I have run Malwarebytes Anti Malware many times and it finds the same problem and removes it but the next time I start my computer it will be there again, the file is HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace)
Below are my MBAM, Hijackthis, and Bitdefender Online scanner logs:
Malwarebytes' Anti-Malware 1.33
Database version: 1656
Windows 5.1.2600 Service Pack 2
02/05/2010 13:07:04
mbam-log-2010-05-02 (13-07-04).txt
Scan type: Quick Scan
Objects scanned: 72393
Time elapsed: 28 minute(s), 2 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace) -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
HIJACKTHIS
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:12:57, on 02/05/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kontiki\KService.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton 360\Engine\3.8.0.41\ccSvcHst.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\O2\bin\sprtsvc.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\KEM.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Norton 360\Engine\3.8.0.41\ccSvcHst.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymSCUI.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\AOL 9.0a\aoltray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\O2\bin\sprtcmd.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/def ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sdra64.exe,
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\3.8.0.41\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\3.8.0.41\IPSBHO.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll (file missing)
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\3.8.0.41\coIEPlg.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AIMWDInstallFilename] C:\DOCUME~1\Suliman\MYDOCU~1\Suliman\Biology\AIMWDI~1.EXE
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [nonep] C:\WINDOWS\TEMP\255.tmp
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [sysmon64x.exe] C:\WINDOWS\TEMP\sysmon64x.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: http://*.broadband.o2.co.uk
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) - https://wimpro.cce.hp.com/ChatEntry/dow ... ysinfo.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} - http://aolcc.aolsvc.aol.co.uk/computerc ... diagcc.cab
O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (BitDefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by117w.bay117.mail.live.com/mail ... nPUpld.cab
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} - http://upload.facebook.com/controls/Fac ... oader2.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton 360\Engine\3.8.0.41\coIEPlg.dll
O20 - AppInit_DLLs: nbmmyu.dll ihihhx.dll zahcku.dll lavwdy.dll ulpwzr.dll uasonq.dll hqopyc.dll bjihva.dll qhzztu.dll yvixog.dll ygfywo.dll omgvax.dll wykfib.dll
O20 - Winlogon Notify: ssqQkiHB - ssqQkiHB.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Lavasoft Ad-Aware Service aawserviceSymWSC (aawserviceSymWSC) - Unknown owner - C:\WINDOWS\system32\actmoviem.exe (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ClipBook ClipSrv RemoteAssist (ClipSrv RemoteAssist) - Unknown owner - C:\WINDOWS\system32\alrsvck.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\3.8.0.41\ccSvcHst.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: SupportSoft Sprocket Service (O2) (sprtsvc_O2) - SupportSoft, Inc. - C:\Program Files\O2\bin\sprtsvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Telephony TapiSrv ACS (TapiSrv ACS) - Unknown owner - C:\WINDOWS\system32\AdobePDFs.exe (file missing)
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WAN Miniport (ATW) Service WANMiniportService ACS (WANMiniportService ACS) - Unknown owner - C:\WINDOWS\system32\ac3filtera.exe (file missing)
--
End of file - 12230 bytes
BITDEFENDER ONLINE SCANNER
QuickScan Beta 32-bit v0.9.9.19
-------------------------------
Scan date: Sun May 02 12:42:17 2010
Machine ID: 67AABFD
C:\WINDOWS\PRAGMAmuetetbvpu\PRAGMAc.dll - hidden file!
C:\WINDOWS\system32\pragmabbr.dll - hidden file!
C:\WINDOWS\system32\pragmaserf.dll - hidden file!
Found 3 infected files!
