﻿<?xml version='1.0' encoding='UTF-8'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>Tweaks.com Forum  / Windows &amp; System Security / HiJack This Logs  / CiD popups (trent) / Latest Posts</title><generator>InstantForum.NET v4.1.4</generator><description>Tweaks.com Forum </description><link>http://tweaks.com/forum/</link><webMaster>forum@tweaks.com</webMaster><lastBuildDate>Sat, 04 Jul 2009 06:38:41 GMT</lastBuildDate><ttl>20</ttl><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Click on Start/All Programs/Accessories/Run and type [b]Services.msc[/b] then press [b]OK[/b]&lt;br&gt;Scroll down and double click on each of the following services:&lt;br&gt;[b]RelevantKnowledge&lt;br&gt;Viewpoint Manager Service[/b]&lt;br&gt;In the next window that opens,click their 'Stop' buttons. &lt;br&gt;Then change their 'Startup Types' to 'Disabled'. &lt;br&gt;Now press Apply and then Ok and close any open windows.&lt;br&gt;&lt;br&gt;&lt;br&gt;Download [b]ATF Cleaner[/b] by [b]Atribune[/b]:&lt;br&gt;[url]http://www.atribune.org/ccount/click.php?id=1[/url]&lt;br&gt;[b]Do not run it just yet.[/b]&lt;br&gt;&lt;br&gt;Download\install [b]'SuperAntiSpyware Free Version Home Users'[/b] from here:&lt;br&gt;[URL]http://www.superantispyware.com/downloadfile.html?productid=SUPERANTISPYWAREFREE[/URL]&lt;br&gt;&lt;br&gt;Launch SuperAntiSpyware and click on 'Check for updates'.&lt;br&gt;Once the updates have been installed,[b]exit[/b] SuperAntiSpyware.&lt;br&gt;[b]Do not run it just yet.[/b]&lt;br&gt;&lt;br&gt;Have Hijack This fix the following if still present, by placing a check in the appropriate boxes and selecting 'Fix checked'. &lt;br&gt;Make sure all browser and all Windows Explorer windows are closed before fixing:&lt;br&gt;[b]O23 - Service: RelevantKnowledge - RelevantKnowledge - C:\Windows\system32\rlservice.exe&lt;br&gt;O23 - Service: Viewpoint Manager Service - Unknown owner - C:\Program Files\Viewpoint\Common\ViewpointService.exe (file missing)[/b]&lt;br&gt;Exit Hijackthis.&lt;br&gt;&lt;br&gt;[b]Now double-click ATF-Cleaner.exe to run the program.[/b]&lt;br&gt;Click 'Select All' found at the bottom of the list.&lt;br&gt;Click the 'Empty Selected' button.&lt;br&gt;If you use [b]Firefox[/b] browser, do this also:&lt;br&gt;Click Firefox at the top and choose 'Select All' from the list.&lt;br&gt;Click the 'Empty Selected' button.&lt;br&gt;[b][color="blue"]NOTE:[/color][/b] &lt;br&gt;[color="blue"]If you would like to keep your saved passwords,please click [b]'No'[/b] at the prompt.[/color]&lt;br&gt;If you use [b]Opera[/b] browser,do this also:&lt;br&gt;Click Opera at the top and choose 'Select All' from the list.&lt;br&gt;Click the 'Empty Selected' button.&lt;br&gt;[b][color="blue"]NOTE:[/color][/b] &lt;br&gt;[color="blue"]If you would like to keep your saved passwords,please click [b]'No'[/b] at the prompt.[/color]&lt;br&gt;Click 'Exit' on the Main menu to close the program.&lt;br&gt;&lt;br&gt;[b]Now Start SuperAntiSpyware.[/b]&lt;br&gt;On the main screen click on 'Scan your computer'.&lt;br&gt;Check: 'Perform Complete Scan'.&lt;br&gt;Click 'Next' to start the scan.&lt;br&gt;&lt;br&gt;Superantispyware will now scan your computer,when it's finished it will list all/any infections found.&lt;br&gt;Make sure everything found has a checkmark next to it,then press 'Next'.&lt;br&gt;Click on 'Finish' when you've done.&lt;br&gt;&lt;br&gt;It's possible that the program will ask you to reboot in order to delete some files.&lt;br&gt;&lt;br&gt;Obtain the SuperAntiSpyware log as follows:&lt;br&gt;Click on 'Preferences'.&lt;br&gt;Click on the 'Statistics/Logs' tab.&lt;br&gt;Under 'Scanner Logs' double click on 'SuperAntiSpyware Scan Log'.&lt;br&gt;It will then open in your default text editor,such as Notepad.&lt;br&gt;[b]Copy and paste the contents of that report into your next reply.&lt;br&gt;Also post a new Hijackthis log,let me know how your pc is running now.[/b]</description><pubDate>Wed, 26 Mar 2008 20:29:09 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Ok, here is the HijackThis log after the fix.reg and the restarting of my computer&lt;/P&gt;&lt;P&gt;Logfile of Trend Micro HijackThis v2.0.2&lt;BR&gt;Scan saved at 9:14:41 PM, on 3/26/2008&lt;BR&gt;Platform: Windows Vista  (WinNT 6.00.1904)&lt;BR&gt;MSIE: Internet Explorer v7.00 (7.00.6000.16609)&lt;BR&gt;Boot mode: Normal&lt;/P&gt;&lt;P&gt;Running processes:&lt;BR&gt;C:\Windows\system32\Dwm.exe&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Windows\Explorer.EXE&lt;BR&gt;C:\Program Files\Windows Defender\MSASCui.exe&lt;BR&gt;C:\Windows\RtHDVCpl.exe&lt;BR&gt;C:\Windows\OEM07Mon.exe&lt;BR&gt;C:\Windows\System32\MediaButtons.exe&lt;BR&gt;C:\Program Files\DELL\Dell Webcam Manager\DellWMgr.exe&lt;BR&gt;C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&lt;BR&gt;C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe&lt;BR&gt;C:\Windows\System32\DELLOSD.exe&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE&lt;BR&gt;C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe&lt;BR&gt;C:\Program Files\iTunes\iTunesHelper.exe&lt;BR&gt;C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\DellSupport\DSAgnt.exe&lt;BR&gt;C:\Program Files\Dell Support Center\bin\sprtcmd.exe&lt;BR&gt;C:\Windows\ehome\ehtray.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnscfg.exe&lt;BR&gt;C:\Windows\ehome\ehmsas.exe&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe&lt;BR&gt;C:\Program Files\SetPoint\SetPoint.exe&lt;BR&gt;C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe&lt;BR&gt;C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe&lt;BR&gt;C:\Program Files\Trend Micro\HijackThis\HijackThis.exe&lt;/P&gt;&lt;P&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=69157"&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=69157"&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/A&gt;&lt;BR&gt;R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = &lt;BR&gt;O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll&lt;BR&gt;O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll&lt;BR&gt;O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll&lt;BR&gt;O3 - Toolbar: &amp;amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll&lt;BR&gt;O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide&lt;BR&gt;O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe&lt;BR&gt;O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe&lt;BR&gt;O4 - HKLM\..\Run: [OEM07Mon.exe] C:\Windows\OEM07Mon.exe&lt;BR&gt;O4 - HKLM\..