ok here goes...
new combofix log:
ComboFix 08-04-13.3 - Louise 2008-04-15 21:09:08.4 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.203 [GMT 1:00]
Running from: C:\Documents and Settings\Louise\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Louise\Desktop\CFScript.txt
* Created a new restore point
FILE ::
C:\WINDOWS\system32\cnrjpgyb.ini
C:\WINDOWS\system32\ddcyv.dll
C:\WINDOWS\system32\kjwnw64l.exe
C:\WINDOWS\system32\mcntxdn.exe
C:\WINDOWS\system32\rwwnw64d.exe
C:\WINDOWS\TG91aXNl\n36Yurh5.vbs
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Louise\Start Menu\Programs\Startup\Deewoo.lnk
C:\Documents and Settings\Louise\Start Menu\Programs\Startup\DW_Start.lnk
C:\WINDOWS\system32\cnrjpgyb.ini
C:\WINDOWS\system32\kjwnw64l.exe
C:\WINDOWS\system32\mcntxdn.exe
C:\WINDOWS\system32\msnav32.ax
C:\WINDOWS\system32\rwwnw64d.exe
C:\WINDOWS\system32\zxdnt3d.cfg
C:\WINDOWS\TG91aXNl\n36Yurh5.vbs
.
((((((((((((((((((((((((( Files Created from 2008-03-15 to 2008-04-15 )))))))))))))))))))))))))))))))
.
2008-04-15 20:29 . 2008-04-15 20:29 196,678 --a------ C:\WINDOWS\system32\ncntkldn.exe
2008-04-14 22:57 . 2008-04-14 22:57 196,678 --a------ C:\WINDOWS\system32\pcntprdn.exe
2008-04-14 22:57 . 2008-04-14 22:57 49,197 --a------ C:\WINDOWS\system32\wnw64.exe
2008-04-14 21:15 . 2008-04-15 20:19 935 --a------ C:\WINDOWS\system32\winpfz33.sys
2008-04-14 18:41 . 2008-04-14 18:41 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-04-14 18:41 . 2008-04-14 18:41 <DIR> d-------- C:\Documents and Settings\Louise\Application Data\Malwarebytes
2008-04-14 18:41 . 2008-04-14 18:41 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-04-12 00:35 . 2008-04-12 00:35 113 --a------ C:\WINDOWS\wininit.ini
2008-04-11 23:58 . 2008-04-11 23:58 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-04-11 23:58 . 2008-04-12 00:37 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-04-11 22:26 . 2008-04-11 22:27 <DIR> d--h-c--- C:\WINDOWS\ie8
2008-03-16 10:31 . 2008-04-11 22:24 197 --a------ C:\WINDOWS\system32\MRT.INI
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-11 23:35 --------- d-s---w C:\Program Files\Common Files\Teknum Systems
2008-03-19 09:47 1,845,248 ----a-w C:\WINDOWS\system32\win32k.sys
2008-03-19 09:47 1,845,248 ------w C:\WINDOWS\system32\dllcache\win32k.sys
2008-03-03 18:53 78,336 ----a-w C:\WINDOWS\system32\ieencode.dll
2008-03-03 18:53 78,336 ----a-w C:\WINDOWS\system32\dllcache\ieencode.dll
2008-03-03 18:52 70,656 ----a-w C:\WINDOWS\system32\dllcache\iedw.exe
2008-03-03 18:52 599,552 ----a-w C:\WINDOWS\system32\dllcache\iexplore.exe
2008-03-03 18:52 41,984 ----a-w C:\WINDOWS\system32\licmgr10.dll
2008-03-03 18:52 41,984 ----a-w C:\WINDOWS\system32\dllcache\licmgr10.dll
2008-03-03 18:52 349,184 ----a-w C:\WINDOWS\system32\dllcache\iedkcs32.dll
2008-03-03 18:52 224,768 ----a-w C:\WINDOWS\system32\dllcache\ieaksie.dll
2008-03-03 18:52 193,024 ----a-w C:\WINDOWS\system32\dllcache\msrating.dll
2008-03-03 18:52 17,920 ----a-w C:\WINDOWS\system32\dllcache\corpol.dll
2008-03-03 18:52 17,920 ----a-w C:\WINDOWS\system32\corpol.dll
2008-03-03 18:52 116,224 ----a-w C:\WINDOWS\system32\dllcache\occache.dll
