Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93121 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Classroom (buck99)


  • Please log in to reply
No replies to this topic

#1 buck99

buck99

    New Member

  • New Member
  • Pip
  • 1 posts

Posted 19 February 2005 - 09:01 PM

Posted per program instructions for your wise advice.
E-mail advice to <Email removed by Coyote> <If you have notification selected on this topic you will have an email sent to you at your registered address>
Many thaks,
Buck

Logfile of HijackThis v1.99.1
Scan saved at 9:49:04 PM, on 2/19/05
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\SSDPSRV.EXE
C:\PROGRAMSPECIALS\TRAYSAVER\TRAYSAVER.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE FIREWALL\CPD.EXE
C:\PROGRAM FILES\MCAFEE.COM\VSO\MCVSRTE.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE FIREWALL\CPD.EXE
C:\WINDOWS\NECUTRAY.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRAM FILES\MOUSE SOFTWARE\BALLY4D.EXE
C:\PROGRAM FILES\MCAFEE.COM\AGENT\MCAGENT.EXE
C:\WINDOWS\STARTUPMONITOR.EXE
C:\PROGRAM FILES\MCAFEE.COM\PERSONAL FIREWALL\MPFTRAY.EXE
C:\PROGRAM FILES\WUSB11 WLAN MONITOR\WLAN_CFG.EXE
C:\PROGRAM FILES\MULTI-MEDIA KEYBOARD\MMKEY.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE ANTISPYWARE\MSSCLI.EXE
C:\PROGRAM FILES\MCAFEE.COM\VSO\MCVSSHLD.EXE
C:\PROGRAM FILES\MCAFEE.COM\VSO\MCVSESCN.EXE
C:\PROGRAM FILES\MEMMONSTER\MEMMNSTR.EXE
C:\PROGRAM FILES\MCAFEE\MCAFEE QUICKCLEAN\PLGUNI.EXE
C:\PROGRAMSPECIALS\TRAYSHORTCUTS\TSCUTS.EXE
C:\PROGRAM FILES\TASKBAR ACTIVATE\TASKBARACTIVATE.EXE
C:\PROGRAMSPECIALS\CAPUNLOCK\CAPSIZE.EXE
C:\PROGRAM FILES\EFFECTIVE DESKTOP\EFFECTIVE DESKTOP\DTLOADER.EXE
C:\WINDOWS\DESKMENU.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\QUICKRES.EXE
C:\PROGRAM FILES\MCAFEE.COM\PERSONAL FIREWALL\MPFAGENT.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\OUTLOOK.EXE
C:\WINDOWS\SYSTEM\INTERNAT.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\PROGRAM FILES\DEEPNETEXPLORER14\DEEPNET.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\TOTALCMD603\TOTALCMD.EXE
C:\PROGRAM FILES\HIJACKTHIS\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://crackspider.net/ie/sbar.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://crackspider.net/ie/assist.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\OOBE\BLANK.HTM
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\OOBE\BLANK.HTM
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = gopher=localhost:1
R3 - URLSearchHook: (no name) - _{1B0E7716-898E-48cc-9690-4E338E8DE1D3} - (no file)
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.nai.com/u...loads/updates/"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\2737q0hc.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRAM%20FILES%5CNETSCAPE%5CNETSCAPE702%5Csearchplugins%5CSBWeb_01.src"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\2737q0hc.slt\prefs.js)
O1 - Hosts: 66.115.143.51 www.smuthut.com
O1 - Hosts: 66.115.143.68 www.yourfantasies.com
O1 - Hosts: 212.120.66.212 members.home.nl
O1 - Hosts: 66.28.60.8 www.sexoasis.com
O1 - Hosts: 146.20.39.73 www.p-bot.com
O1 - Hosts: 216.130.196.245 str8console.pythonvideo.com
