Reb00t
2007-04-24, 07:43
I got a startup entry called SkyTel.EXE and i was just wondering what it was because there isn't any info on it and I've never even heard of SkyTel before. Let me know if you here is a copy of startup report
--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---
2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-04-21 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-04-18 advcheck.dll (1.5.1.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-01-02 Tools.dll (2.0.1.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-04-18 Includes\Cookies.sbi
2006-12-08 Includes\Dialer.sbi
2007-04-18 Includes\DialerC.sbi
2007-04-04 Includes\Hijackers.sbi
2007-04-18 Includes\HijackersC.sbi
2006-10-27 Includes\Keyloggers.sbi
2007-04-18 Includes\KeyloggersC.sbi
2004-11-29 Includes\LSP.sbi
2007-03-21 Includes\Malware.sbi
2007-04-18 Includes\MalwareC.sbi
2007-03-21 Includes\PUPS.sbi
2007-04-18 Includes\PUPSC.sbi
2007-04-18 Includes\Revision.sbi
2006-12-08 Includes\Security.sbi
2007-04-18 Includes\SecurityC.sbi
2007-03-21 Includes\Spybots.sbi
2007-04-18 Includes\SpybotsC.sbi
2005-02-17 Includes\Tracks.uti
2007-04-11 Includes\Trojans.sbi
2007-04-18 Includes\TrojansC.sbi
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 33280
MD5: da285490bbd8a1d0ce6623577d5ba1ff
Located: HK_LM:Run, NVIDIA nTune
command: "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
file: C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe
size: 81920
MD5: 5578d60b2ba2a875f93cc3b3058199c8
Located: HK_LM:Run, NvMediaCenter
command: RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 33280
MD5: da285490bbd8a1d0ce6623577d5ba1ff
Located: HK_LM:Run, nwiz
command: nwiz.exe /install
file: C:\WINDOWS\system32\nwiz.exe
size: 1622016
MD5: 0294e2a5e89bf786f24a9cc2fd753191
Located: HK_LM:Run, (DISABLED)
command:
file:
Located: HK_LM:Run, Kernel and Hardware Abstraction Layer (DISABLED)
command: KHALMNPR.EXE
file: C:\WINDOWS\KHALMNPR.EXE
size: 101136
MD5: cd746e8c320a2a163589bba7f4fc570a
Located: HK_LM:Run, SkyTel (DISABLED)
command: SkyTel.EXE
file: C:\WINDOWS\SkyTel.EXE
size: 2879488
MD5: c74b86642f131d76c0ede673fdf137b2
Located: HK_LM:Run, SunJavaUpdateSched (DISABLED)
command: "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
file: C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
size: 83608
MD5: 9c1c80bbf8e6044980890e2d2d91091c
Located: HK_LM:Run, Xfire Music (DISABLED)
command: "C:\Program Files\Xfire\xfiremusic.exe"
file: C:\Program Files\Xfire\xfiremusic.exe
size: 253650
MD5: 51af5be167ea61e82ba41a188b29ec83
Located: HK_CU:Run, Steam
command: "c:\program files\steam\steam.exe" -silent
file: c:\program files\steam\steam.exe
size: 1269760
MD5: 63fddd536e2798ba840ff723d7e2a17b
Located: HK_CU:Run, Aim6 (DISABLED)
command:
file:
Located: HK_CU:Run, Fraps (DISABLED)
command: C:\FRAPS\FRAPS.EXE
file: C:\FRAPS\FRAPS.EXE
size: 2842624
MD5: 984502acb1117368107fc5c3b00b99bc
Located: HK_CU:Run, SpybotSD TeaTimer (DISABLED)
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 1415824
MD5: 70496eee0ddbe485f658693826f44d38
Located: Startup (common), Adobe Gamma Loader.lnk
command: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
size: 113664
MD5: c2ff17734176cd15221c10044ef0ba1a
Located: Startup (common), Logitech SetPoint.lnk
command: C:\Program Files\Logitech\SetPoint\SetPoint.exe
file: C:\Program Files\Logitech\SetPoint\SetPoint.exe
size: 688128
MD5: 0450ec2579cf6cfd962d49878e0a9378
Located: Startup (common), NaturalColorLoad.lnk
command: C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe
file: C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe
size: 155715
MD5: c0c6c793f5b3b15647a80caafe0f123d
Located: Startup (user), Xfire.lnk
command: C:\Program Files\Xfire\xfire.exe
file: C:\Program Files\Xfire\xfire.exe
size: 2702928
MD5: b648ce6c7e3dd2596d7629aeadec6450
Located: System.ini, crypt32chain
command: crypt32.dll
file: crypt32.dll
Located: System.ini, cryptnet
command: cryptnet.dll
file: cryptnet.dll
Located: System.ini, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, Schedule
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
Located: System.ini, SensLogn
command: WlNotify.dll
file: WlNotify.dll
Located: System.ini, termsrv
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, WgaLogon
command: WgaLogon.dll
file: WgaLogon.dll
Located: System.ini, wlballoon
