📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

CiD pop up help :(

Options
2456

Comments

  • ~daisy~_2
    ~daisy~_2 Posts: 2,566 Forumite
    ok have just completed post 7's instructions - heres the log


    \\ Lop S&D 4.2.4-4 XP/Vista

    Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2
    X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) M CPU 420 @ 1.60GHz )
    BIOS : Ver 1.00PARTTBL
    USER : jean ( Administrator )
    BOOT : Normal boot
    C:\ (Local Disk) - NTFS - Total : 66 Go Free : 39 Go
    D:\ (Local Disk) - FAT32 - Total : 7 Go Free : 1 Go
    E:\ (CD or DVD)

    "C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
    Option : [2] ( 20/09/2008|21:19 )


    \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ FIX

    Deleted! - C:\DOCUME~1\jean\Cookies\jean@advertising[1].txt
    Deleted! - C:\DOCUME~1\jean\Cookies\jean@partypoker[2].txt
    Deleted! - C:\DOCUME~1\jean\Cookies\jean@www.lop[2].txt
    -
    [ Hosts file ] .. Restored!

    \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


    \\ Listing folders in APPLIC~1

    [12/09/2006|11:36] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
    [12/09/2006|05:13] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
    [21/07/2008|21:40] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

    [10/09/2008|21:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\!!3276BE95_AF08_429F_A64F_CA64CB79BCF6}
    [19/09/2007|10:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
    [10/09/2008|21:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
    [25/12/2006|20:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
    [21/07/2008|21:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
    [30/12/2006|21:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BVRP Software
    [12/09/2006|05:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
    [12/09/2006|05:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DIGStream
    [25/12/2006|19:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
    [12/09/2006|05:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
    [12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
    [19/09/2008|08:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
    [16/08/2008|09:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
    [18/07/2008|15:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
    [11/09/2008|07:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
    [12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
    [12/09/2006|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
    [19/09/2008|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
    [25/12/2006|19:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
    [19/09/2008|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
    [18/09/2007|13:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
    [14/06/2008|10:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

    [12/09/2006|11:36] C:\DOCUME~1\cliff\APPLIC~1\Identities
    [06/01/2007|23:10] C:\DOCUME~1\cliff\APPLIC~1\Macromedia
    [21/07/2008|21:40] C:\DOCUME~1\cliff\APPLIC~1\Microsoft
    [06/01/2007|23:09] C:\DOCUME~1\cliff\APPLIC~1\Mozilla
    [18/02/2008|17:47] C:\DOCUME~1\cliff\APPLIC~1\Real

    [12/09/2006|11:36] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
    [12/09/2006|05:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
    [12/09/2006|11:36] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

    [13/06/2008|20:34] C:\DOCUME~1\holly\APPLIC~1\Adobe
    [25/06/2008|16:16] C:\DOCUME~1\holly\APPLIC~1\AdobeUM
    [14/06/2008|10:22] C:\DOCUME~1\holly\APPLIC~1\Apple Computer
    [16/05/2008|18:34] C:\DOCUME~1\holly\APPLIC~1\Google
    [25/06/2008|16:23] C:\DOCUME~1\holly\APPLIC~1\HP
    [12/09/2006|11:36] C:\DOCUME~1\holly\APPLIC~1\Identities
    [20/08/2007|14:15] C:\DOCUME~1\holly\APPLIC~1\Macromedia
    [22/07/2008|19:43] C:\DOCUME~1\holly\APPLIC~1\Microsoft
    [05/01/2007|21:05] C:\DOCUME~1\holly\APPLIC~1\Mobile Action
    [24/02/2007|11:33] C:\DOCUME~1\holly\APPLIC~1\Mozilla
    [09/09/2008|20:51] C:\DOCUME~1\holly\APPLIC~1\Real
    [11/06/2008|19:12] C:\DOCUME~1\holly\APPLIC~1\Samsung
    [14/09/2008|13:35] C:\DOCUME~1\holly\APPLIC~1\startcool
    [08/06/2008|10:28] C:\DOCUME~1\holly\APPLIC~1\Sun