2008-03-03 18:52 105,984 ----a-w C:\WINDOWS\system32\dllcache\url.dll
2008-03-03 18:51 94,208 ----a-w C:\WINDOWS\system32\dllcache\inseng.dll
2008-03-03 18:51 70,656 ----a-w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2008-03-03 18:51 69,120 ----a-w C:\WINDOWS\system32\iesetup.dll
2008-03-03 18:51 69,120 ----a-w C:\WINDOWS\system32\dllcache\iesetup.dll
2008-03-03 18:51 69,120 ----a-w C:\WINDOWS\system32\dllcache\admparse.dll
2008-03-03 18:51 69,120 ----a-w C:\WINDOWS\system32\admparse.dll
2008-03-03 18:51 557,056 ----a-w C:\WINDOWS\system32\dllcache\jscript.dll
2008-03-03 18:51 44,032 ----a-w C:\WINDOWS\system32\dllcache\iernonce.dll
2008-03-03 18:51 149,504 ----a-w C:\WINDOWS\system32\dllcache\ieakui.dll
2008-03-03 18:51 126,464 ----a-w C:\WINDOWS\system32\dllcache\advpack.dll
2008-03-03 18:51 119,808 ----a-w C:\WINDOWS\system32\dllcache\ieakeng.dll
2008-03-03 18:50 60,928 ----a-w C:\WINDOWS\system32\dllcache\icardie.dll
2008-03-03 18:50 48,128 ----a-w C:\WINDOWS\system32\mshtmler.dll
2008-03-03 18:50 48,128 ----a-w C:\WINDOWS\system32\dllcache\mshtmler.dll
2008-03-03 18:50 45,568 ----a-w C:\WINDOWS\system32\mshta.exe
2008-03-03 18:50 45,568 ----a-w C:\WINDOWS\system32\dllcache\mshta.exe
2008-03-03 18:50 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
2008-03-03 18:50 36,352 ----a-w C:\WINDOWS\system32\imgutil.dll
2008-03-03 18:50 36,352 ----a-w C:\WINDOWS\system32\dllcache\imgutil.dll
2008-03-03 18:50 345,600 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2008-03-03 18:50 268,800 ----a-w C:\WINDOWS\system32\dllcache\iertutil.dll
2008-03-03 18:50 212,992 ----a-w C:\WINDOWS\system32\dllcache\dxtrans.dll
2008-03-03 18:46 68,096 ----a-w C:\WINDOWS\system32\dllcache\hmmapi.dll
2008-03-03 18:34 440,832 ----a-w C:\WINDOWS\system32\dllcache\ieapfltr.dll
2008-02-24 20:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-02-23 19:18 --------- d-----w C:\Documents and Settings\Louise\Application Data\Uniblue
2008-02-23 15:53 --------- d-----w C:\Program Files\Common Files\Command Software
2008-02-23 14:23 --------- d-----w C:\Program Files\Google
2008-02-23 13:33 --------- d-----w C:\Documents and Settings\Louise\Application Data\LimeWire
2008-02-23 13:23 --------- d-----w C:\Program Files\Java
2008-02-23 13:19 --------- d-----w C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-02-23 13:18 --------- d-----w C:\Program Files\Lavasoft
2008-02-23 13:16 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-02-23 13:00 --------- d-----w C:\Program Files\LimeWire
2008-02-22 21:41 147,456 ----a-w C:\WINDOWS\system32\vbzip10.dll
2008-02-20 06:51 282,624 ----a-w C:\WINDOWS\system32\gdi32.dll
2008-02-20 06:51 282,624 ------w C:\WINDOWS\system32\dllcache\gdi32.dll
2008-02-20 05:32 45,568 ----a-w C:\WINDOWS\system32\dnsrslvr.dll
2008-02-20 05:32 45,568 ------w C:\WINDOWS\system32\dllcache\dnsrslvr.dll
2008-02-20 05:32 148,992 ------w C:\WINDOWS\system32\dllcache\dnsapi.dll
2008-02-19 18:55 --------- d-----w C:\Program Files\iTunes
2008-02-19 18:54 --------- d-----w C:\Program Files\iPod
2008-02-19 18:52 --------- d-----w C:\Program Files\QuickTime
.
