It worked! I'm still unable to connect to the internet, though, so I'll have to investigate that tomorrow.
Here is the Combofix log:
ComboFix 09-08-10.06 - Kie 12/08/2009 22:22.1.2 - NTFSx86
Microsoft~ windows vistam Business 6.0.6000.0.1252.44.1033.18.2046.1376 [GMT 1:00]
Running from: d:\users\Kie\Desktop\combofix.exe
AV: F-Secure Anti-Virus 7.30 *on-access scanning disabled* (updated) {E7512ED5-4245-4B4D-AF3A-382D3F313FI5}
FW: F-secure Internet security 2008 OEM 8.00 *enabled* {D4747503-0346-49EB-9262-997542F79BF4}
SP: AVG Anti-spyware *disabled* (outdated) {48F2E28D-ED66-4646-9C11-B3055BOAF604}
SP: F-Secure Anti-virus 7.30 *disabled* (updated) {0651C4BO-ID7E-4682-B965-2E9523C483A5}
SP: windows Defender *enabled* (outdated) {D68DDC3A-831F-4FAE-9E44-DAI32ClACF46}
* created a new restore point
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
c:\$recycle.bin\S-I-5-21-1571381933-3166844399-2333848073-500
c:\$recycle.bin\S-1-5-21-1661674311-2815529458-2936180237-500
c:\$recycle.bin\s-1-5-21-1909584832-858829809-948134049-500
c:\$recycle.bin\s-I-5-21-2504357094-947659251-4233815124-500
c:\$recycle.bin\S-I-5-21-3753462501-2946134135-3446067773-500
c:\$recycle.bin\S-1-5-21-651549746-3940150078-1581359000-500
c:\$recycle.bin\s-1-5-21-672597815-3237486728-385770818-500
c:\$recycle.bin\S-I-5-21-918056312-2952985149-2686913973-500
c:\program files\Antispywareshield
c:\program files\Antispywareshield\Antispywareshieldl.ad
c:\programdata\Microsoft\windows\start Menu\programs\Herocodec
c:\programdata\Microsoft\windows\start Menu\programs\Herocodec\uninstall.lnk
c:\users\Kie\AppData\Roaming\Microsoft\windows\start Menu\programs\Herocodec c:\windows\Installer\$patchCache$\Managed\6ACA9EFE6506Dc043852EOB02EBC26B2\8.1.0 \html.ini2
c:\windows\system32\375013
c:\windows\system32\AcsignExtRes.dll
c:\windows\system32\drivers\gxvxcjydjpjcxtfrnpdcconhcamuswewdhulq.sys
c:\windows\system32\gxvxccounter
c:\windows\system32\gxvxcqxiaydlsjadmlutkwdkbigbrvjleolnm.dll
D:\autorun.inf
((((((((((((((((((((((((((((((((((((((( Drivers/services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\service_gxvxcserv.sys
-------\Legacy_gxvxcserv.sys
((((((((((((((((((((((((( Files created from 2009-07-12 to 2009-08-12 )))))))))))))))))))))))))))))))
2009-08-11 21:52 . 2009-08-03 12:36 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-08-11 21:52 . 2009-08-11 21:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-08-11 21:52 . 2009-08-11 21:52 -------- d-----w- c:\programdata\Malwarebytes
2009-08-11 21:52 . 2009-08-03 12:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-08-10 14:46 . 2007-06-28 13:36 401720 ----a-w- c:\program files\HijackThis.exe
2009-08-10 14:37 . 2009-08-10 14:37 -------- d-----w- c:\program files\ERuNT
2009-08-05 14:27 . 2009-08-05 14:27 -------- d-----w- C:\AVGTemp
2009-08-05 00:16 . 2009-08-05 00:16 -------- d-----w- c:\users\Kie\AppData\Roaming\AVG8
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2009-08-12 21:30 . 2007-04-13 20:11 12 ----a-w- c:\windows\bthservsdp.dat
2009-08-12 15:38 . 2008-11-11 21:39 -------- d-----w- c:\programdata\Google updater
2009-08-11 15:02 . 2007-11-13 14:39 -------- d-----w- c:\programdata\fssg
2009-08-11 14:03 . 2008-03-30 15:14 -------- d-----w- c:\programdata\Grisoft
2009-08-11 12:26 . 2008-07-05 21:06 -------- d-----w- c:\program files\BitLord