    [14/06/2008|10:29] C:\DOCUME~1\jean\APPLIC~1\Adobe
    [12/05/2008|20:47] C:\DOCUME~1\jean\APPLIC~1\AdobeUM
    [25/12/2006|20:42] C:\DOCUME~1\jean\APPLIC~1\Apple Computer
    [11/04/2007|14:12] C:\DOCUME~1\jean\APPLIC~1\CyberLink
    [25/12/2006|19:49] C:\DOCUME~1\jean\APPLIC~1\Google
    [11/04/2007|14:12] C:\DOCUME~1\jean\APPLIC~1\HP
    [02/11/2007|22:56] C:\DOCUME~1\jean\APPLIC~1\ICAClient
    [12/09/2006|11:36] C:\DOCUME~1\jean\APPLIC~1\Identities
    [30/12/2006|21:23] C:\DOCUME~1\jean\APPLIC~1\InstallShield
    [12/09/2006|05:13] C:\DOCUME~1\jean\APPLIC~1\Macromedia
    [19/09/2008|08:12] C:\DOCUME~1\jean\APPLIC~1\Malwarebytes
    [22/07/2008|08:51] C:\DOCUME~1\jean\APPLIC~1\Microsoft
    [25/12/2006|19:58] C:\DOCUME~1\jean\APPLIC~1\Mozilla
    [20/09/2008|18:20] C:\DOCUME~1\jean\APPLIC~1\OpenOffice.org2
    [23/02/2007|10:05] C:\DOCUME~1\jean\APPLIC~1\Real
    [23/01/2008|13:11] C:\DOCUME~1\jean\APPLIC~1\Samsung
    [20/09/2008|19:14] C:\DOCUME~1\jean\APPLIC~1\startcool
    [01/01/2007|19:47] C:\DOCUME~1\jean\APPLIC~1\Sun

    [21/07/2008|21:40] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
    [27/04/2007|15:07] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla

    [21/07/2008|21:52] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

    [30/06/2008|18:51] C:\DOCUME~1\peter\APPLIC~1\Adobe
    [25/07/2007|18:03] C:\DOCUME~1\peter\APPLIC~1\Google
    [12/09/2006|11:36] C:\DOCUME~1\peter\APPLIC~1\Identities
    [27/01/2007|14:46] C:\DOCUME~1\peter\APPLIC~1\Macromedia
    [11/09/2008|21:38] C:\DOCUME~1\peter\APPLIC~1\Microsoft
    [27/01/2007|14:44] C:\DOCUME~1\peter\APPLIC~1\Mobile Action
    [27/01/2007|14:45] C:\DOCUME~1\peter\APPLIC~1\Mozilla
    [25/06/2007|08:03] C:\DOCUME~1\peter\APPLIC~1\Real
    [21/06/2007|16:47] C:\DOCUME~1\peter\APPLIC~1\Sun

    \\ Scheduled Tasks located in C:\WINDOWS\Tasks

    [20/09/2008 21:13] C:\WINDOWS\tasks\GoogleUpdateTaskUser.job
    [20/09/2008 13:25] C:\WINDOWS\tasks\MP Scheduled Scan.job
    [19/09/2008 22:10] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    [20/09/2008 13:22] C:\WINDOWS\tasks\SA.DAT
    [16/03/2006 05:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

