<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Effectively Remove Trojan, Virus, Spyware from Windows Startup</title>
	<atom:link href="http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/</link>
	<description>Daily updated news of useful advanced computer tips and tricks</description>
	<lastBuildDate>Mon, 23 Jan 2012 16:29:00 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: sanjie</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-506532</link>
		<dc:creator>sanjie</dc:creator>
		<pubDate>Sun, 20 Feb 2011 10:42:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-506532</guid>
		<description>Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:39:00 PM, on 2/20/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Globe Broadband\Globe Broadband.exe
D:\Tantra II Philippines\Update.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Administrator\My Documents\Downloads\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?SearchSource=10&amp;ctid=CT2233703
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [GrooveMonitor] &quot;C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe&quot;
O4 - HKLM\..\Run: [RemoteControl] &quot;C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe&quot;
O4 - HKLM\..\Run: [LanguageShortcut] &quot;C:\Program Files\CyberLink\PowerDVD\Language\Language.exe&quot;
O4 - HKLM\..\Run: [avast5] &quot;C:\Program Files\Alwil Software\Avast5\avastUI.exe&quot; /nogui
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &amp;Download All using 4shared Desktop - C:\Program Files\4shared Desktop\down_all.htm
O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra &#039;Tools&#039; menuitem: S&amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra &#039;Tools&#039; menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file://C:\Program Files\Hidden Expedition - Titanic\Images\stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file://C:\Program Files\Hidden Expedition - Titanic\Images\armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{848A8294-4D8B-40F8-B16E-D308CD2B3089}: NameServer = 202.138.128.50 202.138.128.54
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

--
End of file - 3824 bytes

this my log file of my computer..pls help me to checked wether there&#039;s a virus running on it...tnx..</description>
		<content:encoded><![CDATA[<p>Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 6:39:00 PM, on 2/20/2011<br />
Platform: Windows XP SP2 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)<br />
Boot mode: Normal</p>
<p>Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\VTTimer.exe<br />
C:\WINDOWS\SOUNDMAN.EXE<br />
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe<br />
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe<br />
C:\Program Files\Alwil Software\Avast5\avastUI.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Program Files\CyberLink\Shared Files\RichVideo.exe<br />
C:\Program Files\Globe Broadband\Globe Broadband.exe<br />
D:\Tantra II Philippines\Update.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Program Files\Mozilla Firefox\firefox.exe<br />
C:\Program Files\Mozilla Firefox\plugin-container.exe<br />
C:\Documents and Settings\Administrator\My Documents\Downloads\HiJackThis.exe</p>
<p>R0 &#8211; HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://search.conduit.com/?SearchSource=10&#038;ctid=CT2233703" rel="nofollow">http://search.conduit.com/?SearchSource=10&#038;ctid=CT2233703</a><br />
O2 &#8211; BHO: Groove GFS Browser Helper &#8211; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} &#8211; C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL<br />
O4 &#8211; HKLM\..\Run: [VTTimer] VTTimer.exe<br />
O4 &#8211; HKLM\..\Run: [VTTrayp] VTtrayp.exe<br />
O4 &#8211; HKLM\..\Run: [SoundMan] SOUNDMAN.EXE<br />
O4 &#8211; HKLM\..\Run: [GrooveMonitor] &#8220;C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [RemoteControl] &#8220;C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [LanguageShortcut] &#8220;C:\Program Files\CyberLink\PowerDVD\Language\Language.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [avast5] &#8220;C:\Program Files\Alwil Software\Avast5\avastUI.exe&#8221; /nogui<br />
O4 &#8211; HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 &#8211; Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe<br />
O8 &#8211; Extra context menu item: &amp;Download All using 4shared Desktop &#8211; C:\Program Files\4shared Desktop\down_all.htm<br />