O1 - Hosts: 64.125.248.196 promo.search.com
O1 - Hosts: 64.124.237.142 downloads-zdnet.com.com
O1 - Hosts: 205.181.112.187 zrap.zdnet.com.com
O1 - Hosts: 193.178.212.3 www.totemmail.com
O1 - Hosts: 64.246.6.53 www.freshdiagnose.com
O1 - Hosts: 209.203.173.66 www.thepornlottery.com
O1 - Hosts: 24.71.223.14 members.shaw.ca
O1 - Hosts: 216.130.222.45 promo.xxxconnex.com
O1 - Hosts: 66.60.188.250 www.interneteraser.com
O1 - Hosts: 130.94.133.107 www.skinnybitches.com
O1 - Hosts: 216.32.209.81 www.div3x.com
O1 - Hosts: 216.32.208.170 www.cumpool.com
O1 - Hosts: 66.185.95.103 members.rogers.com
O1 - Hosts: 67.97.114.202 www.bestfreearchive.com
O1 - Hosts: 216.32.209.253 pornmovie.deluxepass.com
O1 - Hosts: 216.32.208.21 www.adult-clips.com
O1 - Hosts: 212.113.174.3 pwp.netcabo.pt
O1 - Hosts: 66.205.197.117 www.pornstarmpeglist.com
O1 - Hosts: 209.50.252.165 cz7.clickzs.com
O1 - Hosts: 66.96.212.204 www.waverama.com
O1 - Hosts: 209.50.252.244 www.hit-now.com
O1 - Hosts: 199.203.55.26 www.freemovieking.com
O1 - Hosts: 157.206.2.50 www.thebestpicsplace.com
O1 - Hosts: 64.38.208.249 www.scoopy.net
O1 - Hosts: 216.127.33.92 common.gammae.com
O1 - Hosts: 64.38.223.107 www.wannawatch.com
O1 - Hosts: 208.185.230.222 karasxxx.com
O1 - Hosts: 66.28.176.108 www.free-mpeg-videos.com
O1 - Hosts: 64.246.34.69 www.melonsmania.com
O1 - Hosts: 64.79.162.212 gallys.nastydollars.com
O1 - Hosts: 64.157.11.232 www.onlypregnant.com
O1 - Hosts: 65.88.73.135 www.thumbbase.net
O1 - Hosts: 66.181.161.53 www.bestsexhost.net
O1 - Hosts: 62.61.158.131 www.pregnant-gallery.com
O1 - Hosts: 216.158.129.208 www.freehotpics.com
O1 - Hosts: 130.94.133.97 www.picwarehouse.com
O1 - Hosts: 64.156.26.12 www.xxx-ufo.com
O1 - Hosts: 64.156.26.20 www.bigtitfantasy.com
O1 - Hosts: 65.18.151.183 www.freshui.com
O1 - Hosts: 216.40.226.7 www.freshdevices.com
O1 - Hosts: 205.158.107.16 209.203.174.20
O1 - Hosts: 216.130.223.139 preview.thepornlottery.com
O1 - Hosts: 216.130.223.156 track.resellerstats.com
O1 - Hosts: 209.132.194.82 www.realsexmall.com
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\WINDOWS\Downloaded Program Files\ycomp5_0_2_7.dll
O2 - BHO: TLightFrameIECOM Class - {20A66F2F-31CE-11D5-8BF7-0090CC12D082} - C:\WINDOWS\SYSTEM\LIGHTFRAMEIECOM.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\ACROBAT\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: DAPBHO Class - {0096CC0A-623C-4829-AD9C-19AF0DC9D8FE} - C:\Program Files\DAP\DAPIEBar.dll (file missing)
O2 - BHO: PopLess Class - {2AAFD473-E3C4-4ADC-9435-362A2522B73B} - C:\PROGRAM FILES\POPLESS\POPLESSBHO.DLL (file missing)
O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - C:\PROGRA~1\FRESHD~2\FDCATCH.DLL (file missing)
O2 - BHO: Dogpile Toolbar - {5E92F538-B50B-46c5-9C5F-C6EECED3F6C6} - C:\PROGRAM FILES\DOGPILETOOLBAR\CONFLICT.1\ULTRABAR.DLL (file missing)
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\PROGRAM FILES\SNAGIT 7\SNAGITBHO.DLL (file missing)
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\PROGRAM FILES\NETTRANSPORT194\NTIEHELPER.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: (no name) - {6291957C-8CE9-4c90-BEFF-12D9E68CFF30} - C:\PROGRAM FILES\MOREGOOGLE\MOREGOOGLE.DLL
O2 - BHO:  - {371C6960-302C-45D0-9504-50B820247439} - C:\PROGRAM FILES\WINGET\WINIE.DLL
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\WINDOWS\DOWNLOADED PROGRAM FILES\YCOMP5_0_2_7.DLL
O3 - Toolbar: (no name) - {1B0E7716-898E-48cc-9690-4E338E8DE1D3} - (no file)
O3 - Toolbar: &FirstStop WebSearch - {E26FDEC1-053B-11D6-B969-CEEBA9E95046} - C:\PROGRA~1\WEBSEA~1\IEBAND3.DLL (file missing)
O3 - Toolbar: Dogpile Toolbar - {5E92F538-B50B-46c5-9C5F-C6EECED3F6C6} - C:\PROGRAM FILES\DOGPILETOOLBAR\CONFLICT.1\ULTRABAR.DLL (file missing)
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\PROGRAM FILES\SNAGIT 7\SNAGITIEADDIN.DLL (file missing)
O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file)
O3 - Toolbar: ScriptBiz Developers ToolBar - {60C19918-A4F6-446C-899E-D42097022600} - C:\PROGRA~1\SCRIPT~1\TOOLBAR.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - C:\PROGRAM FILES\MCAFEE.COM\VSO\MCVSSHL.DLL
O4 - HKLM\..\Run: [ICSDCLT] C:\WINDOWS\rundll32.exe C:\WINDOWS\SYSTEM\icsdclt.dll,ICSClient
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\Scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [CriticalUpdate] C:\WINDOWS\SYSTEM\wucrtupd.exe -startup
O4 - HKLM\..\Run: [Necutray] NECUTRAY.EXE
O4 - HKLM\..\Run: [HorngTech4D] C:\PROGRA~1\MOUSES~1\BALLY4D.EXE
O4 - HKLM\..\Run: [MCAgentExe] C:\PROGRA~1\MCAFEE.COM\AGENT\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\MCAFEE.COM\AGENT\MCUPDATE.EXE
O4 - HKLM\..\Run: [Run StartupMonitor] StartupMonitor.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\MCAFEE.COM\PERSON~1\MPFTRAY.EXE
O4 - HKLM\..\Run: [WLAN_Cfg.exe] C:\Program Files\WUSB11 WLAN Monitor\WLAN_Cfg.exe
O4 - HKLM\..\Run: [1stImpression] C:\PROGRAM FILES\1STIMPRESSION-2.5.0\1ST.EXE /CHANGE
O4 - HKLM\..\Run: [Multi-Media Keyboard] C:\PROGRA~1\MULTI-~1\MMKEY.EXE
O4 - HKLM\..\Run: [_AntiSpyware] C:\PROGRAM FILES\MCAFEE\MCAFEE ANTISPYWARE\MssCli.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\MCAFEE.COM\VSO\MCMNHDLR.EXE" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "C:\PROGRA~1\MCAFEE.COM\VSO\mcvsshld.exe"
O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.exe
O4 - HKLM\..\RunServices: [AAATraySaver] C:\ProgramSpecials\TraySaver\TraySaver.exe
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [McAfee Firewall] "C:\PROGRAM FILES\MCAFEE\MCAFEE FIREWALL\CPD.EXE" /SERVICE
O4 - HKLM\..\RunServices: [McVsRte] C:\PROGRA~1\MCAFEE.COM\VSO\mcvsrte.exe /embedding
O4 - HKCU\..\Run: [MemMonster] C:\Program Files\MemMonster\memmnstr.exe /S
O4 - HKCU\..\Run: [McAfee QuickClean Imonitor] "C:\PROGRAM FILES\MCAFEE\MCAFEE QUICKCLEAN\PlgUni.exe" /START
O4 - HKCU\..\RunServices: [MemMonster] C:\Program Files\MemMonster\memmnstr.exe /S
O4 - HKCU\..\RunServices: [McAfee QuickClean Imonitor] "C:\PROGRAM FILES\MCAFEE\MCAFEE QUICKCLEAN\PlgUni.exe" /START
O4 - Startup: Icsmgr.lnk = C:\WINDOWS\SYSTEM\ICSMGR.EXE
O4 - Startup: Tclockex.lnk = C:\ProgramSpecials\TClockEx\TCLOCKEX.EXE
O4 - Startup: Tscuts.lnk = C:\ProgramSpecials\TrayShortcuts\Tscuts.exe
O4 - Startup: Taskbar Activate.lnk = C:\Program Files\Taskbar Activate\TaskbarActivate.exe
