We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
CiD pop up help :(
Options
Comments
-
ok have just completed post 7's instructions - heres the log
\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) M CPU 420 @ 1.60GHz )
BIOS : Ver 1.00PARTTBL
USER : jean ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 66 Go Free : 39 Go\ (Local Disk) - FAT32 - Total : 7 Go Free : 1 Go
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [2] ( 20/09/2008|21:19 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ FIX
Deleted! - C:\DOCUME~1\jean\Cookies\jean@advertising[1].txt
Deleted! - C:\DOCUME~1\jean\Cookies\jean@partypoker[2].txt
Deleted! - C:\DOCUME~1\jean\Cookies\jean@www.lop[2].txt
-
[ Hosts file ] .. Restored!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
\\ Listing folders in APPLIC~1
[12/09/2006|11:36] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[12/09/2006|05:13] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[21/07/2008|21:40] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[10/09/2008|21:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\!!3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[19/09/2007|10:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[10/09/2008|21:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[25/12/2006|20:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[21/07/2008|21:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
[30/12/2006|21:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BVRP Software
[12/09/2006|05:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[12/09/2006|05:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DIGStream
[25/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[12/09/2006|05:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[19/09/2008|08:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[16/08/2008|09:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/07/2008|15:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[11/09/2008|07:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[19/09/2008|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[25/12/2006|19:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[19/09/2008|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[18/09/2007|13:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[14/06/2008|10:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[12/09/2006|11:36] C:\DOCUME~1\cliff\APPLIC~1\Identities
[06/01/2007|23:10] C:\DOCUME~1\cliff\APPLIC~1\Macromedia
[21/07/2008|21:40] C:\DOCUME~1\cliff\APPLIC~1\Microsoft
[06/01/2007|23:09] C:\DOCUME~1\cliff\APPLIC~1\Mozilla
[18/02/2008|17:47] C:\DOCUME~1\cliff\APPLIC~1\Real
[12/09/2006|11:36] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[12/09/2006|05:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[12/09/2006|11:36] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[13/06/2008|20:34] C:\DOCUME~1\holly\APPLIC~1\Adobe
[25/06/2008|16:16] C:\DOCUME~1\holly\APPLIC~1\AdobeUM
[14/06/2008|10:22] C:\DOCUME~1\holly\APPLIC~1\Apple Computer
[16/05/2008|18:34] C:\DOCUME~1\holly\APPLIC~1\Google
[25/06/2008|16:23] C:\DOCUME~1\holly\APPLIC~1\HP
[12/09/2006|11:36] C:\DOCUME~1\holly\APPLIC~1\Identities
[20/08/2007|14:15] C:\DOCUME~1\holly\APPLIC~1\Macromedia
[22/07/2008|19:43] C:\DOCUME~1\holly\APPLIC~1\Microsoft
[05/01/2007|21:05] C:\DOCUME~1\holly\APPLIC~1\Mobile Action
