| | |
| Thread Tools |
28-Oct-2009, 11:50 AM
#16 | |||||
| I've run the Malwarebytes and Superantispyware scans and fixed what they found. What's next? Here's the HiJackList log: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:48:23 AM, on 10/28/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\AVG\AVG9\avgemc.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Say the Time\SayTime.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\Program Files\HPQ\SHARED\HPQWMI.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Program Files\AVG\AVG9\avgscanx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0 O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [hpWirelessAssistant] "C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Say the Time] "C:\Program Files\Say the Time\SayTime.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - Startup: VZAccess Manager.lnk = C:\Program Files\Verizon Wireless\VZAccess Manager\VZAccess Manager.exe O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q305&bd=pavilion&pf=laptop O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 6216 bytes
__________________ HP Pavilion zv6000 Series Laptop 100 GB Hard Drive 512MB RAM AMD 64 Anthion Processor Window XP Zone Alarm Firewall and AVG Anti-Virus Last edited by comp.idiot; 28-Oct-2009 at 01:47 PM.. |
| |
28-Oct-2009, 04:23 PM
#17 | ||||||
| Quote:
----------------------------------------------------------------- Do a scan with HijackThis, then put a checkmark in O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe then click Fix Checked - Yes, then close HijackThis. ---------------------------------------------------------------- Start Malwarebytes and go to Logs(tab), highlight the log entry and then click Open, save the log in Notepad, then return here and post it here. Start SUPERAntiSpyware and go to Preferences - Statistics/Logs(tab), highlight the log entry and then click View Log, save the log in Notepad, then return here and post it here. ---------------------------------------------------------------- Unless something else needs to be addressed, we're going to trim down the startup load next. --------------------------------------------------------------- |
28-Oct-2009, 06:38 PM
#18 | |||||
| ZoneAlarm Security Alert Repeat program Java(TM) Platform SE binary is try to access the Internet Aplication: jusched.exe Can you tell me why I keep getting this? Should I allow when I do see it? ============================================================== Malwarebytes' Anti-Malware 1.41 Database version: 3045 Windows 5.1.2600 Service Pack 3 10/28/2009 1:35:48 AM mbam-log-2009-10-28 (01-35-48).txt Scan type: Quick Scan Objects scanned: 117952 Time elapsed: 20 minute(s), 25 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) ========================================== SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 10/28/2009 at 02:18 AM Application Version : 4.29.1004 Core Rules Database Version : 4203 Trace Rules Database Version: 2111 Scan type : Quick Scan Total Scan Time : 00:36:52 Memory items scanned : 423 Memory threats detected : 0 Registry items scanned : 472 Registry threats detected : 3 File items scanned : 8643 File threats detected : 343 Adware.Tracking Cookie C:\Documents and Settings\Owner\Cookies\owner@cdn4.specificclick[1].txt C:\Documents and Settings\Owner\Cookies\owner@content.yieldmanager[2].txt C:\Documents and Settings\Owner\Cookies\owner@adcentriconline[1].txt C:\Documents and Settings\Owner\Cookies\owner@advertising[2].txt C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[5].txt C:\Documents and Settings\Owner\Cookies\owner@oasn04.247realmedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@247realmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.contactmusic[1].txt C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt C:\Documents and Settings\Owner\Cookies\owner@zillow.adbureau[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@kontera[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.undertone[2].txt C:\Documents and Settings\Owner\Cookies\owner@questionmarket[1].txt C:\Documents and Settings\Owner\Cookies\owner@highbeam.122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@adserve.gossipgirls[1].txt C:\Documents and Settings\Owner\Cookies\owner@cz5.clickzs[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.mvol[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@media6degrees[1].txt C:\Documents and Settings\Owner\Cookies\owner@1821170[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@adserving.autotrader[1].txt C:\Documents and Settings\Owner\Cookies\owner@peoplefinders[1].txt C:\Documents and Settings\Owner\Cookies\owner@realmedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[3].txt C:\Documents and Settings\Owner\Cookies\owner@fortunecity[2].txt C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.techguy[1].txt C:\Documents and Settings\Owner\Cookies\owner@statcounter[2].txt C:\Documents and