    \\ Listing Folders in C:\Program Files

    [12/09/2006|05:15] C:\Program Files\Adobe
    [25/12/2006|19:29] C:\Program Files\Alwil Software
    [10/09/2008|21:15] C:\Program Files\Apple Software Update
    [12/08/2007|18:48] C:\Program Files\Avanquest update
    [21/07/2008|21:36] C:\Program Files\AVG
    [10/09/2008|21:17] C:\Program Files\Bonjour
    [02/11/2007|22:21] C:\Program Files\Citrix
    [10/09/2008|21:15] C:\Program Files\Common Files
    [12/09/2006|11:36] C:\Program Files\ComPlus Applications
    [12/09/2006|05:37] C:\Program Files\CONEXANT
    [13/07/2008|11:38] C:\Program Files\DIGStream
    [25/12/2006|18:24] C:\Program Files\Easy Internet Signup
    [12/09/2006|05:07] C:\Program Files\EnglishOtto
    [12/09/2006|05:08] C:\Program Files\ESPNMotion
    [12/09/2006|05:07] C:\Program Files\GemMaster
    [27/02/2007|21:03] C:\Program Files\Google
    [12/09/2006|05:37] C:\Program Files\Hewlett-Packard
    [20/09/2008|13:12] C:\Program Files\HijackThis
    [02/01/2007|16:06] C:\Program Files\HP
    [25/12/2006|18:24] C:\Program Files\HPQ
    [02/01/2007|21:28] C:\Program Files\iDump
    [14/02/2008|14:45] C:\Program Files\InstallShield Installation Information
    [12/09/2006|04:46] C:\Program Files\Intel
    [14/08/2008|08:20] C:\Program Files\Internet Explorer
    [10/09/2008|21:18] C:\Program Files\iPod
    [10/09/2008|21:19] C:\Program Files\iTunes
    [25/01/2008|17:02] C:\Program Files\Java
    [19/09/2008|08:12] C:\Program Files\Malwarebytes' Anti-Malware
    [14/08/2008|08:21] C:\Program Files\Messenger
    [11/05/2008|08:27] C:\Program Files\Microsoft CAPICOM 2.1.0.2
    [12/09/2006|11:36] C:\Program Files\microsoft frontpage
    [18/07/2008|15:52] C:\Program Files\Microsoft Office
    [18/07/2008|15:53] C:\Program Files\Microsoft Works
    [18/07/2008|15:52] C:\Program Files\Microsoft.NET
    [30/12/2006|20:01] C:\Program Files\Motorola
    [04/10/2007|19:26] C:\Program Files\Motorola Phone Tools
    [12/09/2006|11:36] C:\Program Files\Movie Maker
    [20/09/2008|19:16] C:\Program Files\Mozilla Firefox
    [12/09/2006|11:36] C:\Program Files\MSN
    [12/09/2006|11:36] C:\Program Files\MSN Gaming Zone
    [25/12/2006|20:46] C:\Program Files\MSXML 4.0
    [22/07/2008|19:23] C:\Program Files\NetMeeting
    [12/09/2006|05:36] C:\Program Files\NetWaiting
    [12/09/2006|05:23] C:\Program Files\Online Services
    [25/01/2008|17:04] C:\Program Files\OpenOffice.org 2.3
    [14/06/2007|07:55] C:\Program Files\Outlook Express
    [10/09/2008|21:17] C:\Program Files\QuickTime
    [23/02/2007|10:03] C:\Program Files\Real
    [12/09/2006|05:10] C:\Program Files\RGB
    [23/01/2008|12:45] C:\Program Files\Samsung
    [12/09/2006|11:36] C:\Program Files\Sonic
    [19/09/2008|14:00] C:\Program Files\Spybot - Search & Destroy
    [15/08/2008|17:31] C:\Program Files\startcool
    [12/09/2006|05:13] C:\Program Files\Synaptics
    [12/09/2006|11:36] C:\Program Files\Uninstall Information
    [18/09/2007|13:37] C:\Program Files\Windows Defender
    [09/05/2008|16:45] C:\Program Files\Windows Live
    [25/12/2006|20:50] C:\Program Files\Windows Media Player
    [12/09/2006|11:36] C:\Program Files\Windows NT
    [12/09/2006|11:36] C:\Program Files\Windows Plus
    [12/09/2006|11:36] C:\Program Files\WindowsUpdate
    [12/09/2006|11:36] C:\Program Files\xerox
    [25/12/2006|19:52] C:\Program Files\Zone Labs

    \\ Listing Folders in C:\Program Files\Common Files

    [19/09/2007|10:25] C:\Program Files\Common Files\Adobe
    [10/09/2008|21:17] C:\Program Files\Common Files\Apple
    [28/12/2006|13:09] C:\Program Files\Common Files\Designer
    [02/01/2007|16:06] C:\Program Files\Common Files\Hewlett-Packard
    [12/09/2006|11:36] C:\Program Files\Common Files\HP
    [12/09/2006|05:04] C:\Program Files\Common Files\InstallShield
    [12/09/2006|11:36] C:\Program Files\Common Files\Java
    [27/08/2008|09:07] C:\Program Files\Common Files\Microsoft Shared
    [12/08/2007|18:54] C:\Program Files\Common Files\Motorola Shared
    [12/09/2006|11:36] C:\Program Files\Common Files\MSSoap
    [12/09/2006|11:36] C:\Program Files\Common Files\ODBC
    [23/02/2007|10:03] C:\Program Files\Common Files\Real
    [12/09/2006|11:36] C:\Program Files\Common Files\Services
    [12/09/2006|11:36] C:\Program Files\Common Files\Sonic Shared
    [12/09/2006|11:36] C:\Program Files\Common Files\SpeechEngines
    [12/09/2006|11:36] C:\Program Files\Common Files\SureThing Shared
    [25/12/2006|19:46] C:\Program Files\Common Files\Symantec Shared
    [14/06/2007|07:55] C:\Program Files\Common Files\System
    [12/09/2006|11:36] C:\Program Files\Common Files\TiVo Shared
    [09/05/2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
    [23/02/2007|10:04] C:\Program Files\Common Files\xing shared

    \\ Process

    ( 70 Processes )

    ... OK !

    \\ Searching with S_Lop

    No Lop folder found !

    \\ Searching for Lop Files - Folders

    No Lop folder found !

    \\ Searching within the Registry

    ..... OK !

    \\ Checking the Hosts file

    Hosts file CLEAN


    \\ Searching for hidden files with Catchme

    catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-09-20 21:21:08
    Windows 5.1.2600 Service Pack 2 NTFS
    scanning hidden processes ...
    scanning hidden files ...
    scan completed successfully
    hidden processes: 0
    hidden files: 0

    \\ Searching for other infections


    No other infections found !