O8 &#8211; Extra context menu item: E&amp;xport to Microsoft Excel &#8211; res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000<br />
O9 &#8211; Extra button: Send to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 &#8211; Extra &#8216;Tools&#8217; menuitem: S&amp;end to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 &#8211; Extra button: Research &#8211; {92780B25-18CC-41C8-B9BE-3C9C571A8263} &#8211; C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL<br />
O9 &#8211; Extra button: Messenger &#8211; {FB5F1910-F110-11d2-BB9E-00C04F795683} &#8211; C:\Program Files\Messenger\msmsgs.exe<br />
O9 &#8211; Extra &#8216;Tools&#8217; menuitem: Windows Messenger &#8211; {FB5F1910-F110-11d2-BB9E-00C04F795683} &#8211; C:\Program Files\Messenger\msmsgs.exe<br />
O16 &#8211; DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) &#8211; file://C:\Program Files\Hidden Expedition &#8211; Titanic\Images\stg_drm.ocx<br />
O16 &#8211; DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) &#8211; file://C:\Program Files\Hidden Expedition &#8211; Titanic\Images\armhelper.ocx<br />
O17 &#8211; HKLM\System\CCS\Services\Tcpip\..\{848A8294-4D8B-40F8-B16E-D308CD2B3089}: NameServer = 202.138.128.50 202.138.128.54<br />
O18 &#8211; Protocol: grooveLocalGWS &#8211; {88FED34C-F0CA-4636-A375-3CB6248B04CD} &#8211; C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL<br />
O23 &#8211; Service: avast! Antivirus &#8211; AVAST Software &#8211; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe<br />
O23 &#8211; Service: Google Update Service (gupdate) (gupdate) &#8211; Google Inc. &#8211; C:\Program Files\Google\Update\GoogleUpdate.exe<br />
O23 &#8211; Service: Cyberlink RichVideo Service(CRVS) (RichVideo) &#8211; Unknown owner &#8211; C:\Program Files\CyberLink\Shared Files\RichVideo.exe</p>
<p>&#8211;<br />
End of file &#8211; 3824 bytes</p>
<p>this my log file of my computer..pls help me to checked wether there&#8217;s a virus running on it&#8230;tnx..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: chris</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-494268</link>
		<dc:creator>chris</dc:creator>
		<pubDate>Sun, 17 Oct 2010 09:36:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-494268</guid>
		<description>The virus i have on my PC infects anything I download etc..... 

Windows Security Alert:
Application Cannot Be Executed. The file hijackthis.exe is infected.</description>
		<content:encoded><![CDATA[<p>The virus i have on my PC infects anything I download etc&#8230;.. </p>
<p>Windows Security Alert:<br />
Application Cannot Be Executed. The file hijackthis.exe is infected.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Linda Meredith</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-462863</link>
		<dc:creator>Linda Meredith</dc:creator>
		<pubDate>Thu, 31 Dec 2009 02:33:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-462863</guid>
		<description>My grandsons pc has trojan horse virus. Can&#039;t even get online to try and remove. Anyway to solve this other than wiping pc clean and reloading everything?</description>
		<content:encoded><![CDATA[<p>My grandsons pc has trojan horse virus. Can&#8217;t even get online to try and remove. Anyway to solve this other than wiping pc clean and reloading everything?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matthew</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-448405</link>
		<dc:creator>Matthew</dc:creator>
		<pubDate>Wed, 02 Sep 2009 23:52:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-448405</guid>
		<description>My computer has been slow to start up can you please let know if there is anything i can delete to speed it up.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:37:52 AM, on 3/09/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Users\Matthew\Program Files\DNA\btdna.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Users\Matthew\Downloads\Programs\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.ninemsn.com.au
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ninemsn.com.au/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;tp=iehome&amp;locale=en_au&amp;c=83&amp;bd=Pavilion&amp;pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&amp;tp=iehome&amp;locale=en_au&amp;c=83&amp;bd=Pavilion&amp;pf=cnnb
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll
O3 - Toolbar: &amp;Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [ccApp] &quot;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&quot;
O4 - HKLM\..\Run: [osCheck] &quot;C:\Program Files\Norton 360\osCheck.exe&quot;