\Run: [MediaButtons] C:\Windows\System32\MediaButtons.exe&lt;BR&gt;O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe&lt;BR&gt;O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s&lt;BR&gt;O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE&lt;BR&gt;O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start&lt;BR&gt;O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"&lt;BR&gt;O4 - HKLM\..\Run: [dscactivate] c:\dell\dsca.exe 3&lt;BR&gt;O4 - HKLM\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup&lt;BR&gt;O4 - HKLM\..\Run: [CCUTRAYICON] "C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe"&lt;BR&gt;O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup&lt;BR&gt;O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"&lt;BR&gt;O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime&lt;BR&gt;O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"&lt;BR&gt;O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"&lt;BR&gt;O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized&lt;BR&gt;O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup&lt;BR&gt;O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter&lt;BR&gt;O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe&lt;BR&gt;O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe&lt;BR&gt;O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-21-1584324784-2898364789-997048515-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'IUSR_NMPR')&lt;BR&gt;O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')&lt;BR&gt;O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')&lt;BR&gt;O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE&lt;BR&gt;O4 - Global Startup: Bluetooth.lnk = ?&lt;BR&gt;O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe&lt;BR&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: S&amp;amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll&lt;BR&gt;O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL&lt;BR&gt;O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm&lt;BR&gt;O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm&lt;BR&gt;O13 - Gopher Prefix: &lt;BR&gt;O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL&lt;BR&gt;O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe&lt;BR&gt;O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe&lt;BR&gt;O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe&lt;BR&gt;O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe&lt;BR&gt;O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe&lt;BR&gt;O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe&lt;BR&gt;O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe&lt;BR&gt;O23 - Service: Intel(R) DHTrace Controller (DHTRACE) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\IntelDH\bin\DHTraceController.exe&lt;BR&gt;O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe&lt;BR&gt;O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe&lt;BR&gt;O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe&lt;BR&gt;O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe&lt;BR&gt;O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe&lt;BR&gt;O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe&lt;BR&gt;O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;O23 - Service: Intel(R) NMSCore (NMSCore) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\IntelDH\NMS\NMSCore\NMSCore.exe&lt;BR&gt;O23 - Service: Intel(R) Quality Manager (QualityManager) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\qualitymanager.exe&lt;BR&gt;O23 - Service: RelevantKnowledge - RelevantKnowledge - C:\Windows\system32\rlservice.exe&lt;BR&gt;O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe&lt;BR&gt;O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe&lt;BR&gt;O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe&lt;BR&gt;O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe&lt;BR&gt;O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe&lt;BR&gt;O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;O23 - Service: Viewpoint Manager Service - Unknown owner - C:\Program Files\Viewpoint\Common\ViewpointService.exe (file missing)&lt;/P&gt;&lt;P&gt;--&lt;BR&gt;End of file - 12421 bytes&lt;BR&gt;</description><pubDate>Wed, 26 Mar 2008 20:17:47 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Thats ok,follow the rest of the steps please.</description><pubDate>Wed, 26 Mar 2008 20:10:38 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>I forgot to post the results before I clicked to reboot, so this is what it came up with the second time I did it.&lt;/P&gt;&lt;P&gt;[Custom Input]&lt;BR&gt;&amp;lt; C:\ProgramData\dartregsregs.f3sgf &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\dartregsregs.f3sgf not found.&lt;BR&gt;&amp;lt; C:\ProgramData\dartregsregs.t2em0md &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\dartregsregs.t2em0md not found.&lt;BR&gt;&amp;lt; C:\ProgramData\EQ STUPID SLOW.0hj1j &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\EQ STUPID SLOW.0hj1j not found.&lt;BR&gt;&amp;lt; C:\ProgramData\Flaw bits &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\Flaw bits not found.&lt;BR&gt;&amp;lt; C:\ProgramData\Part Hide Grey Pop &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\Part Hide Grey Pop not found.&lt;BR&gt;&amp;lt; C:\Users\All Users\Part Hide Grey Pop &amp;gt;&lt;BR&gt;File/Folder C:\Users\All Users\Part Hide Grey Pop not found.&lt;BR&gt;&amp;lt; C:\Users\All Users\Flaw bits &amp;gt;&lt;BR&gt;File/Folder C:\Users\All Users\Flaw bits not found.&lt;BR&gt;&amp;lt; C:\ProgramData\Viewpoint &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\Viewpoint not found.&lt;BR&gt;&amp;lt; C:\Program Files\Viewpoint &amp;gt;&lt;BR&gt;C:\Program Files\Viewpoint moved successfully.&lt;BR&gt;&amp;lt; C:\Users\All Users\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 &amp;gt;&lt;BR&gt;File/Folder C:\Users\All Users\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 not found.&lt;BR&gt;&amp;lt; C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 &amp;gt;&lt;BR&gt;File/Folder C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 not found.&lt;BR&gt; &lt;BR&gt;OTMoveIt2 by OldTimer - Version 1.0.21 log created on 03262008_210452&lt;BR&gt;</description><pubDate>Wed, 26 Mar 2008 20:08:23 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Please download [b]OTMoveIt[/b] by [b]OldTimer[/b],save it to your desktop:&lt;br&gt;[url]http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe[/url]&lt;br&gt;Please double-click OTMoveIt.exe to run it.