O4 - HKLM\..\Run: [Ayvjhozh] C:\Program Files\Njxxpv\Cecifhw.exe
O4 - HKLM\..\Run: [Siavro] C:\Program Files\Tbsm\Gzcqqa.exe
O4 - HKLM\..\Run: [Suzzoc] C:\Program Files\Qxbto\Sylzph.exe
O4 - HKLM\..\Run: [Nqncb] C:\Program Files\Isjss\Ciln.exe
O4 - HKLM\..\Run: [Oavswpjq] C:\Program Files\Fihomei\Alek.exe
O4 - HKLM\..\Run: [Rkwrovjv] C:\Program Files\Mofnn\Ezfna.exe
O4 - HKLM\..\Run: [Bkeyh] C:\Program Files\Ojwbdn\Kpvpls.exe
O4 - HKLM\..\Run: [Shxcbovi] C:\Program Files\Tsxla\Rxra.exe
O4 - HKLM\..\Run: [Yhxudg] C:\Program Files\Pryqkh\Eaag.exe
O4 - HKLM\..\Run: [Xbxxt] C:\Program Files\Uoqnmos\Ofznmp.exe
O4 - HKLM\..\Run: [[01]########################################################################### ###################################################] C:\Program Files\Internet Optimizer\update\rogue.exe
O4 - HKLM\..\Run: [Qfctewa] C:\Program Files\Pkbqo\Nzqvjxz.exe
O4 - HKLM\..\Run: [Omgix] C:\Program Files\Brszs\Hrkb.exe
O4 - HKLM\..\Run: [Rttwo] C:\Program Files\Pnqvu\Ipeqpid.exe
O4 - HKLM\..\Run: [Gsprlet] C:\Program Files\Uxrf\Yfunu.exe
O4 - HKLM\..\Run: [Banouqwo] C:\Program Files\Ejhm\Epmnjyv.exe
O4 - HKLM\..\Run: [Jnstgi] C:\Program Files\Yopjo\Ltnw.exe
O4 - HKLM\..\Run: [Pngkh] C:\Program Files\Jtdsyn\Cgdeb.exe
O4 - HKLM\..\Run: [Arblwzd] C:\Program Files\Acvm\Jtdm.exe
O4 - HKLM\..\Run: [Ykesfq] C:\Program Files\Ficoke\Omxer.exe
O4 - HKLM\..\Run: [Fvego] C:\Program Files\Apzf\Txvyeo.exe
O4 - HKLM\..\Run: [Cehqjvy] C:\Program Files\Wdmc\Mcilmr.exe
O4 - HKLM\..\Run: [Btggw] C:\Program Files\Uhtrj\Ctfbj.exe
O4 - HKLM\..\Run: [Nbfjqc] C:\Program Files\Whswjo\Veeh.exe
O4 - HKLM\..\Run: [Vpvikfs] C:\Program Files\Jilrl\Imfpywm.exe
O4 - HKLM\..\Run: [Jjjzkyc] C:\Program Files\Vzho\Ykrmjeo.exe
O4 - HKLM\..\Run: [Axqxtsmq] C:\Program Files\Cknjhi\Xbws.exe
O4 - HKLM\..\Run: [Myudu] C:\Program Files\Wrjidp\Jxsw.exe
O4 - HKLM\..\Run: [Tkhrokl] C:\Program Files\Xbccv\Phrzfr.exe
O4 - HKLM\..\Run: [Ypwcqg] C:\Program Files\Bwyvbp\Vvrijfh.exe
O4 - HKLM\..\Run: [Djekk] C:\Program Files\Qshluv\Tekr.exe
O4 - HKLM\..\Run: [Pnsic] C:\Program Files\Cxauin\Vjdwmi.exe
O4 - HKLM\..\Run: [Hzehn] C:\Program Files\Vfpew\Clasvoj.exe
O4 - HKLM\..\Run: [Codrhenm] C:\Program Files\Fxaf\Cncuqme.exe
O4 - HKLM\..\Run: [Pxfbiffz] C:\Program Files\Pkjee\Puufys.exe
O4 - HKLM\..\Run: [Rkhrby] C:\Program Files\Nbhahud\Kdapyq.exe
O4 - HKLM\..\Run: [Mkczouv] C:\Program Files\Qjmuunt\Ccslxiw.exe
O4 - HKLM\..\Run: [Vkfigbwl] C:\Program Files\Ffwdns\Mdvb.exe
O4 - HKLM\..\Run: [Piuxlwij] C:\Program Files\Uqdg\Kqta.exe