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe&quot;
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Program Files\QuickTime\QTTask.exe&quot; -atboottime
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [iTunesHelper] &quot;C:\Program Files\iTunes\iTunesHelper.exe&quot;
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Program Files\Java\jre6\bin\jusched.exe&quot;
O4 - HKLM\..\Run: [QPService] &quot;C:\Program Files\HP\QuickPlay\QPService.exe&quot;
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [UpdatePDRShortCut] &quot;C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe&quot; &quot;C:\Program Files\CyberLink\DVD Suite&quot; UpdateWithCreateOnce &quot;Software\CyberLink\PowerStarter&quot;
O4 - HKLM\..\Run: [RemoteControl8] &quot;C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe&quot;
O4 - HKLM\..\Run: [PDVD8LanguageShortcut] &quot;C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe&quot;
O4 - HKLM\..\Run: [UpdatePPShortCut] &quot;C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe&quot; &quot;C:\Program Files\CyberLink\PowerProducer&quot; update &quot;Software\CyberLink\PowerProducer\5.0&quot;
O4 - HKLM\..\Run: [CLMLServer] &quot;C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe&quot;
O4 - HKLM\..\Run: [UCam_Menu] &quot;C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe&quot; &quot;C:\Program Files\CyberLink\YouCam&quot; UpdateWithCreateOnce &quot;Software\CyberLink\YouCam\2.0&quot;
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [msnmsgr] &quot;C:\Program Files\Windows Live\Messenger\msnmsgr.exe&quot; /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BitTorrent DNA] &quot;C:\Users\Matthew\Program Files\DNA\btdna.exe&quot;
O4 - HKCU\..\Run: [Internet Security Services] c:\RESTORE\S-1-5-21-1482476501-1644491937-682003330-1013\DoooooM.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Add to Windows &amp;Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra &#039;Tools&#039; menuitem: &amp;Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra &#039;Tools&#039; menuitem: S&amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix: 
O15 - Trusted Zone: http://dating.ninemsn.com.au
O17 - HKLM\System\CCS\Services\Tcpip\..\{E9B4C289-10AE-4157-BC8D-925E4B1CF736}: NameServer = 195.229.241.222 213.42.20.20
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Windows\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe

--
End of file - 12377 bytes</description>
		<content:encoded><![CDATA[<p>My computer has been slow to start up can you please let know if there is anything i can delete to speed it up.</p>
<p>Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 3:37:52 AM, on 3/09/2009<br />
Platform: Windows Vista SP2 (WinNT 6.00.1906)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18813)<br />
Boot mode: Normal</p>
<p>Running processes:<br />
C:\Windows\system32\taskeng.exe<br />
C:\Windows\system32\Dwm.exe<br />
C:\Windows\Explorer.EXE<br />
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe<br />
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe<br />
C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe<br />
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe<br />
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
C:\Program Files\iTunes\iTunesHelper.exe<br />
C:\Program Files\IDT\WDM\sttray.exe<br />
C:\WINDOWS\System32\rundll32.exe<br />
C:\Program Files\Java\jre6\bin\jusched.exe<br />
C:\Program Files\PowerISO\PWRISOVM.EXE<br />
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe<br />
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe<br />
C:\Program Files\Windows Sidebar\sidebar.exe<br />
C:\Program Files\Windows Live\Messenger\msnmsgr.exe<br />
C:\WINDOWS\ehome\ehtray.exe<br />
C:\Users\Matthew\Program Files\DNA\btdna.exe<br />
C:\Program Files\Windows Defender\MSASCui.exe<br />
C:\Program Files\HP\QuickPlay\QPService.exe<br />
C:\Windows\ehome\ehmsas.exe<br />
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE<br />
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe<br />
C:\Users\Matthew\Downloads\Programs\HiJackThis.exe</p>
<p>R1 &#8211; HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://www.ninemsn.com.au" rel="nofollow">http://www.ninemsn.com.au</a><br />
R1 &#8211; HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 &#8211; HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://www.ninemsn.com.au/" rel="nofollow">http://www.ninemsn.com.au/</a><br />
