Hi,
I was wondering if someone could help me with my problem. My computer frequently tries to access the internet automatically. It does this in various ways, sometimes through internet explorer via pop up window. When it is by pop up window I know it is MALWARE - some type of antivirus ad. It also downloads viruses. I have installed zone-alarm to try and stop this. It has helped to some extent. I have also done the Anti-Spyware and Spybot SD checks and have Avast installed.
I still can't get rid of the problem. I also think this may be affecting other internet functions such as viewing youtube videos but perhaps not.
Also I have had numerous viruses and spyware detected and removed including - bravesentry.
Every time I start my computer it says something like - ieupdater.exe has generated errors and must be restarted. Also whenever I set internet explorer to block all cookies, the next time I open it it accepts ALL COOKIES! I no longer use internet explorer, only mozilla.
Here is my Hi-Jack this log:
Logfile of HijackThis v1.99.1
Scan saved at 3:32:09 PM, on 19/05/2007
Platform: Windows 2000 SP2 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\ZoneLabs\vsmon.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINNT\System32\ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
C:\WINNT\System32\svchost.exe
C:\PROGRA~1\Compaq\COMPAQ~2\hibserv.exe
C:\WINNT\System32\NALNTSRV.EXE
C:\Program Files\Reflection\rtsserv.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\CClientSvc.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\CClient.exe
C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\System32\wm.exe
C:\WINNT\System32\mspmspsv.exe
C:\NOVELL\ZENRC\WUOLService.exe
C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
C:\NOVELL\ZENRC\wuser32.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINNT\System32\NWTRAY.EXE
C:\WINNT\System32\Atiptaxx.exe
C:\WINNT\System32\ltmsg.exe
C:\Program Files\Compaq\Hotkey Software\hkss.exe
C:\WINNT\System32\PRPCUI.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
C:\Program Files\Compaq\PowerCon Enhancements\CPQAcDc.Exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\NkvMon.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\TSUsage32.exe
D:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = www.kern.com.au
O1 - Hosts: ;143.216.89.4 PIRSAF09
O1 - Hosts: 143.216.174.112 PW2R_SHP_M450 # Sharp Copier/Scanner at Waite
O1 - Hosts: 143.216.89.232 PMCR_SHP_M450 # Sharp Copier/Scanner at Mt. Barker (Catchment Centre)
O1 - Hosts: 143.216.188.226 pirsad04
O1 - Hosts: 143.216.188.110 pirsad07
O1 - Hosts: 143.216.188.227 rampant
O1 - Hosts: 143.216.188.225 pirsaec01 PIRSAEC01-NDS XTRANET
O1 - Hosts: 143.216.188.253 pirsaec03
O1 - Hosts: 143.216.175.29 cygnus
O1 - Hosts: 143.216.188.139 adl0395
O1 - Hosts: 143.216.188.115 adl0247
O1 - Hosts: 143.216.180.249 argolis # New LOTS at DEHAA
O1 - Hosts: 143.216.161.200 DENRLOTS
O1 - Hosts: 143.216.233.3 Concept # Development Unix box at Glenside
O1 - Hosts: 143.216.233.7 Concept_Prod # Production Unix box at Glenside
O1 - Hosts: 143.216.234.2 GCC1 # IBM Mainframe @ glenside
O1 - Hosts: 143.216.150.45 WKVB # Transport SA
O1 - Hosts: 143.216.220.23 CERBERUS
O1 - Hosts: 143.216.161.120 macra # SDE server - testing
O1 - Hosts: 143.216.161.163 mestor # DEH Server (not in DNS)
O1 - Hosts: 143.216.163.84 solos # SDE server - production
O1 - Hosts: 143.216.59.13 sagemsa0001
O1 - Hosts: 143.216.59.11 sagemsbb001
O1 - Hosts: 143.216.59.10 sagemsbb004
O1 - Hosts: 143.216.59.14 sagemsbb006
O1 - Hosts: 143.216.59.21 sagemsbb007
O1 - Hosts: 143.216.59.22 sagemsbb008
O1 - Hosts: 143.216.59.17 sagemsbb010
O1 - Hosts: 143.216.59.23 sagemsg0004
O1 - Hosts: 143.216.59.26 sagemsg0005
O1 - Hosts: 143.216.59.29 sagemsg0006
O1 - Hosts: 143.216.59.30 sagemsg0007
O1 - Hosts: 143.216.59.9 sagemsg0008
O1 - Hosts: 143.216.59.8 sagemsg0009
O1 - Hosts: 143.216.59.20 sagemsg0010 sagemsa0012.sagemsmrd01.sa.gov.au
O1 - Hosts: 143.216.59.18 sagemsg0011
O1 - Hosts: 143.216.59.12 sagemsg0012
O1 - Hosts: 143.216.59.28 sagemsg0013
O1 - Hosts: 143.216.59.19 sagemsg0015
O1 - Hosts: 143.216.59.27 sagemsg0016
O1 - Hosts: 143.216.59.25 sagemsg0017
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [NWTRAY] NWTRAY.EXE
O4 - HKLM\..\Run: [ZENRC Tray Icon] zentray.exe