O4 - HKLM\..\Run: [Lewiucmi] C:\Program Files\Dzjjtj\Ktsv.exe
O4 - HKLM\..\Run: [Kqaeil] C:\Program Files\Wduj\Rgcxxvd.exe
O4 - HKLM\..\Run: [Aitpft] C:\Program Files\Zbvo\Avkf.exe
O4 - HKLM\..\Run: [Swteonye] C:\Program Files\Wjzh\Soniblj.exe
O4 - HKLM\..\Run: [Lazwk] C:\Program Files\Lfawspz\Lkpuisg.exe
O4 - HKLM\..\Run: [Rqxtmiu] C:\Program Files\Ieys\Sgsj.exe
O4 - HKLM\..\Run: [Lcmnnp] C:\Program Files\Guwooo\Gzgtnu.exe
O4 - HKLM\..\Run: [Gwxnwj] C:\Program Files\Wrxzuiy\Aexwz.exe
O4 - HKLM\..\Run: [Ylwnqpc] C:\Program Files\Puft\Cbval.exe
O4 - HKLM\..\Run: [Mpyjmssd] C:\Program Files\Hjitq\Dpuaocp.exe
O4 - HKLM\..\Run: [Zgjokqzy] C:\Program Files\Iwxenui\Zimqqe.exe
O4 - HKLM\..\Run: [Rcmwh] C:\Program Files\Rhdekz\Lnyywaz.exe
O4 - HKLM\..\Run: [Gzgllqe] C:\Program Files\Ilmtky\Kougdjj.exe
O4 - HKLM\..\Run: [Pzkmjn] C:\Program Files\Mcmkv\Tcymmqn.exe
O4 - HKLM\..\Run: [Ngjxdvq] C:\Program Files\Unpzyz\Tksg.exe
O4 - HKLM\..\Run: [Seggouzk] C:\Program Files\Gagke\Gdszwc.exe
O4 - HKLM\..\Run: [Omkkp] C:\Program Files\Mfdp\Zjvwc.exe
O4 - HKLM\..\Run: [Lovqz] C:\Program Files\Gurgrxe\Jzxh.exe
O4 - HKLM\..\Run: [Irkzz] C:\Program Files\Rwezsq\Afhp.exe
O4 - HKLM\..\Run: [Rotjli] C:\Program Files\Emruw\Lnnmsb.exe
O4 - HKLM\..\Run: [Rupqrrwd] C:\Program Files\Ctxkvaq\Fblkpxl.exe
O4 - HKLM\..\Run: [Ykuugtja] C:\Program Files\Yzpnr\Twux.exe
O4 - HKLM\..\Run: [Pwush] C:\Program Files\Yksbmi\Mgdnij.exe
O4 - HKLM\..\Run: [Zmunob] C:\Program Files\Sgdeo\Fhiuxsw.exe
O4 - HKLM\..\Run: [Dgxzy] C:\Program Files\Fgieh\Zrklfg.exe
O4 - HKLM\..\Run: [Hbjbe] C:\Program Files\Gdzw\Sbjjm.exe
O4 - HKLM\..\Run: [Eyyduz] C:\Program Files\Xlsfta\Babu.exe
O4 - HKLM\..\Run: [Msaeutd] C:\Program Files\Yjqvcyn\Bxmo.exe
O4 - HKLM\..\Run: [Sswyjk] C:\Program Files\Mlwfw\Lgrs.exe
O4 - HKLM\..\Run: [Bjvebkwj] C:\Program Files\Erisve\Gdnbib.exe
O4 - HKLM\..\Run: [Prlfty] C:\Program Files\Wbami\Kamj.exe
O4 - HKLM\..\Run: [Awxsozwu] C:\Program Files\Yjzkhe\Bduqj.exe
O4 - HKLM\..\Run: [Imtiikw] C:\Program Files\Ahhu\Ovvqlg.exe
O4 - HKLM\..\Run: [Ziekksx] C:\Program Files\Hswxmx\Boyub.exe
O4 - HKLM\..\Run: [Ojikr] C:\Program Files\Hpemok\Dmwtm.exe
O4 - HKLM\..\Run: [Poomdvq] C:\Program Files\Bwaekr\Patyf.exe
O4 - HKLM\..\Run: [Lopkr] C:\Program Files\Ncneha\Wwcgrse.exe
O4 - HKLM\..\Run: [Vjwttva] C:\Program Files\Jrabdt\Jjcjfpv.exe
O4 - HKLM\..\Run: [Rroas] C:\Program Files\Dpcke\Yqducsm.exe
O4 - HKLM\..\Run: [Ztsiru] C:\Program Files\Vvofcaq\Poihviu.exe
O4 - HKLM\..\Run: [Mllwsuut] C:\Program Files\Vndv\Dhge.exe