Settings\Owner\Cookies\owner@2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@specificclick[1].txt C:\Documents and Settings\Owner\Cookies\owner@stats[1].txt C:\Documents and Settings\Owner\Cookies\owner@yadro[2].txt C:\Documents and Settings\Owner\Cookies\owner@counter.top.chebra[1].txt C:\Documents and Settings\Owner\Cookies\owner@apmebf[2].txt C:\Documents and Settings\Owner\Cookies\owner@usatoday1.112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@dc.tremormedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@qnsr[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.torrentreactor[2].txt C:\Documents and Settings\Owner\Cookies\owner@adtech[2].txt C:\Documents and Settings\Owner\Cookies\owner@eyewonder[2].txt C:\Documents and Settings\Owner\Cookies\owner@eas4.emediate[2].txt C:\Documents and Settings\Owner\Cookies\owner@richmedia.yahoo[2].txt C:\Documents and Settings\Owner\Cookies\owner@interclick[1].txt C:\Documents and Settings\Owner\Cookies\owner@a1.interclick[1].txt C:\Documents and Settings\Owner\Cookies\owner@adserver.adtechus[1].txt C:\Documents and Settings\Owner\Cookies\owner@at.atwola[1].txt C:\Documents and Settings\Owner\Cookies\owner@atdmt[1].txt C:\Documents and Settings\Owner\Cookies\owner@yieldmanager[2].txt C:\Documents and Settings\Owner\Cookies\owner@collective-media[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.bridgetrack[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@toplist[1].txt C:\Documents and Settings\Owner\Cookies\owner@ak[2].txt C:\Documents and Settings\Owner\Cookies\owner@insightexpressai[1].txt C:\Documents and Settings\Owner\Cookies\owner@projectm[3].txt C:\Documents and Settings\Owner\Cookies\owner@vip2.clickzs[2].txt C:\Documents and Settings\Owner\Cookies\owner@adinterax[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@specificmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@trafficmp[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[2].txt C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.ad4game[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@overture[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@zanox-affiliate[1].txt C:\Documents and Settings\Owner\Cookies\owner@stat.onestat[1].txt C:\Documents and Settings\Owner\Cookies\owner@doubleclick[2].txt C:\Documents and Settings\Owner\Cookies\owner@gadget[1].txt C:\Documents and Settings\Owner\Cookies\owner@ad.ieurop[2].txt C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt C:\Documents and Settings\Owner\Cookies\owner@serving-sys[1].txt C:\Documents and Settings\Owner\Cookies\owner@1054532681[1].txt C:\Documents and Settings\Owner\Cookies\owner@nhl.112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@onestopinternet.122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@www.zanox-affiliate[1].txt C:\Documents and Settings\Owner\Cookies\owner@iacas.adbureau[1].txt C:\Documents and Settings\Owner\Cookies\owner@st[4].txt C:\Documents and Settings\Owner\Cookies\owner@st[8].txt C:\Documents and Settings\Owner\Cookies\owner@www.usenext[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@imagevenue.advertserve[2].txt C:\Documents and Settings\Owner\Cookies\owner@findlaw[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@www.peoplefinders[2].txt C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[1].txt C:\Documents and Settings\Owner\Cookies\owner@112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@admarketplace[1].txt C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[4].txt C:\Documents and Settings\Owner\Cookies\owner@adecn[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.fulldls[2].txt C:\Documents and Settings\Owner\Cookies\owner@vip.clickzs[1].txt C:\Documents and Settings\Owner\Cookies\owner@lfstmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@cz11.clickzs[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@8793[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@sportingnews.122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@burstbeacon[2].txt C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkywgc5aeq.stats.esomniture[1].txt C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.veryfunnyads[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@clicksor[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.monster[1].txt C:\Documents and Settings\Owner\Cookies\owner@dmtracker[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.egotastic[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@st[7].