2009-08-10 12:03 . 2008-07-05 21:06 -------- d-----w- c:\program files\TorrentMan
2009-08-05 14:25 . 2007-12-02 23:04 1356 ----a-w- c:\users\Kie\AppData\Local\d3d9caps.dat
2009-08-01 11:49 . 2007-04-13 21:53 -------- d-----w- c:\program files\common Files\symantec Shared
2009-07-02 21:43 . 2007-12-19 01:02 -------- d-----w- c:\users\Kie\AppData\Roaming\dvdcss
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\software\Microsoft\Internet Explorer\uR~searchHooks]
"{24cc1362-11c6-4918-a2cO-bgee5a563185}"= "c:\program files\ArchiBar\tbArcl.dll" [2008-07-06 1569304]
[HKEY_CLASSES_ROOT\clsid\{24cc1362-11c6-4918-a2cO-bgee5a563185}]
[HKEY_LOCAL_MACHINE\~\Browser Helper objects\{24cc1362-11c6-4918-a2cO-bgee5a563185}]
2008-07-06 22:21 1569304 ----a-w- c:\program files\ArchiBar\tbArc1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{24cc1362-11c6-4918-a2cO-bgee5a563185} "= "c: \program fi1eS\ArchiBar\tbArcl.dll" [2008-07-06 1569304]
[HKEY_CLASSES_ROOT\clsid\{24cc1362-11c6-4918-a2cO-bgee5a563185}]
[HKEY_CURRENT_USER\software\Microsoft\Internet Explorer\Toolbar\webbrowser] "{24cC1362-11C6-4918-A2cO-B9EE5A563185}"= "c:\program files\ArchiBar\tbArcl.dll" [2008-07-06 1569304]
[HKEY_CLASSES_ROOT\clsid\{24cc1362-11c6-4918-a2cO-bgee5a563185}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\windows\currentversion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-11-11 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\windows\currentversion\Run]
"windows Defender"="c:\program files\windows Defender\MSAScui.exe" [2007-07-04 1006264]
"HotKeyscmds"="c:\windows\system32\hkcmd.exe" [2007-04-03 154392]
"persistence"="c:\windows\system32\igfxpers.exe" [2007-04-03 133912]
"SVPWUTIL"="c: \program fi1es\ TOSHIBA\Uti1itieS\SvPWUTIL. exe" [2006-03-22 438272]
"topi"="c:\program files\TOSHIBA\Toshiba online Product Information\topi .exe" [2007-04-02 577536]
"TPwrMain"="c:\program files\TOSHIBA\power saver\TPwrMain.ExE" [2007-03-29 411192]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2006-12-07 55416]
"smoothview"="c:\program files\Toshiba\smoothview\smoothview.exe" [2007-05-23 509496]
"OOTcrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2007-05-22 538744]
"desktop SMS"="c:\program files\IDM\oesktop SMS\DesktopSMS.exe" [2007-06-18 1507328J
"Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaRegistration.exe" [2007-02-19 571024]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2007-02-12 174872J
"IaNvsrv"="c:\program files\Intel\Intel Matrix Storage Manager\OROM\IaNvsrv\IaNvsrv.exe" [2007-03-13 33048]
"Acronis Scheduler2 service"="c:\pro~ram files\common Files\Acronis\schedule2\schedhlp.exe [2007-08-02 148760]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-10-25 282624]
"iTunesHelper"="d:\program files\iTunes\iTunesHelper.exe" [2006-10-30 256576]
"EEventManager"="c:\program files\EPSON\creativity Suite\Event Manager\EEventManager.exe" [2006-10-12 102400]
"HP Software update"="c:\program files\HP\HP software update\HPwuschd2.exe" [2007-10-14 49152]
"hpqsRMon"="c:\program files\HP\Digital Imaging\bin\hpqsRMon.exe" [2007-08-22 80896]
"Msconfig"="c:\windows\system32\msconfig.exe" [2006-11-02 222208] "RtHDVCpl"="RtHOVcpl.exe" - c:\windows\RtHOVcpl.exe [2007-06-13 4489216]
"NoSTrax.exe"="NDsTray.exe" [BU] .