O4 - HKLM\..\Run: [Fweqaz] C:\Program Files\Skqt\Emureph.exe
O4 - HKLM\..\Run: [Vypcty] C:\Program Files\Pygj\Wxgugsb.exe
O4 - HKLM\..\Run: [Kkxfno] C:\Program Files\Jtowi\Kstx.exe
O4 - HKLM\..\Run: [Zyvmitj] C:\Program Files\Plhkivl\Kgezpua.exe
O4 - HKLM\..\Run: [Xedaijy] C:\Program Files\Ytnhnk\Xxetj.exe
O4 - HKLM\..\Run: [Fsydxjov] C:\Program Files\Wjld\Nzmuc.exe
O4 - HKLM\..\Run: [Azqodm] C:\Program Files\Gmqvqgj\Iknkvez.exe
O4 - HKLM\..\Run: [Jdxcfhuf] C:\Program Files\Iozxsc\Ozisxcd.exe
O4 - HKLM\..\Run: [Kodnqqt] C:\Program Files\Iily\Qfei.exe
O4 - HKLM\..\Run: [Ewlhl] C:\Program Files\Nrninhk\Kohmrdi.exe
O4 - HKLM\..\Run: [Zcopezqe] C:\Program Files\Xevhjnm\Kdttb.exe
O4 - HKLM\..\Run: [Lfpdno] C:\Program Files\Boghhq\Ubconn.exe
O4 - HKLM\..\Run: [Jczhxlx] C:\Program Files\Glqus\Ldfsg.exe
O4 - HKLM\..\Run: [Ukqlrosy] C:\Program Files\Itprr\Wffvf.exe
O4 - HKLM\..\Run: [Ptjnhxez] C:\Program Files\Kboxrc\Heydkgr.exe
O4 - HKLM\..\Run: [Xfhlh] C:\Program Files\Htfoa\Olno.exe
O4 - HKLM\..\Run: [Tvyom] C:\Program Files\Uvjma\Khazo.exe
O4 - HKLM\..\Run: [Nqmtui] C:\Program Files\Ntxt\Cnhw.exe
O4 - HKLM\..\Run: [Oyngqza] C:\Program Files\Vixunrr\Cqrue.exe
O4 - HKLM\..\Run: [Ylrice] C:\Program Files\Goyqarg\Ddxh.exe
O4 - HKLM\..\Run: [Fyttdzm] C:\Program Files\Sqxy\Akfln.exe
O4 - HKLM\..\Run: [Gohqbkgx] C:\Program Files\Lgaqpze\Wniixa.exe
O4 - HKLM\..\Run: [Irdwzt] C:\Program Files\Zmlku\Wstq.exe
O4 - HKLM\..\Run: [Nzjhepsd] C:\Program Files\Dopim\Soobk.exe
O4 - HKLM\..\Run: [Amdsoozo] C:\Program Files\Npbcw\Jxwcvcu.exe
O4 - HKLM\..\Run: [Tdwyzpyg] C:\Program Files\Keoas\Gkjbyq.exe
O4 - HKLM\..\Run: [lhrpxgbz] c:\windows\system32\lhrpxgbz.exe lhrpxgbz
O4 - HKLM\..\Run: [Aodygbm] C:\Program Files\Djsup\Lyfrhy.exe
O4 - HKLM\..\Run: [Ibzpicv] C:\Program Files\Ccvjsc\Oqxbaj.exe
O4 - HKLM\..\Run: [Vczsg] C:\Program Files\Kvyx\Qbeuevj.exe
O4 - HKLM\..\Run: [Cqjhndo] C:\Program Files\Nnmtdp\Oinzvv.exe
O4 - HKLM\..\Run: [Nitmgkcm] C:\Program Files\Ijwwx\Djkd.exe
O4 - HKLM\..\Run: [Hiktnha] C:\Program Files\Kdkp\Lodylbs.exe
O4 - HKLM\..\Run: [Qqvmrck] C:\Program Files\Oiknlap\Fkimk.exe
O4 - HKLM\..\Run: [Axexu] C:\Program Files\Vtrij\Eevxxx.exe
O4 - HKLM\..\Run: [Xxnwf] C:\Program Files\Luwcwif\Dfpna.exe
O4 - HKLM\..\Run: [Xyqpytfm] C:\Program Files\Idxeth\Sekl.exe
O4 - HKLM\..\Run: [Djsaxypf] C:\Program Files\Dzip\Kgnoa.exe
O4 - HKLM\..\Run: [Ucklf] C:\Program Files\Dvstmh\Ghpkgg.exe
O4 - HKLM\..\Run: [Qjaugon] C:\Program Files\Moytj\Fgwfx.exe