O4 - Startup: CapSize.lnk = C:\ProgramSpecials\CapUnLock\CapSize.exe
O4 - Startup: EDLoader.lnk = C:\Program Files\Effective Desktop\Effective Desktop\DTLoader.exe
O4 - Startup: Deskmenu.lnk = C:\WINDOWS\DESKMENU.EXE
O4 - Startup: FlexiCD.lnk = C:\WINDOWS\QUICKRES.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DOWNLO~1\dapextie2.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DOWNLO~1\dapextie.htm
O8 - Extra context menu item: &Check Spelling - res://C:\PROGRAM FILES\IESPELL\IESPELL.DLL/SPELLCHECK.HTM
O8 - Extra context menu item: &ieSpell Options - res://C:\PROGRAM FILES\IESPELL\IESPELL.DLL/SPELLOPTION.HTM
O8 - Extra context menu item: Advanced Properties - http://www.advancedp...d=1039120578610
O8 - Extra context menu item: Download using LeechGet - file://C:\Program Files\LeechGet 2004\\AddUrl.html
O8 - Extra context menu item: Download using LeechGet Wizard - file://C:\Program Files\LeechGet 2004\\Wizard.html
O8 - Extra context menu item: Parse with LeechGet - file://C:\Program Files\LeechGet 2004\\Parser.html
O8 - Extra context menu item: &Convert and Open - C:\PROGRAM FILES\CONVERT & OPEN\ConvertIt.htm
O8 - Extra context menu item: Search Using Copernic Agent - C:\Program Files\Copernic Agent\Web\SearchExt.htm
O8 - Extra context menu item: Search FileMirrors - C:\Program Files\GetRightIETools\FileMirrors.htm
O8 - Extra context menu item: GetRight Mini-Browser - C:\Program Files\GetRightIETools\GRMiniBrowser.htm
O8 - Extra context menu item: Send to GR Mail Control - C:\Program Files\GetRightIETools\GRMailControl.htm
O8 - Extra context menu item: Druid: Download All Files - C:\PROGRAM FILES\DOWNLOAD DRUID\Druid.html
O8 - Extra context menu item: Druid: Download Highlighted Files - C:\PROGRAM FILES\DOWNLOAD DRUID\DruidHighLighted.html
O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight502\GRdownload.htm
O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight502\GRbrowse.htm
O8 - Extra context menu item: Download with Go!Zilla - file://C:\PROGRAM FILES\GO!ZILLA40\download-with-gozilla.html
O8 - Extra context menu item: Dogpile Cursor Search - C:\WINDOWS\All Users\Application Data\Infospace\DogpileToolbar\contextsearch.htm
O8 - Extra context menu item: &WordWeb... - res://C:\WINDOWS\wweb32.dll/lookup.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
O8 - Extra context menu item: Download with &WinGet - res://C:\Program Files\WinGet\WinIE.dll/300
O8 - Extra context menu item: Download by Net Transport - C:\Program Files\NetTransport194\NTAddLink.html
O8 - Extra context menu item: Download all by Net Transport - C:\Program Files\NetTransport194\NTAddList.html
O8 - Extra context menu item: Download using Download &Express - C:\Program Files\Download Express\Add_Url.htm
O9 - Extra button: Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe
O9 - Extra 'Tools' menuitem: Net2Phone - {4B30061A-5B39-11D3-80F8-0090276F843F} - C:\Program Files\Net2Phone\Net2fone.exe
O9 - Extra button: Downloads - {FA89F458-2DF1-494a-A66D-47BF7F04E713} - C:\WINDOWS\SYSTEM\Shdocvw.dll
O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\PROGRAM FILES\IESPELL\IESPELL.DLL (file missing)