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@optimize.indieclick[2].txt C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt C:\Documents and Settings\Owner\Cookies\owner@adlegend[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.lycos[2].txt C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[1].txt C:\Documents and Settings\Owner\Cookies\owner@a7.adserver01[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.adgator.co[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@trinitymirror.112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@nextag[1].txt C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.crossworxs[1].txt C:\Documents and Settings\Owner\Cookies\owner@msnbc.112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@driverside.122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@delivery.trafficjunky[1].txt C:\Documents and Settings\Owner\Cookies\owner@st[3].txt C:\Documents and Settings\Owner\Cookies\owner@adrevolver[2].txt C:\Documents and Settings\Owner\Cookies\owner@mediaplex[2].txt C:\Documents and Settings\Owner\Cookies\owner@ggrind.adbureau[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.thegauntlet[2].txt C:\Documents and Settings\Owner\Cookies\owner@intermundomedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@thefind[2].txt C:\Documents and Settings\Owner\Cookies\owner@xml.trafficengine[2].txt C:\Documents and Settings\Owner\Cookies\owner@shopica[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.crakmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@myroitracking[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@media.legacy[2].txt C:\Documents and Settings\Owner\Cookies\owner@invitemedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@thetrafficcontrol[2].txt C:\Documents and Settings\Owner\Cookies\owner@www.zango[2].txt C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[2].txt C:\Documents and Settings\Owner\Cookies\owner@pro-market[1].txt C:\Documents and Settings\Owner\Cookies\owner@www.socialtrack[1].txt C:\Documents and Settings\Owner\Cookies\owner@tracking.foxnews[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@hookedmediagroup[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@tripod[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.wheresgeorge[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@server.cpmstar[2].txt C:\Documents and Settings\Owner\Cookies\owner@web4.realtracker[1].txt C:\Documents and Settings\Owner\Cookies\owner@bridge2.admarketplace[1].txt C:\Documents and Settings\Owner\Cookies\owner@ehg-indemand.hitbox[2].txt C:\Documents and Settings\Owner\Cookies\owner@crackle[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@ads.adgoto[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@zedo[1].txt C:\Documents and Settings\Owner\Cookies\owner@lucidmedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@googleads.g.doubleclick[2].txt C:\Documents and Settings\Owner\Cookies\owner@ts.protraffic[2].txt C:\Documents and Settings\Owner\Cookies\owner@1].txt C:\Documents and Settings\Owner\Cookies\owner@hearstugo.112.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@click.iieq[2].txt C:\Documents and Settings\Owner\Cookies\owner@xiti[1].txt C:\Documents and Settings\Owner\Cookies\owner@pointroll[2].txt C:\Documents and Settings\Owner\Cookies\owner@rotator.adjuggler[2].txt C:\Documents and Settings\Owner\Cookies\owner@z.blogads[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@media.adfrontiers[1].txt C:\Documents and Settings\Owner\Cookies\owner@bridge1.admarketplace[1].txt C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@rts.pgmediaserve[1].txt C:\Documents and Settings\Owner\Cookies\owner@network.realmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@user-activity-tracking[1].txt C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt C:\Documents and Settings\Owner\Cookies\owner@go[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@casalemedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@ru4[1].txt C:\Documents and Settings\Owner\Cookies\owner@affiliates.commissionaccount[2].txt C:\Documents and Settings\Owner\Cookies\owner@adprotraffic[1].txt C:\Documents and Settings\Owner\Cookies\owner@gostats[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@smartadserver[1].txt C:\Documents and Settings\Owner\Cookies\owner@advertising.[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@breakmedia.checkm8[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ad.ad-srv[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ad1.clickhype[1].txt C:\Documents and Settings\Owner\Cookies\owner@banner.kiev[2].txt C:\Documents and Settings\Owner\Cookies\owner@azjmp[1].txt C:\Documents and Settings\Owner\Cookies\owner@media.adrevolver[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.bootcampmedia[2].txt C:\Documents and Settings\Owner\Cookies\owner@toyboxxx[1].txt C:\Documents and Settings\Owner\Cookies\owner@revenue[2].txt C:\Documents and Settings\Owner\Cookies\owner@1].txt C:\Documents and Settings\Owner\Cookies\owner@eurosport[1].