-----------------------
C:\WINDOWS\PRAGMAmuetetbvpu\PRAGMAc.dll --> Gen:Heur.Krypt.9
--> Process svchost.exe (856)
C:\WINDOWS\system32\pragmaserf.dll --> Gen:Heur.Krypt.9
--> Process Explorer.EXE (1832)
C:\WINDOWS\system32\pragmabbr.dll --> Gen:Heur.Krypt.9
--> Process opera.exe (2872)
Processes
---------
<unsigned> AcroTray - Adobe Acrobat Distiller help 2420 C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
<unsigned> America Online 1608 C:\WINDOWS\wanmpsvc.exe
<unsigned> Logitech Desktop Messenger 216 C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
<unsigned> Quick Launch Buttons 1648 C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
<unsigned> SafeCast Windows NT 1588 C:\WINDOWS\system32\drivers\CDAC11BA.EXE
<unsigned> SetPoint Files 236 C:\Program Files\Logitech\SetPoint\KEM.exe
<unsigned> SoundMAX service agent 1128 C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
<unsigned> Viewpoint Manager 1812 C:\Program Files\Viewpoint\Common\ViewpointService.exe
<verified> Ad-Aware Service 1164 C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
<verified> Agere SoftModem Messaging Applet 1344 C:\WINDOWS\AGRSMMSG.exe
<verified> Alps Pointing-device Driver 1248 C:\Program Files\Apoint2K\Apoint.exe
<verified> Alps Pointing-device Driver for Windows 380 C:\Program Files\Apoint2K\Apntex.exe
<verified> America Online 368 C:\Program Files\AOL 9.0a\aoltray.exe
<verified> AOL Connectivity Service 1452 C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
<verified> Apple Mobile Device Service 1488 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
<verified> Bonjour 1536 C:\Program Files\Bonjour\mDNSResponder.exe
<verified> Delivery Manager 2792 C:\Program Files\Kontiki\KHost.exe
<verified> iTunes 1360 C:\Program Files\iPod\bin\iPodService.exe
<verified> iTunes 3728 C:\Program Files\iTunes\iTunesHelper.exe
<verified> Java(TM) Platform SE 6 U20 1824 C:\Program Files\Java\jre6\bin\jqs.exe
<verified> Java(TM) Platform SE Auto Updater 2 0 1776 C:\Program Files\Common Files\Java\Java Update\jusched.exe
<verified> KService.exe 1952 C:\Program Files\Kontiki\KService.exe
<verified> Malwarebytes' Anti-Malware 3312 C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
<verified> Microsoft® Visual Studio .NET 308 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
<verified> Microsoft® Windows® Operating System 1832 C:\WINDOWS\Explorer.EXE
<verified> Microsoft® Windows® Operating System 3080 C:\WINDOWS\System32\alg.exe
<verified> Microsoft® Windows® Operating System 468 C:\WINDOWS\system32\csrss.exe
<verified> Microsoft® Windows® Operating System 1972 C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System 3420 C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System 572 C:\WINDOWS\system32\lsass.exe
<verified> Microsoft® Windows® Operating System 560 C:\WINDOWS\system32\services.exe
<verified> Microsoft® Windows® Operating System 416 C:\WINDOWS\System32\smss.exe
<verified> Microsoft® Windows® Operating System 1292 C:\WINDOWS\system32\spoolsv.exe
<verified> Microsoft® Windows® Operating System 1400 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1040 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1688 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 948 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 856 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 788 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 748 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 736 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1300 C:\WINDOWS\system32\wbem\wmiprvse.exe
<verified> Microsoft® Windows® Operating System 508 C:\WINDOWS\system32\winlogon.exe
<verified> Microsoft® Windows® Operating System 2328 C:\WINDOWS\system32\wuauclt.exe
<verified> Microsoft® Windows® Operating System 3920 C:\WINDOWS\system32\wuauclt.exe
<verified> Norton Security Center 2960 C:\Program Files\Common Files\Symantec Shared\Security Center\SymSCUI.exe
