O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - H:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe LM Service - Adobe Systems - H:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ashampoo AntiSpyWare 2 Service (AASW2_Service) - Unknown owner - H:\Program Files\Ashampoo\Ashampoo AntiSpyWare 2\AntiSpyWareService.exe O2 - BHO: SnagIt Toolbar Loader - H:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = H:\Program Files\Trend Micro\HijackThis\HijackThis.exe H:\Documents and Settings\Administrator 2\Desktop\anapod_905_pw.exe H:\Program Files\iPod\bin\iPodService.exe
H:\Program Files\Windows Media Player\wmplayer.exe H:\Program Files\NewsLeecher\newsLeecher.exe H:\Program Files\TomTom HOME 2\HOMERunner.exe H:\Program Files\Mozilla Firefox\firefox.exe H:\Program Files\Vidalia Bundle\Tor\tor.exe H:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe H:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe H:\Program Files\Windows Defender\MSASCui.exe H:\Program Files\ACD Systems\ACDSee\10.0\ACDSee10.exe H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe H:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe H:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
H:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe H:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe H:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe H:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe H:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe H:\Program Files\Common Files\LightScribe\LSSrvc.exe H:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe H:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
H:\Program Files\Ashampoo\Ashampoo AntiSpyWare 2\AntiSpyWareService.exe H:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe H:\Program Files\Windows Defender\MsMpEng.exe I dont know if this was the problem or not. I just ran Malware Bytes and it found HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> It was Quarantined and deleted successfully. I dont know what this virus does but I keep thinking this is how they got it. I had my Hotmail account hacked and couldnt figure out how they got password. I quarantine it and it keeps coming back. Zonealarm keeps finding the virus not-a-virus:, located in H:\WINDOWS\Temp\$201D01EC.t$m (H is my main drive).