O4 - HKLM\..\Run: [Teumwov] C:\Program Files\Omhyt\Bfwwj.exe
O4 - HKLM\..\Run: [Maatk] C:\Program Files\Mkpxgq\Zvuzgay.exe
O4 - HKLM\..\Run: [Qfmxzip] C:\Program Files\Utzsw\Tbggixi.exe
O4 - HKLM\..\Run: [Xkwzedl] C:\Program Files\Rjxory\Qeek.exe
O4 - HKLM\..\Run: [Qtrzk] C:\Program Files\Vtjntpb\Zmscplp.exe
O4 - HKLM\..\Run: [Lczsvrsa] C:\Program Files\Yxxgram\Chocqyo.exe
O4 - HKLM\..\Run: [Laykthg] C:\Program Files\Xbkuq\Kruimhg.exe
O4 - HKLM\..\Run: [Tvgbjoy] C:\Program Files\Pdbvnx\Hjeqc.exe
O4 - HKLM\..\Run: [Pivibnd] C:\Program Files\Ukdge\Gbzh.exe
O4 - HKLM\..\Run: [Whhtcv] C:\Program Files\Ybnnwt\Otucpu.exe
O4 - HKLM\..\Run: [Pwhpcr] C:\Program Files\Moxmm\Tbvvfc.exe
O4 - HKLM\..\Run: [Jpaihvji] C:\Program Files\Qqbkm\Pwigwcf.exe
O4 - HKLM\..\Run: [Joctdci] C:\Program Files\Fmak\Puygbpe.exe
O4 - HKLM\..\Run: [Ixaqeyds] C:\Program Files\Vbpdts\Sulqb.exe
O4 - HKLM\..\Run: [Zwjvs] C:\Program Files\Fedyjps\Aecu.exe
O4 - HKLM\..\Run: [Tgpeonk] C:\Program Files\Knejgg\Ecjzthg.exe
O4 - HKLM\..\Run: [Elygle] C:\Program Files\Bnzkyg\Aywew.exe
O4 - HKLM\..\Run: [Yzmkr] C:\Program Files\Cmjfa\Phnl.exe
O4 - HKLM\..\Run: [Efncevr] C:\Program Files\Aeisog\Xboyfbw.exe
O4 - HKLM\..\Run: [Utxhh] C:\Program Files\Cwkmdya\Cxol.exe
O4 - HKLM\..\Run: [Bvxdatt] C:\Program Files\Xlyeiw\Wpus.exe
O4 - HKLM\..\Run: [Mnlka] C:\Program Files\Uzzgnqt\Tiyr.exe
O4 - HKLM\..\Run: [Remsydew] C:\Program Files\Oovyjp\Pheccwn.exe
O4 - HKLM\..\Run: [Hcheist] C:\Program Files\Bkgbk\Aljvmu.exe
O4 - HKLM\..\Run: [Ommqgn] C:\Program Files\Tnxbh\Abxiqp.exe
O4 - HKLM\..\Run: [Uaqzramd] C:\Program Files\Epcua\Tclqic.exe
O4 - HKLM\..\Run: [Hubwu] C:\Program Files\Ojim\Dewzy.exe
O4 - HKLM\..\Run: [Ieqqqtkz] C:\Program Files\Ceskvs\Qkcysm.exe
O4 - HKLM\..\Run: [Czulk] C:\Program Files\Hduvt\Ejanmfp.exe
O4 - HKLM\..\Run: [Eexosmp] C:\Program Files\Xhoy\Uqkldnc.exe
O4 - HKLM\..\Run: [Dmlit] C:\Program Files\Khtq\Llmnvv.exe
O4 - HKLM\..\Run: [Gyumcx] C:\Program Files\Rrwez\Cczbqac.exe
O4 - HKLM\..\Run: [Pnqouib] C:\Program Files\Eoph\Sxxbsa.exe
O4 - HKLM\..\Run: [Vzgqnro] C:\Program Files\Tpwlrf\Kfdgb.exe
#1; Sat, 01 Mar 2008 05:29:00 GMT

- O4 - HKLM\..\Run: [Zwxaz] C:\Program Files\Qnmh\Irhdbi.exe
O4 - HKLM\..\Run: [Vwsso] C:\Program Files\Skrdek\Jrfn.exe
O4 - HKLM\..\Run: [Eqauybov] C:\Program Files\Kwijhz\Trtz.exe
O4 - HKLM\..\Run: [Vsyjlu] C:\Program Files\Zxpfy\Igvn.exe
O4 - HKLM\..\Run: [Depgibir] C:\Program Files\Xonbbpw\Tlhrhzh.exe
O4 - HKLM\..\Run: [Lrneapj] C:\Program Files\Jkxmc\Sqvbrb.exe