<verified> Norton Security Center 2096 C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
<verified> NVIDIA Driver Helper Service, Version 4 684 C:\WINDOWS\system32\nvsvc32.exe
<verified> Opera Internet Browser 2872 C:\Program Files\Opera\opera.exe
<verified> Productivity Software Common Files 932 C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
<verified> SupportSoft sprtcmd 3632 C:\Program Files\O2\bin\sprtcmd.exe
<verified> SupportSoft sprtsvc 1420 C:\Program Files\O2\bin\sprtsvc.exe
<verified> Symantec Security Technologies 436 C:\Program Files\Norton 360\Engine\3.8.0.41\ccSvcHst.exe
<verified> Symantec Security Technologies 3456 C:\Program Files\Norton 360\Engine\3.8.0.41\ccSvcHst.exe
<verified> Windows Live Messenger 2016 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Windows® Internet Explorer 4216 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Windows® Internet Explorer 4884 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Yahoo! Messenger 2684 C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
Network activity
----------------
Process opera.exe (2872) connected on port 80 (HTTP) --> ww-in-f156.1e100.net
Process opera.exe (2872) connected on port 80 (HTTP) --> sitecheck2.opera.com
Process opera.exe (2872) connected on port 80 (HTTP) --> ww-in-f101.1e100.net
Process opera.exe (2872) connected on port 80 (HTTP) --> ww-in-f156.1e100.net
Process opera.exe (2872) connected on port 80 (HTTP) --> gv-in-f147.1e100.net
Process iexplore.exe (4216) connected on port 80 (HTTP) --> CRL.VERISIGN.NET
Process iexplore.exe (4216) connected on port 80 (HTTP) --> a92-123-78-50.deploy.akamaitechnologies.com
Process iexplore.exe (4216) connected on port 80 (HTTP) --> CRL.VERISIGN.NET
Process svchost.exe (736) listens on ports: 28319
Process svchost.exe (788) listens on ports: 135 (RPC)
Process KService.exe (1952) listens on ports: 1947
Autoruns and critical files
---------------------------
<unsigned> cpqset.exe C:\Program Files\HPQ\Default Settings\cpqset.exe
<unsigned> HP Service Delivery Platform C:\Program Files\Easy Internet signup\HPSdpApp.exe
<unsigned> InstallShield Update Service C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
<unsigned> InstallShield Update Service C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
<unsigned> Logitech Desktop Messenger C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
<unsigned> Quick Launch Buttons C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
<unsigned> RealPlayer (32-bit) C:\Program Files\Common Files\Real\Update_OB\realsched.exe
<unsigned> sdra64.exe c:\windows\system32\sdra64.exe
<unsigned> SetPoint Files C:\Program Files\Logitech\SetPoint\KEM.exe
<unsigned> Sonic Update Manager C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
<verified> Agere SoftModem Messaging Applet C:\WINDOWS\AGRSMMSG.exe
<verified> Alps Pointing-device Driver C:\Program Files\Apoint2K\Apoint.exe
<verified> Apple Software Update C:\Program Files\Apple Software Update\SoftwareUpdate.exe
<verified> Delivery Manager C:\Program Files\Kontiki\KHost.exe
<verified> Java(TM) Platform SE Auto Updater 2 0 C:\Program Files\Common Files\Java\Java Update\jusched.exe
<verified> LiveUpdate C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\browseui.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\crypt32.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cscdll.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\logonui.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\sclgntfy.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\shell32.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\stobject.dll
<verified> Microsoft® Windows® Operating System c:\windows\system32\userinit.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\wlnotify.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\WPDShServiceObj.dll
<verified> NVIDIA Compatible Windows 2000 Display C:\WINDOWS\system32\NvCpl.dll