&lt;br&gt;Copy the file paths below to the clipboard by highlighting [b]ALL[/b] of them and pressing CTRL + C (or, after highlighting, right-click and choose 'Copy'):&lt;br&gt;&lt;br&gt;[b]C:\ProgramData\dartregsregs.f3sgf&lt;br&gt;C:\ProgramData\dartregsregs.t2em0md&lt;br&gt;C:\ProgramData\EQ STUPID SLOW.0hj1j&lt;br&gt;C:\ProgramData\Flaw bits&lt;br&gt;C:\ProgramData\Part Hide Grey Pop&lt;br&gt;C:\Users\All Users\Part Hide Grey Pop&lt;br&gt;C:\Users\All Users\Flaw bits&lt;br&gt;C:\ProgramData\Viewpoint&lt;br&gt;C:\Program Files\Viewpoint&lt;br&gt;C:\Users\All Users\2ACA5CC3-0F83-453D-A079-1076FE1A8B65&lt;br&gt;C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65[/b]&lt;br&gt;&lt;br&gt;Return to OTMoveIt, right click on the "[b]Paste Custom List of Files/Folders to Move[/b]" window under the [b]"yellow"[/b] bar at the bottom,and choose [b]Paste[/b],see image below:&lt;br&gt;&lt;br&gt;[IMG]http://img.photobucket.com/albums/v624/29wood/O2MOVE.gif[/IMG]&lt;br&gt;&lt;br&gt;Click the red Moveit! button [IMG]http://img.photobucket.com/albums/v624/29wood/Clipboard01moveit.gif[/IMG]&lt;br&gt;[b]Copy everything on the 'Results' window to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose 'Copy'), and paste it into your next reply.[/b]&lt;br&gt;Close OTMoveIt by clicking on the "Exit" button.&lt;br&gt;If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. &lt;br&gt;If you are asked to reboot the machine choose [b]Yes[/b].&lt;br&gt;&lt;br&gt;&lt;br&gt;Copy and paste ALL the following text in the code box below into [b]Notepad[/b].&lt;br&gt;Click on Start/All Programs/Accessories/[b]Notepad[/b].&lt;br&gt;Click on File(in the menu at the top)&gt;Save as../Save as Type: 'All Files' /File name: [b]fix.reg[/b] to your desktop.&lt;br&gt;Then double click on the [b]fix.reg[/b] file on your desktop[IMG]http://img.photobucket.com/albums/v624/29wood/Clipboard01reg.gif[/IMG]and agree to merge the information into the registry,[b]then restart your pc[/b].&lt;br&gt;[quote]REGEDIT4&lt;br&gt;[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]&lt;br&gt;"Coal 32"=-&lt;br&gt;"Grey pop cake audio"=-&lt;br&gt;"Host Process"=-&lt;br&gt;[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]&lt;br&gt;"{B3740027-0036-49BF-98E7-04F4F903D67B}"=-&lt;br&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]&lt;br&gt;"{ACE67183-9E4A-4DF3-8533-DB005A7CE86A}"=-&lt;br&gt;"{6FDF4B51-E7E5-4278-A939-7B9F2C5C2104}"=-[/quote]&lt;br&gt;&lt;br&gt;Also post a new Hijackthis log please.</description><pubDate>Wed, 26 Mar 2008 19:55:38 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>ComboFix 08-03-25.4 - Trent 2008-03-26 20:18:47.1 - NTFSx86&lt;BR&gt;Microsoft® Windows Vista™ Home Premium   6.0.6000.0.1252.1.1033.18.1097 [GMT -4:00]&lt;BR&gt;Running from: C:\Users\Trent\Downloads\ComboFix.exe&lt;BR&gt; * Created a new restore point&lt;BR&gt;.&lt;/P&gt;&lt;P&gt;(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))&lt;BR&gt;.&lt;/P&gt;&lt;P&gt;C:\Program Files\Video Add-on&lt;BR&gt;C:\ProgramData\SeekmoSA&lt;BR&gt;C:\ProgramData\SeekmoSA\SeekmoSA.dat&lt;BR&gt;C:\ProgramData\SeekmoSA\SeekmoSA_kyf.dat&lt;BR&gt;C:\ProgramData\SeekmoSA\SeekmoSAAbout.mht&lt;BR&gt;C:\ProgramData\SeekmoSA\SeekmoSAau.dat&lt;BR&gt;C:\ProgramData\SeekmoSA\SeekmoSAEULA.mht&lt;BR&gt;C:\Users\Trent\AppData\Roaming\Seekmo&lt;BR&gt;C:\Users\Trent\AppData\Roaming\urlredir.cfg&lt;BR&gt;C:\Windows\system32\qomno.dll&lt;/P&gt;&lt;P&gt;.&lt;BR&gt;(((((((((((((((((((((((((   Files Created from 2008-02-27 to 2008-03-27  )))))))))))))))))))))))))))))))&lt;BR&gt;.&lt;/P&gt;&lt;P&gt;2008-03-26 17:16 . 2008-03-26 17:16 &amp;lt;DIR&amp;gt; d-------- C:\Users\Trent\AppData\Roaming\Grisoft&lt;BR&gt;2008-03-26 17:16 . 2008-03-26 17:16 &amp;lt;DIR&amp;gt; d-------- C:\Users\All Users\Grisoft&lt;BR&gt;2008-03-26 17:16 . 2008-03-26 17:16 &amp;lt;DIR&amp;gt; d-------- C:\ProgramData\Grisoft&lt;BR&gt;2008-03-26 17:16 . 2007-05-30 08:10 10,872 --a------ C:\Windows\System32\drivers\AvgAsCln.sys&lt;BR&gt;2008-03-26 16:53 . 2008-03-26 16:53 &amp;lt;DIR&amp;gt; d-------- C:\Program Files\Trend Micro&lt;BR&gt;2008-03-25 08:15 . 2008-03-25 08:27 &amp;lt;DIR&amp;gt; d--hs---- C:\Users\Trent\!&lt;BR&gt;2008-03-25 08:15 . 2008-03-25 08:15 3,545,428 --------- C:\Users\Trent\x1.dat&lt;BR&gt;2008-03-25 08:14 . 2008-03-25 08:14 61,952 --a------ C:\Users\Trent\winlogon.exe&lt;BR&gt;2008-03-24 21:33 . 2008-03-24 21:33 &amp;lt;DIR&amp;gt; d-------- C:\Program Files\Xvid&lt;BR&gt;2008-03-24 21:33 . 2007-06-28 18:52 765,952 --a------ C:\Windows\System32\xvidcore.dll&lt;BR&gt;2008-03-24 21:33 . 2007-06-28 18:54 180,224 --a------ C:\Windows\System32\xvidvfw.dll&lt;BR&gt;2008-03-24 21:33 . 2007-06-28 18:55 77,824 --a------ C:\Windows\System32\xvid.ax&lt;BR&gt;2008-03-23 16:27 . 2008-03-23 16:27 &amp;lt;DIR&amp;gt; d-------- C:\Users\All Users\Part Hide Grey Pop&lt;BR&gt;2008-03-23 16:27 . 2008-03-23 16:27 &amp;lt;DIR&amp;gt; d-------- C:\ProgramData\Part Hide Grey Pop&lt;BR&gt;2008-03-23 16:26 . 2008-03-23 16:27 &amp;lt;DIR&amp;gt; d-------- C:\Users\All Users\Flaw bits&lt;BR&gt;2008-03-23 16:26 . 2008-03-23 16:27 &amp;lt;DIR&amp;gt; d-------- C:\ProgramData\Flaw bits&lt;BR&gt;2008-03-14 19:16 . 2008-03-14 19:16 &amp;lt;DIR&amp;gt; d-------- C:\Windows\Sun&lt;BR&gt;2008-03-14 19:16 . 2008-03-14 19:16 &amp;lt;DIR&amp;gt; d-------- C:\Windows\.jagex_cache_32&lt;BR&gt;2008-03-14 19:00 . 2008-03-14 19:00 &amp;lt;DIR&amp;gt; d-------- C:\Users\All Users\2ACA5CC3-0F83-453D-A079-1076FE1A8B65&lt;BR&gt;2008-03-14 19:00 . 2008-03-14 19:00 &amp;lt;DIR&amp;gt; d-------- C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65&lt;BR&gt;2008-03-12 14:59 . 2007-12-16 18:50 1,060,920 --a------ C:\Windows\System32\drivers\ntfs.sys&lt;BR&gt;2008-03-12 14:59 . 2007-12-16 05:56 41,984 --a------ C:\Windows\System32\drivers\monitor.sys&lt;BR&gt;2008-03-07 13:40 . 2008-03-07 13:40 13,035 --a------ C:\Windows\System32\drivers\SymRedir.cat&lt;BR&gt;2008-03-07 13:40 . 2008-03-07 13:40 1,358 --a------ C:\Windows\System32\drivers\SymRedir.inf&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 191,536 --a------ C:\Windows\System32\drivers\symtdi.sys&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 145,968 --a------ C:\Windows\System32\drivers\symfw.sys&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 39,984 --a------ C:\Windows\System32\drivers\symids.sys&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 37,936 --a------ C:\Windows\System32\drivers\symndisv.sys&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 27,696 --a------ C:\Windows\System32\drivers\symredrv.sys&lt;BR&gt;2008-03-07 13:39 . 