PDA

View Full Version : Spyware Doctor Not Starting


Gecko 1123
11-02-2007, 10:32 PM
For some reason, PC Tools Spyware Doctor is not starting. When I open it, it says "Spyware Doctor engine is starting" and its not starting. The words "Spyware Doctor engine is starting" are flickering. I've restarted, but it still won't start. I thought I might've accidentally turned it off in msconfig when I was turning off unneccesary programs, but it was still turned on as a startup item. Can anyone help with this?

classicsoftware
11-02-2007, 10:39 PM
Please try to uninstall and then re-install. If it does not work, please post a Hijackthis log.

Gecko 1123
11-02-2007, 11:01 PM
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 10:58:15 PM, on 11/2/2007
Platform: Windows Vista (WinNT 6.00.1904)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\BigFix\bigfix.exe
C:\Windows\sttray.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Internet Explorer\IEUser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Peter\Downloads\HiJackThis_v2.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.runescape.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=FX8040
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=FX8040
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.gateway.com/g/sidepanel.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=FX8040
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\google\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [CCUTRAYICON] C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
O4 - HKLM\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [BigFix] c:\program files\Bigfix\bigfix.exe /atstartup
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [SDTray] "C:\Program Files\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/FIOS/tgctlcm.cab
O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
O22 - SharedTaskScheduler: Deskscapes - {EC654325-1273-C2A9-2B7C-45D29BCE68FB} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\deskscapes. dll
O22 - SharedTaskScheduler: Stardock Vista ControlPanel Extension - {EC654325-1273-C2A9-2B7C-45D29BCE68FD} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\DesktopCont rolPanel.dll
O22 - SharedTaskScheduler: StardockDreamController - {EC654325-1273-C2A9-2B7C-45D29BCE68FF} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\DreamContro l.dll
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.e xe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe

Gecko 1123
11-02-2007, 11:01 PM
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 10175 bytes

Gecko 1123
11-02-2007, 11:02 PM
There's the HijackThis log.

Gecko 1123
11-02-2007, 11:25 PM
By the way, I reinstalled. Now its hung on "Checking..."

Gecko 1123
11-04-2007, 11:07 AM
Also, for both uninstalling and installing, I get this error message at the end of the uninstall/install.

Runtime Error (at 198:567):

Internal error: Unknown constant
"fe35ddff-bbf0-43b3-82ee-d03f74db0678"

The odd thing is that that folder, fe35ddff... is full of Nvidia driver stuff. Why is the Nvidia graphics driver package messing up my antispyware program? Could it contain a virus?

classicsoftware
11-04-2007, 11:24 AM
You should not be running Windows Defender and Spyware Doctor. They are both Memory Resident Scanners. One or the other. Defender may be preventing the installation of Spyware Doctor.

First:
1. Download this file - combofix.exe (http://download.bleepingcomputer.com/sUBs/ComboFix.exe)
2. Double click combofix.exe & follow the prompts.
3. When finished, it will produce a log for you. Post that log in your next reply

Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall...

and then post a fresh HJT log after a reboot and the ComboFix log...

Gecko 1123
11-04-2007, 11:45 AM
There doesn't seem to be a way to turn of Defender through the program itself. I guess I could turn it off in startup programs, but that message that pops up every time I restart is sort of annoying...

Gecko 1123
11-04-2007, 11:50 AM
Ok, combofix shut it off.

classicsoftware
11-04-2007, 11:56 AM
Where is the Combofix log.....

Gecko 1123
11-04-2007, 11:58 AM
Defender restarted when I restarted the computer, hold on...

Gecko 1123
11-04-2007, 12:01 PM
I ran combofix again...and windows said REG.EXE has stopped working...did combofix just kill my registry?

Gecko 1123
11-04-2007, 12:02 PM
Do I really have to do this? Couldn't I just shut off Defender in startup programs?