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@adserver.uproxx[2].txt C:\Documents and Settings\Owner\Cookies\owner@media.photobucket[1].txt C:\Documents and Settings\Owner\Cookies\owner@adv.ecape[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads.bnmedia[1].txt C:\Documents and Settings\Owner\Cookies\owner@adserver.adreactor[1].txt C:\Documents and Settings\Owner\Cookies\owner@hosted.zango[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@t[2].txt C:\Documents and Settings\Owner\Cookies\owner@yahoouk[1].txt C:\Documents and Settings\Owner\Cookies\owner@oddcast[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@revsci[1].txt C:\Documents and Settings\Owner\Cookies\owner@cz3.clickzs[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@hitbox[2].txt C:\Documents and Settings\Owner\Cookies\owner@axxessads.valuead[2].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@counter.hitslink[1].txt C:\Documents and Settings\Owner\Cookies\owner@kodakimagingnetwork.122.2o7[1].txt C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfl4qidpclq.stats.esomniture[1].txt C:\Documents and Settings\Owner\Cookies\owner@clicks.adengage[1].txt C:\Documents and Settings\Owner\Cookies\owner@ads[2].txt C:\Documents and Settings\Owner\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Cookies\owner@click.mediadome[2].txt C:\Documents and Settings\Owner\Cookies\owner@list[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@data.coremetrics[1].txt C:\Documents and Settings\Owner\Cookies\owner@www.halstats[1].txt C:\Documents and Settings\Owner\Cookies\owner@validclick[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlowocjoap.stats.esomniture[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@247realmedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@2o7[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@a1.interclick[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@accounts[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@accounts[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ad.associatedcontent[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ad.yieldmanager[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ad2.doublepimp[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@adbrite[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.associatedcontent[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.bridgetrack[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.lockedonmedia[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.midatc[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.mvol[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.pointroll[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.techguy[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ads.undertone[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@adserver.adtechus[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@advertising[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@apmebf[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@associatedcontent.112.2o7[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@at.atwola[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@atdmt[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@bravenet[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@bs.serving-sys[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@burstbeacon[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@burstnet[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@casalemedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@cdn4.specificclick[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@clicksor[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@collective-media[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@content.yieldmanager[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@cratebarrel.112.2o7[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@doubleclick[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@e-2dj6wjnyemcjgap.stats.esomniture[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ehg-emmiscommunications.hitbox[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@ehg-verizon.hitbox[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@fastclick[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@hitbox[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@interclick[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@invitemedia[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@jpmorganchase.112.2o7[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@kontera[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@lfstmedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@linksynergy[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@lockedonmedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@lucidmedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@media6degrees[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@mediaplex[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@myroitracking[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@oasn04.247realmedia[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@overture[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@questionmarket[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@realmedia[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@revsci[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@richmedia.yahoo[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@serving-sys[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@specificclick[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@specificmedia[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@statcounter[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@stats.adbrite[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@statse.webtrendslive[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@tacoda[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@toplist[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@tracking.foxnews[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@trafficmp[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@www.burstbeacon[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@www.burstnet[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@www.1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@yieldmanager[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@zedo[1].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@zillow.adbureau[2].txt C:\Documents and Settings\Owner\Local Settings\Temp\Cookies\owner@zoobanner[2].txt Rogue.Component/Trace HKLM\Software\Microsoft\75A1679F HKLM\Software\Microsoft\75A1679F#75a1679f HKLM\Software\Microsoft\75A1679F#Version Dialer.Hiberfil/SYS C:\DOCUMENTS AND SETTINGS\OWNER\LOCAL SETTINGS\TEMP\NSW37F.TMP\SERVICES.DLL
__________________ HP Pavilion zv6000 Series Laptop 100 GB Hard Drive 512MB RAM AMD 64 Anthion Processor Window XP Zone Alarm Firewall and AVG Anti-Virus Last edited by comp.idiot; 28-Oct-2009 at 06:54 PM.. |
29-Oct-2009, 10:50 AM
#19 | ||||||
| Start SUPERAntiSpyware and run another "quick scan" with it, select and fix anything else it finds, then post that new scan log here. ---------------------------------------------------------------- jusched.exe is associated with your java program. It's OK to allow it to access the internet. It's probably checking for a new updated version. ---------------------------------------------------------------- |
29-Oct-2009, 12:36 PM
#20 | |||||
| I have a lot of trouble loggin onto this site sometimes. The top banner will appear but it just locks up and doesn't finish opening the page. Here's the SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 10/29/2009 at 11:21 AM Application Version : 4.29.1004 Core Rules Database Version : 4203 Trace Rules Database Version: 2111 Scan type : Quick Scan Total Scan Time : 00:41:29 Memory items scanned : 456 Memory threats detected : 0 Registry items scanned : 435 Registry threats detected : 0 File items scanned : 8928 File threats detected : 0
__________________ HP Pavilion zv6000 Series Laptop 100 GB Hard Drive 512MB RAM AMD 64 Anthion Processor Window XP Zone Alarm Firewall and AVG Anti-Virus |
29-Oct-2009, 12:43 PM
#21 | ||||||
| Enjoyed reading your postings, flavallee, and tracking the suggestions. I might have had comp.idiot open up Search and Destroy before removing it because it has a more user-friendly start-up list than msconfig or HiJack This! ever will. (In S&D, go to Advanced Mode, Tools, System Startup section, you can see for each item the filename, status, Value and a description, which S&D gets by referring to Paul Collins' Startup list (or Pacman, if you know him by that.) Of course, there are a lot of other programs that do the same job, but it was already there....
__________________ Iowa? I could have sworn this was heaven. Well, I think I can answer this question most successfully in mime. My theme song... | Affero - rate me! |
29-Oct-2009, 12:46 PM
#22 | ||||||
| Do a scan and then post a new HijackThis log here. --------------------------------------------------------------- Quote:
--------------------------------------------------------------- |
29-Oct-2009, 12:53 PM
#23 | ||||||
| slurpee: I've never accessed and used the startup list in Spybot. I discourage users from using both Spybot and Ad-Aware because they're bloated and not user-friendly and can be problematic. ----------------------------------------------------------------- |
29-Oct-2009, 12:53 PM
#24 | |||||
| Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 11:53:10 AM, on 10/29/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\AVG\AVG9\avgemc.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Say the Time\SayTime.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\Program Files\HPQ\SHARED\HPQWMI.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0 O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [hpWirelessAssistant] "C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Say the Time] "C:\Program Files\Say the Time\SayTime.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - Startup: VZAccess Manager.lnk = C:\Program Files\Verizon Wireless\VZAccess Manager\VZAccess Manager.exe O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q305&bd=pavilion&pf=laptop O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 6002 bytes
