Here it is. Hope this helps, seems like a foreign language to me. I did run a spyware seeking program (trial period type) and that found around 208 things that said should be removed but the program wouldn't let me remove them unless I bought it. Maybe I should buy one? If so, can anyone suggest a good one to get or somewhere I can just download one?
Thanks for everyone trying to help! You guys seem to have a lot of patience for semi-computer illiterate people like myself!
StartupList report, 1/12/2003, 1:19:49 AM
StartupList version: 1.50
Started from : C:\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\UQNSIORQ\STARTUPLIST15[1]\STARTUPLIST.EXE
Detected: Windows ME (Win9x 4.90.3000)
Detected: Internet Explorer v6.00 SP1 (6.00.2800.1106)
* Using default options
==================================================
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\COMPAQ\DIGITAL DASHBOARD\DEVGULP.EXE
C:\CPQS\BWTOOLS\SCCENTER.EXE
C:\WINDOWS\PCTVOICE.EXE
C:\PROGRAM FILES\SAVENOW\SAVENOW.EXE
C:\WINDOWS\LOADQM.EXE
C:\WINDOWS\WNAD.EXE
C:\PROGRAM FILES\MOTIVE\MOTMON.EXE
C:\WINDOWS\SYSTEM\HPOOPM07.EXE
C:\PROGRAM FILES\WILDTANGENT\APPS\GAMECHANNEL.EXE
C:\WINDOWS\WT\UPDATER\WCMDMGR.EXE
C:\WINDOWS\SYSTEM\OSSPROXY.EXE
C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\AWS\WEATHERBUG\WEATHER.EXE
C:\PROGRAM FILES\WEBSHOTS\WEBSHOTSTRAY.EXE
C:\PROGRAM FILES\HEWLETT-PACKARD\HP PSC 700 SERIES\BIN\HPODEV07.EXE
C:\PROGRAM FILES\INTUIT\QUICKBOOKS PRO\COMPONENTS\QBAGENT\QBDAGENT2002.EXE
C:\PROGRAM FILES\YAHOO!\MESSENGER\YMSGR_TRAY.EXE
C:\PROGRAM FILES\COMPAQ KNOWLEDGE CENTER\BIN\MPBTN.EXE
C:\PROGRAM FILES\HEWLETT-PACKARD\HP PSC 700 SERIES\BIN\HPOEVM07.EXE
C:\PROGRAM FILES\HEWLETT-PACKARD\HP PSC 700 SERIES\BIN\HPOSTS07.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\HPOIPM07.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\UQNSIORQ\STARTUPLIST15[1]\STARTUPLIST.EXE
--------------------------------------------------
Listing of startup folders:
Shell folders Startup:
[C:\WINDOWS\Start Menu\Programs\StartUp]
Webshots.lnk = C:\Program Files\Webshots\WebshotsTray.exe
COMPAQ KNOWLEDGE CENTER.LNK = C:\Program Files\Compaq Knowledge Center\bin\silent.exe
HPAIODEVICE.LNK = C:\Program Files\Hewlett-Packard\hp psc 700 series\bin\hpodev07.exe
QUICKBOOKS 2002 DELIVERY AGENT.LNK = C:\Program Files\Intuit\QuickBooks Pro\Components\QBAgent\qbdagent2002.exe
DLHELPEREXE.EXE
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
ScanRegistry = C:\WINDOWS\scanregw.exe /autorun
TaskMonitor = C:\WINDOWS\taskmon.exe
PCHealth = C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
SystemTray = SysTray.Exe
LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
EACLEAN = C:\Program Files\Compaq\Easy Access Button Support\eaclean.exe
Digital Dashboard = C:\Program Files\Compaq\Digital Dashboard\DevGulp.exe
Service Connection = c:\cpqs\bwtools\sccenter.exe
CountrySelection = pctptt.exe
PCTVOICE = pctvoice.exe
SaveNow = C:\PROGRA~1\SAVENOW\SaveNow.exe
LoadQM = loadqm.exe
WNAD = C:\WINDOWS\WNAD.EXE
MotiveMonitor = C:\Program Files\Motive\motmon.exe
Clickthebutton = "C:\PROGRA~1\BONZIB~1\ctbClick.exe"
Incredimail = C:\PROGRA~1\INCRED~1\bin\IncrediMail.exe /c
HPAIO_PrintFolderMgr = C:\WINDOWS\SYSTEM\hpoopm07.exe
wcmdmgr = C:\WINDOWS\wt\updater\wcmdmgrl.exe -launch
WinStart = C:\WINDOWS\System\WinStart.exe -boot
WT GameChannel = C:\Program Files\WildTangent\Apps\GameChannel.exe
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices
LoadPowerProfile = Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
*StateMgr = C:\WINDOWS\System\Restore\StateMgr.exe
SchedulingAgent = mstask.exe
--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
NSCheck = C:\WINDOWS\SYSTEM\NSCHECK.EXE /check
Choke = C:\choke.exe -blahhh
OSSProxy = C:\WINDOWS\SYSTEM\OSSPROXY.EXE
Yahoo! Pager = C:\PROGRAM FILES\YAHOO!\MESSENGER\ypager.exe -quiet
msnmsgr = "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
Weather = C:\PROGRAM FILES\AWS\WEATHERBUG\WEATHER.EXE 1
--------------------------------------------------
Enumerating Active Setup stub paths:
HKLM\Software\Microsoft\Active Setup\Installed Components
(* = disabled by HKCU twin)
[{89820200-ECBD-11cf-8B85-00AA005B4395}] *
StubPath = regsvr32.exe /s /n /i:U shell32.dll
[>PerUser_MSN_Clean] *
StubPath = C:\WINDOWS\msnmgsr1.exe
[PerUser_LinkBar_URLs] *
StubPath = C:\WINDOWS\COMMAND\sulfnbk.exe /L
[{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] *
StubPath = rundll32.exe advpack.dll,UserInstStubWrapper {44BBA840-CC51-11CF-AAFA-00AA00B6015C}
[{7790769C-0471-11d2-AF11-00C04FA35D02}] *
StubPath = rundll32.exe advpack.dll,UserInstStubWrapper {7790769C-0471-11d2-AF11-00C04FA35D02}
[{9EF0045A-CDD9-438e-95E6-02B9AFEC8E11}] *
StubPath = C:\WINDOWS\SYSTEM\updcrl.exe -e -u C:\WINDOWS\SYSTEM\verisignpub1.crl
[{89820200-ECBD-11cf-8B85-00AA005B4383}] *
StubPath = C:\WINDOWS\SYSTEM\ie4uinit.exe
--------------------------------------------------
Load/Run keys from C:\WINDOWS\WIN.INI:
load=
run=
--------------------------------------------------
Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:
Shell=Explorer.exe
SCRNSAVE.EXE=C:\WINDOWS\THEOSB~1.SCR
drivers=mmsystem.dll power.drv
--------------------------------------------------
Checking for EXPLORER.EXE instances:
C:\WINDOWS\Explorer.exe: PRESENT!