[24/02/2007|11:33] C:\DOCUME~1\holly\APPLIC~1\Mozilla
[09/09/2008|20:51] C:\DOCUME~1\holly\APPLIC~1\Real
[11/06/2008|19:12] C:\DOCUME~1\holly\APPLIC~1\Samsung
[14/09/2008|13:35] C:\DOCUME~1\holly\APPLIC~1\startcool
[08/06/2008|10:28] C:\DOCUME~1\holly\APPLIC~1\Sun
[14/06/2008|10:29] C:\DOCUME~1\jean\APPLIC~1\Adobe
[12/05/2008|20:47] C:\DOCUME~1\jean\APPLIC~1\AdobeUM
[25/12/2006|20:42] C:\DOCUME~1\jean\APPLIC~1\Apple Computer
[11/04/2007|14:12] C:\DOCUME~1\jean\APPLIC~1\CyberLink
[25/12/2006|19:49] C:\DOCUME~1\jean\APPLIC~1\Google
[11/04/2007|14:12] C:\DOCUME~1\jean\APPLIC~1\HP
[02/11/2007|22:56] C:\DOCUME~1\jean\APPLIC~1\ICAClient
[12/09/2006|11:36] C:\DOCUME~1\jean\APPLIC~1\Identities
[30/12/2006|21:23] C:\DOCUME~1\jean\APPLIC~1\InstallShield
[12/09/2006|05:13] C:\DOCUME~1\jean\APPLIC~1\Macromedia
[19/09/2008|08:12] C:\DOCUME~1\jean\APPLIC~1\Malwarebytes
[22/07/2008|08:51] C:\DOCUME~1\jean\APPLIC~1\Microsoft
[25/12/2006|19:58] C:\DOCUME~1\jean\APPLIC~1\Mozilla
[20/09/2008|18:20] C:\DOCUME~1\jean\APPLIC~1\OpenOffice.org2
[23/02/2007|10:05] C:\DOCUME~1\jean\APPLIC~1\Real
[23/01/2008|13:11] C:\DOCUME~1\jean\APPLIC~1\Samsung
[20/09/2008|19:14] C:\DOCUME~1\jean\APPLIC~1\startcool
[01/01/2007|19:47] C:\DOCUME~1\jean\APPLIC~1\Sun
[21/07/2008|21:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[27/04/2007|15:07] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[21/07/2008|21:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[30/06/2008|18:51] C:\DOCUME~1\peter\APPLIC~1\Adobe
[25/07/2007|18:03] C:\DOCUME~1\peter\APPLIC~1\Google
[12/09/2006|11:36] C:\DOCUME~1\peter\APPLIC~1\Identities
[27/01/2007|14:46] C:\DOCUME~1\peter\APPLIC~1\Macromedia
[11/09/2008|21:38] C:\DOCUME~1\peter\APPLIC~1\Microsoft
[27/01/2007|14:44] C:\DOCUME~1\peter\APPLIC~1\Mobile Action
[27/01/2007|14:45] C:\DOCUME~1\peter\APPLIC~1\Mozilla
[25/06/2007|08:03] C:\DOCUME~1\peter\APPLIC~1\Real
[21/06/2007|16:47] C:\DOCUME~1\peter\APPLIC~1\Sun
\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[20/09/2008 21:13] C:\WINDOWS\tasks\GoogleUpdateTaskUser.job
[20/09/2008 13:25] C:\WINDOWS\tasks\MP Scheduled Scan.job
[19/09/2008 22:10] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[20/09/2008 13:22] C:\WINDOWS\tasks\SA.DAT
[16/03/2006 05:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
\\ Listing Folders in C:\Program Files
[12/09/2006|05:15] C:\Program Files\Adobe
[25/12/2006|19:29] C:\Program Files\Alwil Software
[10/09/2008|21:15] C:\Program Files\Apple Software Update
[12/08/2007|18:48] C:\Program Files\Avanquest update
[21/07/2008|21:36] C:\Program Files\AVG
[10/09/2008|21:17] C:\Program Files\Bonjour
[02/11/2007|22:21] C:\Program Files\Citrix
[10/09/2008|21:15] C:\Program Files\Common Files
[12/09/2006|11:36] C:\Program Files\ComPlus Applications
[12/09/2006|05:37] C:\Program Files\CONEXANT
[13/07/2008|11:38] C:\Program Files\DIGStream
[25/12/2006|18:24] C:\Program Files\Easy Internet Signup
[12/09/2006|05:07] C:\Program Files\EnglishOtto
[12/09/2006|05:08] C:\Program Files\ESPNMotion
[12/09/2006|05:07] C:\Program Files\GemMaster
[27/02/2007|21:03] C:\Program Files\Google
[12/09/2006|05:37] C:\Program Files\Hewlett-Packard
[20/09/2008|13:12] C:\Program Files\HijackThis
[02/01/2007|16:06] C:\Program Files\HP
[25/12/2006|18:24] C:\Program Files\HPQ
[02/01/2007|21:28] C:\Program Files\iDump
[14/02/2008|14:45] C:\Program Files\InstallShield Installation Information