"skytel '="skytel.exe" - c:\windows\skyTel.exe [2007-05-28 1826816]
c:\users\Kie\AppOata\Roaming\Microsoft\windows\Start Menu\programs\Startup\
Adobe Gamma.lnk - c:\program files\common Fil~s\Adobe\calibration\Adobe Gamma
Loader.exe [2005-3-16 113664] .
Palm Registration.lnk - c:\program files\palm\register.exe [2008-4-23 2494464]
c:\programdata\Microsoft\windows\start Menu\programs\Startup\
Dataviz Inc Messenger.lnk - c:\program files\Common Files\Dataviz\ovzIncMsgr.exe [2008-1-3 28672]
.
[HKEY_LOCAL~MACHINE\SYSTEM\Currentcontrolset\control\safeBoot\Minimal\winDefend] @="Service"
[HKLM\~\startupfolder\c:^programData^Microsoft^windowsAStart
Menu^programs^startup^Directrec configuration Tool.lnk]
path=c:\programdata\Microsoft\windows\start Menu\programs\startup\directrec configuration Tool.lnk
backup=c:\windows\pss\Directrec configuration Tool.lnk.commonstartup backupExtension=.commonstartup
[HKLM\~\startupfolder\c:Apr09ramoataAMicrosoftAwindowsAStart MenuAprogramsAStartupAHP Digltal Imaging Monitor.lnk] path=c:\programdata\Microsoft\windows\Start Menu\programs\Startup\HP Digital Imaging Monltor.lnk
backup=c:\windows\pSS\HP Digital Imaging Monitor.lnk.commonstartup
backupExtension=.commonStartup .
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\symantecAntivirus]
"disableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\symantecFirewall]
"disableMonitoring"=dword:00000001
[HKLM\-\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"TCP Query user{B459534A-25B8-4502-A1E9-AA066B2COEC7}c:\\pro!}ram files\\bitlord\\bitlord.exe"= UDP:c:\program files\bitlord\bltlord.exe:BitLord "UDP Query user{314B4A72-81E7-4ABF-A411-989B753FDABO}c:\\pro!}ram files\\bitlord\\bitlord.exe"= TCP:c:\program files\bitlord\bltlord.exe:BitLord "{6A8COFFE-D351-4FB9-A1B7-5B31DAB73F8F}"= UDP:c:\program files\TOSHlBA\Utilities\TAcSPROP.exe:Accessibility "{3C57c25E-69CD-4976-B76B-477458EDD568}"= TCP:c:\program files\TosHlBA\Utilities\TAcsPROP.exe:Accessibility
"TCP Query user{573BA530-5E86-4153-9756-AA5E7A80B5C9}d:\\program files\\itunes\\itunes.exe"= Disabled:uDP:d:\program files\itunes\itunes.exe:iTunes
"UDP Query user{8c996AA2-4C1C-4888-BBE1-E8A3439128EA}d:\\program files\\itunes\\itunes.exe"= Disabled:Tcp:d:\program files\itunes\itunes.exe:iTunes
[HKLM\-\services\sharedaccess\parameters\firewallpolicy\publicprofile] "EnableFirewall"= 0 (OxO)
[HKLM\-\services\sharedaccess\parameters\firewallpolicy\Restrictedservices\Static\system]
"DFSR-1"= RPort=5722luDP:%SystemRoot%\system32\svchost.exelsvc=DFSR:Allow inbound TCP trafficl
RO CpllR;Embedded IR Driver;c:\windows\system32\drivers\cpllR.SYS [06/03/2007 15:01 14848]
RO iaNvStor;lntelCR) Turbo Memory Technology NAND controller;c:\windows\system32\drivers\iaNvStor.sys [13/04/2007 21:52 210432]
R1 FSES;F-Secure Email scanning Driver;c:\windows\system32\drivers\fses.sys [13/11/2007 15:41 35024]
R1 FSFW;F-Secure Firewall Driver;c:\windows\system32\drivers\fsdfw.sys [13/11/2007 15:41 60064]
[HKEY_LOCAL_MACHlNE\software\microsoft\winG_MULTl_SZ Pml Driver HPz12 Net Driver HPZ12
hpdevmgmt REG_MULTl_SZ hpqcxs08 hpqddsvc
Contents of the 'scheduled Tasks' folder
2009-01-01 c:\windows\Tasks\AppleSoftwareupdate.job
- c:\program files\Apple Software update\softwareupdate.exe [2006-10-10 17:13]
2009-08-12 c:\windows\Tasks\Google Software updater.job
- c:\program files\Google\Common\Google updater\Googleupdaterservice.exe [2008-11-11 21:02]
2009-08..,12 c:\windows\Tasks\user_Feed_synchronization-{364B15A7-9ABD-47BF-BD4E-c8850BA667FD } .job
- c:\windows\system32\msfeedssync.exe [2006-11-02 09:45]
- - - - ORPHANS REMOVED - - - -
HKCU-Run-T0SCDSPD - TOSCDSPD.EXE
HKLM-Run-HWSetup - \HWSetup.exe
------- supplementary Scan -------
ustart page = hxxp://www.archdaily.com/
ulnternet settin!}s,proxyoverride = *.local
IE: E&xport to Mlcrosoft Excel - c:\progra-1\MICROS-1\office12\EXCEL.EXE/3000
lE: {{C08CAF1D-COA3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?EN
LSP: c:\program files\F-Secure Internet security\FSPs\program\FSLSP.DLL
Trusted Zone: microsoft.com\download.wondowsupdate
Trusted Zone: microsoft.com\update
**************************************************************************
scanning hidden processes scanning hidden autostart entries scanning hidden files ...