2008-03-07 13:39 12,848 --a------ C:\Windows\System32\drivers\symdns.sys&lt;BR&gt;2008-03-04 06:53 . 2008-03-26 20:24 54,156 --ah----- C:\Windows\QTFont.qfn&lt;BR&gt;2008-03-04 06:53 . 2008-03-04 06:53 1,409 --a------ C:\Windows\QTFont.for&lt;BR&gt;2008-03-04 06:52 . 2008-03-04 06:52 &amp;lt;DIR&amp;gt; d-------- C:\Program Files\iTunes&lt;BR&gt;2008-03-04 06:52 . 2008-03-04 06:52 &amp;lt;DIR&amp;gt; d-------- C:\Program Files\iPod&lt;/P&gt;&lt;P&gt;.&lt;BR&gt;((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))&lt;BR&gt;.&lt;BR&gt;2008-03-24 22:59 --------- d-----w C:\ProgramData\Symantec&lt;BR&gt;2008-03-14 00:04 --------- d-----w C:\Program Files\Windows Mail&lt;BR&gt;2008-03-13 18:58 --------- d-----w C:\ProgramData\Microsoft Help&lt;BR&gt;2008-03-11 03:17 --------- d-----w C:\Program Files\Norton Internet Security&lt;BR&gt;2008-03-11 03:17 --------- d-----w C:\Program Files\Common Files\Symantec Shared&lt;BR&gt;2008-03-07 20:46 --------- d-----w C:\Program Files\Java&lt;BR&gt;2008-03-07 01:32 706 ----a-w C:\Windows\system32\drivers\COH_Mon.inf&lt;BR&gt;2008-03-07 01:32 23,904 ----a-w C:\Windows\system32\drivers\COH_Mon.sys&lt;BR&gt;2008-03-07 01:32 10,537 ----a-w C:\Windows\system32\drivers\COH_Mon.cat&lt;BR&gt;2008-02-16 02:09 --------- d-----w C:\Program Files\DELL&lt;BR&gt;2008-02-13 22:07 194,560 ----a-w C:\Windows\System32\WebClnt.dll&lt;BR&gt;2008-02-13 22:07 110,080 ----a-w C:\Windows\system32\drivers\mrxdav.sys&lt;BR&gt;2008-02-13 22:04 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe&lt;BR&gt;2008-02-13 22:04 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe&lt;BR&gt;2008-02-13 22:04 154,624 ----a-w C:\Windows\system32\drivers\nwifi.sys&lt;BR&gt;2008-02-13 22:03 803,328 ----a-w C:\Windows\system32\drivers\tcpip.sys&lt;BR&gt;2008-02-13 22:03 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll&lt;BR&gt;2008-02-13 22:03 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll&lt;BR&gt;2008-02-13 22:03 4,247,552 ----a-w C:\Windows\System32\GameUXLegacyGDFs.dll&lt;BR&gt;2008-02-13 22:03 24,064 ----a-w C:\Windows\System32\netcfg.exe&lt;BR&gt;2008-02-13 22:03 22,016 ----a-w C:\Windows\System32\netiougc.exe&lt;BR&gt;2008-02-13 22:03 216,632 ----a-w C:\Windows\system32\drivers\netio.sys&lt;BR&gt;2008-02-13 22:03 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.dll&lt;BR&gt;2008-02-13 22:03 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll&lt;BR&gt;2008-02-13 22:03 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll&lt;BR&gt;2008-02-13 22:03 1,686,528 ----a-w C:\Windows\System32\gameux.dll&lt;BR&gt;2008-02-13 22:00 824,832 ----a-w C:\Windows\System32\wininet.dll&lt;BR&gt;2008-02-13 22:00 56,320 ----a-w C:\Windows\System32\iesetup.dll&lt;BR&gt;2008-02-13 22:00 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll&lt;BR&gt;2008-02-13 22:00 26,624 ----a-w C:\Windows\System32\ieUnatt.exe&lt;BR&gt;2008-02-12 20:35 --------- d-----w C:\Program Files\QuickTime&lt;BR&gt;2008-02-12 20:08 --------- d-----w C:\Users\Trent\AppData\Roaming\MySpace&lt;BR&gt;2008-01-11 01:19 11,776 ----a-w C:\Windows\System32\sbunattend.exe&lt;BR&gt;2008-01-10 05:50 1,244,672 ----a-w C:\Windows\System32\mcmde.dll&lt;BR&gt;2007-12-25 17:27 174 --sha-w C:\Program Files\desktop.ini&lt;BR&gt;2007-12-03 22:56 76 --sh--r C:\Windows\CT4CET.bin&lt;BR&gt;.&lt;/P&gt;&lt;P&gt;(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))&lt;BR&gt;.&lt;BR&gt;.&lt;BR&gt;*Note* empty entries &amp;amp; legit default entries are not shown &lt;BR&gt;REGEDIT4&lt;/P&gt;&lt;P&gt;[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]&lt;BR&gt;"DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [2007-03-15 14:09 460784]&lt;BR&gt;"DellSupportCenter"="C:\Program Files\Dell Support Center\bin\sprtcmd.exe" [2007-07-11 10:15 198704]&lt;BR&gt;"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 08:35 125440]&lt;BR&gt;"Aim6"="" []&lt;BR&gt;"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 08:36 201728]&lt;BR&gt;"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [ ]&lt;BR&gt;"Coal 32"="C:\ProgramData\dartregsregs.t2em0md" [2008-03-23 16:26 245776]&lt;BR&gt;"Grey pop cake audio"="C:\ProgramData\EQ STUPID SLOW.0hj1j" [2008-03-23 16:27 188432]&lt;BR&gt;"Host Process"="C:\Users\Trent\svchost.exe" [ ]&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]&lt;BR&gt;"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-10-15 18:23 1006264]&lt;BR&gt;"ECenter"="C:\Dell\E-Center\EULALauncher.exe" [2007-05-25 02:03 17920]&lt;BR&gt;"RtHDVCpl"="RtHDVCpl.exe" [2007-10-13 06:18 4702208 C:\Windows\RtHDVCpl.exe]&lt;BR&gt;"OEM07Mon.exe"="C:\Windows\OEM07Mon.exe" [2007-09-11 08:18 36864]&lt;BR&gt;"MediaButtons"="C:\Windows\System32\MediaButtons.exe" [2007-09-20 21:14 2433024]&lt;BR&gt;"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 14:35 90112]&lt;BR&gt;"DELL Webcam Manager"="C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" [2007-07-27 18:43 118784]&lt;BR&gt;"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 17:32 56080 C:\Windows\KHALMNPR.Exe]&lt;BR&gt;"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2006-10-03 13:37 81920]&lt;BR&gt;"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2007-08-21 11:06 115816]&lt;BR&gt;"dscactivate"="c:\dell\dsca.exe" [2007-07-30 15:40 16384]&lt;BR&gt;"NMSSupport"="C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [2007-06-27 12:14 439512]&lt;BR&gt;"CCUTRAYICON"="C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" [2007-06-27 12:18 215256]&lt;BR&gt;"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-12-03 19:09 1862144]&lt;BR&gt;"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2006-10-03 13:35 221184]&lt;BR&gt;"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]&lt;BR&gt;"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-02-01 00:13 385024]&lt;BR&gt;"Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 18:38 583048]&lt;BR&gt;"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-02-19 14:10 267048]&lt;BR&gt;"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 05:25 6731312]&lt;/P&gt;&lt;P&gt;[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]&lt;BR&gt;"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [ ]&lt;/P&gt;&lt;P&gt;C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\&lt;BR&gt;OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 