[12/09/2006|04:46] C:\Program Files\Intel
[14/08/2008|08:20] C:\Program Files\Internet Explorer
[10/09/2008|21:18] C:\Program Files\iPod
[10/09/2008|21:19] C:\Program Files\iTunes
[25/01/2008|17:02] C:\Program Files\Java
[19/09/2008|08:12] C:\Program Files\Malwarebytes' Anti-Malware
[14/08/2008|08:21] C:\Program Files\Messenger
[11/05/2008|08:27] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[12/09/2006|11:36] C:\Program Files\microsoft frontpage
[18/07/2008|15:52] C:\Program Files\Microsoft Office
[18/07/2008|15:53] C:\Program Files\Microsoft Works
[18/07/2008|15:52] C:\Program Files\Microsoft.NET
[30/12/2006|20:01] C:\Program Files\Motorola
[04/10/2007|19:26] C:\Program Files\Motorola Phone Tools
[12/09/2006|11:36] C:\Program Files\Movie Maker
[20/09/2008|19:16] C:\Program Files\Mozilla Firefox
[12/09/2006|11:36] C:\Program Files\MSN
[12/09/2006|11:36] C:\Program Files\MSN Gaming Zone
[25/12/2006|20:46] C:\Program Files\MSXML 4.0
[22/07/2008|19:23] C:\Program Files\NetMeeting
[12/09/2006|05:36] C:\Program Files\NetWaiting
[12/09/2006|05:23] C:\Program Files\Online Services
[25/01/2008|17:04] C:\Program Files\OpenOffice.org 2.3
[14/06/2007|07:55] C:\Program Files\Outlook Express
[10/09/2008|21:17] C:\Program Files\QuickTime
[23/02/2007|10:03] C:\Program Files\Real
[12/09/2006|05:10] C:\Program Files\RGB
[23/01/2008|12:45] C:\Program Files\Samsung
[12/09/2006|11:36] C:\Program Files\Sonic
[19/09/2008|14:00] C:\Program Files\Spybot - Search & Destroy
[15/08/2008|17:31] C:\Program Files\startcool
[12/09/2006|05:13] C:\Program Files\Synaptics
[12/09/2006|11:36] C:\Program Files\Uninstall Information
[18/09/2007|13:37] C:\Program Files\Windows Defender
[09/05/2008|16:45] C:\Program Files\Windows Live
[25/12/2006|20:50] C:\Program Files\Windows Media Player
[12/09/2006|11:36] C:\Program Files\Windows NT
[12/09/2006|11:36] C:\Program Files\Windows Plus
[12/09/2006|11:36] C:\Program Files\WindowsUpdate
[12/09/2006|11:36] C:\Program Files\xerox
[25/12/2006|19:52] C:\Program Files\Zone Labs
\\ Listing Folders in C:\Program Files\Common Files
[19/09/2007|10:25] C:\Program Files\Common Files\Adobe
[10/09/2008|21:17] C:\Program Files\Common Files\Apple
[28/12/2006|13:09] C:\Program Files\Common Files\Designer
[02/01/2007|16:06] C:\Program Files\Common Files\Hewlett-Packard
[12/09/2006|11:36] C:\Program Files\Common Files\HP
[12/09/2006|05:04] C:\Program Files\Common Files\InstallShield
[12/09/2006|11:36] C:\Program Files\Common Files\Java
[27/08/2008|09:07] C:\Program Files\Common Files\Microsoft Shared
[12/08/2007|18:54] C:\Program Files\Common Files\Motorola Shared
[12/09/2006|11:36] C:\Program Files\Common Files\MSSoap
[12/09/2006|11:36] C:\Program Files\Common Files\ODBC
[23/02/2007|10:03] C:\Program Files\Common Files\Real
[12/09/2006|11:36] C:\Program Files\Common Files\Services
[12/09/2006|11:36] C:\Program Files\Common Files\Sonic Shared
[12/09/2006|11:36] C:\Program Files\Common Files\SpeechEngines
[12/09/2006|11:36] C:\Program Files\Common Files\SureThing Shared
[25/12/2006|19:46] C:\Program Files\Common Files\Symantec Shared
[14/06/2007|07:55] C:\Program Files\Common Files\System
[12/09/2006|11:36] C:\Program Files\Common Files\TiVo Shared
[09/05/2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
[23/02/2007|10:04] C:\Program Files\Common Files\xing shared
\\ Process
( 70 Processes )
... OK !