C:\Explorer.exe: not present
C:\WINDOWS\Explorer\Explorer.exe: not present
C:\WINDOWS\System\Explorer.exe: not present
C:\WINDOWS\System32\Explorer.exe: not present
C:\WINDOWS\Command\Explorer.exe: not present
--------------------------------------------------
C:\WINDOWS\WININIT.BAK listing:
(Created 5/1/2003, 21:17:2)
[Rename]
C:\WINDOWS\SYSTEM\ACTXPRXY.DLL=C:\WINDOWS\SYSTEM\SETE1A5.TMP
C:\WINDOWS\SYSTEM\ADVPACK.DLL=C:\WINDOWS\SYSTEM\SETE1B1.TMP
C:\WINDOWS\SYSTEM\ATL.DLL=C:\WINDOWS\SYSTEM\SETE1B4.TMP
C:\WINDOWS\SYSTEM\BROWSELC.DLL=C:\WINDOWS\SYSTEM\SETE1B5.TMP
C:\WINDOWS\SYSTEM\BROWSEUI.DLL=C:\WINDOWS\SYSTEM\SETE1D0.TMP
C:\WINDOWS\SYSTEM\COMCTL32.DLL=C:\WINDOWS\SYSTEM\SETE1E2.TMP
C:\WINDOWS\SYSTEM\CORPOL.DLL=C:\WINDOWS\SYSTEM\SETE1E5.TMP
C:\WINDOWS\SYSTEM\DISPEX.DLL=C:\WINDOWS\SYSTEM\SETE1F3.TMP
NUL=C:\WINDOWS\SYSTEM\DXTRANS.DLL
C:\WINDOWS\SYSTEM\DXTRANS.DLL=C:\WINDOWS\SYSTEM\SETE1F4.TMP
NUL=C:\WINDOWS\SYSTEM\DXTMSFT.DLL
C:\WINDOWS\SYSTEM\DXTMSFT.DLL=C:\WINDOWS\SYSTEM\SETE200.TMP
C:\WINDOWS\SYSTEM\IEPEERS.DLL=C:\WINDOWS\SYSTEM\SETE211.TMP
C:\WINDOWS\SYSTEM\IMGUTIL.DLL=C:\WINDOWS\SYSTEM\SETE220.TMP
C:\WINDOWS\SYSTEM\INSENG.DLL=C:\WINDOWS\SYSTEM\SETE234.TMP
C:\WINDOWS\SYSTEM\JSCRIPT.DLL=C:\WINDOWS\SYSTEM\SETE243.TMP
C:\WINDOWS\SYSTEM\MLANG.DLL=C:\WINDOWS\SYSTEM\SETE254.TMP
C:\WINDOWS\SYSTEM\MSHTML.DLL=C:\WINDOWS\SYSTEM\SETE275.TMP
C:\WINDOWS\SYSTEM\MSHTML.TLB=C:\WINDOWS\SYSTEM\SETE2B5.TMP
C:\WINDOWS\SYSTEM\MSHTMLED.DLL=C:\WINDOWS\SYSTEM\SETE2D2.TMP
C:\WINDOWS\SYSTEM\MSLS31.DLL=C:\WINDOWS\SYSTEM\SETE2E0.TMP
C:\WINDOWS\SYSTEM\SHDOCLC.DLL=C:\WINDOWS\SYSTEM\SETE310.TMP
C:\WINDOWS\SYSTEM\SHDOCVW.DLL=C:\WINDOWS\SYSTEM\SETE320.TMP
C:\WINDOWS\SYSTEM\SHFOLDER.DLL=C:\WINDOWS\SYSTEM\SETE331.TMP
C:\WINDOWS\SYSTEM\SHLWAPI.DLL=C:\WINDOWS\SYSTEM\SETE333.TMP
C:\WINDOWS\SYSTEM\URLMON.DLL=C:\WINDOWS\SYSTEM\SETE343.TMP
C:\WINDOWS\SYSTEM\WININET.DLL=C:\WINDOWS\SYSTEM\SETE350.TMP
C:\WINDOWS\SYSTEM\WLDAP32.DLL=C:\WINDOWS\SYSTEM\SETE352.TMP
NUL=C:\WINDOWS\SYSTEM\MSXML3.DLL
C:\WINDOWS\SYSTEM\MSXML3.DLL=C:\WINDOWS\SYSTEM\SETF045.TMP
NUL=C:\WINDOWS\SYSTEM\MSXML3A.DLL
C:\WINDOWS\SYSTEM\MSXML3A.DLL=C:\WINDOWS\SYSTEM\SETF070.TMP
C:\WINDOWS\SYSTEM\WEBCHECK.DLL=C:\WINDOWS\SYSTEM\SETF1E0.TMP
C:\WINDOWS\SYSTEM\MSIDLE.DLL=C:\WINDOWS\SYSTEM\SETF1E5.TMP
C:\WINDOWS\SYSTEM\SENS.DLL=C:\WINDOWS\SYSTEM\SETF205.TMP
C:\WINDOWS\SYSTEM\SENSAPI.DLL=C:\WINDOWS\SYSTEM\SETF213.TMP
C:\WINDOWS\SYSTEM\ES.DLL=C:\WINDOWS\SYSTEM\SETF221.TMP
C:\WINDOWS\SYSTEM\ESSHARED.DLL=C:\WINDOWS\SYSTEM\SETF224.TMP
C:\WINDOWS\SYSTEM\ESTIER2.DLL=C:\WINDOWS\SYSTEM\SETF225.TMP
C:\WINDOWS\SYSTEM\JSPROXY.DLL=C:\WINDOWS\SYSTEM\SETF2B2.TMP