Gecko 1123
11-04-2007, 12:17 PM
Here's the log:

ComboFix 07-11-01.1 - Peter 2007-11-04 12:11:29.1 - NTFSx86
Microsoft® Windows Vista™ Ultimate 6.0.6000.0.1252.1.1033.18.1943 [GMT -5:00]
Running from: C:\Users\Peter\AppData\Local\Microsoft\Windows\Tem porary Internet Files\Content.IE5\U9U6X848\ComboFix[1].exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Autorun.inf

.
((((((((((((((((((((((((( Files Created from 2007-10-04 to 2007-11-04 )))))))))))))))))))))))))))))))
.

2007-11-04 11:57 51,200 --a------ C:\Windows\NirCmd.exe
2007-11-04 11:54 <DIR> d-------- C:\Users\Peter\AppData\Roaming\PC Tools
2007-11-04 11:54 <DIR> d-------- C:\Program Files\Spyware Doctor
2007-11-04 11:54 82,248 --------- C:\Windows\System32\drivers\iksyssec.sys
2007-11-04 11:54 57,672 --------- C:\Windows\System32\drivers\iksysflt.sys
2007-11-04 11:54 40,264 --------- C:\Windows\System32\drivers\ikfilesec.sys
2007-11-04 11:54 29,000 --------- C:\Windows\System32\drivers\kcom.sys
2007-10-30 16:05 <DIR> d-a------ C:\Users\All Users\TEMP
2007-10-30 16:05 <DIR> d-a------ C:\ProgramData\TEMP
2007-10-21 20:21 <DIR> d-------- C:\Users\Peter\AppData\Roaming\Apple Computer
2007-10-21 20:21 <DIR> d-------- C:\Program Files\iTunes
2007-10-21 20:21 <DIR> d-------- C:\Program Files\iPod
2007-10-21 20:20 <DIR> d-------- C:\Users\All Users\Apple Computer
2007-10-21 20:20 <DIR> d-------- C:\ProgramData\Apple Computer
2007-10-21 20:20 <DIR> d-------- C:\Program Files\QuickTime
2007-10-21 20:19 <DIR> d-------- C:\Users\All Users\Apple
2007-10-21 20:19 <DIR> d-------- C:\ProgramData\Apple
2007-10-21 20:19 <DIR> d-------- C:\Program Files\Common Files\Apple
2007-10-21 20:19 <DIR> d-------- C:\Program Files\Apple Software Update
2007-10-20 16:38 <DIR> d-------- C:\Program Files\BitLocker
2007-10-20 16:37 1,171,848 --a------ C:\Windows\System32\SecureKeyBackupCPL.dll
2007-10-15 15:22 <DIR> dr-h----- C:\Users\Peter\AppData\Roaming\SecuROM
2007-10-15 12:17 <DIR> d-------- C:\Program Files\Desktop Maestro
2007-10-09 15:03 8,147,968 --a------ C:\Windows\System32\wmploc.DLL
2007-10-09 15:03 356,864 --a------ C:\Windows\System32\MediaMetadataHandler.dll
2007-10-09 15:03 7,680 --a------ C:\Windows\System32\spwmp.dll
2007-10-09 15:03 4,096 --a------ C:\Windows\System32\dxmasf.dll
2007-10-09 15:01 788,992 --a------ C:\Windows\System32\rpcrt4.dll
2007-10-09 15:01 737,792 --a------ C:\Windows\System32\inetcomm.dll
2007-10-09 15:01 84,480 --a------ C:\Windows\System32\INETRES.dll
2007-10-07 16:35 <DIR> d-------- C:\Program Files\Virtual Earth 3D
2007-10-05 15:59 <DIR> d-------- C:\Users\Peter\{fe35ddff-bbf0-43b3-82ee-d03f74db0678}
2007-10-05 15:59 <DIR> d-------- C:\NVIDIA
2007-10-05 15:31 <DIR> d-------- C:\Windows\Sun
2007-10-05 15:22 <DIR> d-------- C:\Program Files\Secunia

