StartupList report, 31/01/03, 9:13:26
StartupList version: 1.51
Started from : C:\UNZIPPED\STARTUPLIST\STARTUPLIST.EXE
Detected: Windows 95 B (Win9x 4.00.1111)
Detected: Internet Explorer v5.50 (5.50.4134.0600)
* Using default options
==================================================
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\PROGRAM FILES\NORTON ANTIVIRUS\NAVAPW32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\SCANJET\PRECISIONSCANLT\HPPWRSAV.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE
C:\WINDOWS\RunDLL.exe
C:\PROGRAM FILES\WEBSHOTS\WEBSHOTSTRAY.EXE
C:\PROGRAM FILES\NORTON ANTIVIRUS\NSCHED32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\UNZIPPED\STARTUPLIST\STARTUPLIST.EXE
--------------------------------------------------
Listing of startup folders:
Shell folders Startup:
[C:\WINDOWS\Start Menu\Programs\StartUp]
Webshots.lnk = C:\Program Files\Webshots\WebshotsTray.exe
Norton Program Scheduler.lnk = C:\Program Files\Norton AntiVirus\NSCHED32.EXE
EPSON Status Monitor 3 Environment Check.lnk = C:\WINDOWS\SYSTEM\E_SRCV03.EXE
MSN Messenger.lnk = C:\Program Files\Messenger\msmsgs.exe
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
SystemTray = SysTray.Exe
Norton Auto-Protect = C:\PROGRA~1\NORTON~1\NAVAPW32.EXE /LOADQUIET
hppwrsav = C:\SCANJET\PrecisionScanLT\hppwrsav.exe
LoadQM = loadqm.exe
--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
MSMSGS = "C:\Program Files\Messenger\msmsgs.exe" /background
Taskbar Display Controls = RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
desktopkarma = C:\PROGRAM FILES\DESKTOPKARMA\desktopkarma.exe minimize
--------------------------------------------------
C:\WINDOWS\WININIT.BAK listing:
(Created 31/1/2003, 7:44:12)
[rename]
NUL=C:\WINDOWS\TEMP\REMC035.TMP
--------------------------------------------------
C:\AUTOEXEC.BAT listing:
C:\PROGRA~1\NORTON~1\NAVDX.EXE /Startup
SET CLASSPATH=C:\Program Files\PhotoDeluxe 2.0\AdobeConnectables
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
--------------------------------------------------
Enumerating Task Scheduler jobs:
{D34F18B0-576E-11D0-B28C-00C04FD7CD22}_Default.job
{D34F18B0-576E-11D0-B28C-00C04FD7CD22}_lesley.job
--------------------------------------------------
Enumerating Download Program Files:
[Shockwave ActiveX Control]
InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\DIRECTOR\SWDIR.DLL
CODEBASE =
http://active.macromedia.com/director/cabs/sw.cab
[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\FLASH\SWFLASH.OCX
CODEBASE =
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
[SurveyCtl Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\SURVEYCONTROL.DLL
CODEBASE =
http://activex.microsoft.com/controls/mtswizards/Survey.cab
[McAfee Clinic QuickClean Class]
InProcServer32 = C:\WINDOWS\MCBIN\QC\MGQCCTL.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Clinic/Clean/QuickClean/MGqcctl.cab
[McAfee Clinic TreeView Class]
InProcServer32 = C:\WINDOWS\DOWNLO~1\MGTREE.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Shared/MGTree.cab
[McAfee Clinic AntiVirus Datfile Manager]
InProcServer32 = C:\WINDOWS\MCBIN\AV\MGAVDAT.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Clinic/VirusScan/MgAvDat.cab
[McAfee Clinic Antivirus Control]
InProcServer32 = C:\WINDOWS\MCBIN\AV\MGAVCTL.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Clinic/VirusScan/MgAvCtl.cab
[BrowseFolder Class]
InProcServer32 = C:\WINDOWS\DOWNLO~1\MGBRWFLD.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Shared/MGBrwFld.cab
[McAfee Clinic Year2000 Advisor Class]
InProcServer32 = C:\WINDOWS\MCBIN\Y2K\MGY2KCTL.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Clinic/Y2K/MGY2kCtl.cab
[McAfee Clinic FA Advisor for Windows 95]
InProcServer32 = C:\WINDOWS\MCBIN\FIRSTAID\ADVISOR\MGADVCTL.DLL
CODEBASE =
http://mcafee.www.conxion.com/molbin/Clinic/FirstAid/Advisor/mgadvctl.cab
[HearMe VoicePresence]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\NPEVP.DLL
CODEBASE =
http://vp.hearme.com/products/vp/embedded/plugins/evp.cab
[nsBrowserConfig Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\NSCONFIG.DLL
CODEBASE =
http://www2.netsetter.com/r/ns/config/nsconfig.cab
[MSN Communities Upload Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\MSNUPLD.DLL
CODEBASE =
http://content.communities.msn.com/cs/msnupld.cab
[sys Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PCPITSTOP.DLL
CODEBASE =
http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
[AV Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PAV.DLL
CODEBASE =
http://www.pcpitstop.com/antivirus/PCPAV.CAB
[MSN Photo Upload Tool]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\MSNPUPLD.DLL
CODEBASE =
http://sc.communities.msn.com/controls/PhotoUC/MsnPUpld.cab
[National Internet Banking Custom]
InProcServer32 = C:\WINDOWS\SYSTEM\MSJAVA.DLL
CODEBASE =
https://www.national.com.au/rib/afs/v3002/cabinet/NABcustom.cab
[National Internet Banking Images]
InProcServer32 = C:\WINDOWS\SYSTEM\MSJAVA.DLL
CODEBASE =
https://www.national.com.au/rib/afs/v3002/cabinet/images.cab
[MSN Chat Control 4.5]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\MSNCHAT45.OCX
CODEBASE =
http://sc.communities.msn.com/controls/chat/msnchat45.cab
--------------------------------------------------
End of report, 6,547 bytes
Report generated in 1.112 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only
hope this helps steam
hugs kangaroo