22:24:54 98632]&lt;/P&gt;&lt;P&gt;C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\&lt;BR&gt;Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-10-05 18:54:24 727592]&lt;BR&gt;SetPoint.lnk - C:\Program Files\SetPoint\SetPoint.exe [2007-12-03 18:56:38 696320]&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]&lt;BR&gt;"EnableLUA"= 0 (0x0)&lt;/P&gt;&lt;P&gt;[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]&lt;BR&gt;"{B3740027-0036-49BF-98E7-04F4F903D67B}"= C:\Windows\system32\qomno.dll [ ]&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]&lt;BR&gt;"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\security center]&lt;BR&gt;"UacDisableNotify"=dword:00000001&lt;BR&gt;"InternetSettingsDisableNotify"=dword:00000001&lt;BR&gt;"AutoUpdateDisableNotify"=dword:00000001&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]&lt;BR&gt;"DisableMonitoring"=dword:00000001&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]&lt;BR&gt;"DisableMonitoring"=dword:00000001&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]&lt;BR&gt;"DisableMonitoring"=dword:00000001&lt;/P&gt;&lt;P&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]&lt;BR&gt;"EnableFirewall"= 0 (0x0)&lt;/P&gt;&lt;P&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]&lt;BR&gt;"{26ADC61D-7E65-4B77-B234-AFCE0A4A12A8}"= UDP:C:\Program Files\Dell Network Assistant\ezi_hnm2.exe:Dell Network Assistant&lt;BR&gt;"{01AABF3D-3872-495B-83F7-2E7D451FE3AE}"= TCP:C:\Program Files\Dell Network Assistant\ezi_hnm2.exe:Dell Network Assistant&lt;BR&gt;"{2CE5C0EA-A80F-47CA-A43A-802950008D7C}"= TCP:10421:SingleClick Discovery Protocol&lt;BR&gt;"{9388843C-ABF7-4E8C-9C24-F5BA154D29FE}"= UDP:139:NetBIOS File/Printer Sharing&lt;BR&gt;"{01529DBC-4DAC-4385-B0B2-A7D386A392C0}"= TCP:10426:SingleClick ICC&lt;BR&gt;"{42A9B7F3-1E92-46F6-840D-BCA4FD813B34}"= UDP:445:Microsoft Directory Services&lt;BR&gt;"{EA65E4F0-5427-4838-A0A1-4351AD883A40}"= TCP:138:NetBIOS Datagram Service&lt;BR&gt;"{D42F2BB9-113D-41F8-B184-4382EE16BDFA}"= TCP:137:NetBIOS Name Service&lt;BR&gt;"{607CF6F2-87BF-42E9-AC5A-32CFE2AC006E}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote&lt;BR&gt;"{0BF102B7-2BCE-4FE5-9796-74AA098753CF}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote&lt;BR&gt;"{B7A00D7C-2DC4-4D11-A41D-8B878EC75D94}"= UDP:C:\Program Files\Yahoo!\Yahoo! Music Jukebox\YahooMusicEngine.exe:Yahoo! Music Jukebox&lt;BR&gt;"{DE815A1A-DA56-4CD9-966F-561C2F54CD58}"= TCP:C:\Program Files\Yahoo!\Yahoo! Music Jukebox\YahooMusicEngine.exe:Yahoo! Music Jukebox&lt;BR&gt;"{8ECABA77-FB88-4032-A0F3-060547B9B334}"= UDP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM&lt;BR&gt;"{D5D54AF3-DB63-4D2A-875D-65349D207620}"= TCP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM&lt;BR&gt;"{037E0CD7-155E-4144-8196-939B9B31C545}"= UDP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service&lt;BR&gt;"{B4F9BDAE-F29D-47CF-8EF6-945025111FD7}"= TCP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service&lt;BR&gt;"{2ABDA20B-7CAF-4B0B-801A-07B7C2DA8D55}"= UDP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server&lt;BR&gt;"{DED8BD1E-42BD-4E4A-A21E-A4DE6DE1C494}"= TCP:Profile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server&lt;BR&gt;"{013129DC-C202-4FB7-8C2D-BF5DC2E0A946}"= TCP:Profile=Private|Profile=Public|9442:127.0.0.1:Intel(R) Viiv(TM) Media Server Discovery&lt;BR&gt;"{82322CD7-E3C6-4C55-97A0-713020AEECAB}"= TCP:Profile=Private|Profile=Public|1900:LocalSubnet:LocalSubnet:Intel(R) Viiv(TM) Media Server UPnP Discovery&lt;BR&gt;"{0060F024-23F1-4580-8AC2-6162C56C4291}"= Disabled:UDP:C:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe:Adobe Photoshop Elements Media Server&lt;BR&gt;"{68BDCABD-CC49-4E94-AC07-072B2E11E655}"= Disabled:TCP:C:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe:Adobe Photoshop Elements Media Server&lt;BR&gt;"{913B8C2F-D545-4194-A495-77C71661B9C4}"= UDP:C:\Program Files\Common Files\AOL\Loader\aolload.exe:AOL Loader&lt;BR&gt;"{742C1371-8CA7-4DBB-954E-15C8053F5362}"= TCP:C:\Program Files\Common Files\AOL\Loader\aolload.exe:AOL Loader&lt;BR&gt;"{207D787A-6F43-4E77-A02C-D161A947A14F}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire&lt;BR&gt;"{2D34C5F4-8E64-4470-BBE3-1097D6F2521C}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire&lt;BR&gt;"{3830E041-1471-48AB-AF7B-E779E0DAF38E}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes&lt;BR&gt;"{2D42C912-8394-4ABB-BBBE-A5D7E978DFD2}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes&lt;BR&gt;"{ACE67183-9E4A-4DF3-8533-DB005A7CE86A}"= UDP:C:\Windows\System32\rlvknlg.exe:rlvknlg.exe&lt;BR&gt;"{6FDF4B51-E7E5-4278-A939-7B9F2C5C2104}"= TCP:C:\Windows\System32\rlvknlg.exe:rlvknlg.exe&lt;BR&gt;"{E831C9B3-AC99-4CD9-937A-1E0E465BB369}"= Disabled:UDP:C:\Program Files\MySpace\IM\MySpaceIM.exe:MySpaceIM&lt;BR&gt;"{93290905-1E90-4BD7-8F8A-19EE8287C210}"= Disabled:TCP:C:\Program Files\MySpace\IM\MySpaceIM.exe:MySpaceIM&lt;BR&gt;"{9F9EED88-8078-4FB0-8BE1-0F43728CA4E1}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes&lt;BR&gt;"{E92D51D9-E5AC-446E-A912-224AF5A6B001}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes&lt;/P&gt;&lt;P&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]&lt;BR&gt;"EnableFirewall"= 0 (0x0)&lt;/P&gt;&lt;P&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]&lt;BR&gt;"DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|Svc=DFSR:Allow inbound TCP traffic|&lt;/P&gt;&lt;P&gt;[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]&lt;BR&gt;"EnableFirewall"= 0 (0x0)&lt;/P&gt;&lt;P&gt;R1 IDSvix86;Symantec Intrusion Prevention Driver;C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20080325.002\IDSvix86.sys [2008-02-13 12:18]&lt;BR&gt;R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6;C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-11 02:45]&lt;BR&gt;R2 DQLWinService;DQLWinService;"C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe" [2007-02-12 13:46]&lt;BR&gt;R2 NMSCore;Intel(R) NMSCore;"C:\Program Files\Common Files\Intel\IntelDH\NMS\NMSCore\NMSCore.exe" [2007-06-27 12:14]&lt;BR&gt;R2 nmsunidr;UniDriver for NMS;C:\Windows\system32\DRIVERS\nmsunidr.sys [2007-02-18 22:34]&lt;BR&gt;R2 QualityManager;Intel(R) Quality Manager;"C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\qualitymanager.exe" [2007-06-27 12:17]&lt;BR&gt;R2 RelevantKnowledge;RelevantKnowledge;C:\Windows\system32\rlservice.exe [2007-10-11 16:44]&lt;BR&gt;R2 sprtsvc_dellsupportcenter;SupportSoft Sprocket Service (dellsupportcenter);C:\Program Files\Dell Support Center\bin\sprtsvc.exe [2007-07-11 10:15]&lt;BR&gt;R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-04 17:38]&lt;BR&gt;R3 atikmdag;atikmdag;C:\Windows\system32\DRIVERS\atikmdag.sys [2007-10-08 02:31]&lt;BR&gt;R3 btwaudio;Bluetooth Audio Device Service;C:\Windows\system32\drivers\btwaudio.sys [2007-10-10 01:30]&lt;BR&gt;R3 btwavdt;Bluetooth AVDT;C:\Windows\system32\drivers\btwavdt.sys [2007-10-10 01:30]&lt;BR&gt;R3 btwrchid;btwrchid;C:\Windows\system32\DRIVERS\btwrchid.sys [2007-10-10 01:30]&lt;BR&gt;R3 CXSONORA;AVerMedia 23885 AvStream Video Capture;C:\Windows\system32\drivers\A885VCap.sys [2007-10-10 05:07]&lt;BR&gt;R3 DLXPDisplayName;DLXPDisplayName;C:\Windows\system32\DRIVERS\DLACPI.sys [2007-10-08 02:41]&lt;BR&gt;R3 IntelDH;IntelDH Driver;C:\Windows\system32\Drivers\IntelDH.sys [2007-12-03 19:08]&lt;BR&gt;R3 OEM07Vfx;Creative Camera OEM007 Video VFX Driver;C:\Windows\system32\DRIVERS\OEM07Vfx.sys [2007-09-11 08:18]&lt;BR&gt;R3 OEM07Vid;Creative Camera OEM007 Driver;C:\Windows\system32\DRIVERS\OEM07Vid.sys [2007-09-11 08:18]&lt;BR&gt;R3 SYMNDISV;SYMNDISV;C:\Windows\system32\Drivers\SYMNDISV.SYS [2008-03-07 13:39]&lt;BR&gt;S3 DHTRACE;Intel(R) DHTrace Controller;C:\Program Files\Common Files\Intel\IntelDH\bin\DHTraceController.exe [2007-06-27 12:15]&lt;BR&gt;S3 R300;R300;C:\Windows\system32\DRIVERS\atikmdag.sys [2007-10-08 02:31]&lt;BR&gt;S3 UMPass;Microsoft UMPass Driver;C:\Windows\system32\DRIVERS\umpass.sys [2006-11-02 04:55]&lt;/P&gt;&lt;P&gt;[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]&lt;BR&gt;bthsvcs REG_MULTI_SZ    BthServ&lt;/P&gt;&lt;P&gt;*Newly Created Service* - COMHOST&lt;BR&gt;.&lt;BR&gt;Contents of the 'Scheduled Tasks' folder&lt;BR&gt;"2008-03-25 01:31:20 C:\Windows\Tasks\Norton Internet Security - Run Full System Scan - Trent.job"&lt;BR&gt;- C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exeB/TASK:&lt;BR&gt;.&lt;BR&gt;**************************************************************************&lt;/P&gt;&lt;P&gt;catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, &lt;A href="http://www.gmer.net"&gt;http://www.gmer.net&lt;/A&gt;&lt;BR&gt;Rootkit scan 2008-03-26 20:24:48&lt;BR&gt;Windows 6.0.6000  NTFS&lt;/P&gt;&lt;P&gt;scanning hidden processes ... &lt;/P&gt;&lt;P&gt;scanning hidden autostart entries ...&lt;/P&gt;&lt;P&gt;scanning hidden files ... &lt;/P&gt;&lt;P&gt;scan completed successfully &lt;BR&gt;hidden files: 0 &lt;/P&gt;&lt;P&gt;**************************************************************************&lt;BR&gt;.&lt;BR&gt;------------------------ Other Running Processes ------------------------&lt;BR&gt;.&lt;BR&gt;C:\Windows\system32\Ati2evxx.exe&lt;BR&gt;C:\Windows\system32\Ati2evxx.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;C:\Windows\system32\WLANExt.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE&lt;BR&gt;C:\Windows\System32\DELLOSD.exe&lt;BR&gt;C:\Windows\ehome\ehmsas.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe&lt;BR&gt;C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;C:\Program Files\Bonjour\mDNSResponder.exe&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;C:\Program Files\Dell Network Assistant\hnm_svc.exe&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe&lt;BR&gt;C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnetwk.exe&lt;BR&gt;C:\Windows\ehome\ehsched.exe&lt;BR&gt;C:\Program Files\iPod\bin\iPodService.exe&lt;BR&gt;C:\Windows\ehome\ehRecvr.exe&lt;BR&gt;C:\\?\C:\Windows\system32\wbem\WMIADAP.EXE&lt;BR&gt;C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\AUPDATE.EXE&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe&lt;BR&gt;.&lt;BR&gt;**************************************************************************&lt;BR&gt;.&lt;BR&gt;Completion time: 2008-03-26 20:32:31 - machine was rebooted&lt;BR&gt;ComboFix-quarantined-files.txt  2008-03-27 00:32:24&lt;BR&gt;.&lt;BR&gt;2008-03-26 19:18:15 --- E O F ---  &lt;BR&gt;</description><pubDate>Wed, 26 Mar 2008 19:42:15 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Post the entire contents of C:\ComboFix.txt into your next reply when you're ready please.</description><pubDate>Wed, 26 Mar 2008 19:35:26 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>-------------------------------------------------------- &lt;BR&gt;No LOP job-files found &lt;BR&gt;-------------------------------------------------------- &lt;BR&gt;Files in Windows Tasks folder &lt;BR&gt; &lt;BR&gt;Norton Internet Security - Run Full System Scan - Trent.job&lt;BR&gt;-------------------------------------------------------- &lt;BR&gt;Export App Data folders &lt;BR&gt;-------------------------------------------------------- &lt;BR&gt; Volume in drive C is OS&lt;BR&gt; Volume Serial Number is CCB8-7A85&lt;/P&gt;&lt;P&gt; Directory of C:\ProgramData&lt;/P&gt;&lt;P&gt;03/14/2008  07:00 PM    &amp;lt;DIR&amp;gt;          2ACA5C~1     2ACA5CC3-0F83-453D-A079-1076FE1A8B65&lt;BR&gt;12/03/2007  07:11 PM    &amp;lt;DIR&amp;gt;                       Adobe&lt;BR&gt;12/25/2007  02:11 PM    &amp;lt;DIR&amp;gt;                       AOL&lt;BR&gt;12/25/2007  02:14 PM    &amp;lt;DIR&amp;gt;          AOLOCP~1     AOL OCP&lt;BR&gt;12/27/2007  05:39 PM    &amp;lt;DIR&amp;gt;                       Apple&lt;BR&gt;12/27/2007  06:58 PM    &amp;lt;DIR&amp;gt;          APPLEC~1     Apple Computer&lt;BR&gt;12/25/2007  12:21 PM    &amp;lt;DIR&amp;gt;                       ATI&lt;BR&gt;03/23/2008  04:26 PM            24,592 DARTRE~1.F3S dartregsregs.f3sgf&lt;BR&gt;03/23/2008  04:26 PM           245,776 DARTRE~1.T2E dartregsregs.t2em0md&lt;BR&gt;03/23/2008  04:27 PM           188,432 EQSTUP~1.0HJ EQ STUPID SLOW.0hj1j&lt;BR&gt;03/23/2008  04:27 PM    &amp;lt;DIR&amp;gt;          FLAWBI~1     Flaw bits&lt;BR&gt;12/03/2007  07:09 PM    &amp;lt;DIR&amp;gt;                       Google&lt;BR&gt;03/26/2008  05:16 PM    &amp;lt;DIR&amp;gt;                       Grisoft&lt;BR&gt;12/03/2007  07:08 PM    &amp;lt;DIR&amp;gt;                       Gtek&lt;BR&gt;12/03/2007  06:58 PM    &amp;lt;DIR&amp;gt;          INSTAL~1     InstallShield&lt;BR&gt;12/03/2007  07:08 PM    &amp;lt;DIR&amp;gt;                       Intel&lt;BR&gt;12/03/2007  06:56 PM    &amp;lt;DIR&amp;gt;                       Logitech&lt;BR&gt;03/13/2008  02:58 PM    &amp;lt;DIR&amp;gt;          MICROS~2     Microsoft Help&lt;BR&gt;03/23/2008  04:27 PM    &amp;lt;DIR&amp;gt;          PARTHI~1     Part Hide Grey Pop&lt;BR&gt;12/03/2007  07:47 PM    &amp;lt;DIR&amp;gt;                       Roxio&lt;BR&gt;03/14/2008  07:13 PM    &amp;lt;DIR&amp;gt;                       SeekmoSA&lt;BR&gt;12/03/2007  07:00 PM    &amp;lt;DIR&amp;gt;          SINGLE~1     SingleClick Systems&lt;BR&gt;12/03/2007  06:58 PM    &amp;lt;DIR&amp;gt;                       Sonic&lt;BR&gt;12/03/2007  07:07 PM    &amp;lt;DIR&amp;gt;          SUPPOR~1     SupportSoft&lt;BR&gt;03/24/2008  06:59 PM    &amp;lt;DIR&amp;gt;                       Symantec&lt;BR&gt;12/26/2007  06:20 PM    &amp;lt;DIR&amp;gt;                       TEMP&lt;BR&gt;12/25/2007  02:11 PM    &amp;lt;DIR&amp;gt;          VIEWPO~1     Viewpoint&lt;BR&gt;12/03/2007  07:07 PM    &amp;lt;DIR&amp;gt;                       YAHOO&lt;BR&gt;               3 File(s)        458,800 bytes&lt;BR&gt;              25 Dir(s)  216,735,891,456 bytes free&lt;BR&gt;-------------------------------------------------------- &lt;BR&gt;All User Accounts &lt;BR&gt;-------------------------------------------------------- &lt;BR&gt;All Users&lt;BR&gt;Mcx1&lt;BR&gt;Public&lt;BR&gt;Trent&lt;BR&gt;-------------------------------------------------------- &lt;BR&gt;&lt;/P&gt;&lt;P&gt;this is deljob log, will get the other up in a minute</description><pubDate>Wed, 26 Mar 2008 19:16:49 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Please disable [b]UAC[/b] [User Account Control].&lt;br&gt;1. Click Start and then click the picture at the top of the right column on the Start menu,this opens the User Accounts Control Panel.&lt;br&gt;2. Click Turn User Account Control on or off,you will have to respond to a UAC prompt to complete this action.&lt;br&gt;3. Clear the Use User Account Control (UAC) to help protect your computer check box and click OK.&lt;br&gt;4. Click Restart Now when prompted,after your computer restarts,UAC will be off.&lt;br&gt;You can repeat these steps to re-enable UAC,just click to select the check box in Step 3 when we've finished.&lt;br&gt;&lt;br&gt;&lt;br&gt;Download [b][url=http://home.hetnet.nl/~stefsmeenk/deljob.exe][color="blue"]Deljob.exe[/color][/url][/b] and save it on your desktop.&lt;br&gt;Double click on Deljob.exe.&lt;br&gt;A log,([b]logit.txt[/b]) should open afterwards. &lt;br&gt;This log will be present on your desktop.&lt;br&gt;[b]Post the contents of the logfile into your next reply.[/b]&lt;br&gt;&lt;br&gt;&lt;br&gt;Download [b][url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color="blue"]Combofix[/color][/url][/b] by [b]sUBs[/b] and save to your desktop.&lt;br&gt;Alternative Combofix download link [b][url=http://subs.geekstogo.com/ComboFix.exe][color="blue"]HERE[/color][/url][/b].&lt;br&gt;[color="red"][b][u]Note[/u][/b] &lt;br&gt;It is important that it is saved directly to your desktop[/color]&lt;br&gt;&lt;br&gt;Now close any open browsers.&lt;br&gt;Double click on Combofix.exe and follow the prompts. &lt;br&gt;When it's finished it will produce a log. &lt;br&gt;[b]Post the entire contents of C:\ComboFix.txt into your next reply[/b]. &lt;br&gt;[color="red"][b][u]Note[/u][/b] &lt;br&gt;Do not mouseclick combofix's window or do anything else on your pc while it's running. &lt;br&gt;That may cause the program/system to freeze/hang. [/color]&lt;br&gt;Do NOT post the ComboFix-quarantined-files.txt unless I ask.&lt;br&gt;[b][color="RED"][U]Note[/U][/color][/b]&lt;br&gt;In case your Antivirus or any other realtime scanner is displaying an alert after you downloaded Combofix or while you use Combofix,please disable your scanner and redownload Combofix again.&lt;br&gt;Some scanners may see some combofix related components as suspicious and block or delete them while there's nothing wrong with them.</description><pubDate>Wed, 26 Mar 2008 18:36:35 GMT</pubDate><dc:creator>RichieUK</dc:creator></item><item><title>RE: CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>that is my log, please tell me how to fix the problem</description><pubDate>Wed, 26 Mar 2008 18:27:51 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item><item><title>CiD popups (trent)</title><link>http://tweaks.com/forum/Topic236826-29-1.aspx</link><description>Logfile of Trend Micro HijackThis v2.0.2&lt;BR&gt;Scan saved at 7:23:46 PM, on 3/26/2008&lt;BR&gt;Platform: Windows Vista  (WinNT 6.00.1904)&lt;BR&gt;MSIE: Internet Explorer v7.00 (7.00.6000.16609)&lt;BR&gt;Boot mode: Normal&lt;/P&gt;&lt;P&gt;Running processes:&lt;BR&gt;C:\Windows\system32\Dwm.exe&lt;BR&gt;C:\Windows\Explorer.EXE&lt;BR&gt;C:\Program Files\Windows Defender\MSASCui.exe&lt;BR&gt;C:\Windows\RtHDVCpl.exe&lt;BR&gt;C:\Windows\OEM07Mon.exe&lt;BR&gt;C:\Windows\System32\MediaButtons.exe&lt;BR&gt;C:\Program Files\DELL\Dell Webcam Manager\DellWMgr.exe&lt;BR&gt;C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe&lt;BR&gt;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&lt;BR&gt;C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE&lt;BR&gt;C:\Program Files\iTunes\iTunesHelper.exe&lt;BR&gt;C:\Windows\System32\DELLOSD.exe&lt;BR&gt;C:\Program Files\DellSupport\DSAgnt.exe&lt;BR&gt;C:\Program Files\Dell Support Center\bin\sprtcmd.exe&lt;BR&gt;C:\Windows\ehome\ehtray.exe&lt;BR&gt;C:\Program Files\Windows Media Player\wmpnscfg.exe&lt;BR&gt;C:\Windows\ehome\ehmsas.exe&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\SetPoint\SetPoint.exe&lt;BR&gt;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE&lt;BR&gt;C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe&lt;BR&gt;C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE&lt;BR&gt;C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Windows\system32\taskeng.exe&lt;BR&gt;C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe&lt;BR&gt;C:\Program Files\Internet Explorer\ieuser.exe&lt;BR&gt;C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe&lt;BR&gt;C:\Program Files\Internet Explorer\iexplore.exe&lt;BR&gt;C:\Program Files\iTunes\iTunes.exe&lt;BR&gt;C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe&lt;BR&gt;C:\Windows\System32\mobsync.exe&lt;BR&gt;C:\Program Files\LimeWire\LimeWire.exe&lt;BR&gt;C:\Windows\system32\Macromed\Flash\FlashUtil9e.exe&lt;BR&gt;C:\Program Files\Trend Micro\HijackThis\HijackThis.exe&lt;/P&gt;&lt;P&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=69157"&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=54896"&gt;http://go.microsoft.com/fwlink/?LinkId=54896&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = &lt;A href="http://go.microsoft.com/fwlink/?LinkId=69157"&gt;http://go.microsoft.com/fwlink/?LinkId=69157&lt;/A&gt;&lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = &lt;BR&gt;R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = &lt;BR&gt;R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell&lt;BR&gt;R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = &lt;BR&gt;O1 - Hosts: ::1 localhost&lt;BR&gt;O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll&lt;BR&gt;O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll&lt;BR&gt;O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll&lt;BR&gt;O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll&lt;BR&gt;O3 - Toolbar: &amp;amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll&lt;BR&gt;O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide&lt;BR&gt;O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe&lt;BR&gt;O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe&lt;BR&gt;O4 - HKLM\..