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2007-11-04 15:30 --------- d-----w C:\ProgramData\SiteAdvisor
2007-11-03 00:28 --------- d-----w C:\Users\Peter\AppData\Roaming\CyberLink
2007-10-21 18:51 --------- d-----w C:\Program Files\Microsoft Games
2007-10-15 20:12 0 ---ha-w C:\Windows\system32\drivers\Msft_Kernel_xusb21_010 01.Wdf
2007-10-15 02:15 --------- d-----w C:\Program Files\Common Files\Adobe
2007-10-09 22:55 --------- d-----w C:\Program Files\Windows Mail
2007-10-09 20:02 56,320 ----a-w C:\Windows\System32\iesetup.dll
2007-10-09 20:02 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
2007-10-09 20:02 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
2007-10-06 03:58 --------- d-----w C:\Program Files\McAfee
2007-10-05 20:31 --------- d-----w C:\Program Files\Java
2007-10-04 03:13 --------- d-----w

Gecko 1123
11-04-2007, 12:22 PM
C:\Users\Peter\AppData\Roaming\SiteAdvisor
2007-10-03 23:36 --------- d-----w C:\Program Files\ASTRA32
2007-10-03 22:29 --------- d-----w C:\Program Files\Common Files\Stardock
2007-10-03 22:28 --------- d-----w C:\Program Files\Stardock
2007-10-03 22:19 --------- d--h--w C:\ProgramData\{983E5E27-ED7A-4551-8D0E-8536786F9C14}
2007-10-03 21:56 --------- d-----w C:\ProgramData\Stardock
2007-10-03 21:39 233,888 ----a-w C:\Windows\System32\DreamScene.dll
2007-10-03 21:39 1,152,000 ----a-w C:\Windows\System32\themecpl.dll
2007-10-02 23:10 --------- d-----w C:\ProgramData\Media Center Programs
2007-10-02 23:03 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-10-02 23:03 --------- d-----w C:\Program Files\Sierra Entertainment
2007-10-02 23:02 --------- d-----w C:\Users\Peter\AppData\Roaming\InstallShield
2007-09-29 22:57 110 ----a-w C:\Users\Peter\AppData\Roaming\wklnhst.dat
2007-09-28 20:11 630,784 ----a-w C:\Users\Peter\GoToAssist_chat2way__317_en.exe
2007-09-28 20:09 --------- d-----w C:\ProgramData\NetZero
2007-09-28 00:48 40,991,744 ----a-w C:\Windows\System32\imageres.dll
2007-09-27 21:10 --------- d-----w C:\ProgramData\CyberLink
2007-09-26 01:20 57,856 ----a-w C:\Windows\System32\SLUINotify.dll
2007-09-26 01:20 566,784 ----a-w C:\Windows\System32\SLCommDlg.dll
2007-09-26 01:20 39,936 ----a-w C:\Windows\System32\slcinst.dll
2007-09-26 01:20 351,232 ----a-w C:\Windows\System32\SLUI.exe
2007-09-26 01:20 33,280 ----a-w C:\Windows\System32\slwmi.dll
2007-09-26 01:20 268,288 ----a-w C:\Windows\System32\mcbuilder.exe
2007-09-26 01:20 223,232 ----a-w C:\Windows\System32\SLC.dll
2007-09-26 01:20 2,605,568 ----a-w C:\Windows\System32\SLsvc.exe
2007-09-26 01:20 186,368 ----a-w C:\Windows\System32\SLLUA.exe
2007-09-22 01:07 --------- d-----w C:\Program Files\CCP
2007-09-22 00:16 --------- d-----w C:\Program Files\Sony
2007-09-21 00:51 --------- d-----w C:\Program Files\Google
2007-09-21 00:41 --------- d-----w C:\ProgramData\Napster
2007-09-20 22:28 --------- d-----w C:\ProgramData\Microsoft Help
2007-09-20 22:27 0 ---ha-w C:\Windows\system32\drivers\Msft_Kernel_NuidFltr_0 1005.Wdf
2007-09-20 19:15 --------- d-----w C:\ProgramData\WildTangent
2007-09-20 19:14 --------- d-----w C:\Users\Peter\AppData\Roaming\WildTangent
2007-09-20 04:12 512,096 ----a-w C:\Windows\system32\drivers\amon.sys
2007-09-20 04:12 298,104 ----a-w C:\Windows\System32\imon.dll
2007-09-20 04:12 15,424 ----a-w C:\Windows\system32\drivers\nod32drv.sys
2007-09-20 04:06 --------- d-----w C:\ProgramData\McAfee
