Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:15:24 PM, on 5/8/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\Ati2ev
xx.exe
C:\WINDOWS\system32\svchos
t.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\system32\spools
v.exe
C:\PROGRA~1\COMMON~1\AOL\A
CS\AOLacsd
.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcd
etect.exe
c:\PROGRA~1\mcafee.com\vso
\mcshield.
exe
c:\PROGRA~1\mcafee.com\age
nt\mctsksh
d.exe
C:\PROGRA~1\McAfee.com\PER
SON~1\MpfS
ervice.exe
C:\WINDOWS\winself.exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuaucl
t.exe
C:\WINDOWS\lqdofene.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_03\bin
\jusched.e
xe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program Files\CyberLink\PowerDVD\D
VDLauncher
.exe
C:\Program Files\Java\jre1.5.0_03\bin
\jucheck.e
xe
C:\PROGRA~1\mcafee.com\age
nt\mcagent
.exe
C:\Program Files\Real\RealPlayer\Real
Play.exe
C:\WINDOWS\system32\dla\tf
swctrl.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\McAfee.com\VSO\mcvss
hld.exe
C:\Program Files\McAfee.com\VSO\oascl
nt.exe
C:\PROGRA~1\McAfee.com\PER
SON~1\MpfT
ray.exe
c:\progra~1\mcafee.com\vso
\mcvsescn.
exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\PROGRA~1\McAfee.com\PER
SON~1\MpfA
gent.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
C:\Program Files\iTunes\iTunesHelper.
exe
C:\PROGRA~1\MUSICM~1\MUSIC
M~3\MMDiag
.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\McAfee\SPAMKI~
1\MskAgent
.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellSupport\DSAgnt.e
xe
C:\Program Files\Microsoft Money\System\mnyexpr.exe
C:\Program Files\iPod\bin\iPodService
.exe
C:\Program Files\Google\GoogleToolbar
Notifier\G
oogleToolb
arNotifier
.exe
C:\WINDOWS\system32\ctfmon
.exe
C:\Documents and Settings\All Users\Application Data\Dell\TransferAgent\Tr
ansferAgen
t.exe
C:\Program Files\QdrModule\QdrModule1
3.exe
C:\Program Files\MUSICMATCH\Musicmatc
h Jukebox\mim.exe
C:\DOCUME~1\Dora\LOCALS~1\
Temp\ie.ex
e
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Bat\X_Bat.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThi
s.exe
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Default_Page
_URL =
http://www.dell4me.com/mywayR0 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Page
_URL =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Bar =
http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.htmlR1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Page =
http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.comR0 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://www.yahoo.com/R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8
AB8210D6D7
5} - C:\Program Files\MyWaySA\SrchAsDe\1.b
in\deSrcAs
.dll (file missing)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0
090271D4F8
8} - C:\Program Files\Yahoo!\Companion\Ins
talls\cpn1
\yt.dll
O2 - BHO: (no name) - {00000000-d9e3-4bc6-a0bd-3
d0ca4be527
1} - (no file)
O2 - BHO: (no name) - {00000012-890e-4aac-afd9-e
ff6954a34d
d} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7
695ECA0567
0} - C:\Program Files\Yahoo!\Companion\Ins
talls\cpn1
\yt.dll
O2 - BHO: (no name) - {029e02f0-a0e5-4b19-b958-7
bf2db29fb1
3} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-7
84B7D6BE0B
3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEH
elper.dll
O2 - BHO: (no name) - {06dfedaa-6196-11d5-bfc8-0
0508b4a487
d} - (no file)
O2 - BHO: (no name) - {12F02779-6D88-4958-8AD3-8
3C12D86ADC
7} - (no file)
O2 - BHO: (no name) - {1adbcce8-cf84-441e-9b38-a
fc7a19c06a
4} - (no file)
O2 - BHO: (no name) - {2458F206-AACA-44FD-A176-6
37007201F8
1} - (no file)
O2 - BHO: (no name) - {2d7cb618-cc1c-4126-a7e3-f
5b12d3bcf7
1} - (no file)
O2 - BHO: (no name) - {3AD6C4C7-137A-43EA-AEEA-2
2958EE1F79
8} - (no file)
O2 - BHO: (no name) - {3AEB40A4-3E5D-4B3F-A558-4
4A4D1ABAC5
9} - (no file)
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6
EBB8AF1900
0} - c:\program files\mcafee\spamkiller\mc
apfbho.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8
AB8210D6D7