<verified> NVIDIA nView Wizard, Version 47.16 C:\WINDOWS\system32\nwiz.exe
<verified> Productivity Software Common Files C:\WINDOWS\KHALMNPR.EXE
<verified> Windows Genuine Advantage C:\WINDOWS\system32\WgaLogon.dll
<verified> Windows Live Messenger C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll
<verified> Yahoo! Messenger C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
Browser plugins
---------------
<unsigned> acroiefavclient.dll c:\program files\adobe\acrobat 6.0\acrobat\acroiefavclient.dll
<unsigned> Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
<unsigned> DivX® Web Player C:\Program Files\DivX\DivX Web Player\npdivx32.dll
<unsigned> DivX® Web Player C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
<unsigned> InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.dll
<unsigned> InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.exe
<unsigned> InstallShield Update Service C:\WINDOWS\Downloaded Program Files\isusweb.dll
<unsigned> MetaStream 3 Plugin C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
<unsigned> MetaStream 3 Plugin C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
<unsigned> Mozilla ActiveX control and plugin supp C:\Program Files\Mozilla Firefox\plugins\npmozax.dll
<unsigned> npitunes.dll C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
<unsigned> QuickTime Plug-in 7.5.5 C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
<unsigned> RealJukebox NS Plugin C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
<unsigned> RealPlayer Version Plugin C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
<unsigned> RealPlayer(tm) G2 LiveConnect-Enabled P C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
<unsigned> unagiuninst.exe C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
<unsigned> Yahoo! activeX Plug-in Bridge C:\Program Files\Yahoo!\Common\npyaxmpb.dll
<verified> MusicManager Plugin C:\WINDOWS\Downloaded Program Files\MusicManagerUnInstaller.exe
<verified> AOL Media Playback Control C:\WINDOWS\Downloaded Program Files\ampAx3.0.84.2.dll
<verified> BitDefender QuickScan C:\WINDOWS\Downloaded Program Files\qsax.ocx
<verified> Facebook Photo Uploader 5 C:\WINDOWS\Downloaded Program Files\PhotoUploader5.ocx
<verified> HP Diagnostics Program - Product Identi C:\WINDOWS\Downloaded Program Files\HPBasicDetection3.dll
<verified> HPProductDetails C:\WINDOWS\Downloaded Program Files\HPProductDetails.dll
<verified> Java Deployment Toolkit 6.0.200.2 C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
<verified> Java(TM) Platform SE 6 U20 c:\program files\java\jre6\bin\jp2ssv.dll
<verified> Java(TM) Platform SE 6 U20 C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<verified> LogInfo Module C:\WINDOWS\Downloaded Program Files\LogInfo.dll
<verified> Microsoft Office 2003 C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
<verified> Microsoft® Windows Live Login Helper C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
<verified> Microsoft® Windows Media Player Firefox C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\mswsock.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\System32\nwprovau.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
<verified> Mozilla Default Plug-in C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\PURen-gb.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\PURen-us.dll
<verified> Norton Confidential C:\Program Files\Norton 360\Engine\3.8.0.41\CoIEPlg.dll
<verified> NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
<verified> Picasa C:\Program Files\Google\Picasa3\npPicasa3.dll
<verified> Silverlight Plug-In c:\Program Files\Microsoft Silverlight\3.0.50106.0\npctrl.dll
<verified> Symantec Intrusion Detection C:\Program Files\Norton 360\Engine\3.8.0.41\IPSBHO.dll
<verified> SysInfo Module C:\WINDOWS\Downloaded Program Files\SysInfo.dll
<verified> Windows Genuine Advantage C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