scan completed successfully hidden files:
**************************************************************************
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\system\controlset001\Control\class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\Allusersettings]
@Denied: (A) (users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (5-1-5-20)
IBlindDial"=dword:OOOOOOOO
"MSCurrentCountry"=dword:000000b4
[HKEY_LOCAL_MACHINE\system\controlset001\Control\class\{4D36E96D-E325-11CE-BFC1- 08002BE10318}\0001\Allusersettings]
@Denied: (A) (users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (5-1-5-20)
"BlindDial"=dword:00000000
--------------------- DLLS Loaded Under Running Processes ---------------------
- - - - - - - > 'Explorer.exe'(3568)
c:\program files\Arcsoft\photoImpression 5\share\pihook.dll
------------------------ Other Running Processes -----------------------*
c:\windows\Microsoft.NET\Framework\v3.0\wPF\presentationFontCache.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\audiodg.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\common Files\Acronis\schedule2\schedu12.exe
c:\program files\TosHIBA\ConfigFree\CFsvcs.exe
c:\program files\olympus\DeviceDetector\DM1service.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
c:\program files\TOSHIBA\TOSHIBA DVD PLAYER\TNavlSrv.exe
c:\windows\system32\TODDsrv.exe
c:\program files\TOSHIBA\power saver\Toscosrv.exe
c:\program files\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe
c:\windows\system32\uAService7.exe
**************************************************************************
.
completion time: 2009-08-12 22:40 - machine was rebooted
ComboFix-quarantined-files.txt 2009-08-12 21:40
Pre-Run: 40,646,709,248 bytes free
Post-Run: 46,590,873,600 bytes free
213 --- E 0 F --- 2009-04-23 21:14
Here's the new HJT log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:30:52, on 12/08/2009
platform: windows vista (winNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16830)
Boot mode: Normal
Running processes:
c:\windows\system32\taskeng.exe
c:\windows\system32\Dwm.exe
c:\windows\system32\taskeng.exe
c:\windows\Explorer.exe
c:\windows\system32\notepad.exe
c:\program Files\windows defender\MsAscui.exe
c:\program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Users\Kie\Desktop\Hi JaCkThis\HijackThi s.exe
RO - HKCU\software\Microsoft\Internet Explorer\Main,Start page = http://www.archdaily.com/
RI - HKLM\software\Microsoft\Internet Explorer\Main,Default_page_uRL http://go.microsoft.com/fwlink/?Linkld=69157
RI - HKLM\software\Microsoft\Internet Explorer\Main,Default_Search_URL http://go.microsoft.com/fwlink/?LinkId=54896
RI - HKLM\software\Microsoft\Internet Explorer\Main,search page = http://go.microsoft.com/fwlink/?LinkId=54896
RO - HKLM\Software\Microsoft\Internet Explorer\Main,start Page = http://go.microsoft.com/fwlink/?Linkld=69157
RI - HKCU\software\Microsoft\windows\Currentversion\Internet settings,proxyoverride = *.local
RO - HKCU\software\Microsoft\Internet Explorer\Toolbar,LinksFolderName
R3 - URLSearchHook: ArchiBar Toolbar - {24ccI362-11c6-49I8-a2cO-bgee5a563185} ¬c:\program Files\ArchiBar\tbArcl.dll