R1 &#8211; HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&#038;tp=iehome&#038;locale=en_au&#038;c=83&#038;bd=Pavilion&#038;pf=cnnb" rel="nofollow">http://ie.redirect.hp.com/svs/rdr?TYPE=3&#038;tp=iehome&#038;locale=en_au&#038;c=83&#038;bd=Pavilion&#038;pf=cnnb</a><br />
R1 &#8211; HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 &#8211; HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" rel="nofollow">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 &#8211; HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://ie.redirect.hp.com/svs/rdr?TYPE=3&#038;tp=iehome&#038;locale=en_au&#038;c=83&#038;bd=Pavilion&#038;pf=cnnb" rel="nofollow">http://ie.redirect.hp.com/svs/rdr?TYPE=3&#038;tp=iehome&#038;locale=en_au&#038;c=83&#038;bd=Pavilion&#038;pf=cnnb</a><br />
R0 &#8211; HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =<br />
R0 &#8211; HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =<br />
R0 &#8211; HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =<br />
O1 &#8211; Hosts: ::1 localhost<br />
O2 &#8211; BHO: Adobe PDF Reader Link Helper &#8211; {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} &#8211; C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll<br />
O2 &#8211; BHO: Skype add-on (mastermind) &#8211; {22BF413B-C6D2-4d91-82A9-A0F997BA588C} &#8211; C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll<br />
O2 &#8211; BHO: (no name) &#8211; {5C255C8A-E604-49b4-9D64-90988571CECB} &#8211; (no file)<br />
O2 &#8211; BHO: NCO 2.0 IE BHO &#8211; {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} &#8211; C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll<br />
O2 &#8211; BHO: Symantec Intrusion Prevention &#8211; {6D53EC84-6AAE-4787-AEEE-F4628F01010C} &#8211; C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll<br />
O2 &#8211; BHO: Search Helper &#8211; {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} &#8211; C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll<br />
O2 &#8211; BHO: Windows Live ID Sign-in Helper &#8211; {9030D464-4C02-4ABF-8ECC-5164760863C6} &#8211; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll<br />
O2 &#8211; BHO: Java(tm) Plug-In 2 SSV Helper &#8211; {DBC80044-A445-435b-BC74-9C25C1C588A9} &#8211; C:\Program Files\Java\jre6\bin\jp2ssv.dll<br />
O2 &#8211; BHO: Windows Live Toolbar Helper &#8211; {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} &#8211; C:\Program Files\Windows Live\Toolbar\wltcore.dll<br />
O3 &#8211; Toolbar: Show Norton Toolbar &#8211; {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} &#8211; C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll<br />
O3 &#8211; Toolbar: &amp;Windows Live Toolbar &#8211; {21FA44EF-376D-4D53-9B0F-8A89D3229068} &#8211; C:\Program Files\Windows Live\Toolbar\wltcore.dll<br />
O4 &#8211; HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
O4 &#8211; HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe<br />
O4 &#8211; HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide<br />
O4 &#8211; HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start<br />
O4 &#8211; HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe<br />
O4 &#8211; HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 &#8211; HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
O4 &#8211; HKLM\..\Run: [ccApp] &#8220;C:\Program Files\Common Files\Symantec Shared\ccApp.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [osCheck] &#8220;C:\Program Files\Norton 360\osCheck.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [Adobe Reader Speed Launcher] &#8220;C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [QuickTime Task] &#8220;C:\Program Files\QuickTime\QTTask.exe&#8221; -atboottime<br />
O4 &#8211; HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe<br />
O4 &#8211; HKLM\..\Run: [iTunesHelper] &#8220;C:\Program Files\iTunes\iTunesHelper.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe<br />
O4 &#8211; HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe<br />
O4 &#8211; HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup<br />
O4 &#8211; HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit<br />
O4 &#8211; HKLM\..\Run: [SunJavaUpdateSched] &#8220;C:\Program Files\Java\jre6\bin\jusched.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [QPService] &#8220;C:\Program Files\HP\QuickPlay\QPService.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE<br />
O4 &#8211; HKLM\..\Run: [UpdatePDRShortCut] &#8220;C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe&#8221; &#8220;C:\Program Files\CyberLink\DVD Suite&#8221; UpdateWithCreateOnce &#8220;Software\CyberLink\PowerStarter&#8221;<br />