5} - C:\Program Files\MyWaySA\SrchAsDe\1.b
in\deSrcAs
.dll (file missing)
O2 - BHO: (no name) - {51641ef3-8a7a-4d84-8659-b
0911e947cc
8} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-2
06D7942484
F} - C:\PROGRA~1\SPYBOT~1\SDHel
per.dll
O2 - BHO: (no name) - {53C330D6-A4AB-419B-B45D-F
D4411C1FEF
4} - (no file)
O2 - BHO: (no name) - {54645654-2225-4455-44A1-9
F4543D3454
6} - (no file)
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-0
00874180BB
3} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-0
0123456789
0} - C:\WINDOWS\system32\dla\tf
swshx.dll
O2 - BHO: (no name) - {669695bc-a811-4a9d-8cdf-b
a8c795f261
e} - (no file)
O2 - BHO: (no name) - {6A345AAF-70A2-484A-934D-9
703393FE8F
0} - C:\Program Files\NetMeeting\feguqyt77
7444.dll
O2 - BHO: (no name) - {6abc861a-31e7-4d91-b43b-d
3c98f22a5c
0} - (no file)
O2 - BHO: (no name) - {77D06A17-F2F1-4014-B5DF-9
9A5CBC92B2
0} - (no file)
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8
EA1C75885F
9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: StFlex IE Helper - {8334A30C-49E5-489a-B63D-5
B927C1EF46
E} - C:\Program Files\QdrDrive\QdrDrive15.
dll
O2 - BHO: (no name) - {89AD4D75-2429-462e-BD4E-4
43F233F603
3} - (no file)
O2 - BHO: (no name) - {944864a5-3916-46e2-96a9-a
2e84f3f120
8} - (no file)
O2 - BHO: (no name) - {a4a435cf-3583-11d4-91bd-0
048546a145
0} - (no file)
O2 - BHO: (no name) - {A95B2816-1D7E-4561-A202-6
8C0DE02353
A} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-C
F10577473F
7} - c:\program files\google\googletoolbar
1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-C
E66B5AD205
D} - C:\Program Files\Google\GoogleToolbar
Notifier\3
.0.1225.98
68\swg.dll
O2 - BHO: (no name) - {b8875bfe-b021-11d4-bfa8-0
0508b8e9bd
3} - (no file)
O2 - BHO: (no name) - {bb936323-19fa-4521-ba29-e
ca6a121bc7
8} - (no file)
O2 - BHO: (no name) - {C12F6AD0-AF3A-48FF-93C4-7
156276A0EE
A} - (no file)
O2 - BHO: (no name) - {c2680e10-1655-4a0e-87f8-4
259325a84b
7} - (no file)
O2 - BHO: (no name) - {c4ca6559-2cf1-48b6-96b2-8
340a06fd12
9} - (no file)
O2 - BHO: (no name) - {c5af2622-8c75-4dfb-9693-2
3ab7686a45
6} - (no file)
O2 - BHO: (no name) - {ca1d1b05-9c66-11d5-a009-0
00103c1e50
b} - (no file)
O2 - BHO: (no name) - {d8efadf1-9009-11d6-8c73-6
08c5dc1908
9} - (no file)
O2 - BHO: (no name) - {D8FF46D3-A450-40FA-994D-A
82010F2879
2} - (no file)
O2 - BHO: (no name) - {e9147a0a-a866-4214-b47c-d
a821891240
f} - (no file)
O2 - BHO: (no name) - {e9306072-417e-43e3-81d5-3
69490beef7
c} - (no file)
O2 - BHO: (no name) - {F927CD6B-8CB9-4829-B856-9
7EBB398E5F
A} - (no file)
O2 - BHO: (no name) - {FCFDD54A-04EB-4F79-907B-1
FD232E9F88
8} - (no file)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-2
09B6AD74AC
C} - (no file)
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-9
05236F6F65
5} - c:\progra~1\mcafee.com\vso
\mcvsshl.d
ll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-A
A305ED9D92
2} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0
090271D4F8
8} - C:\Program Files\Yahoo!\Companion\Ins
talls\cpn1
\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-0
09027A5CD4
F} - c:\program files\google\googletoolbar
1.dll
O3 - Toolbar: (no name) - {11A69AE4-FBED-4832-A2BF-4
5AF8282558
3} - (no file)
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin
\jusched.e
xe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\D
VDLauncher
.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VS
O\mcmnhdlr
.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\age
nt\mcagent
.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\age
nt\mcupdat
e.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\Real
Play.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tf
swctrl.exe
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvss
hld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oascl
nt.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PER
SON~1\MpfT
ray.exe
O4 - HKLM\..\Run: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSIC
M~3\mimboo
t.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.
exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe
" -atboottime
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~
1\MskAgent
.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~
1\MSKDetct
.exe /startup
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.
exe" /pause
O4 - HKLM\..\RunServices: [Microsoft Windows DLL Services Configuration] windir32.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.e
xe" /startup
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe
" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbar
Notifier\G
oogleToolb
arNotifier
.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon
.exe
O4 - HKCU\..\Run: [DellTransferAgent] "C:\Documents and Settings\All Users\Application Data\Dell\TransferAgent\Tr
ansferAgen
t.exe"
O4 - HKCU\..\Run: [QdrModule13] "C:\Program Files\QdrModule\QdrModule1
3.exe"
O4 - HKCU\..\Run: [QdrModule15] "C:\Program Files\QdrModule\QdrModule1
5.exe"
O4 - HKCU\..\Run: [Microsoft Windows Installer] C:\DOCUME~1\Dora\LOCALS~1\
Temp\ie.ex
e
O4 - HKLM\..\Policies\Explorer\
Run: [NPJX5KEJJp] C:\WINDOWS\lqdofene.exe
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM
.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM
.exe (User 'Default user')
O4 - Startup: Bat - Auto Update.lnk = C:\Program Files\Bat\Bat.exe
O4 - Startup: TA_Start.lnk = C:\WINDOWS\SYSTEM32\lldsrn
go.exe
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QB
Update\qbu
pdate.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\
search.htm
l
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4
\Office12\
EXCEL.EXE/
3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-0
0401C60850
1} - C:\Program Files\Java\j2re1.4.2_03\bi
n\npjpi142
_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-0
0401C60850
1} - C:\Program Files\Java\j2re1.4.2_03\bi
n\npjpi142
_03.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B
4C75499B57
8} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3
582CCF489E
1} - c:\program files\mcafee\spamkiller\mc
apfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3
582CCF489E
1} - c:\program files\mcafee\spamkiller\mc
apfbho.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-0
0010333D0A
D} - C:\Program Files\Yahoo!\Messenger\yhe
xbmes0521.
dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-0
0010333D0A
D} - C:\Program Files\Yahoo!\Messenger\yhe
xbmes0521.
dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-0
0B0D0A1DE4
5} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-0
0C0F0318AF
E} - C:\WINDOWS\system32\Shdocv
w.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-5
8CAB36FD2A
2} - C:\PROGRA~1\SPYBOT~1\SDHel
per.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-5
8CAB36FD2A
2} - C:\PROGRA~1\SPYBOT~1\SDHel
per.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: ActiveGS.cab -
http://www.apple2info.net/software/activegs/activegs.cabO16 - DPF: {17492023-C23A-453E-A040-C
7C580BBF70
0} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {30528230-99f7-4bb4-88d8-f
a1d4f56a2a
b} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsth
elper.dll
O16 - DPF: {54BE6B6F-3056-470B-97E1-B
B92E051B6C
4} (DeviceEnum Class) -
http://h30155.www3.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cabO16 - DPF: {F919FBD3-A96B-4679-AF26-F
551439BB5F
D} -
http://winfixer.com/pages/scanner/WFXScan.cabO20 - Winlogon Notify: japgnavg - C:\WINDOWS\
O20 - Winlogon Notify: mlljj - C:\WINDOWS\system32\mlljj.
dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\A
CS\AOLacsd
.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2ev
xx.exe
O23 - Service: dlbt_device - Dell - C:\WINDOWS\system32\dlbtco
ms.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.
exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google
Updater\GoogleUpdaterServi
ce.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService
.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcd
etect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso
\mcshield.
exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\age
nt\mctsksh
d.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Age
nt\mcupdmg
r.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PER
SON~1\MpfS
ervice.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~
1\MSKSrvr.
exe
O23 - Service: MSSysInterv (MSSysInterv1) - Unknown owner - C:\WINDOWS\winself.exe
O24 - Desktop Component 0: (no name) - C:\Documents and Settings\Dora\Desktop\1950
362956.jpg
--
End of file - 16194 bytes