02 - BHO: txthlpBHO class - {060235DC-6D84-47BD-95D7-A4EF5099A59D} ¬C:\PROGRA~I\TEXTHE~I\READAN~I\TEXTHE~3.DLL
02 - BHO: ArchiBar TQolbar - {24ccI362-11c6-4918-a2cO-bgee5a563185} - c:\program Files\Archisar\tbArcl.dll
02 - BHO: wormRadar.com IESiteBlocker.NavFilter ¬{3CA2F3I2-6F6E-4B53-A66E-4E65E497C8CO} - c:\program Files\AVG\AVG8\avgssie.dll (file missing)
02 - BHO: Google Toolbar Helper - {AAS8ED58-01DD-4d9I-8333-CFI0S77473F7} ¬c:\program files\google\googletoolbarl.dll
02 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} ¬c:\program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
02 - BHO: EpsonToolBandKicker Class - {E9942IFB-68DD-40FO-B4Ac-a7027CAE2FlA} ¬c:\program Files\EPsON\EPSON web-To-page\EPSON web-To-page.dll
02 - BHO: HP smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72EI16A856} ¬c:\program Files\HP\Digital Imaging\Smart web printing\hpswp_BHO.dll
03 - Toolbar: EPSON web-To-page - {EESD279F-081B-4404-994D-C6B60AAEBA6D} ¬c:\program Files\EPSON\EPSON web-To-page\EPsON web-To-page.dll
03 - Toolbar: ArchiBar Toolbar - {24ccI362-I1c6-49I8-a2cO-bgee5a563185} ¬C:\program Files\ArchiBar\tbArcl.dll
03 - Toolbar: &Google - {23I8C2BI-4965-11d4-9BI8-009027A5CD4F} - c:\program files\google\googletoolbarl.dl1
04 - HKLM\ .. \Run: [windows Defender] %programFiles%\windows Defender\MSAscui.exe -hide
04 - HKLM\ .. \Run: [HotKeyscmds] c:\windows\system32\hkcmd.exe
04 - HKLM\ .. \Run: [persistence] c:\windows\system32\igfxpers.exe
04 - HKLM\ .. \Run: [SVPWUTIL] c:\program Files\TosHIBA\Utilities\SvPwuTIL.exe SVPwUTIL
04 - HKLM\ .. \Run: [topi] c:\program Files\TOSHIBA\Toshiba online Product Information\topi.exe -startup
04 - HKLM\ .. \Run: [RtHDVCpl] RtHDVcpl.exe
04 - HKLM\ .. \Run: [TPwrMain] %programFiles%\TOSHIBA\power saver\TPwrMain.ExE
04 - HKLM\ .. \Run: [HSON] %programFiles%\TOSHIBA\TBS\HSON.exe
04 - HKLM\ .. \Run: [smoothview] %programFiles%\Toshiba\Smoothview\SmQothview.exe
04 - HKLM\ .. \Run: [OOTCrdMain] %programFiles%\TOSHIBA\Flashcards\TCrdMain.exe
04 - HKLM\ .. \Run: [NDSTray.exe] NDSTray.exe
04 - HKLM\ .. \Run: [Desktop SMS] c:\program Files\IDM\Desktop SMS\DesktopSMS.exe /auto
04 - HKLM\ .. \Run: [Toshiba Registration] c:\program Files\Toshiba\Registration\ToshibaRegistration.exe
04 - HKLM\ .. \Run: [IAAnotif] c:\program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
04 - HKLM\ .. \Run: [IaNvSrv] c:\program Files\Intel\Intel Matrix Storage Manager\OROM\IaNvSrv\IaNvsrv.exe
04 - HKLM\ .. \Run: [Acronis scheduler2 service] "c:\program Files\common Files\Acronis\Schedule2\schedhlp.exe"
04 - HKLM\ .. \Run: [QuickTime Task] "e:\program Files\QuickTime\qnask.exe" -atboottime
04 - HKLM\ .. \Run: [iTunesHelper] "D:\program Files\iTunes\iTunesHelper.exe"
04 - HKLM\ .. \Run: [EEventManager] C:\Program Files\EPsON\Creativity Suite\Event Manager\EEventManager.exe
04 - HKLM\ .. \Run: lHP software update] c:\program Files\HP\HP Software update\HPwuschd2.exe
04 - HKLM\ .. \Run: [hpqsRMon] c:\program Files\HP\Digital Imaging\bin\hpqsRMon.exe
04 - HKLM\ .. \Run: [skytel] skr,tel.exe
04 - HKLM\ .. \Run: [Msconfi g] 'e: \wi ndows\system32\msconfi g. exe" jauto
04 - HKCU\ .. \Run: [swg] c:\program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