<verified> Windows Live® Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
<verified> Windows Presentation Foundation c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
<verified> Windows® Internet Explorer C:\WINDOWS\system32\ieframe.dll
<verified> Yahoo Application State Plugin C:\Program Files\Yahoo!\Shared\npYState.dll
Missing files
-------------
File not found: C:\DOCUME~1\Suliman\MYDOCU~1\Suliman\Biology\AIMWDI~1.EXE
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"AIMWDInstallFilename"
File not found: C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"AppleSyncNotifier"
File not found: C:\WINDOWS\System32\appmgmts.dll
referenced in: HKLM\System\ControlSet001\services\AppMgmt\Parameters\"ServiceDll"
File not found: C:\WINDOWS\System32\hidserv.dll
referenced in: HKLM\System\ControlSet001\services\HidServ\Parameters\"ServiceDll"
File not found: C:\WINDOWS\TEMP\255.tmp
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"nonep"
File not found: bjihva.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: c:\program files\veoh networks\veoh\plugins\reg\veohtoolbar.dll
referenced in: HKCR\CLSID\{D0943516-5076-4020-A3B5-AEFAF26AB263}\InprocServer32\(default)
File not found: hqopyc.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: ihihhx.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: lavwdy.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: nbmmyu.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: omgvax.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: qhzztu.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: ssqQkiHB.dll
referenced in: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqQkiHB\"DllName"
File not found: uasonq.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: ulpwzr.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: wykfib.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: ygfywo.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: yvixog.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
File not found: zahcku.dll
referenced in: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\"AppInit_DLLs"
Scan
----
<unsigned> MD5: 4970544d10652e0e7aba88f008972794 c:\program files\adobe\acrobat 6.0\acrobat\acroiefavclient.dll
<unsigned> MD5: ef0df7c71c25793a156dc370d552903f C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
<unsigned> MD5: b4767f8a4cce93cb91cc8dfaaa317bc8 C:\Program Files\Adobe\Acrobat 6.0\Distillr\adistres.dll
<unsigned> MD5: 3978f082274f723ad5a0a8058c2417dd C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
<unsigned> MD5: 628c28f3b0f227266573efd19faa9eb6 C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll
<unsigned> MD5: 382d8d60e88e780bd1f031a9d2413605 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll
<unsigned> MD5: daf66902f08796f9c694901660e5a64a C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
<unsigned> MD5: 7139a13dd292272e12ffaf2499ca7beb C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
<unsigned> MD5: a7e8525fa8788ca52f728414a65ba349 C:\Program Files\Common Files\Microsoft Shared\INK\SKCHUI.DLL
<unsigned> MD5: cb154a2638d7a0f25938627b1788b9de C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\PDM.DLL
<unsigned> MD5: 1ac2c58b587c70de64582ad41ee79fba C:\Program Files\Common Files\Real\Update_OB\realsched.exe
<unsigned> MD5: 22fd4e58d69969a9165721c797d54931 C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
<unsigned> MD5: f12215976bc6fa7da26d277ed8cbc024 C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
<unsigned> MD5: a13d7cd76e026ba041e9eba4eef1eba0 C:\Program Files\DivX\DivX Web Player\npdivx32.dll
<unsigned> MD5: cfe503373cd9ed209df776bab6b2b6e4 C:\Program Files\Easy Internet signup\HPSdpApp.exe
<unsigned> MD5: c76d192fb605168e8050b450d143a6a8 C:\Program Files\HPQ\Default Settings\cpqset.exe
<unsigned> MD5: 5aa1eeb0afbe77a7c28221d5c38a4878 C:\Program Files\HPQ\Quick Launch Buttons\cpqinfo.dll