--------------------------------------------------
C:\AUTOEXEC.BAT listing:
SET windir=C:\WINDOWS
SET winbootdir=C:\WINDOWS
SET COMSPEC=C:\WINDOWS\COMMAND.COM
SET PATH=C:\WINDOWS;C:\WINDOWS\COMMAND
SET PROMPT=$p$g
SET TEMP=C:\WINDOWS\TEMP
SET TMP=C:\WINDOWS\TEMP
--------------------------------------------------
C:\WINDOWS\WINSTART.BAT listing:
@C:\WINDOWS\tmpcpyis.bat
--------------------------------------------------
C:\WINDOWS\DOSSTART.BAT listing:
@echo off
--------------------------------------------------
Checking for superhidden extensions:
.lnk: HIDDEN! (arrow overlay: yes)
.pif: HIDDEN! (arrow overlay: yes)
.exe: not hidden
.com: not hidden
.bat: not hidden
.hta: not hidden
.scr: not hidden
.shs: HIDDEN!
.shb: HIDDEN!
.vbs: not hidden
.vbe: not hidden
.wsh: not hidden
.scf: HIDDEN! (arrow overlay: NO!)
.url: HIDDEN! (arrow overlay: yes)
.js: not hidden
.jse: not hidden
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - (no file) - {EF99BD32-C1FB-11D2-892F-0090271D4F88}
(no name) - C:\WINDOWS\SYSTEM\BHO.DLL (file missing) - {730F2451-A3FE-4A72-938C-FC8A74F15978}
--------------------------------------------------
Enumerating Task Scheduler jobs:
Tune-up Application Start.job
PCHealth Scheduler for Data Collection.job
Registration reminder 1.job
Registration reminder 2.job
Registration reminder 3.job
Maintenance-Defragment programs.job
Maintenance-ScanDisk.job
Maintenance-Disk cleanup.job
Synchronize Time.job
Check E-mail.job
--------------------------------------------------
Enumerating Download Program Files:
[{BD11A280-2E73-11CF-B6CF-00AA00A74DAF}]
CODEBASE =
http://images.bonzi.com/freebuddy/wd/bbsetuppop.exe
[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH.OCX
CODEBASE =
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
[{0335A685-ED24-4F7B-A08E-3BD15D84E668}]
CODEBASE =
http://www.photoparade.com/autoinstall/phpsetup.cab
[YInstStarter Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\YINSTHELPER.DLL
CODEBASE =
http://download.yahoo.com/dl/installs/yinst.cab
[PWMediaSendControl Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\PWACTIVEXIMGCTL.DLL
CODEBASE =
http://www.rimfiremedia.com/code//PWActiveXImgCtl.cab
[Symantec RuFSI Registry Information Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\RUFSI.DLL
CODEBASE =
http://security1.norton.com/us/sa/common/common/bin/cabsa.cab
[Symantec AntiVirus scanner]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\AVSNIFF.DLL
CODEBASE =
http://security1.norton.com/us/nav/common/common/bin/AvSniff.cab
[WTHoster Class]
InProcServer32 = C:\WINDOWS\WT\WEBDRIVER\WTHOSTCTL.DLL
