

O23 - Service: Apple Mobile Device - Apple, Inc. O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
MICROSOFT AUTOUPDATE DOWNLOAD MAC 3.11.1710 PDF
O2 - BHO: Adobe PDF Reader Link Helper - (MUWebControl Class).

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\mu (Trojan.Agent) -> Delete on reboot.Ĭ:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeĬ:\Program Files\Common Files\Symantec Shared\SNDSrvc.exeĬ:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exeĬ:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeĬ:\Program Files\Common Files\AOL\ACS\AOLAcsd.exeĬ:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeĬ:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exeĬ:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exeĬ:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exeĬ:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXEĬ:\Program Files\CyberLink\Shared Files\RichVideo.exeĬ:\Program Files\Analog Devices\SoundMAX\SMAgent.exeĬ:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXEĬ:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exeĬ:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exeĬ:\Program Files\Analog Devices\SoundMAX\Smax4.exeĬ:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exeĬ:\Program Files\Google\Gmail Notifier\gnotify.exeĬ:\Program Files\Common Files\Symantec Shared\ccApp.exeĬ:\Program Files\Java\jre1.6.0_07\bin\jusched.exeĬ:\Program Files\Common Files\Real\Update_OB\realsched.exeĬ:\Program Files\Common Files\AOL\1181333827\ee\AOLSoftware.exeĬ:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exeĬ:\Program Files\CyberLink\PowerDVD\PDVDServ.exeĬ:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIABA.EXEĬ:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exeĬ:\Program Files\Zone Labs\ZoneAlarm\zlclient.exeĬ:\Program Files\Logitech\SetPoint\SetPoint.exeĬ:\Program Files\iPod\bin\iPodService.exeĬ:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXEĬ:\Program Files\Mozilla Firefox\firefox.exeĬ:\Program Files\Mozilla Thunderbird\thunderbird.exeĬ:\Program Files\Trend Micro\HijackThis\HijackThis.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\iu (Trojan.Agent) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bk (Trojan.Agent) -> Delete on reboot.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bf (Trojan.Agent) -> Delete on reboot. I appreciate any help you can give me in removing this. I ran MBAM and it came up with 4 infected registry values, but they remain after rebooting. I usually have IE blocked through ZoneAlarm since I use Firefox. When I go to explore my files (right-click on Start button ->explore) I sometimes get a warning in the system tray saying my system is infected and then it tries to open up Internet Explorer and goto a website.