<unsigned> MD5: 25ac935acfe507424db8bf56580655ab C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
<unsigned> MD5: ddabbad88943743e432dc9db1e24a8d7 C:\Program Files\HPQ\Quick Launch Buttons\hpqPres.dll
<unsigned> MD5: e7e0cf2e13994dab2ce10dfef25bf610 C:\Program Files\HPQ\SHARED\HPQWMI.exe
<unsigned> MD5: a2ea5c73896ac06d2811a2ac157350bf C:\Program Files\Internet Explorer\plugins\nppdf32.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
<unsigned> MD5: 4f5d4f1592b4d712bd61556b8c7e28b5 C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll
<unsigned> MD5: 51ca810fb3c11370f3904165036a31a5 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll
<unsigned> MD5: 0898cc816b28de1dbc04c91909b1b7e4 C:\Program Files\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll
<unsigned> MD5: f6cf001db2da7bfdb3f785e005530481 C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.dll
<unsigned> MD5: 2d315bb5a7a4c6c265192b05db53034f C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\Program Files\Java\jre6\bin\msvcr71.dll
<unsigned> MD5: 84afb4711d4109f29d881ea7cfc69f47 C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.50-8876480SL\Program\backweb.dll
<unsigned> MD5: dac29ad3de12e0cac510de0fb1cbec3b C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.50-8876480SL\Program\bwfiles.dll
<unsigned> MD5: bb8bc9bc13d87b2c855b2bd50fbd1dcf C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.50-8876480SL\Program\bwsec.dll
<unsigned> MD5: f2d0ad019503c48d85c5f70771288b63 C:\Program Files\Logitech\Desktop Messenger\8876480\8.1.1.50-8876480SL\Program\clntutil.dll
<unsigned> MD5: 8c620f16e1d024049046f93b12e38855 C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWfiles-8876480.dll
<unsigned> MD5: 0eafb882ff397f14e37b7972d09273c0 C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
<unsigned> MD5: b75637da0a24b4b9d12a87d02fc437fe C:\Program Files\Logitech\SetPoint\KEM.exe
<unsigned> MD5: 130a0d4d3f2cc910a836660f368ac208 C:\Program Files\Logitech\SetPoint\KEMHook.dll
<unsigned> MD5: 40a291e38574e6bf823146134b58dea5 C:\Program Files\Logitech\SetPoint\KEMUI.dll
<unsigned> MD5: 7324166ab00eb96b1c43e622862204c4 C:\Program Files\Logitech\SetPoint\KHALAPI.DLL
<unsigned> MD5: bec35624843b08db9dcd11a5a41a1d14 C:\Program Files\Logitech\SetPoint\KHALHPP.DLL
<unsigned> MD5: c67828453693dc12193df462c38029b7 C:\Program Files\Logitech\SetPoint\KHALITCH.DLL
<unsigned> MD5: 8dc14d387c8466c0cc5ee4ceb2200921 C:\Program Files\Logitech\SetPoint\KHALMW.dll
<unsigned> MD5: d6ff1708737814952d7756209806e70c C:\Program Files\Logitech\SetPoint\lgscroll.dll
<unsigned> MD5: c2c7fed757494a4302b216885c95bf82 C:\Program Files\Logitech\SetPoint\Macros\MacroBT.dll
<unsigned> MD5: f09c7a5d6f5c28520e3154497db71408 C:\Program Files\Logitech\SetPoint\Macros\MacroCore.dll
<unsigned> MD5: cb7524c21727404bd3140dca32deb7de C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
<unsigned> MD5: a13d7cd76e026ba041e9eba4eef1eba0 C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
<unsigned> MD5: bb2fd4632cbf410c584bab0be026b733 C:\Program Files\Mozilla Firefox\plugins\npmozax.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
<unsigned> MD5: 1d0323cb4d62cfeaa8ac2a50b9fad016 C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
<unsigned> MD5: b49a14eb7fdd597dc4cf8160ba4be245 C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
<unsigned> MD5: c2fa196f8dd651f04e120c7214f18fd1 C:\Program Files\O2\bin\libeay32.dll
<unsigned> MD5: dddc336bf8d60e7d5c3f60e026d26c96 C:\Program Files\O2\bin\sprtsync.dll
<unsigned> MD5: 4d58c8791fd2d0ed60f61fd298bc13d4 C:\Program Files\Opera\opera.dll
<unsigned> MD5: afdcc9f772b713c98fa28392e7a4bf4a C:\Program Files\QuickTime\QTSystem\QuickTime.qts
<unsigned> MD5: 5cbffa43360c8b07d9735218c1aa762c C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\en.lproj\QuickTimeLocalized.dll
<unsigned> MD5: 92767146e5d2677ea014c8c676f08bae C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\QuickTime.dll