04 - startup: Adobe Gamma.lnk = c:\program Files\common Files\Adobe\calibration\Adobe Gamma Loader.exe
04 - Startup: palm Registration.lnk = c:\program Files\palm\register.exe
04 - Global startup: Dataviz Inc Messenger.lnk = c:\program Files\common Files\Dataviz\DvzIncMsgr.exe
08 - Extra context menu item: E&xport to Microsoft Excel ¬res:jjC:\PROGRA~1\MICROS~1\office12\EXcEL.ExEj3000
09 - Extra button: Research - {92780B25-18CC-41c8-B9BE-3C9C57IA8263} ¬C:\PROGRA-1\MICROS-1\office12\REFIEBAR.DLL
09 - Extra button: eBay - {C08CAF1D-COA3-40D5-9970-06D067EAC017} ¬http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?EN (file missing)
09 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} ¬c:\program Files\HP\Digital Imaging\Smart web printin~\hpswp_BHO.dll
010 - Broken Internet access because of LSP provider c:\program files\f-secure internet security\fsps\program\fslsp.dll' missing
013 - Gopher Prefix:
018 - protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} ¬c:\program Files\AVG\AVG8\avgpp.dll (file missing)
023 - Service: Acronis Scheduler2 Service (AcrSch2svc) - Acronis - c:\program Files\common Files\Acronis\schedule2\schedu12.exe
023 - Service: Adobe LM Service - Adobe Systems - c:\program Files\common Files\Adobe systems shared\Service\Adobelmsvc.exe
023 - service: Ati External Event utility - ATI Technologies Inc. ¬c:\windows\system32\Ati2evxx.exe
023 - Service: Autodesk Licensing Service - Autodesk - c:\program Files\common Files\Autodesk shared\service\Adskscsrv.exe
023 - service: configFree service (CFSVCS) - TOSHIBA CORPORATION - c:\program Files\TOSHIBA\ConfigFree\CFSvcs.exe
023 - service: DM1Service - OLYMPUS IMAGING CORP. - c:\program Files\01ympus\DeviceDetector\DM1Service.exe
023 - Service: Google software updater (gusvc) ~ Goo9le - c:\program Files\Google\common\Google updater\GoogleupdaterServlce.exe
023 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel corporation - c:\program Files\Intel\Intel Matrix storage Manager\IAANTMon.exe 023 - Service: InstallDriver Table Manager (IDriverT) - Macrovlsion corporation - c:\program Files\common Files\Installshield\Driver\ll\Intel 32\IDriverT.exe 023 - service: Installshield Licensing service - Macrovision
- c:\program Files\Common Files\Installshield shared\service\InstallShield Licensing service.exe
023 - service: iPod Service - Apple computer, Inc. - c:\program Files\ipod\bin\ipodservice.exe
023 - service: symantec core LC - Symantec corporation - c:\program Files\common Files\symantec shared\cCPD-Lc\symlcsvc.exe
023 - Service: TOSHIBA Navi Support service (TNavisrv) - TOSHIBA corporation ¬c:\program Files\TosHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
023 - Service: TOSHIBA optical Disc Drive Service (TODDSrv) - TOSHIBA corporation - c:\windows\system32\TODDsrv.exe
023 - Service: TOSHIBA power Saver CTosCoSrv) - TOSHIBA Corporation - c:\program Files\TosHIBA\power saver\Toscosrv.exe
023 - Service: TOSHIBA Bluetooth service - TOSHIBA CORPORATION - c:\program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
023 - service: SecuROM User Access Service CV7) (userAccess7) - unknown owner ¬c:\windows\system32\uAservice7.exe
End of file - 7919 bytes
I'm really grateful for your continuing help, Phil. Thanks.
Rosie