2007-09-20 04:06 --------- d-----w C:\Program Files\Common Files\McAfee
2007-09-20 03:45 --------- d-----w C:\Users\Peter\AppData\Roaming\Template
2007-09-20 02:21 --------- d-----w C:\Program Files\Microsoft IntelliPoint
2007-09-20 02:20 --------- d-----w C:\Program Files\Microsoft IntelliType Pro
2007-09-20 01:21 --------- d-----w C:\Program Files\SiteAdvisor
2007-09-20 01:01 --------- d-----w C:\Program Files\Verizon
2007-09-20 01:01 --------- d-----w C:\Program Files\Common Files\SupportSoft
2007-09-20 00:12 --------- d-----w C:\ProgramData\NVIDIA
2007-09-20 00:11 174 --sha-w C:\Program Files\desktop.ini
2007-09-20 00:08 --------- d-----w C:\Program Files\Windows Defender
2007-09-20 00:08 --------- d-----w C:\Program Files\Windows Calendar
2007-09-20 00:05 87,040 ----a-w C:\Windows\System32\msoert2.dll
2007-09-20 00:05 8,192 ----a-w C:\Windows\System32\riched32.dll
2007-09-20 00:05 77,824 ----a-w C:\Windows\System32\rascfg.dll
2007-09-20 00:05 70,144 ----a-w C:\Windows\system32\drivers\pacer.sys
2007-09-20 00:05 694,784 ----a-w C:\Windows\System32\localspl.dll
2007-09-20 00:05 619,008 ----a-w C:\Windows\system32\drivers\dxgkrnl.sys
2007-09-20 00:05 61,952 ----a-w C:\Windows\system32\drivers\wanarp.sys
2007-09-20 00:05 52,736 ----a-w C:\Windows\System32\rasdiag.dll
2007-09-20 00:05 48,640 ----a-w C:\Windows\system32\drivers\ndproxy.sys
2007-09-20 00:05 39,424 ----a-w C:\Windows\System32\ACCTRES.dll
2007-09-20 00:05 384,000 ----a-w C:\Windows\System32\netcfgx.dll
2007-09-20 00:05 36,864 ----a-w C:\Windows\System32\cdd.dll
2007-09-20 00:05 33,280 ----a-w C:\Windows\System32\traffic.dll
2007-09-20 00:05 32,768 ----a-w C:\Windows\System32\rasmxs.dll
2007-09-20 00:05 286,208 ----a-w C:\Windows\System32\ipnathlp.dll
2007-09-20 00:05 22,016 ----a-w C:\Windows\System32\rasser.dll
2007-09-20 00:05 205,824 ----a-w C:\Windows\System32\msoeacct.dll
2007-09-20 00:05 20,480 ----a-w C:\Windows\system32\drivers\ndistapi.sys
2007-09-20 00:05 15,360 ----a-w C:\Windows\System32\pacerprf.dll
2007-09-20 00:05 134,656 ----a-w C:\Windows\System32\dps.dll
2007-09-20 00:05 13,824 ----a-w C:\Windows\System32\wshqos.dll
2007-09-20 00:05 13,824 ----a-w C:\Windows\System32\icsunattend.exe
2007-09-20 00:04 49,664 ----a-w C:\Windows\System32\csrsrv.dll
2007-09-20 00:04 376,320 ----a-w C:\Windows\System32\winsrv.dll
2007-09-20 00:03 414,208 ----a-w C:\Windows\System32\msscp.dll
2007-09-20 00:03 374,456 ----a-w C:\Windows\System32\mcupdate_GenuineIntel.dll
2007-09-20 00:02 86,016 ----a-w C:\Windows\System32\icfupgd.dll
2007-09-20 00:02 63,488 ----a-w C:\Windows\system32\drivers\mpsdrv.sys
2007-09-20 00:02 61,952 ----a-w C:\Windows\System32\cmifw.dll
2007-09-20 00:02 396,800 ----a-w C:\Windows\System32\MPSSVC.dll
2007-09-20 00:02 392,192 ----a-w C:\Windows\System32\FirewallAPI.dll
2007-09-20 00:02 23,040 ----a-w C:\Windows\system32\drivers\tunnel.sys
2007-09-20 00:02 178,688 ----a-w C:\Windows\System32\iphlpsvc.dll
2007-09-20 00:02 16,896 ----a-w C:\Windows\System32\wfapigp.dll
2007-09-20 00:02 15,360 ----a-w C:\Windows\system32\drivers\TUNMP.SYS
2007-09-20 00:02 1,191,936 ----a-w C:\Windows\System32\msxml3.dll
2007-09-20 00:01 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll
2007-09-20 00:01 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
2007-09-20 00:01 4,247,552 ----a-w C:\Windows\System32\GameUXLegacyGDFs.dll
2007-09-20 00:01 25,600 ----a-w C:\Windows\System32\LangCleanupSysprepAction.dll
.