((((((((((((((((((((((((((((( snapshot@2008-04-14_20.41.58.92 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-04-14 19:36:51 2,048 --s-a-w C:\WINDOWS\bootstat.dat
+ 2008-04-15 19:18:33 2,048 --s-a-w C:\WINDOWS\bootstat.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 08:56 15360]
"Uniblue RegistryBooster 2"="C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe" [ ]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ACTIVBOARD"="C:\Apps\ActivBoard\MMKeybd.exe" [2002-06-19 18:51 192512]
"BDSwitchAgent"="C:\progra~1\softwin\bitdef~1\bdswitch.exe" [ ]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-05-11 23:12 49152]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-02-01 00:13 385024]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-02-04 15:18 267048]
"Broadbandadvisor.exe"="C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe" [2007-01-24 14:12 2037240]
"g]eeV\mWhjlnspB"="C:\WINDOWS\system32\pcntprdn.exe" [2008-04-14 22:57 196678]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"SpybotDeletingC9969"="cmd /c del C:\Program Files\MSN Gaming Zone\qituxedu89104.dll_old" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-04 08:56 15360]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Internet Explorer\\iexplore.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
R1 msikbd2k;Multimedia Keyboard Filter Driver;C:\WINDOWS\system32\DRIVERS\msikbd2k.sys [2001-12-20 09:02]
R1 vcsmpdrv;vcsmpdrv;C:\WINDOWS\system32\DRIVERS\vcsmpdrv.sys [2002-06-07 12:38]
R2 nhksrv;Netropa NHK Server;C:\Apps\ActivBoard\nhksrv.exe [2001-08-06 06:41]
R2 VCSSecS;Virtual CD v4 Security service (SDK - Version);C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe [2002-05-16 12:17]
R3 STAC97NA;SigmaTel 3D Environmental Audio;C:\WINDOWS\system32\drivers\stac97na.sys [2002-09-20 18:42]
R3 STAC97NH;STAC97NH;C:\WINDOWS\system32\drivers\stac97nh.sys [2002-09-20 18:43]
S2 FILESpy;FILESpy;C:\Program Files\Softwin\BitDefender9\filespy.sys []
S3 V90drv;v90drv;C:\WINDOWS\system32\DRIVERS\v90drv.sys [2001-11-29 16:09]
.
Contents of the 'Scheduled Tasks' folder
"2007-09-16 14:54:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-04-13 11:00:00 C:\WINDOWS\Tasks\HPpromotions journeysoftware.job"
- C:\Program Files\hp\digital imaging\bin\hp promotions\journeysoftware\HPpromo.exe
"2006-08-15 21:04:57 C:\WINDOWS\Tasks\Registration reminder 2.job"
- C:\WINDOWS\System32\OOBE\oobebaln.exe
"2006-08-15 21:04:57 C:\WINDOWS\Tasks\Registration reminder 3.job"
- C:\WINDOWS\System32\OOBE\oobebaln.exe
.
**************************************************************************
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-04-15 21:12:13
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
"g]eeV\\mWhjlnspB"="C:\\WINDOWS\\system32\\pcntprdn.exe DWram"
.
Completion time: 2008-04-15 21:13:58
ComboFix-quarantined-files.txt 2008-04-15 20:13:05
ComboFix2.txt 2008-04-14 22:52:18
ComboFix3.txt 2008-04-14 20:02:35
ComboFix4.txt 2008-04-14 19:42:40
Pre-Run: 58,769,014,784 bytes free
Post-Run: 58,753,413,120 bytes free
.
2008-04-11 21:56:24 --- E O F ---
pc crashed at end of process so had to cut power and reboot before i could run hi-jackthis.
hijackthis log:
Logfile of HijackThis v1.99.1
Scan saved at 22:00:33, on 15/04/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.17184)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virgin Broadband\PCguard\fws.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Apps\ActivBoard\MMKeybd.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe
C:\WINDOWS\system32\pcntprdn.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Apps\ActivBoard\TrayMon.exe
C:\Apps\ActivBoard\OSD.exe
C:\Apps\ActivBoard\nhksrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157
O2 - BHO: (no name) - {0661C634-C425-4D46-AB26-0D1ACB58C410} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\apps\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Pop-Up Blocker BHO - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\Virgin Broadband\PCguard\pkR.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Form Filler BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Virgin Broadband\PCguard\FBHR.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
O4 - HKLM\..\Run: [BDSwitchAgent] "C:\progra~1\softwin\bitdef~1\bdswitch.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Broadbandadvisor.exe] "C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe" /AUTORUN
O4 - HKLM\..\Run: [g]eeV\mWhjlnspB] C:\WINDOWS\system32\pcntprdn.exe DWram
O4 - HKLM\..\RunOnce: [SpybotDeletingC9969] cmd /c del "C:\Program Files\MSN Gaming Zone\qituxedu89104.dll_old"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\pcntprdn.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://www.update.mi...b?1188914180484
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://www.update.mi...b?1188914101234
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: rqrssqq - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: DvpApi (dvpapi) - Authentium, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PCguard Firewall (RP_FWS) - Radialpoint Inc. - C:\Program Files\Virgin Broadband\PCguard\fws.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
where do we go from here?