O4 - HKLM\..\Run: [Cfcnref] C:\Program Files\Ugldb\Lehx.exe
O4 - HKLM\..\Run: [Pwpkz] C:\Program Files\Zxmpwg\Ahynzv.exe
O4 - HKLM\..\Run: [Vknwizql] C:\Program Files\Wncl\Jlxfx.exe
O4 - HKLM\..\Run: [Heeodjn] C:\Program Files\Vebbbg\Wuywafy.exe
O4 - HKLM\..\Run: [Fqbdmf] C:\Program Files\Hzjfwgr\Tqhjsb.exe
O4 - HKLM\..\Run: [Lgqzcxfx] C:\Program Files\Lzcfxr\Cvcyiow.exe
O4 - HKLM\..\Run: [Uhqhdp] C:\Program Files\Bzfeah\Yabxyb.exe
O4 - HKLM\..\Run: [Ypkimxe] C:\Program Files\Ejurlkl\Htckha.exe
O4 - HKLM\..\Run: [Qomeeh] C:\Program Files\Vndgdkd\Hpjrr.exe
O4 - HKLM\..\Run: [Kcslqb] C:\Program Files\Iaayuh\Kaupa.exe
O4 - HKLM\..\Run: [Ycrdkw] C:\Program Files\Njuir\Apcz.exe
O4 - HKLM\..\Run: [winconf] C:\WINDOWS\TEMP\30A47D9A.exe
O4 - HKLM\..\Run: [Wweawgex] C:\Program Files\Nfevxf\Zmred.exe
O4 - HKLM\..\Run: [Krevf] C:\Program Files\Zbovfib\Nuztqj.exe
O4 - HKLM\..\Run: [Kzkcxd] C:\Program Files\Rgii\Ktmypgj.exe
O4 - HKLM\..\Run: [Iviadqoo] C:\Program Files\Uooqget\Hrvba.exe
O4 - HKLM\..\Run: [Bjplb] C:\Program Files\Ezlrdbz\Jdno.exe
O4 - HKLM\..\Run: [Pleblbl] C:\Program Files\Lcrtb\Pghqczl.exe
O4 - HKLM\..\Run: [Xxurgnz] C:\Program Files\Grnlx\Csumg.exe
O4 - HKLM\..\Run: [Xjldsma] C:\Program Files\Prfvb\Hktmk.exe
O4 - HKLM\..\Run: [Kxjsuq] C:\Program Files\Mqcrew\Hrkmfm.exe
O4 - HKLM\..\Run: [Oddxijk] C:\Program Files\Hxqqad\Sehryy.exe
O4 - HKLM\..\Run: [Agixcmxv] C:\Program Files\Djkrbo\Icezcpj.exe
O4 - HKLM\..\Run: [Wmbyrorz] C:\Program Files\Sftau\Xflxion.exe
O4 - HKLM\..\Run: [Pgotdc] C:\Program Files\Sigouho\Drfllz.exe
O4 - HKLM\..\Run: [Fptxzgen] C:\Program Files\Cclhvz\Frzyq.exe
O4 - HKLM\..\Run: [Cchpli] C:\Program Files\Pbqyoqu\Tqgeyow.exe
O4 - HKLM\..\Run: [Ausjln] C:\Program Files\Zwwrpi\Jhyy.exe
O4 - HKLM\..\Run: [Ligvc] C:\Program Files\Cqjkp\Pkvhq.exe
O4 - HKLM\..\Run: [Baguey] C:\Program Files\Jasrb\Hcfcmu.exe
O4 - HKLM\..\Run: [Jnjwdhj] C:\Program Files\Wsvyky\Xghe.exe
O4 - HKLM\..\Run: [Qnkmh] C:\Program Files\Iiola\Lajmp.exe
O4 - HKLM\..\Run: [Expzip] c:\Program Files\Avasb\Vvdvyk.exe
O4 - HKLM\..\Run: [Fwbjo] c:\Program Files\Ymqovdk\Tuah.exe
O4 - HKLM\..\Run: [Dbpkifw] c:\Program Files\Qzgvzkl\Timvzr.exe
O4 - HKLM\..\Run: [lxctmon.exe] "C:\Program Files\Lexmark 5400 Series\lxctmon.exe"
O4 - HKLM\..\Run: [Lexmark 5400 Series Fax Server] "C:\Program Files\Lexmark 5400 Series\fm3032.exe" /s
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 5400 Series\ezprint.exe"
O4 - HKLM\..\Run: [LXCTCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCTtime.dll,_RunDLLEntry.antivirus.itags.org.16