\Run: [OEM07Mon.exe] C:\Windows\OEM07Mon.exe&lt;BR&gt;O4 - HKLM\..\Run: [MediaButtons] C:\Windows\System32\MediaButtons.exe&lt;BR&gt;O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe&lt;BR&gt;O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s&lt;BR&gt;O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE&lt;BR&gt;O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start&lt;BR&gt;O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"&lt;BR&gt;O4 - HKLM\..\Run: [dscactivate] c:\dell\dsca.exe 3&lt;BR&gt;O4 - HKLM\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup&lt;BR&gt;O4 - HKLM\..\Run: [CCUTRAYICON] "C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe"&lt;BR&gt;O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup&lt;BR&gt;O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup&lt;BR&gt;O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"&lt;BR&gt;O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime&lt;BR&gt;O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"&lt;BR&gt;O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"&lt;BR&gt;O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized&lt;BR&gt;O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup&lt;BR&gt;O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter&lt;BR&gt;O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe&lt;BR&gt;O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe&lt;BR&gt;O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe&lt;BR&gt;O4 - HKCU\..\Run: [Coal 32] "C:\ProgramData\dartregsregs.t2em0md"&lt;BR&gt;O4 - HKCU\..\Run: [Grey pop cake audio] "C:\ProgramData\EQ STUPID SLOW.0hj1j"&lt;BR&gt;O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\Trent\AppData\Local\Temp\byvut.dll,#1&lt;BR&gt;O4 - HKCU\..\Run: [Host Process] C:\Users\Trent\svchost.exe&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')&lt;BR&gt;O4 - HKUS\S-1-5-21-1584324784-2898364789-997048515-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'IUSR_NMPR')&lt;BR&gt;O4 - HKUS\S-1-5-21-1584324784-2898364789-997048515-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Mcx1')&lt;BR&gt;O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')&lt;BR&gt;O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')&lt;BR&gt;O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE&lt;BR&gt;O4 - Global Startup: Bluetooth.lnk = ?&lt;BR&gt;O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe&lt;BR&gt;O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll&lt;BR&gt;O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll&lt;BR&gt;O9 - Extra 'Tools' menuitem: S&amp;amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll&lt;BR&gt;O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL&lt;BR&gt;O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm&lt;BR&gt;O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm&lt;BR&gt;O13 - Gopher Prefix: &lt;BR&gt;O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL&lt;BR&gt;O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe&lt;BR&gt;O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe&lt;BR&gt;O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe&lt;BR&gt;O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe&lt;BR&gt;O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe&lt;BR&gt;O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe&lt;BR&gt;O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe&lt;BR&gt;O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe&lt;BR&gt;O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe&lt;BR&gt;O23 - Service: Intel(R) DHTrace Controller (DHTRACE) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\IntelDH\bin\DHTraceController.exe&lt;BR&gt;O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe&lt;BR&gt;O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe&lt;BR&gt;O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe&lt;BR&gt;O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe&lt;BR&gt;O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe&lt;BR&gt;O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe&lt;BR&gt;O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe&lt;BR&gt;O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe&lt;BR&gt;O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE&lt;BR&gt;O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe&lt;BR&gt;O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe&lt;BR&gt;O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe&lt;BR&gt;O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe&lt;BR&gt;O23 - Service: Intel(R) NMSCore (NMSCore) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\IntelDH\NMS\NMSCore\NMSCore.exe&lt;BR&gt;O23 - Service: Intel(R) Quality Manager (QualityManager) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\qualitymanager.exe&lt;BR&gt;O23 - Service: RelevantKnowledge - RelevantKnowledge - C:\Windows\system32\rlservice.exe&lt;BR&gt;O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe&lt;BR&gt;O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe&lt;BR&gt;O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe&lt;BR&gt;O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe&lt;BR&gt;O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe&lt;BR&gt;O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe&lt;BR&gt;O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe&lt;BR&gt;O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe&lt;/P&gt;&lt;P&gt;--&lt;BR&gt;End of file - 13955 bytes&lt;BR&gt;</description><pubDate>Wed, 26 Mar 2008 18:25:11 GMT</pubDate><dc:creator>Paintballfreak71</dc:creator></item></channel></rss>