Startup Folders
[Adobe Gamma Loader]
(C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk)(H)
[Adobe Reader Speed Launch]
(C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk)(H)
[PowerReg Scheduler]
(C:\Documents and Settings\gavin.NEOTECH.000\Start Menu\Programs\Startup\PowerReg Scheduler.exe)(N)
Services
[AVG7 Alert Manager Server / Avg7Alrt]
(C:\PROGRA~1\Grisoft\AVG Free\avgamsvr.exe)(GRISOFT, s.r.o.)
[AVG7 Update Service / Avg7UpdSvc]
(C:\PROGRA~1\Grisoft\AVG Free\avgupsvc.exe)(GRISOFT, s.r.o.)
[ewido anti-spyware 4.0 guard / ewido anti-spyware 4.0 guard]
(C:\Program Files\ewido anti-spyware 4.0\guard.exe)(Anti-Malware Development a.s.)
[InstallDriver Table Manager / IDriverT]
("C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe")(Macrovision Corporation)
[iPodService / iPodService]
(C:\Program Files\iPod\bin\iPodService.exe)(Apple Computer, Inc.)
[Macromedia Licensing Service / Macromedia Licensing Service]
("C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe")(Macromedia)
[SoundMAX Agent Service / SoundMAX Agent Service (default)]
(C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe)(Analog Devices, Inc.)
Browser Add-ons
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} (C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_5027.dll, Microsoft Corporation)
[Yahoo 1G mail]
{507F9113-CD77-4866-BA92-0E86DA3D0B97} (http://cn.mail.yahoo.com/promo/rd1, N/A)
[&Research]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} (C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL, Microsoft Corporation)
[ICQ Lite]
{B863453A-26C3-4e1f-A54D-A2CD196348E9} (C:\Program Files\ICQLite\ICQLite.exe, ICQ Ltd.)
[FlashGet]
{D6E814A0-E0C5-11d4-8D29-0050BA6940E3} (C:\PROGRA~1\FlashGet\flashget.exe, Amaze Soft)
[D.S.Lite]
{F8475519-8412-4D40-A46E-692D9D04DF7F} (C:\Documents and Settings\gavin.NEOTECH.000\Desktop\HINET Xuite 更盡ノㄣ\DSLite2\DSLite.exe, watermonster.org)
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} (C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation)
[FlashGet Bar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} (C:\PROGRA~1\FlashGet\fgiebar.dll, Amaze Soft)
[ICQ Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} (C:\Program Files\ICQToolbar\toolbaru.dll, ICQ Inc.)
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} (c:\program files\google\googletoolbar1.dll, N/A)
[ewidoOnlineScan Control]
{193C772A-87BE-4B19-A7BB-445B226FE9A1} (C:\WINDOWS\DOWNLO~1\ewidoOnlineScan.dll, Anti-Malware Development a.s.)
[MonitorURL Class]
{08A312BB-5409-49FC-9347-54BB7D069AC6} (C:\PROGRA~1\DeskAdTop\deskipn.dll, N/A)
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} (C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_5027.dll, Microsoft Corporation)
[&Google]
{2318C2B1-4965-11D4-9B18-009027A5CD4F} (c:\program files\google\googletoolbar1.dll, N/A)
[Tabular Data Control]
{333C7BC4-460F-11D0-BC04-0080C7055A83} (C:\WINDOWS\System32\tdc.ocx, Microsoft Corporation)
[]
{53707962-6F74-2D53-2644-206D7942484F} (C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll, Safer Networking Limited)
[Shell Name Space]
{55136805-B2DE-11D1-B9F2-00A0C98BC547} (%SystemRoot%\system32\SHDOCVW.DLL, N/A)
[BHOImp Class]
{70AFF2CB-9DA2-499C-8D15-900729FCE83D} (C:\WINDOWS\system32\YHBO.dll, N/A)
[ICQ Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} (C:\Program Files\ICQToolbar\toolbaru.dll, ICQ Inc.)
[IeCatch2 Class]
{A5366673-E8CA-11D3-9CD9-0090271D075B} (C:\PROGRA~1\FlashGet\jccatch.dll, Amaze Soft)
[Google Toolbar Helper]
{AA58ED58-01DD-4D91-8333-CF10577473F7} (c:\program files\google\googletoolbar1.dll, N/A)
[HpqYewwf Class]
{B628F86D-905C-780A-E105-38170AE9CE97} (C:\WINDOWS\DOWNLO~1\sgypk.dll, N/A)
[Shockwave Flash
Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} (C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.)