O4 - HKLM\..\Run: [Svcs: Dnscache] C:\DOCUME~1\JACQUE~1\LOCALS~1\Temp\q1.exe
O4 - HKLM\..\RunServices: [WindowsCRC] wscrc.exe
O4 - HKLM\..\RunServices: [stonedrv] c:\windows\system32\stonedrv.exe
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WindowsCRC] wscrc.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Instant Access] C:\WINDOWS\System32\prodsrvs.exe /res
O4 - HKCU\..\Run: [stonedrv] c:\windows\system32\stonedrv.exe
O4 - HKCU\..\Run: [shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00003.exe"
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0\AOL.EXE" -b
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
O4 - HKCU\..\RunServices: [WindowsCRC] wscrc.exe
O4 - Global Startup: MiniMavis.lnk = C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\MiniMavis.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Open in new background tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?d16e983f882a467fa14728d603283dd1
O8 - Extra context menu item: Open in new foreground tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?d16e983f882a467fa14728d603283dd1
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sjtiphdhi.dll
O12 - Plugin for .mp4: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin4.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemydsl.verizon.net/sd...ad/tgctlcm.cab
O16 - DPF: {04F414E9-E352-4BC3-963D-7BFE5A5F31A9} - http://scripts.dlv4.com/binaries/ega...s4_1064_XP.cab
O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://scripts.dlv4.com/binaries/ega...s4_1063_XP.cab
O16 - DPF: {09F1ADAC-76D8-4D0F-99A5-5C907DADB988} - http://www.systemdoctor.com/download...reeInstall.cab
O16 - DPF: {1EB17D1C-141D-4D9D-91CB-24D99215851D} - http://akamai.downloadv3.com/binarie...ia32_EN_XP.cab
O16 - DPF: {26D73573-F1B3-48C9-A989-E6CE071957A1} - http://akamai.downloadv3.com/binarie...SS_1057_XP.cab
O16 - DPF: {2D2BEE6E-3C9A-4D58-B9EC-458EDB28D0F6} - http://cdn.drivecleaner.com/installd...eanerstart.cab
O16 - DPF: {321F38B6-7E5F-470E-B58C-927523B7AF92} - http://us2-scripts.dlv4.com/binaries...1069_em_XP.cab
O16 - DPF: {3446598E-00E4-4B5E-99A6-87ECCA8324A2} - http://akamai.downloadv3.com/binarie...SS_1056_XP.cab
O16 - DPF: {486E48B5-ABF2-42BB-A327-2679DF3FB822} - http://akamai.downloadv3.com/binaries/IA/ia_XP.cab
O16 - DPF: {5F4D3335-3194-4167-85AE-E7325F2695EF} - http://scripts.dlv4.com/binaries/ega...1068_em_XP.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1165550215180
