View Single Post
Old 05-26-2007, 05:02 PM   #5
Bungleau
40th Level Warrior
 

Join Date: October 29, 2001
Location: Western Wilds of Michigan
Posts: 11,752
Things that look suspicious to me...

Quote:
Originally posted by Harkoliar:


F:\WINNT\system32\drivers\CDAC11BA.EXE
F:\Program Files\Eset\nod32krn.exe
F:\Documents and Settings\Rody\Desktop\aiepk.exe
F:\WINNT\system32\rundll32.exe
F:\Program Files\WinFast\WFTVFM\WFWIZ.exe
F:\Program Files\Eset\nod32kui.exe
F:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
F:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
F:\Program Files\GetRight\getright.exe
F:\Program Files\MagicDisc\MagicDisc.exe
F:\Program Files\GetRight\getright.exe
F:\Program Files\Maxthon\Maxthon.exe

O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - F:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - c:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O3 - Toolbar: DAP Bar - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - F:\Program Files\DAP\DAPIEBar.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - F:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [aiepk] F:\Documents and Settings\Rody\Desktop\aiepk.exe
O4 - HKLM\..\Run: [nod32kui] "F:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "F:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [SUPERAntiSpyware] F:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: GetRight - Tray Icon.lnk = F:\Program Files\GetRight\getright.exe
O8 - Extra context menu item: &Clean Traces - F:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - F:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - F:\Program Files\DAP\dapextie2.htm
O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - F:\PROGRA~1\DAP\DAP.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - F:\Documents and Settings\Rody\Start Menu\Programs\IMVU\Run IMVU.lnk
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} (DjVuCtl Class) - http://www.lizardtech.com/download/f...trol_en_US.cab
O18 - Protocol: ezpp - {810403FA-E82E-11D5-8AAB-0010A404A3DE} - F:\WINNT\system32\EZTOOL~1.DLL
O20 - Winlogon Notify: !SASWinLogon - F:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - F:\Program Files\Eset\nod32krn.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - F:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe
Ermmm... I didn't get through all of 'em. I did see Rody in there... take a look. Those are all ones that I don't recognize or feel suspicious... Google is your friend to take them out now [img]smile.gif[/img]

*edit* You know what's on your system... I don't. I'm suspicious of anything that calls itself "MegaUpload" or "SuperAntiSpyware"... but that's just me. If they're something you installed on purpose, then I suspect you're fine.

And to restate, as I did below, don't just arbitrarily delete things. Google for them and see if they're related to something you recognize and approve of.

*/edit*

[ 05-26-2007, 11:07 PM: Message edited by: Bungleau ]
__________________
*B*
Save Early, Save Often Save Before, Save After
Two-Star General, Spelling Soldiers
-+-+-+
Give 'em a hug one more time. It might be the last.
Bungleau is offline   Reply With Quote