O4 &#8211; HKLM\..\Run: [RemoteControl8] &#8220;C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [PDVD8LanguageShortcut] &#8220;C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [UpdatePPShortCut] &#8220;C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe&#8221; &#8220;C:\Program Files\CyberLink\PowerProducer&#8221; update &#8220;Software\CyberLink\PowerProducer\5.0&#8243;<br />
O4 &#8211; HKLM\..\Run: [CLMLServer] &#8220;C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe&#8221;<br />
O4 &#8211; HKLM\..\Run: [UCam_Menu] &#8220;C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe&#8221; &#8220;C:\Program Files\CyberLink\YouCam&#8221; UpdateWithCreateOnce &#8220;Software\CyberLink\YouCam\2.0&#8243;<br />
O4 &#8211; HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun<br />
O4 &#8211; HKCU\..\Run: [msnmsgr] &#8220;C:\Program Files\Windows Live\Messenger\msnmsgr.exe&#8221; /background<br />
O4 &#8211; HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe<br />
O4 &#8211; HKCU\..\Run: [BitTorrent DNA] &#8220;C:\Users\Matthew\Program Files\DNA\btdna.exe&#8221;<br />
O4 &#8211; HKCU\..\Run: [Internet Security Services] c:\RESTORE\S-1-5-21-1482476501-1644491937-682003330-1013\DoooooM.exe<br />
O4 &#8211; Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE<br />
O8 &#8211; Extra context menu item: Add to Windows &amp;Live Favorites &#8211; <a href="http://favorites.live.com/quickadd.aspx" rel="nofollow">http://favorites.live.com/quickadd.aspx</a><br />
O8 &#8211; Extra context menu item: E&amp;xport to Microsoft Excel &#8211; res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000<br />
O9 &#8211; Extra button: Blog This &#8211; {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} &#8211; C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll<br />
O9 &#8211; Extra &#8216;Tools&#8217; menuitem: &amp;Blog This in Windows Live Writer &#8211; {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} &#8211; C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll<br />
O9 &#8211; Extra button: Send to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 &#8211; Extra &#8216;Tools&#8217; menuitem: S&amp;end to OneNote &#8211; {2670000A-7350-4f3c-8081-5663EE0C6C49} &#8211; C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 &#8211; Extra button: Skype &#8211; {77BF5300-1474-4EC7-9980-D32B190E9B07} &#8211; C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll<br />
O9 &#8211; Extra button: Research &#8211; {92780B25-18CC-41C8-B9BE-3C9C571A8263} &#8211; C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL<br />
O13 &#8211; Gopher Prefix:<br />
O15 &#8211; Trusted Zone: <a href="http://dating.ninemsn.com.au" rel="nofollow">http://dating.ninemsn.com.au</a><br />
O17 &#8211; HKLM\System\CCS\Services\Tcpip\..\{E9B4C289-10AE-4157-BC8D-925E4B1CF736}: NameServer = 195.229.241.222 213.42.20.20<br />
O18 &#8211; Protocol: skype4com &#8211; {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} &#8211; C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL<br />
O23 &#8211; Service: Andrea ST Filters Service (AESTFilters) &#8211; Andrea Electronics Corporation &#8211; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe<br />
O23 &#8211; Service: Agere Modem Call Progress Audio (AgereModemAudio) &#8211; Agere Systems &#8211; C:\Windows\system32\agrsmsvc.exe<br />
O23 &#8211; Service: Apple Mobile Device &#8211; Apple Inc. &#8211; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 &#8211; Service: Automatic LiveUpdate Scheduler &#8211; Symantec Corporation &#8211; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe<br />
O23 &#8211; Service: Bonjour Service &#8211; Apple Inc. &#8211; C:\Program Files\Bonjour\mDNSResponder.exe<br />
O23 &#8211; Service: Symantec Event Manager (ccEvtMgr) &#8211; Symantec Corporation &#8211; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 &#8211; Service: Symantec Settings Manager (ccSetMgr) &#8211; Symantec Corporation &#8211; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 &#8211; Service: Symantec Lic NetConnect service (CLTNetCnService) &#8211; Symantec Corporation &#8211; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 &#8211; Service: Com4QLBEx &#8211; Hewlett-Packard Development Company, L.P. &#8211; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe<br />
O23 &#8211; Service: COM Host (comHost) &#8211; Symantec Corporation &#8211; C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe<br />
O23 &#8211; Service: GameConsoleService &#8211; WildTangent, Inc. &#8211; C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe<br />