[FlashGet Bar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} (C:\PROGRA~1\FlashGet\fgiebar.dll, Amaze Soft)
[E&xport to Microsoft Excel]
(res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000, N/A)
[ㄏノ FlashGet 更]
(C:\Program Files\FlashGet\jc_link.htm, N/A)
[场ㄏノ FlashGet 更]
(C:\Program Files\FlashGet\jc_all.htm, N/A)
Running Processes
[PID: 584][\SystemRoot\System32\smss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 640][\??\C:\WINDOWS\system32\csrss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 664][\??\C:\WINDOWS\system32\winlogon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 712][C:\WINDOWS\system32\services.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 724][C:\WINDOWS\system32\lsass.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 884][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 932][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1016][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\System32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1096][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\System32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1192][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\System32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1304][C:\WINDOWS\system32\spoolsv.exe] (Microsoft Corporation)(5.1.2600.2696 (xpsp_sp2_gdr.050610-1519))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1436][C:\PROGRA~1\Grisoft\AVG Free\avgamsvr.exe] (GRISOFT, s.r.o.)(7,1,0,365)
[C:\PROGRA~1\Grisoft\AVG Free\avglog.dll] (GRISOFT, s.r.o.)(7,1,0,349)
[C:\Program Files\Grisoft\AVG Free\avgcfg.dll] (GRISOFT, s.r.o.)(7,1,0,404)
[C:\Program Files\Grisoft\AVG Free\avgklib.dll] (GRISOFT, s.r.o.)(7,1,0,321)
[C:\Program Files\Grisoft\AVG Free\avglng.dll] (GRISOFT, s.r.o.)(7,1,0,400)
[PID: 1496][C:\PROGRA~1\Grisoft\AVG Free\avgupsvc.exe] (GRISOFT, s.r.o.)(7,1,0,349)
[PID: 1524][C:\Program Files\ewido anti-spyware 4.0\guard.exe] (Anti-Malware Development a.s.)(4, 0, 0, 172)
[C:\Program Files\ewido anti-spyware 4.0\engine.dll] (Anti-Malware Development a.s.)(4, 0, 0, 172)
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1560][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe] (Analog Devices, Inc.)(3, 2, 6, 0)
[PID: 1580][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\System32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[C:\WINDOWS\system32\wsndp202.dll] ()(0, 9, 0, 1)
[PID: 1592][C:\WINDOWS\system32\wdfmgr.exe] (Microsoft Corporation)(5.2.3790.1230 built by: dnsrv(bld4act))
[PID: 1840][C:\WINDOWS\Explorer.EXE] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] (Adobe Systems, Inc.)(7.0.0.0)
[C:\Program Files\WinRAR\rarext.dll] (N/A)(N/A)
[C:\WINDOWS\system32\RhinoShExt.dll] (Robert McNeel & Associates)(1, 0, 0, 1)
[C:\Program Files\ICQLite\ICQLiteShell.dll] ()(20, 34, 2321, 0)
[C:\Program Files\ewido anti-spyware 4.0\context.dll] (Anti-Malware Development a.s.)(4, 0, 0, 172)
[C:\Program Files\GlobalSCAPE\CuteFTP\Cuteshell.dll] (GlobalSCAPE, Inc.)(50, 6, 3, 2)
[C:\Program Files\Grisoft\AVG Free\avgse.dll] (GRISOFT, s.r.o.)(7,1,0,354)
[PID: 460][C:\WINDOWS\System32\alg.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\System32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 492][C:\WINDOWS\system32\ctfmon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1804][C:\WINDOWS\system32\wuauclt.exe] (Microsoft Corporation)(5.8.0.2469 built by: lab01_n(wmbla))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1188][C:\WINDOWS\system32\Notepad.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
[PID: 1204][C:\Documents and Settings\gavin.NEOTECH.000\Desktop\FOR SCAN\SREng2\SREng.exe] (Smallfrogs Studio)(2.0.21.505)
[C:\WINDOWS\system32\SYNCOR11.DLL] (SoundMAX)(1.2.3)
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
Winsock Provider