Hey Susan. Sorry it took me so long to reply. I followed all your instructions. Here are the results of the scans. The infected files were first quarentined then I deleted them like you told me.
Spysweeper
7:22 AM: Removal process completed. Elapsed time 00:00:27
7:21 AM: Quarantining All Traces: realmedia cookie
7:21 AM: Quarantining All Traces: 2o7.net cookie
7:21 AM: Quarantining All Traces: mediaplex cookie
7:21 AM: Quarantining All Traces: atlas dmt cookie
7:21 AM: Quarantining All Traces: yieldmanager cookie
7:21 AM: Quarantining All Traces: 247realmedia cookie
7:21 AM: Quarantining All Traces: errorsafe
7:21 AM: Quarantining All Traces: whenu save
7:21 AM: Removal process initiated
7:21 AM: Traces Found: 11
7:21 AM: Full Sweep has completed. Elapsed time 00:32:47
7:20 AM: File Sweep Complete, Elapsed Time: 00:29:15
6:51 AM: Starting File Sweep
6:51 AM: Cookie Sweep Complete, Elapsed Time: 00:00:01
6:51 AM: c:\documents and settings\toshiba\cookies\toshiba@realmedia[1].txt (ID = 3235)
6:51 AM: Found Spy Cookie: realmedia cookie
6:51 AM: c:\documents and settings\toshiba\cookies\toshiba@msnportal.112.2o7[1].txt (ID = 1958)
6:51 AM: Found Spy Cookie: 2o7.net cookie
6:51 AM: c:\documents and settings\toshiba\cookies\toshiba@mediaplex[1].txt (ID = 6442)
6:51 AM: Found Spy Cookie: mediaplex cookie
6:51 AM: c:\documents and settings\toshiba\cookies\toshiba@atdmt[2].txt (ID = 2253)
6:51 AM: Found Spy Cookie: atlas dmt cookie
6:51 AM: c:\documents and settings\toshiba\cookies\[removed][1].txt (ID = 3751)
6:51 AM: Found Spy Cookie: yieldmanager cookie
6:51 AM: c:\documents and settings\toshiba\cookies\toshiba@247realmedia[1].txt (ID = 1953)
6:51 AM: Found Spy Cookie: 247realmedia cookie
6:51 AM: Starting Cookie Sweep
6:51 AM: Registry Sweep Complete, Elapsed Time:00:00:17
6:51 AM: HKLM\software\error safe free\ (ID = 1236374)
6:51 AM: Found Adware: errorsafe
6:51 AM: HKLM\software\classes\appid\{127df9b4-d75d-44a6-af78-8c3a8ceb03db}\ (ID = 773976)
6:51 AM: HKLM\software\classes\appid\acm.dll\ (ID = 773974)
6:51 AM: HKCR\appid\{127df9b4-d75d-44a6-af78-8c3a8ceb03db}\ (ID = 773962)
6:51 AM: HKCR\appid\acm.dll\ (ID = 773960)
6:51 AM: Found Adware: whenu save
6:51 AM: Starting Registry Sweep
6:51 AM: Memory Sweep Complete, Elapsed Time: 00:03:06
6:48 AM: Starting Memory Sweep
6:48 AM: Sweep initiated using definitions version 744
6:48 AM: Spy Sweeper 5.0.5.1286 started
6:48 AM: | Start of Session, Monday, August 21, 2006 |
********
6:48 AM: | End of Session, Monday, August 21, 2006 |
6:47 AM: Your definitions are up to date.
6:46 AM: Your spyware definitions have been updated.
6:44 AM: There is a problem reaching the server. The cause may be in your connection, or on the server. Please try again later.
6:44 AM: There is a problem reaching the server. The cause may be in your connection, or on the server. Please try again later.
Keylogger Shield: On
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites Shield: Off
Hosts File Shield: On
Spy Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
6:41 AM: Shield States
6:41 AM: Spyware Definitions: 691
6:40 AM: Spy Sweeper 5.0.5.1286 started
6:40 AM: Spy Sweeper 5.0.5.1286 started
6:40 AM: | Start of Session, Monday, August 21, 2006 |
********
Ewido
———————————————————
ewido anti-spyware - Scan Report
———————————————————
+ Created at: 11:51:17 AM 8/21/2006
+ Scan result:
C:\Program Files\Common Files\Real\WeatherBug\MiniBugTransporter.dll -> Adware.Minibug : No action taken.
:mozilla.50:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.51:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.68:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.69:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.70:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\TOSHIBA\Cookies\toshiba@adbrite[1].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.41:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.17:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\TOSHIBA\Cookies\toshiba@com[1].txt -> TrackingCookie.Com : No action taken.
:mozilla.15:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\TOSHIBA\Cookies\toshiba@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\TOSHIBA\Cookies\[removed][2].txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.62:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.63:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.65:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.66:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.67:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.18:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.19:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.20:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.55:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.74:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.75:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.76:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.77:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.85:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.86:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.87:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.34:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.39:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.40:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.47:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.48:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.49:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.52:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.30:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.31:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.61:C:\Documents and Settings\TOSHIBA\Application Data\Mozilla\Firefox\Profiles\uebpqmtq.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
::Report end
Hijackthis
Logfile of HijackThis v1.99.1
Scan saved at 12:09:08 PM, on 8/21/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5450.0004)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MSMPSVC.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Toshiba\Tvs\TvsTray.exe
C:\WINDOWS\system32\svchost.exe
c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\igfxtray.exe
C:\Program Files\Microsoft Windows OneCare Live\Firewall\msfwsvc.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\Microsoft Windows OneCare Live\winss.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Documents and Settings\TOSHIBA\My Documents\Unzipped\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=552…cid={SUB_CLCID}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = kfmrcsrv1.kaau.edu.sa:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;192.168*;
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [Tvs] "C:\Program Files\Toshiba\Tvs\TvsTray.exe"
O4 - HKLM\..\Run: [THotkey] "C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe"
O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] "C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe"
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [SmoothView] "C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe"
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] "C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe"
O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe"
O4 - HKLM\..\Run: [OneCareUI] "C:\Program Files\Microsoft Windows OneCare Live\winssnotify.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Transfer by Image Converter 2 - C:\Program Files\Sony\Image Converter 2\menu.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\system32\shdocvw.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {040F4385-8DAD-4306-94BF-B8291D841FAE} (USBAPTester Class) -
http://www.nintendowifi.com/troubleshooting/usbaptest.cab
O16 - DPF: {13EC55CF-D993-475B-9ACA-F4A384957956} (Controller Class) -
https://www.windowsonecare.com/install/cli/…nSSWebAgent.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=48835
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://excalibur-swordbreaker.spaces.msn.c…ad/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftupdat…b?1130107972143
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse…pDownloader.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSMPSVC - Unknown owner - C:\Program Files\Microsoft Windows OneCare Live\Antivirus\MSMPSVC.exe" -n 4 (file missing)
O23 - Service: OwnershipProtocol - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
By the way, should I remove Spy Sweeper after this is all said and done or is it useful even after the trial version ends? Also, are the programs "Spyware Guard" and "Spyware Blaster" useful? Should I install them?