BuzzStPoint
Daemon Poster
- Messages
- 676
- Location
- US
Reload and scan.. Then delete these entries.. Look carefully and dont miss any..
Code:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,<a href="http://www.ntsearch.com/search.php?q=Search&v=55">Search</a> Bar = [url]http://www.cfhedjzzyauya.com/zx_6Uf...j10sjbSERc.html[/url]
O4 - HKLM\..\Run: [websx] C:\Program Files\websx\int113777.exe -auto
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKLM\..\Run: [KAZAA] C:\Program Files\Kazaa\Kazaa.exe /SYSTRAY
O4 - HKLM\..\Run: [CMESys] "C:\Program Files\Common Files\CMEII\CMESys.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKCU\..\Run: [sp] C:\WINDOWS\sp.exe
O4 - HKCU\..\Run: [Winsixth] C:\DOCUME~1\shell\APPLIC~1\KNOBHE~1\cash <a href="http://www.ntsearch.com/search.php?q=time&v=55">time</a>.exe
O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: <a href="http://www.ntsearch.com/search.php?q=Windows&v=55">Windows</a> Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG7 Alert Manager <a href="http://www.ntsearch.com/search.php?q=Server&v=55">Server</a> (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: iPod Service (iPodService) - <a href="http://www.ntsearch.com/search.php?q=Apple&v=55">Apple</a> <a href="http://www.ntsearch.com/search.php?q=Computer&v=55">Computer</a>, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce <a href="http://www.ntsearch.com/search.php?q=Server&v=55">Server</a> (LexBceS) - <a href="http://www.ntsearch.com/search.php?q=Lexmark&v=55">Lexmark</a> International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE