I CAN BARELEAY POST THIS TOPIC CUZ OF THE SPEED MY PC IS MOVING [, (AND I ALSO HAVE THE BROWSELLA.DLL TROJAN) |
![]() ![]() |
I CAN BARELEAY POST THIS TOPIC CUZ OF THE SPEED MY PC IS MOVING [, (AND I ALSO HAVE THE BROWSELLA.DLL TROJAN) |
Mar 18 2006, 03:24 PM
Post
#1
|
|
|
Member ![]() ![]() Posts: 13 OS: windows XP |
Heres my HijackThis log: Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\incd 4\InCD\InCDsrv.exe C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe C:\Program Files\Common Files\Symantec Shared\ccProxy.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe D:\stuff\Norton internet security 2005\ISSVC.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe D:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Keyboard\Ikeymain.exe D:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Mouse\Amoumain.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe D:\Program Files\MessengerPlus! 3\MsgPlus.exe D:\Program Files\PowerDVD\PDVDServ.exe D:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe c:\progra~1\intern~1\iexplore.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe d:\Program Files\Real\RealPlayer\RealPlay.exe d:\Program Files\ewido anti-malware\ewidoctrl.exe D:\stuff\Norton internet security 2005\Norton AntiVirus\navapsvc.exe d:\Program Files\nod antivirus\nod32krn.exe C:\Program Files\Common Files\PestPatrol\ppRemoteService.exe d:\Program Files\CompuPicPro\ScsiAccess.exe C:\Documents and Settings\Wolf\Desktop\hijackthis\HijackThis.exe D:\Program files\LIUtilities\WinTasks\wintasks.exe C:\PROGRA~1\FIREFOX\FIREFOX.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file) O2 - BHO: ClickCatcher MSIE handler - {16664845-0E00-11D2-8059-000000000000} - C:\Program Files\Common Files\ReGet Shared\Catcher.dll O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - D:\stuff\Norton internet security 2005\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\stuff\Norton internet security 2005\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: ReGet Bar - {17939A30-18E2-471E-9D3A-56DD725F1215} - D:\Program Files\ReGetDx\iebar.dll O4 - HKLM\..\Run: [iKeyWorks] d:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Keyboard\Ikeymain.exe O4 - HKLM\..\Run: [WheelMouse] d:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Mouse\Amoumain.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [MessengerPlus3] "d:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [RemoteControl] "d:\Program Files\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [DAEMON Tools] "d:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [MSMSGS] "D:\Program files\MSN Messenger\Several MSN sessions\msmsgs.exe" /background O4 - HKCU\..\Run: [Weather Pulse] d:\Program Files\Weather Pulse\weatherpulse.exe O4 - HKCU\..\Run: [Yahoo! Pager] "D:\Program files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [MessengerPlus3] "d:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [Team Does] C:\DOCUME~1\Wolf\APPLIC~1\drawdefyaim\Burn Open.exe O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [msnmsgr] "D:\Program files\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Microsoft Office.lnk = D:\Program files\office\Office10\OSA.EXE O8 - Extra context menu item: Do&wnload by ReGet Deluxe - C:\Program Files\Common Files\ReGet Shared\CC_Link.htm O8 - Extra context menu item: Download A&ll by ReGet Deluxe - C:\Program Files\Common Files\ReGet Shared\CC_All.htm O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O20 - Winlogon Notify: browsela - C:\WINDOWS\system32\browsela.dll O20 - Winlogon Notify: MCPClient - C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: ewido security suite control - ewido networks - d:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\incd 4\InCD\InCDsrv.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - D:\stuff\Norton internet security 2005\ISSVC.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - D:\stuff\Norton internet security 2005\Norton AntiVirus\navapsvc.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - d:\Program Files\nod antivirus\nod32krn.exe O23 - Service: PestPatrol Remote - PestPatrol, Inc. - C:\Program Files\Common Files\PestPatrol\ppRemoteService.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\WINDOWS\System32\r_server.exe" /service (file missing) O23 - Service: SAVScan - Symantec Corporation - D:\stuff\Norton internet security 2005\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: ScsiAccess - Unknown owner - d:\Program Files\CompuPicPro\ScsiAccess.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe Please if u can help me without teling me i need a windows reinstall(im sick of that) |
|
|
Mar 19 2006, 12:13 AM
Post
#2
|
|
|
Malware Eradicator Posts: 18,665 From: Ottawa OS: Windows XP Pro /Vista Ultimate |
Hi Wolffie and welcome to the Geeks to Go Forums.
My name is Trevuren and I will be helping you with your log. 1. I notice that you are using more than one antivirus program. This is very dangerous, as multiple AVs can interfere with one another and actually allow MORE viruses to get through. I strongly suggest you either (1) configure only one antivirus program to enable automatic realtime scanning, and leave the rest disabled most of the time, or (2) go to Start -> Control Panel -> Add/Remove Programs and uninstall all but one antivirus program 2. Reboot your system 3. Post a complete fresh HJT log for review. Your first post did not include the top portion of the log Regards, Trevuren |
|
|
Mar 19 2006, 05:40 AM
Post
#3
|
|
|
Member ![]() ![]() Posts: 13 OS: windows XP |
OK then il try to delete norton internet security and keep antivir configured and pestpatrol,nod32,trojan hunter and the rest of the av il will be kept disabled.
The removing on the NIS takes a loong time like the rest of the aplications (almost 20minutes just to start them I didt thought that the first part of the log is necesary and i have a kinda noobish question Finaly the deletion is complete and now i restart and post the log when window starts again in about 15 minutes :/ |
|
|
Mar 19 2006, 06:20 AM
Post
#4
|
|
|
Member ![]() ![]() Posts: 13 OS: windows XP |
Ok here it is:
Logfile of HijackThis v1.99.1 Scan saved at 14:17:56, on 19.03.2006 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\incd 4\InCD\InCDsrv.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe d:\Program Files\ewido anti-malware\ewidoctrl.exe d:\Program Files\nod antivirus\nod32krn.exe C:\Program Files\Common Files\PestPatrol\ppRemoteService.exe d:\Program Files\CompuPicPro\ScsiAccess.exe C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE D:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Keyboard\Ikeymain.exe D:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Mouse\Amoumain.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe D:\Program Files\MessengerPlus! 3\MsgPlus.exe D:\Program Files\PowerDVD\PDVDServ.exe D:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe D:\Program files\Yahoo!\Messenger\YahooMessenger.exe c:\progra~1\intern~1\iexplore.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe D:\Program files\MSN Messenger\msnmsgr.exe C:\PROGRA~1\FIREFOX\FIREFOX.EXE C:\Documents and Settings\Wolf\Desktop\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file) O2 - BHO: ClickCatcher MSIE handler - {16664845-0E00-11D2-8059-000000000000} - C:\Program Files\Common Files\ReGet Shared\Catcher.dll O3 - Toolbar: ReGet Bar - {17939A30-18E2-471E-9D3A-56DD725F1215} - D:\Program Files\ReGetDx\iebar.dll O4 - HKLM\..\Run: [iKeyWorks] d:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Keyboard\Ikeymain.exe O4 - HKLM\..\Run: [WheelMouse] d:\Program Files\Trust\270KD Silverline Keyboard & Wireless Mouse\Mouse\Amoumain.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [MessengerPlus3] "d:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [RemoteControl] "d:\Program Files\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [DAEMON Tools] "d:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKCU\..\Run: [MSMSGS] "D:\Program files\MSN Messenger\Several MSN sessions\msmsgs.exe" /background O4 - HKCU\..\Run: [Weather Pulse] d:\Program Files\Weather Pulse\weatherpulse.exe O4 - HKCU\..\Run: [Yahoo! Pager] "D:\Program files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [MessengerPlus3] "d:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [Team Does] C:\DOCUME~1\Wolf\APPLIC~1\drawdefyaim\Burn Open.exe O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [msnmsgr] "D:\Program files\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Microsoft Office.lnk = D:\Program files\office\Office10\OSA.EXE O8 - Extra context menu item: Do&wnload by ReGet Deluxe - C:\Program Files\Common Files\ReGet Shared\CC_Link.htm O8 - Extra context menu item: Download A&ll by ReGet Deluxe - C:\Program Files\Common Files\ReGet Shared\CC_All.htm O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing) O20 - Winlogon Notify: browsela - C:\WINDOWS\system32\browsela.dll O20 - Winlogon Notify: MCPClient - C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ewido security suite control - ewido networks - d:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\incd 4\InCD\InCDsrv.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - d:\Program Files\nod antivirus\nod32krn.exe O23 - Service: PestPatrol Remote - PestPatrol, Inc. - C:\Program Files\Common Files\PestPatrol\ppRemoteService.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\WINDOWS\System32\r_server.exe" /service (file missing) O23 - Service: ScsiAccess - Unknown owner - d:\Program Files\CompuPicPro\ScsiAccess.exe |
|
|
Mar 19 2006, 12:43 PM
Post
#5
|
|
|
Malware Eradicator Posts: 18,665 From: Ottawa OS: Windows XP Pro /Vista Ultimate |
Yes "Rebooting" your system is the same as "restarting your system. Feel free to ask any/all questions if you are unsure of something.
We can definitely help you, but first you need to help us. The first step in this process is to apply Service Pack 1a for Windows XP. Without this update, you're wide open to re-infection, and we're both just wasting our time. DO NOT UPGRADE TO SP2 AT THIS TIME
Regards, Trevuren. |
|
|
Mar 23 2006, 10:43 AM
Post
#6
|
|
|
Member ![]() ![]() Posts: 13 OS: windows XP |
I still reinstalled this god [bleep] windows.. :/
That sp for windows installed,i reformated as it said and then critical error cant log on Im not sure but this has sp..heres my log anyway Logfile of HijackThis v1.99.1 Scan saved at 8:40:47 AM, on 3/23/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\SOUNDMAN.EXE D:\Program files\Messenger\msmsgs.exe D:\Program files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\System32\wuauclt.exe d:\stuff\Winamp\winampa.exe D:\Program files\Hijackthis\HijackThis.exe O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [WinampAgent] d:\stuff\Winamp\winampa.exe O4 - HKCU\..\Run: [MSMSGS] "D:\Program files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "D:\Program files\MSN Messenger\msnmsgr.exe" /background O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm |
|
|
Mar 23 2006, 11:40 AM
Post
#7
|
|
|
Malware Eradicator Posts: 18,665 From: Ottawa OS: Windows XP Pro /Vista Ultimate |
Installation of Sp1A does not require a re-install of Windows. It is installed on top of the existing one.
If you reinstalled all of windows, did you format your drive first? Trevuren |
|
|
Mar 23 2006, 02:17 PM
Post
#8
|
|
|
Member ![]() ![]() Posts: 13 OS: windows XP |
i had to reinstall,my computer crashed
i formated drive c where i keep my windows d: is still untouched and now i get very anoying mesages once per minute telling me to download cleanreg cuz my registry values might get corupted and other [beep] |
|
|
Mar 23 2006, 06:07 PM
Post
#9
|
|
|
Malware Eradicator Posts: 18,665 From: Ottawa OS: Windows XP Pro /Vista Ultimate |
Because of the format and re-install, your Windows is not set up to run the programs on your other drive. You probably have to remove, then reinstall all those programs.
Trevuren |
|
|
Apr 2 2006, 07:36 PM
Post
#10
|
|
|
Malware Eradicator Posts: 18,665 From: Ottawa OS: Windows XP Pro /Vista Ultimate |
Due to lack of feedback, this topic has been closed.
If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic. |
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies / Views | Topic Information | |||||
|---|---|---|---|---|---|---|---|
![]() |
2 / 303 | 18th August 2005 - 06:56 AM kualum2002 started - last by therock247uk |
|||||
![]() |
5 / 298 | 19th July 2008 - 02:52 AM dj_shahin started - last by Octagonal |
|||||
![]() |
2 / 118 | 1st November 2008 - 09:15 PM chenery started - last by wannabe1 |
|||||
![]() |
15 / 292 | 15th November 2008 - 01:15 PM chenery started - last by Essexboy |
|||||
|
Time is now: 20th November 2008 - 10:16 AM |
| Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. |