O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O2 - BHO: Adobe PDF Reader Link Helper - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = į2 - REG:system.ini: Shell=Explorer.exe syssetup.exe R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
I googled "syssetup.exe" and found it was a worm? I'm not entirely sure but here's the logĬ:\Program Files\Microsoft Office\Office12\GrooveMonitor.exeĬ:\Program Files\CyberLink\PowerDVD\PDVDServ.exeĬ:\Program Files\Java\jre1.6.0_07\bin\jusched.exeĬ:\Program Files\HP\HP Software Update\HPWuSchd2.exeĬ:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exeĬ:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exeĬ:\Program Files\Taskbar Shuffle\taskbarshuffle.exeĬ:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exeĬ:\Program Files\Spybot - Search & Destroy\TeaTimer.exeĬ:\Program Files\HP\Digital Imaging\bin\hpqtra08.exeĬ:\Program Files\Nikon\PictureProject\NkbMonitor.exeĬ:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exeĬ:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exeĬ:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exeĬ:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exeĬ:\Program Files\CyberLink\Shared files\RichVideo.exeĬ:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exeĬ:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exeĬ:\Program Files\Trend Micro\HijackThis\HijackThis.exe