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, cscdll (DISABLED)
command: cscdll.dll
file: cscdll.dll
--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---
2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-04-21 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-04-18 advcheck.dll (1.5.1.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-01-02 Tools.dll (2.0.1.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-04-18 Includes\Cookies.sbi
2006-12-08 Includes\Dialer.sbi
2007-04-18 Includes\DialerC.sbi
2007-04-04 Includes\Hijackers.sbi
2007-04-18 Includes\HijackersC.sbi
2006-10-27 Includes\Keyloggers.sbi
2007-04-18 Includes\KeyloggersC.sbi
2004-11-29 Includes\LSP.sbi
2007-03-21 Includes\Malware.sbi
2007-04-18 Includes\MalwareC.sbi
2007-03-21 Includes\PUPS.sbi
2007-04-18 Includes\PUPSC.sbi
2007-04-18 Includes\Revision.sbi
2006-12-08 Includes\Security.sbi
2007-04-18 Includes\SecurityC.sbi
2007-03-21 Includes\Spybots.sbi
2007-04-18 Includes\SpybotsC.sbi
2005-02-17 Includes\Tracks.uti
2007-04-11 Includes\Trojans.sbi
2007-04-18 Includes\TrojansC.sbi
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 33280
MD5: da285490bbd8a1d0ce6623577d5ba1ff
Located: HK_LM:Run, NVIDIA nTune
command: "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
file: C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe
size: 81920
MD5: 5578d60b2ba2a875f93cc3b3058199c8
Located: HK_LM:Run, NvMediaCenter
command: RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 33280
MD5: da285490bbd8a1d0ce6623577d5ba1ff
Located: HK_LM:Run, nwiz
command: nwiz.exe /install
file: C:\WINDOWS\system32\nwiz.exe
size: 1622016
MD5: 0294e2a5e89bf786f24a9cc2fd753191
Located: HK_LM:Run, (DISABLED)
command:
file:
Located: HK_LM:Run, Kernel and Hardware Abstraction Layer (DISABLED)
command: KHALMNPR.EXE
file: C:\WINDOWS\KHALMNPR.EXE
size: 101136
MD5: cd746e8c320a2a163589bba7f4fc570a
Located: HK_LM:Run, SkyTel (DISABLED)
command: SkyTel.EXE
file: C:\WINDOWS\SkyTel.EXE
size: 2879488
MD5: c74b86642f131d76c0ede673fdf137b2
Located: HK_LM:Run, SunJavaUpdateSched (DISABLED)
command: "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
file: C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
size: 83608
MD5: 9c1c80bbf8e6044980890e2d2d91091c
Located: HK_LM:Run, Xfire Music (DISABLED)
command: "C:\Program Files\Xfire\xfiremusic.exe"
file: C:\Program Files\Xfire\xfiremusic.exe
size: 253650
MD5: 51af5be167ea61e82ba41a188b29ec83
Located: HK_CU:Run, Steam
command: "c:\program files\steam\steam.exe" -silent
file: c:\program files\steam\steam.exe
size: 1269760
MD5: 63fddd536e2798ba840ff723d7e2a17b
Located: HK_CU:Run, Aim6 (DISABLED)
command:
file:
Located: HK_CU:Run, Fraps (DISABLED)
command: C:\FRAPS\FRAPS.EXE
file: C:\FRAPS\FRAPS.EXE
size: 2842624
MD5: 984502acb1117368107fc5c3b00b99bc
Located: HK_CU:Run, SpybotSD TeaTimer (DISABLED)
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 1415824
MD5: 70496eee0ddbe485f658693826f44d38
Located: Startup (common), Adobe Gamma Loader.lnk
command: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
size: 113664
MD5: c2ff17734176cd15221c10044ef0ba1a
Located: Startup (common), Logitech SetPoint.lnk
command: C:\Program Files\Logitech\SetPoint\SetPoint.exe
file: C:\Program Files\Logitech\SetPoint\SetPoint.exe
size: 688128
MD5: 0450ec2579cf6cfd962d49878e0a9378
Located: Startup (common), NaturalColorLoad.lnk
command: C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe
file: C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe
size: 155715
MD5: c0c6c793f5b3b15647a80caafe0f123d
Located: Startup (user), Xfire.lnk
command: C:\Program Files\Xfire\xfire.exe
file: C:\Program Files\Xfire\xfire.exe
size: 2702928
MD5: b648ce6c7e3dd2596d7629aeadec6450
Located: System.ini, crypt32chain
command: crypt32.dll
file: crypt32.dll
Located: System.ini, cryptnet
command: cryptnet.dll
file: cryptnet.dll
Located: System.ini, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, Schedule
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
Located: System.ini, SensLogn
command: WlNotify.dll
file: WlNotify.dll
Located: System.ini, termsrv
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, WgaLogon
command: WgaLogon.dll
file: WgaLogon.dll
Located: System.ini, wlballoon
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, cscdll (DISABLED)
command: cscdll.dll
file: cscdll.dll