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [AtiPTA] Atiptaxx.exe
O4 - HKLM\..\Run: [LTWinModem1] ltmsg.exe 9
O4 - HKLM\..\Run: [hkss] C:\Program Files\Compaq\Hotkey Software\hkss.exe
O4 - HKLM\..\Run: [PRPCMonitor] PRPCUI.exe
O4 - HKLM\..\Run: [ChkAdmin] C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
O4 - HKLM\..\Run: [TrackPointSrv] tp4serv.exe
O4 - HKLM\..\Run: [CPQAcDc] C:\Program Files\Compaq\PowerCon Enhancements\CPQAcDc.Exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [setup] rundll32.exe "C:\WINNT\System32\xmmihqle.dll",realset
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\NkvMon.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINNT\System32\ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Compaq Local Alerter (CPQALERT) - Compaq Computer Corporation - C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe
O23 - Service: cpqdmi - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
O23 - Service: Compaq DMI Web Agent (cpqWebDmi) - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Hibernation - Unknown owner - C:\PROGRA~1\Compaq\COMPAQ~2\hibserv.exe
O23 - Service: MSIEUpdater_1 (Microsoft IE Updater_1) - Unknown owner - C:\Documents and Settings\Administrator\ie_updater1.exe
O23 - Service: Novell Application Launcher (NALNTSERVICE) - Novell, Inc. - C:\WINNT\System32\NALNTSRV.EXE
O23 - Service: Remote management (Novell WUser Agent) - Novell, Inc. - C:\NOVELL\ZENRC\wuser32.exe
O23 - Service: Reflection TimeSync - WRQ, Inc. - C:\Program Files\Reflection\rtsserv.exe
O23 - Service: ZENworks Asset Management - Collection Client (TSCensus Collection Client) - Novell, Inc. - C:\Program Files\Novell\ZENworks\Asset Management\bin\CClientSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINNT\system32\ZoneLabs\vsmon.exe
O23 - Service: Win32Sl (WIN32SL) - Intel - C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
O23 - Service: Novell Workstation Manager (WM) - Novell, Inc. - C:\WINNT\System32\wm.exe
O23 - Service: WUOLservice (WUOLService) - Novell, Inc. - C:\NOVELL\ZENRC\WUOLService.exe
What should I do?
Thank you in anticipation of your help.
I was wondering if someone could help me with my problem. My computer frequently tries to access the internet automatically. It does this in various ways, sometimes through internet explorer via pop up window. When it is by pop up window I know it is MALWARE - some type of antivirus ad. It also downloads viruses. I have installed zone-alarm to try and stop this. It has helped to some extent. I have also done the Anti-Spyware and Spybot SD checks and have Avast installed.
I still can't get rid of the problem. I also think this may be affecting other internet functions such as viewing youtube videos but perhaps not.
Also I have had numerous viruses and spyware detected and removed including - bravesentry.
Every time I start my computer it says something like - ieupdater.exe has generated errors and must be restarted. Also whenever I set internet explorer to block all cookies, the next time I open it it accepts ALL COOKIES! I no longer use internet explorer, only mozilla.
Here is my Hi-Jack this log:
Logfile of HijackThis v1.99.1
Scan saved at 3:32:09 PM, on 19/05/2007
Platform: Windows 2000 SP2 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\ZoneLabs\vsmon.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINNT\System32\ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
C:\WINNT\System32\svchost.exe
C:\PROGRA~1\Compaq\COMPAQ~2\hibserv.exe
C:\WINNT\System32\NALNTSRV.EXE
C:\Program Files\Reflection\rtsserv.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\CClientSvc.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\CClient.exe
C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\System32\wm.exe
C:\WINNT\System32\mspmspsv.exe
C:\NOVELL\ZENRC\WUOLService.exe
C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
C:\NOVELL\ZENRC\wuser32.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINNT\System32\NWTRAY.EXE
C:\WINNT\System32\Atiptaxx.exe
C:\WINNT\System32\ltmsg.exe
C:\Program Files\Compaq\Hotkey Software\hkss.exe
C:\WINNT\System32\PRPCUI.exe
C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
C:\Program Files\Compaq\PowerCon Enhancements\CPQAcDc.Exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\NkvMon.exe
C:\Program Files\Novell\ZENworks\Asset Management\bin\TSUsage32.exe
D:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = www.kern.com.au
O1 - Hosts: ;143.216.89.4 PIRSAF09
O1 - Hosts: 143.216.174.112 PW2R_SHP_M450 # Sharp Copier/Scanner at Waite
O1 - Hosts: 143.216.89.232 PMCR_SHP_M450 # Sharp Copier/Scanner at Mt. Barker (Catchment Centre)
O1 - Hosts: 143.216.188.226 pirsad04
O1 - Hosts: 143.216.188.110 pirsad07
O1 - Hosts: 143.216.188.227 rampant
O1 - Hosts: 143.216.188.225 pirsaec01 PIRSAEC01-NDS XTRANET
O1 - Hosts: 143.216.188.253 pirsaec03
O1 - Hosts: 143.216.175.29 cygnus
O1 - Hosts: 143.216.188.139 adl0395
O1 - Hosts: 143.216.188.115 adl0247
O1 - Hosts: 143.216.180.249 argolis # New LOTS at DEHAA
O1 - Hosts: 143.216.161.200 DENRLOTS
O1 - Hosts: 143.216.233.3 Concept # Development Unix box at Glenside
O1 - Hosts: 143.216.233.7 Concept_Prod # Production Unix box at Glenside
O1 - Hosts: 143.216.234.2 GCC1 # IBM Mainframe @ glenside
O1 - Hosts: 143.216.150.45 WKVB # Transport SA
O1 - Hosts: 143.216.220.23 CERBERUS
O1 - Hosts: 143.216.161.120 macra # SDE server - testing
O1 - Hosts: 143.216.161.163 mestor # DEH Server (not in DNS)
O1 - Hosts: 143.216.163.84 solos # SDE server - production
O1 - Hosts: 143.216.59.13 sagemsa0001
O1 - Hosts: 143.216.59.11 sagemsbb001
O1 - Hosts: 143.216.59.10 sagemsbb004
O1 - Hosts: 143.216.59.14 sagemsbb006
O1 - Hosts: 143.216.59.21 sagemsbb007
O1 - Hosts: 143.216.59.22 sagemsbb008
O1 - Hosts: 143.216.59.17 sagemsbb010
O1 - Hosts: 143.216.59.23 sagemsg0004
O1 - Hosts: 143.216.59.26 sagemsg0005
O1 - Hosts: 143.216.59.29 sagemsg0006
O1 - Hosts: 143.216.59.30 sagemsg0007
O1 - Hosts: 143.216.59.9 sagemsg0008
O1 - Hosts: 143.216.59.8 sagemsg0009
O1 - Hosts: 143.216.59.20 sagemsg0010 sagemsa0012.sagemsmrd01.sa.gov.au
O1 - Hosts: 143.216.59.18 sagemsg0011
O1 - Hosts: 143.216.59.12 sagemsg0012
O1 - Hosts: 143.216.59.28 sagemsg0013
O1 - Hosts: 143.216.59.19 sagemsg0015
O1 - Hosts: 143.216.59.27 sagemsg0016
O1 - Hosts: 143.216.59.25 sagemsg0017
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [NWTRAY] NWTRAY.EXE
O4 - HKLM\..\Run: [ZENRC Tray Icon] zentray.exe
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [AtiPTA] Atiptaxx.exe
O4 - HKLM\..\Run: [LTWinModem1] ltmsg.exe 9
O4 - HKLM\..\Run: [hkss] C:\Program Files\Compaq\Hotkey Software\hkss.exe
O4 - HKLM\..\Run: [PRPCMonitor] PRPCUI.exe
O4 - HKLM\..\Run: [ChkAdmin] C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
O4 - HKLM\..\Run: [TrackPointSrv] tp4serv.exe
O4 - HKLM\..\Run: [CPQAcDc] C:\Program Files\Compaq\PowerCon Enhancements\CPQAcDc.Exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [setup] rundll32.exe "C:\WINNT\System32\xmmihqle.dll",realset
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\NkvMon.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = pirsa.sa.gov.au
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINNT\System32\ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Compaq Local Alerter (CPQALERT) - Compaq Computer Corporation - C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe
O23 - Service: cpqdmi - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
O23 - Service: Compaq DMI Web Agent (cpqWebDmi) - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\CPQWEB~1\WebDmi.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Hibernation - Unknown owner - C:\PROGRA~1\Compaq\COMPAQ~2\hibserv.exe
O23 - Service: MSIEUpdater_1 (Microsoft IE Updater_1) - Unknown owner - C:\Documents and Settings\Administrator\ie_updater1.exe
O23 - Service: Novell Application Launcher (NALNTSERVICE) - Novell, Inc. - C:\WINNT\System32\NALNTSRV.EXE
O23 - Service: Remote management (Novell WUser Agent) - Novell, Inc. - C:\NOVELL\ZENRC\wuser32.exe
O23 - Service: Reflection TimeSync - WRQ, Inc. - C:\Program Files\Reflection\rtsserv.exe
O23 - Service: ZENworks Asset Management - Collection Client (TSCensus Collection Client) - Novell, Inc. - C:\Program Files\Novell\ZENworks\Asset Management\bin\CClientSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINNT\system32\ZoneLabs\vsmon.exe
O23 - Service: Win32Sl (WIN32SL) - Intel - C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
O23 - Service: Novell Workstation Manager (WM) - Novell, Inc. - C:\WINNT\System32\wm.exe
O23 - Service: WUOLservice (WUOLService) - Novell, Inc. - C:\NOVELL\ZENRC\WUOLService.exe
What should I do?
Thank you in anticipation of your help.