O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\PROGRAM FILES\IESPELL\IESPELL.DLL (file missing)
O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\PROGRAM FILES\IESPELL\IESPELL.DLL (file missing)
O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\PROGRAM FILES\IESPELL\IESPELL.DLL (file missing)
O9 - Extra button: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - C:\Program Files\Free Surfer\FS20.exe (file missing)
O9 - Extra 'Tools' menuitem: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - C:\Program Files\Free Surfer\FS20.exe (file missing)
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRAM FILES\COPERNIC AGENT\COPERNICAGENT.EXE (file missing)
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRAM FILES\COPERNIC AGENT\COPERNICAGENT.EXE (file missing)
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRAM FILES\COPERNIC AGENT\COPERNICAGENT.EXE (file missing)
O9 - Extra button: GetRight - {4DA2C32A-4195-11D1-A9E1-00403320FCF2} - D:\OfficePC-5-20-01\Program Files\GetRight\getright.exe
O9 - Extra 'Tools' menuitem: &GetRight - {4DA2C32A-4195-11D1-A9E1-00403320FCF2} - D:\OfficePC-5-20-01\Program Files\GetRight\getright.exe
O9 - Extra button: Download - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\PROGRAM FILES\DOWNLOAD DRUID\Druid.exe (file missing)
O9 - Extra 'Tools' menuitem: Druid: Download All Files - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\PROGRAM FILES\DOWNLOAD DRUID\Druid.exe (file missing)
O9 - Extra button: Druid Bar - {A6B25D86-CB76-44C1-8E35-328EE8F4BEF0} - C:\PROGRAM FILES\DOWNLOAD DRUID\DRUIDBAR.DLL (file missing)
O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
O9 - Extra button: Turbo Memory Charger - {ECC5778A-6E89-BFCE-13CE-81F134789E7B} - C:\PROGRAM FILES\TURBOMEMORYCHARGER\TURBOMEMORYCHARGER (file missing)
O9 - Extra 'Tools' menuitem: Turbo Memory Charger - {ECC5778A-6E89-BFCE-13CE-81F134789E7B} - C:\PROGRAM FILES\TURBOMEMORYCHARGER\TURBOMEMORYCHARGER (file missing)
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\PROGRAM FILES\HELLOPHOTOS\PICASACAPTURE.DLL
O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\PROGRAM FILES\HELLOPHOTOS\PICASACAPTURE.DLL
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O12 - Plugin for .bcf: C:\PROGRA~1\INTERN~1\Plugins\NPBelv32.dll
O12 - Plugin for .svf: c:\program files\internet explorer\PLUGINS\npsvf32.dll
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.r...ip/RdxIE601.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop...p/PCPitStop.CAB
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://zinio.earthc....ader/isetup.cab
O16 - DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_01) -
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Companion) - http://us.dl1.yimg.c...ebio5_0_2_7.cab
O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) - http://updates.lifes...ll/pinstall.cab
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://www.verizon.n...tivePreQual.cab
O18 - Protocol: copernicdesktopsearch - {D9656C75-5090-45C3-B27E-436FBC7ACFA7} - C:\PROGRA~1\COPERN~2\COPERN~2.DLL

    Advertisements

Register to Remove

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users