    [F:14][D:95]-> C:\DOCUME~1\jean\LOCALS~1\Temp
    [F:29][D:0]-> C:\DOCUME~1\jean\Cookies
    [F:12253][D:15]-> C:\DOCUME~1\jean\TEMPOR~1\content.IE5

    1 - "C:\Lop SD\LopR_1.txt" - 20/09/2008|21:23 - Option : [2]

    \\ Scan completed at 21:23:35


    would like to say tho - since post 5 i havent had a pop up........
    :j MFi3 wannabee :j
    mortgage owing 04.07 £36,000
    mortgage owing 07.10 £0 !!!!
  • Can you post a new Hijack log?
  • ~daisy~_2
    ~daisy~_2 Posts: 2,566 Forumite
    Logfile of HijackThis v1.99.1
    Scan saved at 21:37:37, on 20/09/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\eHome\ehRecvr.exe
    C:\WINDOWS\eHome\ehSched.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    C:\WINDOWS\system32\mqsvc.exe
    C:\PROGRA~1\AVG\AVG8\avgrsx.exe
    C:\WINDOWS\system32\mqtgsvc.exe
    C:\PROGRA~1\AVG\AVG8\avgemc.exe
    C:\WINDOWS\system32\dllhost.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\ehome\ehtray.exe
    C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
    C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    C:\WINDOWS\eHome\ehmsas.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\HP\QuickPlay\QPService.exe
    C:\Program Files\Hp\HP Software Update\HPWuSchd.exe
    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Google\Gmail Notifier\gnotify.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\PROGRA~1\AVG\AVG8\avgtray.exe
    C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Documents and Settings\jean\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    C:\Program Files\HP\hpcoretech\comp\hptskmgr.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\Program Files\Java\jre1.6.0_03\bin\jucheck.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: Adobe PDF Reader Link Helper - !!06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - !!3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
    O2 - BHO: Spybot-S&D IE Protection - !!53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - !!761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - !!9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
    O3 - Toolbar: &Google - !!2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
    O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
    O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
    O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hp\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
    O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
    O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
    O4 - HKLM\..\Run: [Reminder] C:\Windows\CREATOR\Remind_XP.exe
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [!!0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\jean\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - !!08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - !!08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Send to OneNote - !!2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - !!2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - !!92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
    O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=64&bd=presario&pf=laptop
    O16 - DPF: !!5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
    O16 - DPF: !!9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
    O18 - Protocol: livecall - !!828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Protocol: ms-help - !!314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    O18 - Protocol: msnim - !!828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Filter hijack: text/xml - !!807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
    O20 - AppInit_DLLs: avgrsstx.dll
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
    O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    how does this look now ??
    :j MFi3 wannabee :j
    mortgage owing 04.07 £36,000
    mortgage owing 07.10 £0 !!!!
  • looking pretty good - how's it running

    I note that you are also running an old version of Adobe reader. You may wish to visit Secunia Inspector and let it scan - it is free and available here --> http://secunia.com/vulnerability_scanning/online/
  • ~daisy~_2
    ~daisy~_2 Posts: 2,566 Forumite
    running ok at mo - no pops and no constant whirring away in the background

    only thing slightly bothering me is the fact my windows firewall keeps getting turned off by something and the security centre is not recognising im running any protection so every time i turn on i get the balloon telling me this ?
    :j MFi3 wannabee :j
    mortgage owing 04.07 £36,000
    mortgage owing 07.10 £0 !!!!
  • Browntoa
    Browntoa Posts: 49,604 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    you have Zonealarm firewall by the looks of it ??

    if its causing you problems remove it and replace it with commodo

    http://www.personalfirewall.comodo.com/download_firewall.html

    you also need to do windows Updates

    www.windowsupdate.com
    Ex forum ambassador

    Long term forum member
  • ~daisy~_2
    ~daisy~_2 Posts: 2,566 Forumite
    yup i do - but i do do the windows updates

    once again thanks to both of you so much for your help - :):)
    :j MFi3 wannabee :j
    mortgage owing 04.07 £36,000
    mortgage owing 07.10 £0 !!!!
  • Browntoa
    Browntoa Posts: 49,604 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    windows is not updating at the moment as you still have SP2 and Internet Explorer 6

    should be SP3 and Internet Explorer 7

    do a manual update

    www.windowsupdate.com
    Ex forum ambassador

    Long term forum member
  • ~daisy~_2
    ~daisy~_2 Posts: 2,566 Forumite
    i dont use IE so never bothered updating it - will do sp3 now tho
    :j MFi3 wannabee :j
    mortgage owing 04.07 £36,000
    mortgage owing 07.10 £0 !!!!
  • Browntoa
    Browntoa Posts: 49,604 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    even if you don't use it , it's worth keeping it up to date ;)
    Ex forum ambassador

    Long term forum member
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.6K Spending & Discounts
  • 244.1K Work, Benefits & Business
  • 599K Mortgages, Homes & Bills
  • 177K Life & Family
  • 257.4K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.