Gecko 1123
11-04-2007, 12:23 PM
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-09-19 19:04]
"CCUTRAYICON"="C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" [2006-11-18 09:01]
"NMSSupport"="C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [2006-09-26 12:56]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-11-15 18:58]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-05-27 12:38]
"BigFix"="c:\program files\Bigfix\bigfix.exe" [2006-11-16 18:04]
"SigmatelSysTrayApp"="sttray.exe" [2007-02-28 21:56 C:\Windows\sttray.exe]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-06 19:15]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-06 19:15]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-06 19:15]
"SiteAdvisor"="C:\Program Files\SiteAdvisor\6172\SiteAdv.exe" [2007-08-13 13:05]
"itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [2006-11-21 20:08]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2007-02-05 18:52]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-09-19 23:12]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 18:51]
"DesktopMaestro"="" []
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-09-26 13:42]
"NapsterShell"="C:\Program Files\Napster\napster.exe" []
"SDTray"="C:\Program Files\Spyware Doctor\SDTrayApp.exe" [2007-08-14 17:02]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 07:34]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 07:33]
"Power2GoExpress"="" []

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\runonce]
"Launcher"=%WINDIR%\SMINST\launcher.exe

C:\Users\Peter\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 22:24:54]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\sdauxservice"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\sdcoreservice"

R2 ASTRA32;ASTRA32 Kernel Driver 5.2.1.0;\??\C:\Program Files\ASTRA32\ASTRA32.sys
R2 DQLWinService;DQLWinService;"C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.e xe"
R2 nmsgopro;GoProto Protocol Driver for NMS;C:\Windows\system32\DRIVERS\nmsgopro.sys
R2 nmsunidr;UniDriver for NMS;C:\Windows\system32\DRIVERS\nmsunidr.sys
R2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.s ys
R3 IAMTV;Driver for Intel(R) Active Management Technology - KCS;C:\Windows\system32\DRIVERS\IAMTV.sys
R3 IntelDH;IntelDH Driver;C:\Windows\system32\Drivers\IntelDH.sys
R3 nvlddmkm;nvlddmkm;C:\Windows\system32\DRIVERS\nvld dmkm.sys
R3 xcbdaNtsc;ViXS Tuner Card (NTSC);C:\Windows\system32\DRIVERS\xcbda.sys
S3 GameConsoleService;GameConsoleService;"C:\Program Files\Gateway Games\Gateway Game Console\GameConsoleService.exe"
S3 NETw2v32;Intel(R) PRO/Wireless 2200BG Network Connection Driver for Windows Vista;C:\Windows\system32\DRIVERS\NETw2v32.sys
S3 PSI;PSI;C:\Windows\system32\DRIVERS\psi_mf.sys
S3 UMPass;Microsoft UMPass Driver;C:\Windows\system32\DRIVERS\umpass.sys
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk60x86.sys