CODEBASE =
http://www.wildtangent.com/install/wdriver/3rdPartyContent/dnastudios/harrypotter/wtinst.cab
[Yahoo! Audio Conferencing]
InProcServer32 = C:\PROGRAM FILES\YAHOO!\MESSENGER\YACSCOM.DLL
CODEBASE =
http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v43/yacscom.cab
[Yahoo! Audio UI1]
InProcServer32 = C:\PROGRAM FILES\YAHOO!\MESSENGER\YACSUI.DLL
CODEBASE =
http://chat.yahoo.com/cab/yacsui.cab
[CFForm Runtime]
InProcServer32 = C:\WINDOWS\SYSTEM\MSJAVA.DLL
CODEBASE =
http://www.memolink.com/CFIDE/classes/CFJava.cab
[{15589FA1-C456-11CE-BF01-00AA0055595A}]
CODEBASE =
http://www.spywarenuker.com/product/camp/clickbank/SpywareNukerInstaller.exe
[CBSTIEPrint Class]
InProcServer32 = C:\WINDOWS\SYSTEM\BSTIEPRINTCTL1.DLL
CODEBASE =
http://offers.brightstreet.com/cif/download/bin/actxcab.cab
[{9DBAFCCF-592F-FFFF-FFFF-00608CEC297C}]
CODEBASE =
http://download.weatherbug.com/minibug/tricklers/AWS/minibuginstaller.cab
[Register Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\HWUTILS.DLL
CODEBASE =
http://content.hiwirenetworks.net/inbrowser/cabfiles/2.5.26/Hiwire.cab
[EABootStrap Class]
InProcServer32 = C:\WINDOWS\SYSTEM\EABTSTRP.DLL
CODEBASE =
http://www.ea.com/downloads/games/common/boot_strap/iegils.cab
[Brix6ie Control]
InProcServer32 = C:\WINDOWS\SYSTEM\BRIX6IE.OCX
CODEBASE =
http://a19.g.akamai.net/7/19/7125/1250/ftp.coupons.com/v6/brix6ie.cab
[IQ RemotePrint Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\REMOTE~1.OCX
CODEBASE =
http://promo.iq.com/common/download/RemotePrint.CAB
[Skilljam Game Player Object]
InProcServer32 = C:\WINDOWS\DOWNLO~1\SSP.OCX
CODEBASE =
http://skill.skilljam.com/ssp/SSP.cab
[CarPoint Auto-Pricer Control]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\AUTOPRICER.OCX
CODEBASE =
http://autos.msn.com/components/ocx/autopricer/autopricer.cab
[WebHandler Class]
InProcServer32 = C:\WINDOWS\DOWNLOADED PROGRAM FILES\DLHELPER.DLL
CODEBASE =
http://activex.microgaming.com/DLhelper/version6/dlhelper.cab
[Update Class]
InProcServer32 = C:\WINDOWS\SYSTEM\IUCTL.DLL
CODEBASE =
http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37626.7509490741
--------------------------------------------------
Enumerating Winsock LSP files:
Protocol #1: CSLOA.DLL (file MISSING)
Protocol #2: CSLOA.DLL (file MISSING)
Protocol #3: CSLOA.DLL (file MISSING)
Protocol #4: CSLOA.DLL (file MISSING)
Protocol #5: CSLOA.DLL (file MISSING)
Protocol #11: CSLOA.DLL (file MISSING)
--------------------------------------------------
End of report, 14,353 bytes
Report generated in 2.405 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only