O23 &#8211; Service: HP Health Check Service &#8211; Hewlett-Packard &#8211; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe<br />
O23 &#8211; Service: hpqwmiex &#8211; Hewlett-Packard Development Company, L.P. &#8211; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 &#8211; Service: HP Service (hpsrv) &#8211; Hewlett-Packard Corporation &#8211; C:\Windows\system32\Hpservice.exe<br />
O23 &#8211; Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) &#8211; Intel Corporation &#8211; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe<br />
O23 &#8211; Service: InstallDriver Table Manager (IDriverT) &#8211; Macrovision Corporation &#8211; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe<br />
O23 &#8211; Service: iPod Service &#8211; Apple Inc. &#8211; C:\Program Files\iPod\bin\iPodService.exe<br />
O23 &#8211; Service: LiveUpdate &#8211; Symantec Corporation &#8211; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE<br />
O23 &#8211; Service: LiveUpdate Notice &#8211; Symantec Corporation &#8211; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 &#8211; Service: NVIDIA Display Driver Service (nvsvc) &#8211; NVIDIA Corporation &#8211; C:\Windows\system32\nvvsvc.exe<br />
O23 &#8211; Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) &#8211; Unknown owner &#8211; C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe<br />
O23 &#8211; Service: QuickPlay Task Scheduler (QTS) (QPSched) &#8211; Unknown owner &#8211; C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe<br />
O23 &#8211; Service: Recovery Service for Windows &#8211; Unknown owner &#8211; C:\Windows\SMINST\BLService.exe<br />
O23 &#8211; Service: Cyberlink RichVideo Service(CRVS) (RichVideo) &#8211; Unknown owner &#8211; C:\Program Files\CyberLink\Shared Files\RichVideo.exe<br />
O23 &#8211; Service: PC Tools Auxiliary Service (sdAuxService) &#8211; PC Tools &#8211; C:\Program Files\Spyware Doctor\pctsAuxs.exe<br />
O23 &#8211; Service: PC Tools Security Service (sdCoreService) &#8211; PC Tools &#8211; C:\Program Files\Spyware Doctor\pctsSvc.exe<br />
O23 &#8211; Service: Audio Service (STacSV) &#8211; IDT, Inc. &#8211; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe<br />
O23 &#8211; Service: Symantec Core LC &#8211; Unknown owner &#8211; C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe</p>
<p>&#8211;<br />
End of file &#8211; 12377 bytes</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ann</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-417083</link>
		<dc:creator>ann</dc:creator>
		<pubDate>Tue, 06 Jan 2009 11:58:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-417083</guid>
		<description>pls how can i remove trojan virius from my pc. and i think becos of the trojan my pc is very slow pls help me out</description>
		<content:encoded><![CDATA[<p>pls how can i remove trojan virius from my pc. and i think becos of the trojan my pc is very slow pls help me out</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: emma</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-412627</link>
		<dc:creator>emma</dc:creator>
		<pubDate>Tue, 16 Dec 2008 19:52:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-412627</guid>
		<description>i have a trojan horse virus, and it wont go ! it seriously wont i have tried everything and anything and its so annoying help!</description>
		<content:encoded><![CDATA[<p>i have a trojan horse virus, and it wont go ! it seriously wont i have tried everything and anything and its so annoying help!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jasmine</title>
		<link>http://www.raymond.cc/blog/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-400564</link>
		<dc:creator>jasmine</dc:creator>
		<pubDate>Fri, 19 Sep 2008 02:23:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.raymond.cc/blog/archives/2006/09/04/effectively-remove-trojan-virus-spyware-from-windows-startup/#comment-400564</guid>
		<description>someone please help me remove the viris xp2008 antiviris that takes over your computer if you dnt buy it</description>
		<content:encoded><![CDATA[<p>someone please help me remove the viris xp2008 antiviris that takes over your computer if you dnt buy it</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using disk: basic
Database Caching 1/5 queries in 0.002 seconds using disk: basic
Object Caching 273/273 objects using disk: basic
Content Delivery Network via cdn.raymond.cc

Served from: www.raymond.cc @ 2012-02-11 05:45:19 -->