<unsigned> MD5: e2b8c15caab06c6389184f23bac5ad6f C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
<unsigned> MD5: 3d304c8a8aa570169d87b0fc1701a864 C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
<unsigned> MD5: 4b2f61dca7db661570828dce5d302525 C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
<unsigned> MD5: e3f974bdedc336490a2e6f3a703f016a C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE
<unsigned> MD5: f80eec5e1d6cdf82cb974daada0c57dd C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
<unsigned> MD5: 5f974fde801c73952770736becde11e7 C:\Program Files\Viewpoint\Common\ViewpointService.exe
<unsigned> MD5: b49a14eb7fdd597dc4cf8160ba4be245 C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
<unsigned> MD5: 6efe29f123e58a6333f50beca863da42 C:\Program Files\Yahoo!\Common\npyaxmpb.dll
<unsigned> MD5: 561fa2abb31dfa8fab762145f81667c2 C:\Program Files\Yahoo!\Messenger\msvcp71.dll
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\Program Files\Yahoo!\Messenger\msvcr71.dll
<unsigned> MD5: 12e62d8b1ace8d5d996b0667a24be51a C:\Program Files\Yahoo!\Messenger\res_msgr.dll
<unsigned> MD5: b4b4eb2f8849e93fe5fece11e52c5930 C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
<unsigned> MD5: 9e2c13a26926ebb05015b8b41b4298c5 C:\PROGRA~1\Logitech\DESKTO~1\8876480\811~1.50-\Program\EN\ClientRc.dll
<unsigned> MD5: 3fea9d2edf23b0283c7a66c8dea380bd C:\WINDOWS\Downloaded Program Files\dwusplay.dll
<unsigned> MD5: cdbe35ea59bc9223e4f800bd1db82d27 C:\WINDOWS\Downloaded Program Files\dwusplay.exe
<unsigned> MD5: 5002991ada7920b35e46e7ea80c134fe C:\WINDOWS\Downloaded Program Files\isusweb.dll
<unsigned> MD5: 6f678556a6fce04fc94f3435f6313705 C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
<unsigned> MD5: a8e27c344efacfa7ce7d72a5fde473ea C:\WINDOWS\PRAGMAmuetetbvpu\PRAGMAc.dll
<unsigned> MD5: 188c35ed1ef2c869b06f7c75278eba11 C:\WINDOWS\system32\AdobePDF.dll
<unsigned> MD5: efeb8c7dfa7056c5fac338ba6cdef599 C:\WINDOWS\system32\cpwmon2k.dll
<unsigned> MD5: ac491eb706c48b89a638b239dc3bcfcb C:\WINDOWS\system32\drivers\CDAC11BA.EXE
<unsigned> MD5: 69419792390122eefd84e598d896715b C:\WINDOWS\system32\drivers\CDAC15BA.sys
<unsigned> MD5: f59c3569a2f2c464bb78cb1bdcdca55e C:\WINDOWS\system32\drivers\iviaspi.sys
<unsigned> MD5: 444f122e68db44c0589227781f3c8b3f C:\WINDOWS\system32\drivers\pfc.sys
<unsigned> MD5: d2654321192037bae90204e2fa6697ce C:\WINDOWS\system32\DRIVERS\sea1bus.sys
<unsigned> MD5: 8146d9ec5142bd364956d3807f09ca9a C:\WINDOWS\system32\DRIVERS\sea1mdfl.sys
<unsigned> MD5: afe065da777dc4408c64df5c87472bb9 C:\WINDOWS\system32\DRIVERS\sea1mdm.sys
<unsigned> MD5: a0bbd60222ad053d52f3a5c4f79904c7 C:\WINDOWS\system32\DRIVERS\sea1mgmt.sys
<unsigned> MD5: 6549babfc3362f1621a8c0eff288fb14 C:\WINDOWS\system32\DRIVERS\sea1nd5.sys
<unsigned> MD5: 957510ab44e84497733f53322351f6e8 C:\WINDOWS\system32\DRIVERS\sea1obex.sys
<unsigned> MD5: c1517e6a7ce1191ab076472bdf1b0e6e C:\WINDOWS\system32\DRIVERS\sea1unic.sys
<unsigned> MD5: 6d871b6200a5ea1f7d02dc71ffca566f C:\WINDOWS\system32\Macromed\Common\SwSupport.dll
<unsigned> MD5: 561fa2abb31dfa8fab762145f81667c2 C:\WINDOWS\system32\msvcp71.dll
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\WINDOWS\system32\msvcr71.dll
<unsigned> MD5: 859ff0797f854101a3feccc684ba5252 C:\WINDOWS\system32\pragmabbr.dll
<unsigned> MD5: be15f7e9d6104d0cde29d766c57b6d29 C:\WINDOWS\system32\pragmaserf.dll
<unsigned> MD5: d4bd2eeab07fef323f0a0ceecc954f51 C:\WINDOWS\system32\rasmans.dll
<unsigned> MD5: bd9b4450d00d4ac891407b8c0e08de9c C:\WINDOWS\system32\Syncor11.dll
<unsigned> MD5: eb9a99ab5d17b1727034ff191e6448d7 C:\WINDOWS\wanmpsvc.exe
No file uploaded.
Scan finished - communication took 8 sec
Total traffic - 0.09 MB sent, 3.82 KB recvd
Scanned 1415 files and modules - 813 seconds
==============================================================================
any help will be greatly appreciated

News