\\ Searching with S_Lop
No Lop folder found !
\\ Searching for Lop Files - Folders
No Lop folder found !
\\ Searching within the Registry
..... OK !
\\ Checking the Hosts file
Hosts file CLEAN
\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-20 21:21:08
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
\\ Searching for other infections
No other infections found !
[F:14][D:95]-> C:\DOCUME~1\jean\LOCALS~1\Temp
[F:29][D:0]-> C:\DOCUME~1\jean\Cookies
[F:12253][D:15]-> C:\DOCUME~1\jean\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 20/09/2008|21:23 - Option : [2]
\\ Scan completed at 21:23:35
would like to say tho - since post 5 i havent had a pop up........:j MFi3 wannabee :j
mortgage owing 04.07 £36,000
mortgage owing 07.10 £0 !!!!
0 -
Can you post a new Hijack log?0
-
Logfile of HijackThis v1.99.1
Scan saved at 21:37:37, on 20/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\mqsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Documents and Settings\jean\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\HP\hpcoretech\comp\hptskmgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Java\jre1.6.0_03\bin\jucheck.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - !!06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - !!3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - !!53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - !!761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - !!9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O3 - Toolbar: &Google - !!2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hp\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [Reminder] C:\Windows\CREATOR\Remind_XP.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [!!0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\jean\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - !!08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - !!08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Send to OneNote - !!2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - !!2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - !!92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
O16 - DPF: !!5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
O16 - DPF: !!9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: livecall - !!828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - !!314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - !!828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - !!807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
how does this look now ??:j MFi3 wannabee :j
mortgage owing 04.07 £36,000
mortgage owing 07.10 £0 !!!!
0 -
looking pretty good - how's it running
I note that you are also running an old version of Adobe reader. You may wish to visit Secunia Inspector and let it scan - it is free and available here --> http://secunia.com/vulnerability_scanning/online/0 -
running ok at mo - no pops and no constant whirring away in the background
only thing slightly bothering me is the fact my windows firewall keeps getting turned off by something and the security centre is not recognising im running any protection so every time i turn on i get the balloon telling me this ?:j MFi3 wannabee :j
mortgage owing 04.07 £36,000
mortgage owing 07.10 £0 !!!!
0 -
you have Zonealarm firewall by the looks of it ??
if its causing you problems remove it and replace it with commodo
http://www.personalfirewall.comodo.com/download_firewall.html
you also need to do windows Updates
www.windowsupdate.comEx forum ambassador
Long term forum member0 -
yup i do - but i do do the windows updates
once again thanks to both of you so much for your help -:j MFi3 wannabee :j
mortgage owing 04.07 £36,000
mortgage owing 07.10 £0 !!!!
0 -
windows is not updating at the moment as you still have SP2 and Internet Explorer 6
should be SP3 and Internet Explorer 7
do a manual update
www.windowsupdate.comEx forum ambassador
Long term forum member0 -
i dont use IE so never bothered updating it - will do sp3 now tho:j MFi3 wannabee :j
mortgage owing 04.07 £36,000
mortgage owing 07.10 £0 !!!!
0 -
even if you don't use it , it's worth keeping it up to dateEx forum ambassador
Long term forum member0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 351K Banking & Borrowing
- 253.1K Reduce Debt & Boost Income
- 453.6K Spending & Discounts
- 244.1K Work, Benefits & Business
- 599K Mortgages, Homes & Bills
- 177K Life & Family
- 257.4K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards