Switch language
a-squared HiJackFree Analysis
www.hijackfree.com
Version info: Result ToDo
Your used version of a-squared HiJackFree: 1.20
The current version of a-squared HiJackFree: 1.20
Your used operating system version: Windows 98 A
The current version of your operating system: Windows XP or 2003 Server
Please update your operating system and install the latest service pack!
Registry Autoruns: Result ToDo
Name: CountrySelection
Path: pctptt.exe
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 2 - Bad: 0
View Details
Name: PTSNOOP
Path: ptsnoop.exe
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 1 - Bad: 0
View Details
Name: SpySweeper
Path: C:\PROGRAM FILES\WEBROOT\SPY SWEEPER\SPYSWEEPER.EXE /startintray
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 1 - Bad: 0
View Details
Name: a-squared
Path: C:\Program Files\a-squared\a2guard.exe
Location: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Good: 2 - Bad: 0
View Details
Tricky and Other Autoruns: Result ToDo
Name: load
Path:
Location: win.ini
Not checked Unknown Item
Search at Google
Name: run
Path:
Location: win.ini
Not checked Unknown Item
Search at Google
Name: shell
Path: Explorer.exe
Location: win.ini
Not checked Unknown Item
Search at Google
Name: scrnsave.exe
Path: C:\WINDOWS.000\SYSTEM\BLANKS~1.SCR
Location: win.ini
Not checked Unknown Item
Search at Google
Name: Set tvdumpflags
Path: 8
Location: autoexec.bat
Not checked Unknown Item
Search at Google
Name: SET PATH
Path: C:\WINDOWS.000\SYSTEM\WBEM;%PATH%
Location: autoexec.bat
Not checked Unknown Item
Search at Google
Name: a-squared
Path: C:\Program Files\a-squared\a2guard.exe
Location: HKEY_USERS\.Default\Software\Microsoft\Windows\Cur rentVersion\Run\
Not checked Unknown Item
Search at Google
Name: SetupcPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n SetupcPerUser 64 C:\WINDOWS.000\INF\setupc.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: AppletsPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n AppletsPerUser 64 C:\WINDOWS.000\INF\applets.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: FontsPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n FontsPerUser 64 C:\WINDOWS.000\INF\fonts.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {5A8D6EE0-3E18-11D0-821E-444553540000}
Path: rundll32.exe advpack.dll,LaunchINFSectionEx C:\WINDOWS.000\INF\icw.inf,PerUserStub,,36
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_ICW_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_ICW_Inis 0 C:\WINDOWS.000\INF\icw97.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {89820200-ECBD-11cf-8B85-00AA005B4383}
Path: rundll32.exe advpack.dll,UserInstStubWrapper {89820200-ECBD-11cf-8B85-00AA005B4383}
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {89820200-ECBD-11cf-8B85-00AA005B4395}
Path: rundll32.exe advpack.dll,LaunchINFSectionEx C:\WINDOWS.000\SYSTEM\ie4uinit.inf,Shell.UserStub, ,36
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_MSN_Clean
Path: C:\WINDOWS.000\msnmgsr1.exe
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {CA0A4247-44BE-11d1-A005-00805F8ABE06}
Path: RunDLL setupx.dll,InstallHinfSection PowerCfg.user 0 powercfg.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Msinfo
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Msinfo 64 C:\WINDOWS.000\INF\msinfo.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Msinfo2
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Msinfo2 64 C:\WINDOWS.000\INF\msinfo.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MotownMmsysPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MotownMmsysPerUser 64 C:\WINDOWS.000\INF\motown.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MotownAvivideoPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MotownAvivideoPerUser 64 C:\WINDOWS.000\INF\motown.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {22d6f312-b0f6-11d0-94ab-0080c74c7e95}
Path: rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.000\INF\mplayer2.inf,PerUserStub
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MotownMPlayPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MotownMPlayPerUser 64 C:\WINDOWS.000\INF\mplay98.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Base
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Base 64 C:\WINDOWS.000\INF\msmail.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: ShellPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n ShellPerUser 64 C:\WINDOWS.000\INF\shell.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: Shell2PerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n Shell2PerUser 64 C:\WINDOWS.000\INF\shell2.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_winbase_Links
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_winbase_Links 64 C:\WINDOWS.000\INF\subase.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_winapps_Links
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_winapps_Links 64 C:\WINDOWS.000\INF\subase.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_LinkBar_URLs
Path: C:\WINDOWS.000\COMMAND\sulfnbk.exe /L
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: TapiPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n TapiPerUser 64 C:\WINDOWS.000\INF\tapi.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {73fa19d0-2d75-11d2-995d-00c04f98bbc9}
Path: rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.000\INF\webfdr16.inf,PerUserStub.Instal l,1
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUserOldLinks
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUserOldLinks 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MmoptRegisterPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MmoptRegisterPerUser 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsPerUser 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsMsnPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsMsnPerUser 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Paint_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Paint_Inis 64 C:\WINDOWS.000\INF\applets.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Calc_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Calc_Inis_remove 64 C:\WINDOWS.000\INF\applets.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_dxxspace_Links
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_dxxspace_Links 64 C:\WINDOWS.000\INF\applets1.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_MSBackup_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_MSBackup_Inis 64 C:\WINDOWS.000\INF\applets1.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_CVT_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_CVT_Inis 64 C:\WINDOWS.000\INF\applets1.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MotownRecPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MotownRecPerUser 64 C:\WINDOWS.000\INF\motown.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Vol
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Vol 64 C:\WINDOWS.000\INF\motown.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_MSWordPad_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_MSWordPad_Inis 64 C:\WINDOWS.000\INF\wordpad.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_RNA_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_RNA_Inis 64 C:\WINDOWS.000\INF\rna.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Wingames_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Wingames_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Dialer_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Dialer_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_CDPlayer_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_CDPlayer_Inis 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {44BBA842-CC51-11CF-AAFA-00AA00B6015C}
Path: rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.000\INF\msnetmtg.inf,NetMtg.Remove.PerU ser.W95
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {44BBA840-CC51-11CF-AAFA-00AA00B6015C}
Path: rundll32.exe advpack.dll,UserInstStubWrapper {44BBA840-CC51-11CF-AAFA-00AA00B6015C}
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {7790769C-0471-11d2-AF11-00C04FA35D02}
Path: rundll32.exe advpack.dll,UserInstStubWrapper {7790769C-0471-11d2-AF11-00C04FA35D02}
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsAolPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsAolPerUserRemove 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsAttPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsAttPerUserRemove 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsCompuservePerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsCompuservePerUserRemove 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: OlsProdigyPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n OlsProdigyPerUserRemove 64 C:\WINDOWS.000\INF\ols.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: Theme_Windows_PerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n Themes_Windows_PerUser 0 C:\WINDOWS.000\INF\themes.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: Theme_MoreWindows_PerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n Themes_MoreWindows_PerUser 0 C:\WINDOWS.000\INF\themes.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_DCC_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_DCC_Inis 64 C:\WINDOWS.000\INF\rna.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {6BF52A52-394A-11d3-B153-00C04F79FAA6}
Path: rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.000\INF\wmp.inf,PerUserRemove
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {5945c046-1e7d-11d1-bc44-00c04fd912be}
Path: rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS.000\INF\msmsgs.inf,BLC.Remove.PerUser
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {9EF0045A-CDD9-438e-95E6-02B9AFEC8E11}
Path: C:\WINDOWS.000\SYSTEM\updcrl.exe -e -u C:\WINDOWS.000\SYSTEM\verisignpub1.crl
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS
Path: RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Winpopup_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Winpopup_Inis_remove 64 C:\WINDOWS.000\INF\winpopup.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Sysmon_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Sysmon_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Sysmeter_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Sysmeter_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_netwatch_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_netwatch_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_CharMap_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_CharMap_Inis 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_ClipBrd_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_ClipBrd_Inis 64 C:\WINDOWS.000\INF\clip.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MmoptMusicaPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MmoptMusicaPerUser 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MmoptJunglePerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MmoptJunglePerUser 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MmoptRobotzPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MmoptRobotzPerUser 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: MmoptUtopiaPerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n MmoptUtopiaPerUser 64 C:\WINDOWS.000\INF\mmopt.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: Shell3PerUser
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n Shell3PerUser 64 C:\WINDOWS.000\INF\shell3.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: PerUser_Onlinelnks_Inis
Path: rundll.exe C:\WINDOWS.000\SYSTEM\setupx.dll,InstallHinfSectio n PerUser_Onlinelnks_Inis_remove 64 C:\WINDOWS.000\INF\appletpp.inf
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: {44BBA851-CC51-11CF-AAFA-00AA00B6015C}
Path: rundll32.exeadvpack.dll
Location: HKLM\Software\Microsoft\Active Setup\Installed Components\
Not checked Unknown Item
Search at Google
Name: VBScript Script File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\vbsfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: VBScript Script File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\vbefile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: JScript Script File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\jsfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: JScript Script File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\jsefile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: Windows Script Host Settings File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\wshfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: Windows Script File
Path: C:\WINDOWS.000\WScript.exe %1 %*
Location: HKEY_CLASSES_ROOT\wsffile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: Application
Path: %1 %*
Location: HKEY_CLASSES_ROOT\exefile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: MS-DOS Application
Path: %1 %*
Location: HKEY_CLASSES_ROOT\comfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: MS-DOS Batch File
Path: %1 %*
Location: HKEY_CLASSES_ROOT\batfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: Screen Saver
Path: %1 /S
Location: HKEY_CLASSES_ROOT\scrfile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: Shortcut to MS-DOS Program
Path: %1 %*
Location: HKEY_CLASSES_ROOT\piffile\shell\open\command\
Not checked Unknown Item
Search at Google
Name: WebCheck
Path: C:\WINDOWS.000\SYSTEM\WEBCHECK.DLL
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\She llServiceObjectDelayLoad\
Not checked Unknown Item
Search at Google
Layered Service Providers (LSP): Result ToDo
Name: msafd.dll
Path: C:\WINDOWS.000\SYSTEM\
Location: HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Pa rameters\Protocol_Catalog9\Catalog_Entries\
Good: 1 - Bad: 0
View Details
Name: mswsosp.dll
Path: C:\WINDOWS.000\SYSTEM\
Location: HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Pa rameters\Protocol_Catalog9\Catalog_Entries\
Good: 1 - Bad: 0
View Details
Name: rsvpsp.dll
Path: C:\WINDOWS.000\SYSTEM\
Location: HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Pa rameters\Protocol_Catalog9\Catalog_Entries\
Good: 1 - Bad: 0
View Details
Explorer And Browser Addons: Result ToDo
Name:
Path: C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\
ClsID: {53707962-6F74-2D53-2644-206D7942484F}
Good: 1 - Bad: 0
View Details
Name: URL Exec Hook
Path: shell32.dll
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellExecuteHooks\
ClsID: {AEB6717E-7E19-11d0-97EE-00C04FD91972}
Good: 0 - Bad: 0
Unknown Item
Search at Google
Name: Radio
Path: C:\WINDOWS.000\SYSTEM\MSDXM.OCX
Location: HKLM\Software\Microsoft\Internet Explorer\Toolbar\
ClsID: {8E718888-423F-11D2-876E-00A0C9082467}
Good: 1 - Bad: 0
View Details
Running Processes: Result ToDo
Name: KERNEL32.DLL
Process ID: FF0F8DA1
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 6 - Priority: High - Visible: No
Good: 1 - Bad: 0
View Details
Name: MSGSRV32.EXE
Process ID: FFFFFA5D
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 1 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: MPREXE.EXE
Process ID: FFFFCCDD
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 1 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: mmtask.tsk
Process ID: FFFE2021
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 1 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: SPYSWEEPER.EXE
Process ID: FFF135C1
Path: C:\PROGRAM FILES\WEBROOT\SPY SWEEPER\
Info: Threads: 2 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: WRSSSDK.EXE
Process ID: FFF1C3CD
Path: C:\PROGRAM FILES\WEBROOT\SPY SWEEPER\
Info: Threads: 13 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: EXPLORER.EXE
Process ID: FFF1DC5D
Path: C:\WINDOWS.000\
Info: Threads: 16 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: DDHELP.EXE
Process ID: FFF23131
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 6 - Priority: Realtime - Visible: No
Good: 1 - Bad: 0
View Details
Name: WINMGMT.EXE
Process ID: FFF2F2BD
Path: C:\WINDOWS.000\SYSTEM\WBEM\
Info: Threads: 3 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: AIM.EXE (AvEvryDsnePSYCHO - Doin some much needed us history---)
Process ID: FFF54EB9
Path: C:\PROGRAM FILES\AIM\
Info: Threads: 6 - Priority: Normal - Visible: Yes
Good: 1 - Bad: 0
View Details
Name: PSTORES.EXE
Process ID: FFF4A7A9
Path: C:\WINDOWS.000\SYSTEM\
Info: Threads: 3 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: A2START.EXE
Process ID: FFF437B9
Path: C:\PROGRAM FILES\A-SQUARED\
Info: Threads: 1 - Priority: Normal - Visible: No
Good: 1 - Bad: 0
View Details
Name: IEXPLORE.EXE (DAL Computer Help - Missing PCRE.DLL Hijack included - Microsoft Internet Explorer)
Process ID: FF099721
Path: C:\PROGRAM FILES\INTERNET EXPLORER\
Info: Threads: 13 - Priority: Normal - Visible: Yes
Good: 1 - Bad: 0
View Details
Name: A2SYS.EXE (a-squared HiJackFree)
Process ID: FFF7A0B9
Path: C:\PROGRAM FILES\A-SQUARED\
Info: Threads: 1 - Priority: Normal - Visible: Yes
Good: 1 - Bad: 0
View Details
This analysis is saved and available for at least 7 days at this website address.
Analysis generated on 3/30/2006 3:15:35 AM