O16 - DPF: {71DA2A4E-ACB3-4065-9E41-8BC42EABE427} - http://scripts.dlv4.com/binaries/IA/svcia32_EN_XP.cab
O16 - DPF: {8A0DCBDA-6E20-489C-9041-C1E8A0352E75} - http://download.getmirar.com/cabs/875457.cab
O16 - DPF: {94742E3F-D9A1-4780-9A87-2FFA43655DA2} - http://akamai.downloadv3.com/binarie...US_pack_XP.cab
O16 - DPF: {A02780C3-7F77-4E28-855B-28890F3CF37A} - http://akamai.downloadv3.com/binarie...35_pack_XP.cab
O16 - DPF: {AA59202C-5E41-48FC-AF7D-324F5FD6A9F1} - http://us2-scripts.dlv4.com/binaries...1070_em_XP.cab
O16 - DPF: {B8AB2281-447F-482B-86E9-1F0ED5973637} - http://www.isurfplus.com/sure.cab
O16 - DPF: {BFC9677B-8006-4336-9D49-2C797AEFCB9E} - http://akamai.downloadv3.com/binarie...SS_1058_XP.cab
O16 - DPF: {CB5D474E-A510-40A4-B5A4-838933BCBA64} - http://scripts.dlv4.com/binaries/ega...s4_1065_XP.cab
O16 - DPF: {E8EDB60C-951E-4130-93DC-FAF1AD25F8E7} (MoneyTree Dialer) - http://xbs.sea.mtree.com/mt/dialers/fc/UniDistIO.CAB
O16 - DPF: {F72BC3F0-6C20-4793-9DDA-258589D8A907} - http://akamai.downloadv3.com/binarie...lv32_EN_XP.cab
O16 - DPF: {FA1D6D8F-C6ED-4752-8512-A33283240130} - http://scripts.dlv4.com/binaries/ega...s4_1066_XP.cab
O16 - DPF: {FBF65A16-C9AB-465E-AECE-D2D9D5AB5E60} - http://scripts.dlv4.com/binaries/ega...s4_1067_XP.cab
O16 - DPF: {FC87A650-207D-4392-A6A1-82ADBC56FA64} (MultiDist) - http://xbs.mtree.com/mt/dialers/fc/MultiDistFC.CAB
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter: text/html - {4F7681E5-6CAF-478D-9CB8-4CA593BEE7FB} - C:\WINDOWS\System32\xplugin.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\win_526.dll
O20 - Winlogon Notify: bt848rom - C:\WINDOWS\SYSTEM32\bt848rom.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: rpcc - C:\WINDOWS\System32\rpcc.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Microsoft ASPI Manager (aspi113210) - Unknown owner - C:\WINDOWS\System32\aspi414010.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxct_device - - C:\WINDOWS\System32\lxctcoms.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
#2; Sat, 01 Mar 2008 05:30:00 GMT

- Please go here using Internet Explorer.
- Click on "Windows Validation Assistant"
- Click on the "Validate Now" button.
- Be patient while the ActiveX loads, do not click on any links.
- Read the instructions on this page while it's loading. You will be prompted to install - click YES.
- Enter your product key then click "continue"
- When it says "Validation Complete" please click "Continue to return to your previous activity"
- Copy what it says and paste it here.
#4; Sat, 01 Mar 2008 05:32:00 GMT