*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2007-10-15 05:00:00 C:\Windows\Tasks\McDefragTask.job"
"2007-05-27 17:59:00 C:\Windows\Tasks\McQcTask.job"
- c:\program files\mcafee\mqc\QcConsol.exe
"2007-11-04 15:50:07 C:\Windows\Tasks\User_Feed_Synchronization-{F1AFF423-3050-484B-A253-BD53CB231023}.job"
.
************************************************** ************************

catchme 0.3.1250 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-04 12:12:30
Windows 6.0.6000 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

************************************************** ************************
.
Completion time: 2007-11-04 12:13:05
.
--- E O F ---


That's all of it.

Gecko 1123
11-04-2007, 12:34 PM
I restarted, and checked security center. Now the entire security center service is turned off... Does that turn off the programs in security center, like my antivirus and firewall? By the way, Spyware Doctor still doesn't work. Here's your HijackThis log:

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 12:31:19 PM, on 11/4/2007
Platform: Windows Vista (WinNT 6.00.1904)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe
C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\BigFix\bigfix.exe
C:\Windows\sttray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_SL.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spyware Doctor\SDTrayApp.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Windows\system32\wbem\unsecapp.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Users\Peter\Downloads\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.runescape.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=FX8040
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html?Ch=Retail&Br=GTW&Loc=ENG_US&Sys=DTP&M=FX8040
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\google\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [CCUTRAYICON] C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe
O4 - HKLM\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [BigFix] c:\program files\Bigfix\bigfix.exe /atstartup
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [SDTray] "C:\Program Files\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/FIOS/tgctlcm.cab
O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
O22 - SharedTaskScheduler: Deskscapes - {EC654325-1273-C2A9-2B7C-45D29BCE68FB} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\deskscapes. dll
O22 - SharedTaskScheduler: Stardock Vista ControlPanel Extension - {EC654325-1273-C2A9-2B7C-45D29BCE68FD} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\DesktopCont rolPanel.dll
O22 - SharedTaskScheduler: StardockDreamController - {EC654325-1273-C2A9-2B7C-45D29BCE68FF} - C:\PROGRA~1\Stardock\OBJECT~1\DESKSC~1\DreamContro l.dll
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.e xe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage

Gecko 1123
11-04-2007, 12:34 PM
Manager\Iaantmon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 9934 bytes

Gecko 1123
11-04-2007, 12:52 PM
Umm...I tried to turn on security center, and it says "security center service can't be started." Did that program screw up security center?

Gecko 1123
11-04-2007, 01:02 PM
Turned off defender through the program itself, Spyware Doctor still won't work... Now that security center is screwed, I think this attempt to fix Spyware Doctor has done more bad than good...

Gecko 1123
11-04-2007, 01:05 PM
I tried to start security center from services, and it says "error 1079: the account specified for this service is different from the accounts specified for other services running in the same process."

Gecko 1123
11-04-2007, 01:53 PM
Okay, I fixed security center by changing it to log on as local service.

Gecko 1123
11-06-2007, 12:03 PM
Are you even going to check the logs?

classicsoftware
11-06-2007, 06:09 PM
I don't see anything in your log that indicates a problem. Select one of the programs to run as an active scanner and the other as on-demand.