__________________ HP Pavilion zv6000 Series Laptop 100 GB Hard Drive 512MB RAM AMD 64 Anthion Processor Window XP Zone Alarm Firewall and AVG Anti-Virus |
29-Oct-2009, 01:11 PM
#25 | ||||||
| Click Start - Run, type in MSCONFIG and then click OK - Startup(tab). Remove the checkmark in: (Note: .exe may be missing from the file name in your computer.) ISUSPM Startup c:\progra~1\common~1\instal~1\update~1\isuspm.exe http://www.sysinfo.org/startuplist.p...ISUSPM+Startup Adobe Reader Speed Launcher C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe http://www.sysinfo.org/startuplist.p...=Reader_sl.exe SunJavaUpdateSched C:\Program Files\Java\jre6\bin\jusched.exe http://www.sysinfo.org/startuplist.p...er=jusched.exe QuickTime Task C:\Program Files\QuickTime\qttask.exe http://www.sysinfo.org/startuplist.p...ter=qttask.exe ISUSScheduler C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe http://www.sysinfo.org/startuplist.p...=ISUSScheduler Google Updater C:\Program Files\Google\Google Updater\GoogleUpdater.exe http://www.sysinfo.org/startuplist.p...Google+Updater After you're done, click Apply - OK - Exit Without Restart. Click Start - Run, type in SERVICES.MSC and then click OK. Expand the window to see the list clearly. Right-click and then click Properties on: ATI HotKey Poller HP WMI Interface Java Quick Starter If "Startup Type" is on Automatic, change it to Manual, then click Apply - OK. After you're done, close the window and restart your computer. When the small System Configuration Utility window(see screenshot) appears during restart, ignore the message. Put a checkmark in that window and then click OK. Start HijackThis and run a scan, then post that new updated log here. ---------------------------------------------------------------- Last edited by flavallee; 29-Oct-2009 at 01:18 PM.. |
29-Oct-2009, 01:46 PM
#26 | ||||||
| Quote:
I just noted it was on there and thought it could be used since it was a tool that was there. (It came to my mind because, well, it was one of the very first programs I used for that instead of msconfig, and that was probably 20 years ago or more!) ![]()
__________________ Iowa? I could have sworn this was heaven. Well, I think I can answer this question most successfully in mime. My theme song... | Affero - rate me! |
29-Oct-2009, 02:52 PM
#27 | |||||
| I don't know if it makes a difference, but I restarted the computer after unchecking those listed, because I read your post wrong. I completed the other tasks and rebooted it again. One problem I have is the audio when I play a DVD. This was the case before we started working on my computer. It cuts out and is jumpy when playing a DVD. The video portion works fine, but the audio is awful. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 1:45:55 PM, on 10/29/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\AVG\AVG9\avgemc.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Say the Time\SayTime.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\HPQ\SHARED\HPQWMI.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0 O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [hpWirelessAssistant] "C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [Say the Time] "C:\Program Files\Say the Time\SayTime.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q305&bd=pavilion&pf=laptop O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 5033 bytes
__________________ HP Pavilion zv6000 Series Laptop 100 GB Hard Drive 512MB RAM AMD 64 Anthion Processor Window XP Zone Alarm Firewall and AVG Anti-Virus |
29-Oct-2009, 06:27 PM
#28 | ||||||
| Quote:
------------------------------------------------------------------ Quote:
Advise what's listed in that heading. There should about 4 - 5 entries. Make sure to spell and post them here correctly. You've got a program called "Save The Time" that's loading during startup and running in the background. I don't know if it's the cause of your audio problem. Did you install it? ---------------------------------------------------------------- Last edited by flavallee; 29-Oct-2009 at 06:35 PM.. |
29-Oct-2009, 06:46 PM
#29 | |||||
| Audio Codecs Conexant AC-Link Audio Legacy Audio Drivers Legacy Video Capture Devices Media Control Devices Video Codecs |
29-Oct-2009, 07:02 PM
#30 | ||||||
| Your computer has Conexant AC-Link Audio. Double-click that entry(or right-click it and then click Properties), then click Driver(tab). What's the driver version and date listed there? 6.14.10.670 appears to be the most current version that I've found so far. ---------------------------------------------------------------- Last edited by flavallee; 29-Oct-2009 at 07:12 PM.. |

|
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |

| Thread Tools | |
| |
| You Are Using: |
Advertisements do not imply our endorsement of that product or service. All times are GMT -4. The time now is 01:19 PM. Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved. | |
